In pfSense, however, you can create multiple CRLs for a single CA, but only one CRL may be chosen for a VPN instance.This could be used, for example, to prevent a specific certificate from connecting to one instance while allowing it to
connect to another.