This setup assumes dockerized containers, we're using this on CoreOS, but you can use whatever that's using docker.
This setup is more complex than the simplest possible, but it's production ready.
- set up a new host, point a DNS name at it
- Sets up a http proxy to get a LetsEncrypt cert up
- Sets up LetsEncrypt for public infra (https to the CA server)
- Sets up caramel server