Setting up decryption has been discussed over and over again. In this nifty tutorial, Adonis Li @AdonisLi provides some additional tips and tricks on how to create the Certificate Signing Request (CSR) and issue Sub-CA certificate from your AD Certificate Service.
This is especially helpful for all clients that are part of the AD domain because they will automatically trust the certificate and you don't have to import it to all of your clients! This makes it much easier to deploy your decryption configuration.
Make sure to check out the YouTube video and hit that like button!
Check out our extensive resource list which covers basic - intermediate - advanced topics on SSL certificates: