
Certificate response does not match PSE
Message no. 1S540
Diagnosis
The public key of the certificate response does not match the PSE. There are two possible reasons for this happening. Either you created the certificate request from another PSE. Or you have regenerated the PSE after creating the certificate request (in Trust Manager: choose Generate PSE or Replace PSE).
Even if you regenerate a PSE with the same subject name, you generate new cryptographic keys, that is a certificate response that would match the old PSE does not match the new PSE.
Procedure
Select the correct PSE to import the certificate response. If you have regenerated the PSE after generating the certificate request, you need to generate a new certificate request, and therefore request a new certificate from the CA.


