Problem
Currently, Let's encrypt want to listen port 80. Fine, but our ports 80 are busy with actual webservers.
Furthermore, we need certificates for Dwellers, but are not willing to do maintenance tasks directly on Dwellers when it could be avoided.
Solution offered
To build a service to get certificates and dispatch them to relevant web servers.
We could assign a dedicated IPv6 to a FreeBSD jail for this use.