New Certificate Authority causes intermittent CIFS access
Applies to
ONTAP 9
Issue
Additional CA's root and issuing authority were being utilized by DC's without a certificate in the ONTAP trusted store. A packet trace filtered to the DC that is OK'd in cluster::> cifs domain discovered-servers show -vserver <vserver>
will show many "Unknown CA" replies.