Hi Vinnie I noticed that without providing a storepass, all certificates in a pkcs12 keystore is invisible, i.e. no TrustedCertEntry and PrivateKeyEntry has no cert. This is quite different from the jks storetype. Is this avoidable? Thanks Max