https://www.haproxy.com/blog/haproxy-ssl-termination/
frontend www.mysite.com
bind 10.0.0.3:80
bind 10.0.0.3:443 ssl crt /etc/ssl/certs/mysite.pem ssl-min-ver TLSv1.0
http-request redirect scheme https unless { ssl_fc }
default_backend web_servers
backend web_servers
balance roundrobin
server server1 10.0.1.3:80 check maxconn 20 ssl
server server2 10.0.1.4:80 check maxconn 20 ssl