About this question
To perform deep packet inspection, SSL must be terminated at the load balancer (or earlier), but traffic between the load balancer and the app servers would be unencrypted. Wouldn't early termination of SSL leave the app servers vulnerable to packet sniffing or ARP poisoning?
Should SSL be offloaded? If so, how can it be done without compromising the integrity of the data being served?