- You can still create a self-signed certificate and use that, but that's mostly only used for testing purposes. https://learn.microsoft.com/en-us/azure/active-directory-domain-services/tutorial-configure-ldaps
- The host name is just the host name of the LDAP DNS Server host. <hostname>.<domain> is the default. Example: gt034.mydomain.com
I would recommend following the tutorial here for what you are trying to achieve. You can also check out some of the Github samples:
https://github.com/MicrosoftDocs/azure-docs/blob/master/articles/active-directory-domain-services/tutorial-configure-ldaps.md
There are some existing tutorials on Youtube too that you can also follow.