1.Does the 'domain controllers authentication certificate' will immediate active as primary certificate to replace the old one after it enrolled? If not, where to find out how many hours/days will it take to 'activate' as replacing the soon-to-expire cert?
2. After the certificate is auto enrolled / renewed, when will it trigger to replace the original certificate? Is there any options that we can change the time?
Thank you.