I think what you describe is closer to "TLS terminating reverse proxy", which does need to intercept every request.
I think what you describe is closer to "TLS terminating reverse proxy", which does need to intercept every request.