Hello Mdafforn,
If you're using the same CSR just updating it to SHA2 (which is usually requested from the CA).
Then go to that certificate.
Download the CSR again.
Send it to the CA and request SHA2 certs.
Load it back into your existing certificate profile.
Regards,
Matthew