WEBMAIL defaults leave you prone to eavesdropping / password scraping, etc

    If there anyway to make it when someone types http://domain.com they get redirected to the more secure httpS://domain.com???? Seems to me kinda silly to allow people to login over an unsecured connection. The server generates a self-signed certificate, I don't see the point in not using it.

