Compromise one device, extract the private key, have a "trusted for a very long time" cert that identifies like devices of that type, sneak it into a target network for man in the middle shenanigans.
Then why use encryption at all when your threat model for encrypted communication can't handle a malicious actor on the network?
(Though getting the browser to just assume http to local domains is secure like it already does for http://localhost would solve that)