Nested subzones and Advanced Edge Certificates supported by Argo

We have configured Advanced Edge Certificates to be able to terminate SSL on Cloudflare edges under sub-zones. For example app1.test.domain.tld

This works fine on normal proxied traffic going down to our origin.

But it seems that Argo Tunnel can’t handle Advanced Edge Certificates and are trying to use a universal SSL certificate.

Are nested subzones and Advanced Edge Certificates supported by Argo?

INFO[2020-10-22T05:56:56Z] Version 2020.7.1
INFO[2020-10-22T05:56:56Z] GOOS: linux, GOVersion: go1.13.3, GoArch: amd64
INFO[2020-10-22T05:56:56Z] Environment variables map[hostname:missioncontrol.staging.leasecloud.com no-autoupdate:true origincert:/etc/cloudflared/cert.pem proxy-dns-upstream:https://1.1.1.1/dns-query, https://1.0.0.1/dns-query url:http://127.0.0.1:3000]
INFO[2020-10-22T05:56:56Z] Starting metrics server on 127.0.0.1:43561/metrics
INFO[2020-10-22T05:57:00Z] Proxying tunnel requests to http://127.0.0.1:3000
INFO[2020-10-22T05:57:03Z] Connected to MAD
ERROR[2020-10-22T05:57:03Z] Register tunnel error from server side: You asked for a tunnel to app1.test.domain.tld, but your certificate is valid only for [*.domain.tld domain.tld]
INFO[2020-10-22T05:57:04Z] Initiating graceful shutdown due to You asked for a tunnel to app1.test.domain.tld, but your certificate is valid only for [*.domain.tld domain.tld] ...
INFO[2020-10-22T05:57:04Z] Metrics server stopped
ERROR[2020-10-22T05:57:04Z] Quitting due to error: You asked for a tunnel to app1.test.domain.tld, but your certificate is valid only for [*.domain.tld domain.tld]
You asked for a tunnel to app1.test.domain.tld, but your certificate is valid only for [*.domain.tld domain.tld]