can you try to check the certificate outside of the IS with OpenSSL or any other certificate management tool and check its properties?
Eventually, the private key for which the certificate was issued is to long.
another hint from the net is to check for the serialNumber of the certificate as this might get longer than expected.
Remember, that the certificates will be stored in the ISInternal database schema and the column for the serialNumber has a limited length.
Check for the table IS_USER_CERTIFICATES.