KOTS: What do I do when a customer's Kubernetes certificate has expired?

Run the command kubeadm alpha certs renew all to manually update the certificate.

Here are some resources on certificate rotation to ensure certificates are rotated and don’t expire:

Managing Certificates for Kubernetes Components

Embedded kURL Cluster Operator (EKCO) Add-On