The recent @letsencrypt shutdown of TLS-SNI-01 validation (due to idiotic hosting providers) is very disappointing. It was by far the most convenient, hands-off, universal validation mechanism. https://community.letsencrypt.org/t/2018-01-11-update-regarding-acme-tls-sni-and-shared-hosting-infrastructure/50188 …
No certbot code was touching my web server anyway - I had written a plugin to just call a shell script that creates configs in /etc/nginx/sites.d and then removes them.https://github.com/marcan/certbot-external …