For the Let's Encrypt I have some suggestions:
- Option to enable it global for a domain: for all current and all future subdomains
- Option to enable hsts for each domain/subdomain if there is a letsencrypt cert for it
- Option to automatically redirec from http to https
- Somthing like a "cancel" and "retry" button if there is an error requesting a certificate