Switch from providing a keystore (PKCS12) to a PEM encoded client certificate and build keystore on-the-fly.