The traffic servers reference the CA file via proxy.config.ssl.CA.cert.filename. from my [bad] reading of the code the config option is read in SSLconfig.cc. it is unclear if the file is read when the daemon stars or if it is read on demand @ema is investigating
The old certificate expires Jun 29 19:36:29 2020 GMT