Certificates generated from DB encrypted record contain null characters at the end of file.
Currently, a workaround is to manually store certificate file inside "var/trive/fiskal" and replace the generated one.
We're missing a "trim()" function somewhere.