There is some code in place (e.g., handling the `certfile` and `certkey` in the `internal/cmd/server.go`, but enabling the TLS service is not.