// pull all the trusted self-signed CA certs out of the cacerts file
// and verify their signatures
KeyStore ks = KeyStore.getInstance("JKS");
ks.load(new FileInputStream(cacertsFileName), "changeit".toCharArray());
Enumeration<String> aliases = ks.aliases();
while (aliases.hasMoreElements()) {
String alias = aliases.nextElement();
System.out.println("Verifying " + alias);
if (!ks.isCertificateEntry(alias))
throw new Exception(alias + " is not a trusted cert entry");