I generally create a new keystore with just the certs needed.
It may be referencing the alias of the original cert in your
keystore rather than the updated on.
I have wild card certs on two SDP installs. So I know it all works