A valid certificate for replication should have the following properties. Certificate should not be expired. It should have ...

A valid certificate for replication should have the following properties. Certificate should not be expired. It should have both Client and Server Authentication EKU, and an associated Private Key. It should terminate at a valid root certificate. Install two certificates with the subject common name (CN) '%1' and '%2' from the same issuer or a Subject Alternative Name certificate (DNS Name) containing '%1', '%2'.