Default cert-manager configuration to single certificate
Eventually it would be nice to be able to have 1 TLS certificate with multiple SANs instead of one certificate per domain. After acme2 support is available in cert-manager, we can offer an configuration option to do a wildcard certificate.