IKYC053I   SCEP key or name mismatch. SCEP transaction ID: SCEP-transaction-ID

Explanation

PKI Services is processing a Simple Certificate Enrollment Protocol (SCEP) request for a PKI operation from a SCEP client. While processing the displayed SCEP request transaction ID, PKI Services found one of the following inconsistencies:
  • The signing certificate is self-signed but the public key within it does not match the key in the enclosed PKCS #10 request.
  • The signing certificate's subject name does not match the subject name in the PKCS #10 request or the subject portion of the IssuerAndSubject field in the SCEP request.
  • The signing certificate is not self-signed and not issued by PKI Services.
  • The issuer portion of the IssuerAndSubject field in the SCEP request does not identify PKI Services.

System action

PKI Services rejects the SCEP request.

System programmer response

Correct the SCEP client to remove the inconsistency. Report the error to the support center for the provider of your SCEP client. For more information, see Enabling Simple Certificate Enrollment Protocol (SCEP).