Marshaller Administration
Not yet drafted.
Chapter 7 documents the Marshaller's core registry function — address-only persistence, VERIFY semantics, GR Marshaller vs. Client Marshaller, and the Attestation Console. What's still needed here is the administrative layer on top of that: how a Marshaller instance itself is deployed and configured (is it just another worker instance per Chapter 8's model, or does it have its own distinct deployment shape?), how its own acache (Chapter 18) is backed up or migrated independently of the spines it tracks, and how the Attestation Console's relationship to chandrahub.net's examiner-facing attestation model (flagged as unconfirmed in both Chapters 7 and 10) actually works.
This chapter should be drafted once that relationship is confirmed directly, and once chandra-marshaller.html's administrative screens (as opposed to its day-to-day registry-browsing screens, already covered in Chapter 7) have been reviewed specifically for setup/config/backup concerns.