Syslog error for Active Directory for port 636

Which IIQ version are you inquiring about?

Version 8.2

Share all details related to your problem, including any error messages you may have received.

Hi ,

We are receiving a syslog errors after our production server migration. As the account aggregation is working fine but sometime we are getting ldap connect closed for 636 port. The syslog which we see is mentioned below. Can you please help as what exactly is the error and how we can rectify those errors.

Regards
Amit

Error:javax.naming.PartialResultException [Root exception is javax.naming.CommunicationException: simple bind failed: mexichem.corp:636 [Root exception is javax.net.ssl.SSLHandshakeException: No subject alternative DNS name matching mexichem.corp found.]]
	at java.naming/com.sun.jndi.ldap.AbstractLdapNamingEnumeration.hasMoreImpl(AbstractLdapNamingEnumeration.java:237)
	at java.naming/com.sun.jndi.ldap.AbstractLdapNamingEnumeration.hasMore(AbstractLdapNamingEnumeration.java:189)
	at sailpoint.connector.LDAPConnector.hasMore(LDAPConnector.java:5968)
	at sailpoint.connector.LDAPConnector.hasMore(LDAPConnector.java:5944)
	at sailpoint.connector.LDAPConnector.getGroupMembership(LDAPConnector.java:5723)
	at sailpoint.connector.LDAPConnector.getGroupMembership(LDAPConnector.java:5226)
	at sailpoint.connector.ADLDAPConnector.getGroupMembershipSingleForest(ADLDAPConnector.java:2313)
	at sailpoint.connector.ADLDAPConnector.getGroupMembership(ADLDAPConnector.java:2596)
	at sailpoint.connector.LDAPConnector.buildObject(LDAPConnector.java:3734)
	at sailpoint.connector.ADLDAPConnector.buildObjectSingleForest(ADLDAPConnector.java:1633)
	at sailpoint.connector.ADLDAPConnector.buildObjectMultiForest(ADLDAPConnector.java:2219)
	at sailpoint.connector.ADLDAPConnector.buildObject(ADLDAPConnector.java:4080)
	at sailpoint.connector.LDAPConnector$ContainerIterator.hasNext(LDAPConnector.java:8307)
	at sailpoint.connector.ADLDAPConnector$ADLDAPIterator.hasNext(ADLDAPConnector.java:10773)
	at sailpoint.connector.ConnectorProxy$CustomizingIterator.peek(ConnectorProxy.java:1300)
	at sailpoint.connector.ConnectorProxy$CustomizingIterator.hasNext(ConnectorProxy.java:1327)
	at sailpoint.api.Aggregator.aggregateAccounts(Aggregator.java:3151)
	at sailpoint.api.Aggregator.primaryAccountAggregation(Aggregator.java:2822)
	at sailpoint.api.Aggregator.aggregateApplication(Aggregator.java:2670)
	at sailpoint.api.Aggregator.phaseAggregate(Aggregator.java:2571)
	at sailpoint.api.Aggregator.execute(Aggregator.java:2139)
	at sailpoint.task.ResourceIdentityScan.doUnpartitioned(ResourceIdentityScan.java:245)
	at sailpoint.task.ResourceIdentityScan.execute(ResourceIdentityScan.java:225)
	at sailpoint.api.TaskManager.runSync(TaskManager.java:909)
	at sailpoint.api.TaskManager.runSync(TaskManager.java:724)
	at sailpoint.scheduler.JobAdapter.execute(JobAdapter.java:128)
	at org.quartz.core.JobRunShell.run(JobRunShell.java:202)
	at org.quartz.simpl.SimpleThreadPool$WorkerThread.run(SimpleThreadPool.java:573)
Caused by: javax.naming.CommunicationException: simple bind failed: mexichem.corp:636 [Root exception is javax.net.ssl.SSLHandshakeException: No subject alternative DNS name matching mexichem.corp found.]
	at java.naming/com.sun.jndi.ldap.LdapReferralContext.<init>(LdapReferralContext.java:96)
	at java.naming/com.sun.jndi.ldap.LdapReferralException.getReferralContext(LdapReferralException.java:151)
	at java.naming/com.sun.jndi.ldap.AbstractLdapNamingEnumeration.hasMoreReferrals(AbstractLdapNamingEnumeration.java:325)
	at java.naming/com.sun.jndi.ldap.AbstractLdapNamingEnumeration.hasMoreImpl(AbstractLdapNamingEnumeration.java:227)
	... 27 more
Caused by: javax.net.ssl.SSLHandshakeException: No subject alternative DNS name matching mexichem.corp found.
	at java.base/sun.security.ssl.Alert.createSSLException(Alert.java:131)
	at java.base/sun.security.ssl.TransportContext.fatal(TransportContext.java:369)
	at java.base/sun.security.ssl.TransportContext.fatal(TransportContext.java:312)
	at java.base/sun.security.ssl.TransportContext.fatal(TransportContext.java:307)
	at java.base/sun.security.ssl.CertificateMessage$T13CertificateConsumer.checkServerCerts(CertificateMessage.java:1357)
	at java.base/sun.security.ssl.CertificateMessage$T13CertificateConsumer.onConsumeCertificate(CertificateMessage.java:1232)
	at java.base/sun.security.ssl.CertificateMessage$T13CertificateConsumer.consume(CertificateMessage.java:1175)
	at java.base/sun.security.ssl.SSLHandshake.consume(SSLHandshake.java:392)
	at java.base/sun.security.ssl.HandshakeContext.dispatch(HandshakeContext.java:478)
	at java.base/sun.security.ssl.HandshakeContext.dispatch(HandshakeContext.java:456)
	at java.base/sun.security.ssl.TransportContext.dispatch(TransportContext.java:199)
	at java.base/sun.security.ssl.SSLTransport.decode(SSLTransport.java:171)
	at java.base/sun.security.ssl.SSLSocketImpl.decode(SSLSocketImpl.java:1369)
	at java.base/sun.security.ssl.SSLSocketImpl.readHandshakeRecord(SSLSocketImpl.java:1278)
	at java.base/sun.security.ssl.SSLSocketImpl.startHandshake(SSLSocketImpl.java:401)
	at java.base/sun.security.ssl.SSLSocketImpl.ensureNegotiated(SSLSocketImpl.java:817)
	at java.base/sun.security.ssl.SSLSocketImpl$AppOutputStream.write(SSLSocketImpl.java:1183)
	at java.base/java.io.BufferedOutputStream.flushBuffer(BufferedOutputStream.java:81)
	at java.base/java.io.BufferedOutputStream.flush(BufferedOutputStream.java:142)
	at java.naming/com.sun.jndi.ldap.Connection.writeRequest(Connection.java:405)
	at java.naming/com.sun.jndi.ldap.Connection.writeRequest(Connection.java:378)
	at java.naming/com.sun.jndi.ldap.LdapClient.ldapBind(LdapClient.java:359)
	at java.naming/com.sun.jndi.ldap.LdapClient.authenticate(LdapClient.java:214)
	at java.naming/com.sun.jndi.ldap.LdapCtx.connect(LdapCtx.java:2895)
	at java.naming/com.sun.jndi.ldap.LdapCtx.<init>(LdapCtx.java:348)
	at jdk.naming.ldap/com.sun.jndi.ldap.dns.LdapDnsProviderServiceImpl.getLdapCtxFromUrl(LdapDnsProviderServiceImpl.java:95)
	at jdk.naming.ldap/com.sun.jndi.ldap.dns.LdapDnsProviderServiceImpl.getContextFromEndpoints(LdapDnsProviderServiceImpl.java:129)
	at java.naming/com.sun.jndi.ldap.LdapCtxFactory.getContextFromEndpoints(LdapCtxFactory.java:188)
	at java.naming/com.sun.jndi.ldap.LdapCtxFactory.lambda$getUsingURL$0(LdapCtxFactory.java:197)
	at java.base/java.security.AccessController.doPrivileged(Native Method)
	at java.base/java.security.AccessController.doPrivilegedWithCombiner(AccessController.java:570)
	at java.naming/com.sun.jndi.ldap.LdapCtxFactory.getUsingURL(LdapCtxFactory.java:195)
	at java.naming/com.sun.jndi.ldap.LdapCtxFactory.getLdapCtxInstance(LdapCtxFactory.java:158)
	at java.naming/com.sun.jndi.url.ldap.ldapURLContextFactory.getObjectInstance(ldapURLContextFactory.java:52)
	at java.naming/javax.naming.spi.NamingManager.getURLObject(NamingManager.java:624)
	at java.naming/javax.naming.spi.NamingManager.processURL(NamingManager.java:401)
	at java.naming/javax.naming.spi.NamingManager.processURLAddrs(NamingManager.java:381)
	at java.naming/javax.naming.spi.NamingManager.getObjectInstance(NamingManager.java:353)
	at java.naming/com.sun.jndi.ldap.LdapReferralContext.<init>(LdapReferralContext.java:119)
	... 30 more
Caused by: java.security.cert.CertificateException: No subject alternative DNS name matching mexichem.corp found.
	at java.base/sun.security.util.HostnameChecker.matchDNS(HostnameChecker.java:212)
	at java.base/sun.security.util.HostnameChecker.match(HostnameChecker.java:103)
	at java.base/sun.security.ssl.X509TrustManagerImpl.checkIdentity(X509TrustManagerImpl.java:459)
	at java.base/sun.security.ssl.X509TrustManagerImpl.checkIdentity(X509TrustManagerImpl.java:415)
	at java.base/sun.security.ssl.X509TrustManagerImpl.checkTrusted(X509TrustManagerImpl.java:229)
	at java.base/sun.security.ssl.X509TrustManagerImpl.checkServerTrusted(X509TrustManagerImpl.java:129)
	at java.base/sun.security.ssl.CertificateMessage$T13CertificateConsumer.checkServerCerts(CertificateMessage.java:1341)
	... 64 more
Caused by: javax.naming.CommunicationException: simple bind failed: mexichem.corp:636 [Root exception is javax.net.ssl.SSLHandshakeException: No subject alternative DNS name matching mexichem.corp found.]
	at java.naming/com.sun.jndi.ldap.LdapReferralContext.<init>(LdapReferralContext.java:96)
	at java.naming/com.sun.jndi.ldap.LdapReferralException.getReferralContext(LdapReferralException.java:151)
	at java.naming/com.sun.jndi.ldap.AbstractLdapNamingEnumeration.hasMoreReferrals(AbstractLdapNamingEnumeration.java:325)
	at java.naming/com.sun.jndi.ldap.AbstractLdapNamingEnumeration.hasMoreImpl(AbstractLdapNamingEnumeration.java:227)
	at java.naming/com.sun.jndi.ldap.AbstractLdapNamingEnumeration.hasMore(AbstractLdapNamingEnumeration.java:189)
	at sailpoint.connector.LDAPConnector.hasMore(LDAPConnector.java:5968)
	at sailpoint.connector.LDAPConnector.hasMore(LDAPConnector.java:5944)
	at sailpoint.connector.LDAPConnector.getGroupMembership(LDAPConnector.java:5723)
	at sailpoint.connector.LDAPConnector.getGroupMembership(LDAPConnector.java:5226)
	at sailpoint.connector.ADLDAPConnector.getGroupMembershipSingleForest(ADLDAPConnector.java:2313)
	at sailpoint.connector.ADLDAPConnector.getGroupMembership(ADLDAPConnector.java:2596)
	at sailpoint.connector.LDAPConnector.buildObject(LDAPConnector.java:3734)
	at sailpoint.connector.ADLDAPConnector.buildObjectSingleForest(ADLDAPConnector.java:1633)
	at sailpoint.connector.ADLDAPConnector.buildObjectMultiForest(ADLDAPConnector.java:2219)
	at sailpoint.connector.ADLDAPConnector.buildObject(ADLDAPConnector.java:4080)
	at sailpoint.connector.LDAPConnector$ContainerIterator.hasNext(LDAPConnector.java:8307)
	at sailpoint.connector.ADLDAPConnector$ADLDAPIterator.hasNext(ADLDAPConnector.java:10773)
	at sailpoint.connector.ConnectorProxy$CustomizingIterator.peek(ConnectorProxy.java:1300)
	at sailpoint.connector.ConnectorProxy$CustomizingIterator.hasNext(ConnectorProxy.java:1327)
	at sailpoint.api.Aggregator.aggregateAccounts(Aggregator.java:3151)
	at sailpoint.api.Aggregator.primaryAccountAggregation(Aggregator.java:2822)
	at sailpoint.api.Aggregator.aggregateApplication(Aggregator.java:2670)
	at sailpoint.api.Aggregator.phaseAggregate(Aggregator.java:2571)
	at sailpoint.api.Aggregator.execute(Aggregator.java:2139)
	at sailpoint.task.ResourceIdentityScan.doUnpartitioned(ResourceIdentityScan.java:245)
	at sailpoint.task.ResourceIdentityScan.execute(ResourceIdentityScan.java:225)
	at sailpoint.api.TaskManager.runSync(TaskManager.java:909)
	at sailpoint.api.TaskManager.runSync(TaskManager.java:724)
	at sailpoint.scheduler.JobAdapter.execute(JobAdapter.java:128)
	at org.quartz.core.JobRunShell.run(JobRunShell.java:202)
	at org.quartz.simpl.SimpleThreadPool$WorkerThread.run(SimpleThreadPool.java:573)
Caused by: javax.net.ssl.SSLHandshakeException: No subject alternative DNS name matching mexichem.corp found.
	at java.base/sun.security.ssl.Alert.createSSLException(Alert.java:131)
	at java.base/sun.security.ssl.TransportContext.fatal(TransportContext.java:369)
	at java.base/sun.security.ssl.TransportContext.fatal(TransportContext.java:312)
	at java.base/sun.security.ssl.TransportContext.fatal(TransportContext.java:307)
	at java.base/sun.security.ssl.CertificateMessage$T13CertificateConsumer.checkServerCerts(CertificateMessage.java:1357)
	at java.base/sun.security.ssl.CertificateMessage$T13CertificateConsumer.onConsumeCertificate(CertificateMessage.java:1232)
	at java.base/sun.security.ssl.CertificateMessage$T13CertificateConsumer.consume(CertificateMessage.java:1175)
	at java.base/sun.security.ssl.SSLHandshake.consume(SSLHandshake.java:392)
	at java.base/sun.security.ssl.HandshakeContext.dispatch(HandshakeContext.java:478)
	at java.base/sun.security.ssl.HandshakeContext.dispatch(HandshakeContext.java:456)
	at java.base/sun.security.ssl.TransportContext.dispatch(TransportContext.java:199)
	at java.base/sun.security.ssl.SSLTransport.decode(SSLTransport.java:171)
	at java.base/sun.security.ssl.SSLSocketImpl.decode(SSLSocketImpl.java:1369)
	at java.base/sun.security.ssl.SSLSocketImpl.readHandshakeRecord(SSLSocketImpl.java:1278)
	at java.base/sun.security.ssl.SSLSocketImpl.startHandshake(SSLSocketImpl.java:401)
	at java.base/sun.security.ssl.SSLSocketImpl.ensureNegotiated(SSLSocketImpl.java:817)
	at java.base/sun.security.ssl.SSLSocketImpl$AppOutputStream.write(SSLSocketImpl.java:1183)
	at java.base/java.io.BufferedOutputStream.flushBuffer(BufferedOutputStream.java:81)
	at java.base/java.io.BufferedOutputStream.flush(BufferedOutputStream.java:142)
	at java.naming/com.sun.jndi.ldap.Connection.writeRequest(Connection.java:405)
	at java.naming/com.sun.jndi.ldap.Connection.writeRequest(Connection.java:378)
	at java.naming/com.sun.jndi.ldap.LdapClient.ldapBind(LdapClient.java:359)
	at java.naming/com.sun.jndi.ldap.LdapClient.authenticate(LdapClient.java:214)
	at java.naming/com.sun.jndi.ldap.LdapCtx.connect(LdapCtx.java:2895)
	at java.naming/com.sun.jndi.ldap.LdapCtx.<init>(LdapCtx.java:348)
	at jdk.naming.ldap/com.sun.jndi.ldap.dns.LdapDnsProviderServiceImpl.getLdapCtxFromUrl(LdapDnsProviderServiceImpl.java:95)
	at jdk.naming.ldap/com.sun.jndi.ldap.dns.LdapDnsProviderServiceImpl.getContextFromEndpoints(LdapDnsProviderServiceImpl.java:129)
	at java.naming/com.sun.jndi.ldap.LdapCtxFactory.getContextFromEndpoints(LdapCtxFactory.java:188)
	at java.naming/com.sun.jndi.ldap.LdapCtxFactory.lambda$getUsingURL$0(LdapCtxFactory.java:197)
	at java.base/java.security.AccessController.doPrivileged(Native Method)
	at java.base/java.security.AccessController.doPrivilegedWithCombiner(AccessController.java:570)
	at java.naming/com.sun.jndi.ldap.LdapCtxFactory.getUsingURL(LdapCtxFactory.java:195)
	at java.naming/com.sun.jndi.ldap.LdapCtxFactory.getLdapCtxInstance(LdapCtxFactory.java:158)
	at java.naming/com.sun.jndi.url.ldap.ldapURLContextFactory.getObjectInstance(ldapURLContextFactory.java:52)
	at java.naming/javax.naming.spi.NamingManager.getURLObject(NamingManager.java:624)
	at java.naming/javax.naming.spi.NamingManager.processURL(NamingManager.java:401)
	at java.naming/javax.naming.spi.NamingManager.processURLAddrs(NamingManager.java:381)
	at java.naming/javax.naming.spi.NamingManager.getObjectInstance(NamingManager.java:353)
	at java.naming/com.sun.jndi.ldap.LdapReferralContext.<init>(LdapReferralContext.java:119)
	... 30 more
Caused by: java.security.cert.CertificateException: No subject alternative DNS name matching mexichem.corp found.
	at java.base/sun.security.util.HostnameChecker.matchDNS(HostnameChecker.java:212)
	at java.base/sun.security.util.HostnameChecker.match(HostnameChecker.java:103)
	at java.base/sun.security.ssl.X509TrustManagerImpl.checkIdentity(X509TrustManagerImpl.java:459)
	at java.base/sun.security.ssl.X509TrustManagerImpl.checkIdentity(X509TrustManagerImpl.java:415)
	at java.base/sun.security.ssl.X509TrustManagerImpl.checkTrusted(X509TrustManagerImpl.java:229)
	at java.base/sun.security.ssl.X509TrustManagerImpl.checkServerTrusted(X509TrustManagerImpl.java:129)
	at java.base/sun.security.ssl.CertificateMessage$T13CertificateConsumer.checkServerCerts(CertificateMessage.java:1341)
	... 64 more
Caused by: javax.net.ssl.SSLHandshakeException: No subject alternative DNS name matching mexichem.corp found.
	at java.base/sun.security.ssl.Alert.createSSLException(Alert.java:131)
	at java.base/sun.security.ssl.TransportContext.fatal(TransportContext.java:369)
	at java.base/sun.security.ssl.TransportContext.fatal(TransportContext.java:312)
	at java.base/sun.security.ssl.TransportContext.fatal(TransportContext.java:307)
	at java.base/sun.security.ssl.CertificateMessage$T13CertificateConsumer.checkServerCerts(CertificateMessage.java:1357)
	at java.base/sun.security.ssl.CertificateMessage$T13CertificateConsumer.onConsumeCertificate(CertificateMessage.java:1232)
	at java.base/sun.security.ssl.CertificateMessage$T13CertificateConsumer.consume(CertificateMessage.java:1175)
	at java.base/sun.security.ssl.SSLHandshake.consume(SSLHandshake.java:392)
	at java.base/sun.security.ssl.HandshakeContext.dispatch(HandshakeContext.java:478)
	at java.base/sun.security.ssl.HandshakeContext.dispatch(HandshakeContext.java:456)
	at java.base/sun.security.ssl.TransportContext.dispatch(TransportContext.java:199)
	at java.base/sun.security.ssl.SSLTransport.decode(SSLTransport.java:171)
	at java.base/sun.security.ssl.SSLSocketImpl.decode(SSLSocketImpl.java:1369)
	at java.base/sun.security.ssl.SSLSocketImpl.readHandshakeRecord(SSLSocketImpl.java:1278)
	at java.base/sun.security.ssl.SSLSocketImpl.startHandshake(SSLSocketImpl.java:401)
	at java.base/sun.security.ssl.SSLSocketImpl.ensureNegotiated(SSLSocketImpl.java:817)
	at java.base/sun.security.ssl.SSLSocketImpl$AppOutputStream.write(SSLSocketImpl.java:1183)
	at java.base/java.io.BufferedOutputStream.flushBuffer(BufferedOutputStream.java:81)
	at java.base/java.io.BufferedOutputStream.flush(BufferedOutputStream.java:142)
	at java.naming/com.sun.jndi.ldap.Connection.writeRequest(Connection.java:405)
	at java.naming/com.sun.jndi.ldap.Connection.writeRequest(Connection.java:378)
	at java.naming/com.sun.jndi.ldap.LdapClient.ldapBind(LdapClient.java:359)
	at java.naming/com.sun.jndi.ldap.LdapClient.authenticate(LdapClient.java:214)
	at java.naming/com.sun.jndi.ldap.LdapCtx.connect(LdapCtx.java:2895)
	at java.naming/com.sun.jndi.ldap.LdapCtx.<init>(LdapCtx.java:348)
	at jdk.naming.ldap/com.sun.jndi.ldap.dns.LdapDnsProviderServiceImpl.getLdapCtxFromUrl(LdapDnsProviderServiceImpl.java:95)
	at jdk.naming.ldap/com.sun.jndi.ldap.dns.LdapDnsProviderServiceImpl.getContextFromEndpoints(LdapDnsProviderServiceImpl.java:129)
	at java.naming/com.sun.jndi.ldap.LdapCtxFactory.getContextFromEndpoints(LdapCtxFactory.java:188)
	at java.naming/com.sun.jndi.ldap.LdapCtxFactory.lambda$getUsingURL$0(LdapCtxFactory.java:197)
	at java.base/java.security.AccessController.doPrivileged(Native Method)
	at java.base/java.security.AccessController.doPrivilegedWithCombiner(AccessController.java:570)
	at java.naming/com.sun.jndi.ldap.LdapCtxFactory.getUsingURL(LdapCtxFactory.java:195)
	at java.naming/com.sun.jndi.ldap.LdapCtxFactory.getLdapCtxInstance(LdapCtxFactory.java:158)
	at java.naming/com.sun.jndi.url.ldap.ldapURLContextFactory.getObjectInstance(ldapURLContextFactory.java:52)
	at java.naming/javax.naming.spi.NamingManager.getURLObject(NamingManager.java:624)
	at java.naming/javax.naming.spi.NamingManager.processURL(NamingManager.java:401)
	at java.naming/javax.naming.spi.NamingManager.processURLAddrs(NamingManager.java:381)
	at java.naming/javax.naming.spi.NamingManager.getObjectInstance(NamingManager.java:353)
	at java.naming/com.sun.jndi.ldap.LdapReferralContext.<init>(LdapReferralContext.java:119)
	at java.naming/com.sun.jndi.ldap.LdapReferralException.getReferralContext(LdapReferralException.java:151)
	at java.naming/com.sun.jndi.ldap.AbstractLdapNamingEnumeration.hasMoreReferrals(AbstractLdapNamingEnumeration.java:325)
	at java.naming/com.sun.jndi.ldap.AbstractLdapNamingEnumeration.hasMoreImpl(AbstractLdapNamingEnumeration.java:227)
	at java.naming/com.sun.jndi.ldap.AbstractLdapNamingEnumeration.hasMore(AbstractLdapNamingEnumeration.java:189)
	at sailpoint.connector.LDAPConnector.hasMore(LDAPConnector.java:5968)
	at sailpoint.connector.LDAPConnector.hasMore(LDAPConnector.java:5944)
	at sailpoint.connector.LDAPConnector.getGroupMembership(LDAPConnector.java:5723)
	at sailpoint.connector.LDAPConnector.getGroupMembership(LDAPConnector.java:5226)
	at sailpoint.connector.ADLDAPConnector.getGroupMembershipSingleForest(ADLDAPConnector.java:2313)
	at sailpoint.connector.ADLDAPConnector.getGroupMembership(ADLDAPConnector.java:2596)
	at sailpoint.connector.LDAPConnector.buildObject(LDAPConnector.java:3734)
	at sailpoint.connector.ADLDAPConnector.buildObjectSingleForest(ADLDAPConnector.java:1633)
	at sailpoint.connector.ADLDAPConnector.buildObjectMultiForest(ADLDAPConnector.java:2219)
	at sailpoint.connector.ADLDAPConnector.buildObject(ADLDAPConnector.java:4080)
	at sailpoint.connector.LDAPConnector$ContainerIterator.hasNext(LDAPConnector.java:8307)
	at sailpoint.connector.ADLDAPConnector$ADLDAPIterator.hasNext(ADLDAPConnector.java:10773)
	at sailpoint.connector.ConnectorProxy$CustomizingIterator.peek(ConnectorProxy.java:1300)
	at sailpoint.connector.ConnectorProxy$CustomizingIterator.hasNext(ConnectorProxy.java:1327)
	at sailpoint.api.Aggregator.aggregateAccounts(Aggregator.java:3151)
	at sailpoint.api.Aggregator.primaryAccountAggregation(Aggregator.java:2822)
	at sailpoint.api.Aggregator.aggregateApplication(Aggregator.java:2670)
	at sailpoint.api.Aggregator.phaseAggregate(Aggregator.java:2571)
	at sailpoint.api.Aggregator.execute(Aggregator.java:2139)
	at sailpoint.task.ResourceIdentityScan.doUnpartitioned(ResourceIdentityScan.java:245)
	at sailpoint.task.ResourceIdentityScan.execute(ResourceIdentityScan.java:225)
	at sailpoint.api.TaskManager.runSync(TaskManager.java:909)
	at sailpoint.api.TaskManager.runSync(TaskManager.java:724)
	at sailpoint.scheduler.JobAdapter.execute(JobAdapter.java:128)
	at org.quartz.core.JobRunShell.run(JobRunShell.java:202)
	at org.quartz.simpl.SimpleThreadPool$WorkerThread.run(SimpleThreadPool.java:573)
Caused by: java.security.cert.CertificateException: No subject alternative DNS name matching mexichem.corp found.
	at java.base/sun.security.util.HostnameChecker.matchDNS(HostnameChecker.java:212)
	at java.base/sun.security.util.HostnameChecker.match(HostnameChecker.java:103)
	at java.base/sun.security.ssl.X509TrustManagerImpl.checkIdentity(X509TrustManagerImpl.java:459)
	at java.base/sun.security.ssl.X509TrustManagerImpl.checkIdentity(X509TrustManagerImpl.java:415)
	at java.base/sun.security.ssl.X509TrustManagerImpl.checkTrusted(X509TrustManagerImpl.java:229)
	at java.base/sun.security.ssl.X509TrustManagerImpl.checkServerTrusted(X509TrustManagerImpl.java:129)
	at java.base/sun.security.ssl.CertificateMessage$T13CertificateConsumer.checkServerCerts(CertificateMessage.java:1341)
	... 64 more

Hi @ayadav_12,

The error is about SSL handshake. Have you configured SSL certificate?

Thanks

Hi @ashutosh08 ,

Yes the SSL certificate is configured for SailPoint. If this what you are referring to.

Regards
Amit

This topic was automatically closed 60 days after the last reply. New replies are no longer allowed.