Hey,
a DC Backup contains a copy of all certificates, in fact, the whole directory tree /etc/univention/ssl
should exist on your DC Backup.
That being said, it is possible that the DC Backup will sync the deletion of the file as well.
If you don’t have a copy on your DC Backup anymore, you could look into the procedure to renew the whole certificate chain including the CA certificate. This is is described in the following post:
This will also regenerate the server certificates which will likely fix your issues with all the services not working (as all of them rely on encrypted connections to the LDAP server in the end).
Last but not least you should really look into setting up daily backups of your servers. I cannot stress how important having complete, recoverable, fresh backup is.
m.