access_log /var/log/nginx/access.log;
        error_log /var/log/nginx/error.log;
 
-        # IRC logs server
+        # enforce https
+        server {
+                listen 80;
+                return 301 https://$host$request_uri;
+        }
+
+        # IRC logs
         server {
                 listen 443 ssl;
                 server_name dump.plomlompom.com;
 
         # htwtxt
         server {
+                listen 443 ssl;
                 server_name htwtxt.plomlompom.com;
+                ssl_certificate /etc/letsencrypt/live/htwtxt.plomlompom.com/fullchain.pem;
+                ssl_certificate_key /etc/letsencrypt/live/htwtxt.plomlompom.com/privkey.pem;
                 location / {
                         proxy_pass http://127.0.0.1:8000;
                 }