How can I verify an X509 (or DER-formatted) certificate against the Java certificate store via the command line?
I've looked into using the keytool utility, but it looks like it only handles import/export/display functionality (no verification).
EDIT:  It looks as though keytool can be used for verification, but only if an import is attempted.  I suppose a better way of asking this questions is whether or not a more passive approach (as in: not modifying the keystore) is available.  Thanks!