The certificate that the RP uses needs to be generated by the RP not by ADFS - it's not an ADFS certificate.
So you need to generate a certificate with a private key and store it on the RP side. The certificate details need to be in the RP metadata which is imported by ADFS.
That way ADFS knows what certificate to use when it checks the signature.