KC and PIV CARDS - little help?

We are trying to validate PIV on federal bridge certification authority and running in to issues. Anyone have experience here? The issue exactly is that we have certificates in our trust store with the same distinguished name. The loading of the certs into the trust store from file is overwriting certs with the same DN and the now smaller trust store does not contain the certs that make a valid chain for some users.