NOTE: Following is for example purposes only. Please, refer to "keytool" help for details.

Commands to generate certs and jks:

1) Generate 3 jks store with public&private keys:

keytool -genkeypair -alias dc1 -keystore dc1.jks -storepass 123456
keytool -genkeypair -alias dc2 -keystore dc2.jks -storepass 123456

2) Export public keys for each store:

keytool -export -alias dc1 -keystore dc1.jks -storepass 123456 -rfc -file dc1.cert
keytool -export -alias dc2 -keystore dc2.jks -storepass 123456 -rfc -file dc2.cert

3) Exchange&trust public keys between dc1 and dc2

keytool -import -trustcacerts -noprompt -alias dc2 -file dc2.cert -keystore cacerts1.jks -storepass 123456
keytool -import -trustcacerts -noprompt -alias dc1 -file dc1.cert -keystore cacerts2.jks -storepass 123456

*) Useful to see what in files:

keytool -printcert -file dc1.pem
keytool -list -keystore dc1.jks -storepass 123456
