Hello. I've created PR #744 to introduce dynamic TLS certificate generation.
With this change we will be able to utilise HAProxy's built-in generate-certificates and ca-sign-file features. This lets the Ingress Controller automatically generate and sign certificates based on the incoming SNI, using a provided CA secret.
Please check it out and let me know if any further changes or adjustments are required before proceeding with the change.