We hav a CA architecture in place with one offline root CA and two Enterprise subordinate CAs. All three are in Windows 2008 R2. I want to know if the subordinate CAs are configured in redundancy - means if one CA goes offline the other will take over for normal CA tasks - like cert issuance, CRL publising, etc.
I dont want to test this by manually taking one CA offline and test redundancy, is there a way we can get this from the CA configurations? If so what are the configs to check?