Hi Markus,
That is very helpful. I feel like getting somewhere. I have run as you suggested. This is the error message I am getting when running with client portal ticket and and verify.pse file.
ERROR in _pse_get_TBS_by_keyUsage: (105) Requested PK not found in PKList/EKList
ERROR in af_pse_get_Certificate: (4130) Can't get certificate because cannot read object : "Cert"
ERROR in sec_read_PSE: (4130) object is not in toc : "Cert"
ERROR in ??: (4130) object is not in toc : "Cert"
Does this mean the public key of the portal is not found the the verify.pse file supplied by the client or does it mean the private key the ticket was signed with does not match the public key present in verify.pse?