Is it enough for you to have it reverted to a self-signed certificate? That will not be registered at any central(ish) system, only at your server (it is not called ‘self-signed’ without reason!)
If your domain already has a letsencrypt certificate, you can revert to self-signed in the domain settings.
If redirection to port 443 causes problems, maybe the redirect app or the custom web app can help you out.
Is it possible to shut off the self signed and lets encrypt cert? I don’t want site visitors getting the “Warning: bad ssl cert” screen when they visit my site over Tor.