Detecting https-tunneled ssh traffic

Do you have a pcap for that?
You could try to run it on a dedicated system with -r to exclude any issue with the pfsense configuration.