Hello there,

It would be nice adding a Let's Encrypt client in the base image.
This would allow to actually get and update valid certificates for different services, in an automated way (using cron, or any other installed scheduler).

In conjunction with, we could get a fully automated certificate provisioning, allowing Operator to work on other things than the renewal of certificates.

Doing so would probably imply a new subcommand, such as:
`set letsencrypt host foo aliases,,
set letsencrypt host foo validation-type [dns|http|....]
set letsencrypt host foo mail-account ...
(and so on for other relevant options of the chosen LE client).



@jestabro hmmm I don't see that "certbot" in the completion - running on rolling 1.3... ? In fact, nodes "certificates" and "certbot" are not shown here:
set service https
Possible completions:
> api VyOS HTTP API configuration
> api-restrict Restrict api proxy to subset of virtual hosts
> certificates TLS certificates
+> virtual-host Identifier for virtual host

set service https virtual-host foo
Possible completions:

             Address to listen for HTTPS requests
listen-port  Port to listen for HTTPS requests; default 443

+ server-name Server names: exact, wildcard, or regex

set service https certificates certbot

domain-name(s) should contain the desired server-name. A rewrite is in progress in:

sounds good - would be good having some other options than just domain-name and email, but that's another story :). I'll follow the other task then!

