We recently updated our external CA as it was expiring, all appear to go well but for one of the two primary servers, its stuck at "Reminting the Certificate"

Now the server itself appears to be actually updated but the last full refresh time will not budge, I've tried running zac retr and zac ref on the primary but still it won't update, last contact time however is correct.

Not sure how to get it out of this state, almost considering simply deleting it and redeploying a new vm.

Is this a simplish thing I'm missing?