I really like the idea, but for me to deploy something like this, I need to specify the SSL options. Both the CA, the client cert and client key needs to be configureable.