Hi there,
Untrusted root Certificate Authority (CA) certificate problems can be caused by numerous PKI configuration issues. Various applications that use certificates and Public Key Infrastructure (PKI) might experience intermittent problems, such as connectivity errors, once or twice per day/week. These problems occur because of failed verification of end entity certificate.
This article provides a workaround for an issue where valid root CA certificates that are distributed by using GPO appear as untrusted. Valid root CA certificates distributed using GPO might intermittently appear as untrusted https://learn.microsoft.com/en-us/troubleshoot/windows-server/identity/valid-root-ca-certificates-untrusted
I hope this information helps. If you have any questions please let me know and I will be glad to help you out.
-------------------------------------------------------------------------------------------------------------------------------------
--If the reply is helpful, please Upvote and Accept it as an answer--