SSL certificates contain the name, not the IP. So the IP address can be anything, including internal ones.
AFAIK Cisco used 1.1.1.1 as an example "dummy" IP in their wireless LAN controller documentation, which of course led to infinite idiots copy/pasting exactly that and setting up broken networks.