
@Sibbo I do not see any problem with Letsencrypt. Any CA which is widely trusted has to follow the same rules. This rules are set up by the CA Browser Forum. Which metadata does LE collect? My server’s IP address, domain and subdomain, mail address. These are logged in the CT logs. Every CA has to log all certificates in a public CT log. Regardless which CA I choose, these data are public. There are not any critical data or metadata that LE can collect.


@libewa @SpiceDealer You do not need docker for running more than one service on a RasPi or another computer. Just configure the web services to listen on an arbitrary port on localhost. Set up a reverse proxy (you can do this with traefik, nginx, apache2 …) and expose your services with unique names on standard port 443.
Of course, many services are run via docker in a very comfortable way.