Additionally, take a look at the Use Proxy Forwarded Headers option to further optimize your setup behind a reverse proxy (by having Ignition implicitly "trust" the headers set by your reverse proxy in order to reflect the true client IP address instead of that of the reverse proxy itself).
When using SSL, your public address configured in Ignition must be something named in the certificate, or an IP address identified in the certificate as an alternate. Your configured public address does not match the screenshot of your certificate.