I'm trying to activate SSL for my Active Directory LDAP connection but am getting the following error:
"java.security.cert.CertificateException: No subject alternative DNS name matching domain.local found."
I've specified "DC1.domain.local" as hostname in server settings for the LDAP User Directory and imported DC1's computer certificate into the Java KeyStore. The Certificate has "DC1.domain.local" in SAN but not "domain.local".
Is this required eventhough I'm not specifying "domain.local" as the hostname? If so, how can I add that to the SAN?
What are the certificate requirements? Currently I include DNS name in the subject name, is SPN also needed?