A default installation of a Microsoft PKI running Windows includes LDAP URL's as first within CRL distribution points (CDP's) and Authority Information Access (AIA).
Question 1 :
I want to issue a certificate from my windows certificate authority server to Cisco DNA device but want my HTTP-type CRL being included as first with my certificate and internal LDAP URL's as second within CDP and AIA extensions
Question 2 :
I want to issue a certificate from my windows certificate authority server to Cisco DNA device but want only HTTP-type CRL being included with my certificate and remove internal LDAP URL's within CDP and AIA extensions
Please let me know if anyone of this configuration is possible with the certificate that can be issued from windows certificate authority ?