To be honest, this is the first time I heard about this, eventhough I think it makes sense, I have also some doubts about how practical it can be. For example, the cert should be issued using the "manual" option, that means that everytime the cert needs to be renewed, you will need to do it manually, which can be very impractical in many cases.
Definitely, this is something I will think about and I appreciate if someone knows about a better workaround, let us know!