Morning,
Currently my Windows Root CA is missing the CRL data meaning there is no mention of crl on the cert itself. This cert if not the top in the environment and is causing it to fail revocation checks. The CA above it is Linux. :/ My question is how do I add this data to the cert itself? I don't think simply renewing it would fix this problem.
Certutil results:
Verified Issuance Policies: None
Verified Application Policies: All
Cert is a CA certificate
Cannot check leaf certificate revocation status
CertUtil: -verify command completed successfully.