We're going to be releasing a fairly major rewrite to SSL and LetsEncrypt in the near future. LetsEncrypt will run per-server rather than centrally to help with the rate limiting issues some customers with larger clusters have faced.
What this means is that the LetsEncrypt runner won't have access to the reseller info. However the initial self signed certificate could be given a completely generic issuer name instead.