you don’t even need to think about letsencrypt
Do you know if it's just as friction-less to have a self signed cert up with Caddy for internal use? I was using Nginx PM recently and had the need to serve https but I can't use letsencrypt because it's not public-facing. Nginx PM only has letsencrypt as an option.
I wish there was a checkbox that just deployed a self-signed cert without bothering with the details (it's 2024 ffs, HTTPS should be 1 click away, whether that's self-signed or not).