its unclear why this is necessary, its not required and security scan fails for mydomain.tld scans
we still havenāt seen any logs showing that this has failed. without those logs there is no way of telling what went wrong.
so suggested procedure:
- remove current configuration and start lets encrypt from scratch entering only the subdomain (
cloud.mydomain.tld) - if all is well and the certificate in place, try executing certificate renewal
sudo snap restart nextcloud.renew-certsmanually to see whether you see an error in the logs, post the output here.