Which it does; certs are typically issued for *hosts*; example.com
and www.example.com are not the same.

You can buy (more expensive) wild-card certs that'll cover all of

Otherwise the "fix" will involve redirection -- and it'll have to take
place in http, *not* https mode...

