Title basically says it all, I'm curious if there's a service that can handle the SSL layer and then send data to an ec2 instance over plain HTTP (inside the VPN).
Application load balancers work just fine for this purpose, but they are expensive (10$/month, adds up if you want a certificate on e.g. dozens of subdomains) and annoying to set up and manage due to the many layers of abstraction they use.