nginx config is only complicated if you want to take advantage of complex options. The config for a basic website is trivial.
Seems like a poor tradeoff for a slower, less configurable web server.
Seems like a poor tradeoff for a slower, less configurable web server.
The correct thing with Caddy is to _not configure anything at all_ for TLS. The defaults are the correct thing to use. If you override the defaults, then you're more at risk of bitrot due to not remembering to update your own config. Let Caddy (and the Go stdlib, really) choose what's secure.