The issue is https://guided-normandy-tours.com redirect to https://www.guided-normandy-tours.com and www.guided-normandy-tours.com is NOT in the Certificate's SANs.
$ curl -Ii https://www.guided-normandy-tours.com
curl: (60) SSL: no alternative certificate subject name matches target host name 'www.guided-normandy-tours.com'
More details here: https://curl.se/docs/sslcerts.html
curl failed to verify the legitimacy of the server and therefore could not
establish a secure connection to it. To learn more about this situation and
how to fix it, please visit the web page mentioned above.
<VirtualHost 146.59.195.58:80>
ServerName guided-normandy-tours.com
serverAlias guidednormandytours.com
serverAlias www.guided-normandy-tours.com <= just added
DocumentRoot /var/www/normandytour
<Directory /var/www/normandytour>
Options Indexes FollowSymLinks MultiViews
AllowOverride All
Require all granted
Order allow,deny
allow from all
</Directory>
re-run cerbot --apache
select www.guided-normandy-tours.com
and regenerate certificate ?
or maybe just add the new www.guided-normandy-tours.com to the SAN ?