WinRM cannot make the configuration change because the Issuer used for the certificate mapping operation is not valid. The ...

WinRM cannot make the configuration change because the Issuer used for the certificate mapping operation is not valid.  The certificate identified by the issuer thumbprint must be present in the machine "Trusted Root Certification Authorities" or "Intermediate Certification Authorities" store.  The certificate must have key usage that allows it to sign other certificates.