I can't speak for DPI products, but the company I work for makes a product that has a SSL acceleration feature which requires similar interception, and it definitely generates unique certificate for each device. Cyberoam implies that other products are similarly vulnerable and I just can't believe that.