I thought Gigamon could only decrypt based on private keys it knew
about (not full SSL decryption of all traffic).
Is that how you are capturing this traffic?

That is correct sir. It's ok if you only have a small number of keys. If you are a large corporation with hundreds or thousands of keys, it becomes unmanageable on the Gigamon. So we are going to do it elsewhere.