None of the codes above will remove you from the burden of getting x509 certs properly provisioned.
When to use and when not to use self-signed certs, when you can be your own private CA and issue out certifications. How multi domains, wildcard domains certs work. When handshake failed for whatever reason, where exactly in the entire pipeline failed. It is because of certain settings in the proxies or the endpoints, such as no common cipher suites available in very strict configurations between the client and server endpoints, or minimal TLS version that one party insist on having that the client doesn’t support?
If you just want to touch superficially on the topic, that would get you somewhere.
If you need to work with security folks to circumvent certain security vulnerabilities when these are reported across the industry, knowing these knowledge are necessary. Of course we don't expect junior IT folks to know these, but if you wanted to move up the chain to be someone whom may liaise with security folks, then you will need to know some of these stuffs.