Automatic publishing of CRLs could be useful feature.
Easiest option would be to dump the CRLs to disk (and
set manually cron + scp etc. for transfer).
Or maybe the CRLs could be published straight to the
webserver (by using SCP or SFTP from openssh. With
key-based authentication maybe.) or to the
ldap-directory (by tools from OpenLDAP. These could be
even wrapped on stunnel).
It would useful to schedule publishing with different
options; Publish when new entry is added to CRL, publish
on scheduled time and ofcourse publish when Next
update-field on previous CRL is due.