Yeah that's definitely a game changer. Although it's not quite as easy as they make it sound to simply "switch to publicly available names on your servers" The other alternative is to configure your systems to use internal CA's and issue your own certificate's for internal purposes.
Yeah that doesn't really work properly with Exchange and the like. It will cause Outlook to throw cert warnings on autodiscover and the servers themselves from either inside or outside depending on which you certify.