That's not possible because the list of "Known CAs", is a list of certificates, not a list of URLs.
What seems more feasible is that subscribed list of URLs be created based upon the known CRLs/OSCP URLs from our "Known CAs".
asabban, may have thoughts on that.
we do have the CRL URLs in the database, so it should not be a big deal to make a list of CRL URLs. Anyway this will only help bypassing the CRL URLs for CAs we have in the trusted list, it will not help getting access to CRLs apart from that. Maintaining a list with any CRL URL that may exist won't be possible I think.
it would be of much help to have only the CRL URLs of the CAs which are in the trusted list.
Actually I do not even want my users to grab CRLs from CAs not in the trusted list whithout me explicitly whitelisting these. :-)
creating the automatically maintaining list may take some time, so for the meantime I made an export of all CRL URLs into a static list you can import into MWG. Maybe this helps for the meantime.