I have imported a certificate into a private ~/.keystore file:
~/.keystore
keytool -list Enter keystore password: Keystore type: JKS Keystore provider: SUN Yo
It seems that your keystore contains only a certificate (public key) you need a complete key entry, with a private key, and the whole certificate chain to be able to sign anything