I put some references to existing articles and existing solutions here: https://brunovernay.blogspot.com/p/integrating-tls-in-constrained-devices.html

The IoT use-case where you want to browse to your device locally
- without configuring a domain name
- without installing an extra application
still has no solution in sight. Even Opportunistic Encryption that would have been a progress has been discarded.