A valid certificate for replication should have the following properties. Certificate should not be expired. It should have ...

A valid certificate for replication should have the following properties. Certificate should not be expired. It should have Client Authentication EKU, and an associated Private Key. It should terminate at a valid root certificate. The subject common name (CN) should be equal to '%1', or subject alternative name (DNS Name) should contain '%1'.