* fix CertificateStore#refresh bug for default certificate * add test for store refresh when certificate state updated * add automated screenshot generation for "request new" * allow to hold back certificates in LocalCA using system properties