For more details please refer to
http://httpd.apache.org/docs/2.2/mod/mod_ssl.html
http://www.zeitoun.net/articles/client-certificate-x509-authentication-behind-reverse-proxy/start
Please forward at least the following headers:
SSL_CLIENT_VERIFY
SSL_CLIENT_CERT