Trying to gather data if anyone currently has OCSP/CRL settings set to "Require if Certificate Indicates" like the image below:
If so, are you seeing any trust settings with the JDS? What I'm seeing is if I configure the settings above, then when I open Casper Admin, i get a certificate prompt while mounting the JDS that "The certificate cannot be verified (it specifies an untrusted CRL)". I can either manually trust it and I don't get prompted again, or I can turn off OCSP/CRL and the issue goes away as well. The JSS Built-in Certificate Authority and JSS Built-in Signing Certificate are both in place in the System keychain and the system is enrolled properly.
I do have a case open with JAMF currently, but they have 0 cases related to OCSP settings so are doing additional research.