According to these two answers [1] [2] it\'s possible to have two SSL certificates serving from the same Apache Tomcat using Server Name Indication (SNI).
My question
You could install nginx / haproxy (both supports SNI) in front of the tomcat and they will act as proxy.