Reading old private key and new certificate mid renewal

Hi MickMcQ,

When I said there are comments about just-in-time certificates, I was thinking of ones like this by jsha:

We don't guarantee that issuance will happen in seconds. We may very well add validation processes in the future that take longer, which would break the assumptions of this style of clients.

in Possible race condition observed with autocert - #20 by jsha