

You could go HTTP only if your happy that anything on the network could see your traffic, I don’t trust anything on my networks so HTTPS everything.
Depending on if you have a proxy in front of vaultwarden will depend on what you need setup, I have nginx and traefik in front of my instance.




If your looking for a great DNS provider, OVH is rock solid. They also register domains, I have all my domains and zones with them.
Also a dedi and a VPS, also they have an API for DNS updates that can be used to get certificates for internal domains