Renewing certificates and kube-proxy

How can I renew my certificate with the kube-proxy taking ports 80 and 443?

Can I stop kube-proxy for a few minutes to use 443? If so, how?

What is the recommended approach here?