Install nginx, set up generic HTTPS redirects and the .well-known directory. Acquire Let’s Encrypt certificates for the primary IP `dns_name` and any domains listed in the `tls_domains` context property.