Devise mechanism for dealing with (changing of) administrative credentials

When evaluating a setup in which administrative credentials to the HSM (R-Administrator, N-Administrator, backup and unlock passphrase) are represented by a shared secret, divided by Shamir's Secret Sharing, we need to provide a mechanism that allows for changing the administrative credentials, the shareholders of the secret and offer a way to securely provide (initial/ updated) shares to the current shareholders.