Cannot authenticate to LDAP server via SSL since upgrade to 5.1.1.
Test basic connection : Failed
vanpdc02.impacservices.com:636; nested exception is javax.naming.CommunicationException: vanpdc02.impacservices.com:636 Root exception is java.lang.ClassNotFoundException: com.atlassian.crowd.directory.ssl.LdapHostnameVerificationSSLSocketFactory
Also, in the logs -
Caused by: java.security.cert.CertificateException: No subject alternative DNS name matching impacservices.com found.
at sun.security.util.HostnameChecker.matchDNS(Unknown Source)
at sun.security.util.HostnameChecker.match(Unknown Source)
at com.sun.net.ssl.internal.ssl.X509TrustManagerImpl.checkIdentity(Unknown Source)
at com.sun.net.ssl.internal.ssl.X509TrustManagerImpl.checkServerTrusted(Unknown Source)
Hi Rick,
If it's not only the test connection that is failing, in case the directory synchronization is also not working, It can be also related to the issue described in this KB article.
Cheers
Hi Rick,
I susepct that you are facing the bug described here: https://jira.atlassian.com/browse/JRA-27347
If that is the case then it is just the test that fails, but the LDAPS connection and the synchronisation are actually successful. Therefore I would suggest you start by checking whether the connection and synchronisation are working correctly, rather than just following the error message, and if they aren't then I would suggest that you open a support ticket so that we can investigate the cause of this issue.
All the best,
John
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Online forums and learning are now in one easy-to-use experience.
By continuing, you accept the updated Community Terms of Use and acknowledge the Privacy Policy. Your public name, photo, and achievements may be publicly visible and available in search engines.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.