Thanks for raising this. Large environments with hundreds of cache nodes are exactly the scenarios we’re thinking about, so we recognize the administrative overhead the current certificate workflow can create at that scale.
As mentioned in the earlier response, the HTTPS enforcement timeline can’t be delayed further. That said, we intentionally provided significant lead time, and our priority is to reduce the operational burden customers face before the enforcement date.
Enabling “Bring Your Own Certificate” is a key part of that effort. We’re also actively looking at ways to make renewal and lifecycle management easier over time, including how this could better align with existing enterprise PKI and automated certificate management solutions.
We appreciate the feedback and it’s directly influencing how we’re prioritizing improvements ahead of enforcement. I urge you to utilize our MCC Tech Community blog space for other feedback you may have: Microsoft Connected Cache for Enterprise and Education | Microsoft Community Hub