Hi Scott,
In general, you'd want to be careful about any automated solution to adding CA certificates because those certificates are the basis of all communication trust in the system. However, I certainly understand the frustration of having to maintain these certificates as it seems sites change their certificates (and switch CA) a lot more frequently than they used to.
If you had some trusted source of root CA certificates, I suppose you could write some scripts against the appliance REST API to update the CA certificates in the Reverse Proxy store(s).
Jon.
------------------------------
Jon Harry
Consulting IT Security Specialist
IBM
------------------------------