There are certain limitation to this:
- the number of supported SSL Cards in the box on which SRA is running
- the performance win is like nothing
- only the SSL handshake is performance intensive
- the ongoing encryption after the negotiation is easily handable by the "normal" hardware
- the price for an extra SSL card is much higher than that of an extra box
- support issues with a limited number of SSL cards
What some customers do is they place an SSL terminating LoadBalancer in front of several SRA boxes. So you have a LB and SSL "offload" at the same time.
/u