Filter the Decryption log to identify Decryption sessions that failed
because of an incomplete certificate chain.
In the filter field, type the query (err_index eq
Certificate) and (error contains ‘http’). This query
filters the logs for Certificate errors that contain the string
“http”, which finds all of the error entries that contain the CA
Issuer URL (often called the URI). The CA Issuer URL is the
Authority Information Access (AIA) information for the CA
Issuer.