make sure that CRT/CRL files are accessible by all clients (which will use your certificates) On CDP/AIA extension planning I would suggest to check my blog post: Designing CRL Distribution Points and Authority Information Access locations. Although, the article was written against Microsoft CA, the same principles apply to any other CA

IETF | Internet Engineering Task Force CRL Distribution Points The CRL distribution points extension identifies how CRL information is obtained. The extension SHOULD be non-critical, but this profile RECOMMENDS support for this extension by CAs and applications. Further discussion of CRL management is contained in Section 5. Update CRL Distribution Point (CDP) and Authority Choose Extensions tab and edit the CRL Distribution Point (CDP). The first location should be a file path. This is where the CRL is stored on your server. This is the Physical Path of the Virtual Directory you create for the CDP. The second path is through LDAP. Change this path to only have the Publish CRLs to this location and Publish Delta

(Complete) How to Configure Certificate Authority (ADCS

Aug 06, 2013 OID description for 2.5.29.31 - CRL Distribution Points

Returns the CRL Issuer name of this distribution point, if set. The CRL issuer field, if present, specifies the entity that issues the CRL. The CRL issuer field must be present if the crl issuer is not the same entity as the one that has issued the certificate that contains a CRLDistributionPoints extension with this distribution point. In this

What is a CRL Distribution Point - DigiCert May 02, 2018