We're using AD FS 2.1 on Server 2012 R2 and are currently using certificates issued from our internal CA for Service Communications and Token-signing. I wonder if AutoCertificateRollover, for our AD FS environment, should be set to True or False.
Will the ADFS switch to the new cert if i import one to the server when the old one is about to expire?
both