By default, the time interval between CRL updates is 24 hours. To configure the amount of time between CRL updates, include the refresh-interval statement at the [edit security pki ca-profile ca-profile-name revocation-check crl] hierarchy level:
- [edit security pki ca-profile ca-profile-name revocation-check crl]
-
refresh-interval number-of-hours;
The range for number of hours is from 0 through 8784.