HTTP/2 and HTTP/3 implementations do not allow you to connect to an IP/domain unless there is CA based TLS. HTTP/1.1 allows both HTTP and HTTPS to coexist. If for some reason the CA based TLS cert is revoked I can always just visit the http site over HTTP/1.1.