- Added ability to specify trusted CA certificates in proxy middleware and to disable log rotation
- Enabled ACME TLS‑ALPN‑01 challenge by default and introduced clustering plugins for shared TLS assets across deployments
- Fixed multiple TLS‑related bugs (self‑signed, IP‑only certificates, storage path) and other issues such as log‑rolling leaks