For version v4.0.x, apply the same procedure to both the primary cluster and the standby cluster (terms of the Disaster Recovery setup) as described here.
On any control-plane node in the global cluster, export backups of the TLS certificates used by 's platform access addresses:
Delete the current certificates:
Introduce the new certificate: