Must a separate virtual host be made for mail subdomains?

Welcome to the Let's Encrypt Community :slightly_smiling_face:

I'll be honest, this redirect is extremely nonsensical anyhow. If you're using this for a mailserver, there's really no point in having an HTTP to HTTPS redirect since you never intend to use either protocol anyhow. Personally, I consider it a bug for certbot not to prompt for which domain names to implement a redirect. The message you received about upcoming certbot behavior prompted me to write an open message to the certbot developers.

2 Likes