Soon browsers will no longer support SHA1 signed certificates issued at our local Certification Authority in Active Directory,
services such as Microsoft CRM on premise will be affected by this issue.
the workaround is easy:

  • certutil -setreg ca\csp\CNGHashAlgorithm SHA256
  • net stop certsvc
  • net start certsvc
  • Facebooktwitterredditpinterestlinkedinmail