Edge BYOC cert rotation breaking schedule publish api

looking for advice on edge byoc cert rotation breaking schedule publish api. our chicago wfm team is hitting 401 unauthorized errors via sdk v2.140.0 right after the nightly cert refresh. the architect flow triggers the publish but the edge proxy rejects the token. any ideas on caching the new cert without restarting the edge service?