A valid certificate for replication should have the following properties. Certificate should not be expired. It should have ...

A valid certificate for replication should have the following properties. Certificate should not be expired. It should have both Client and Server Authentication EKU, and an associated Private Key. It should terminate at a valid root certificate. The subject common name (CN) should be equal to '%1', or subject alternative name (DNS Name) should contain '%1'.