Help with "Standalone Server with TLS" and spec.signerName

With Kubernetes 1.22 it is now mandatory to use spec.signerName however the documentation for Standalone Server with TLS is not yet updated. How will a working csr.yaml look? Thanks.