Pending improvements to the CertHub Perl integration (deploy_certs.pl and related).
| Item | Detail |
|---|---|
| Bearer token auth | Replace basic auth with bearer token via --certhub-token / CERTHUB_TOKEN when token is available |
| Derive clientMachine from cluster object | Replace clustercmd role=portal shell-out with lookup from Dap::Cluster nodes/groups |
| Confirm production cert path | Verify /opt/dap/tmp/certs is correct shared mount path for production use |