Short answers from experience:Key/cert rotation: Use dual credentials.
Create the new key/cert, deploy it, verify traffic, then revoke the old
one. CyberSource supports overlapping credentials, so you can rotate
without downtime.Auth pitfalls: Sandbo...