When connecting the Pentaho Kettle data-integration tool to the Identity Suite Virtual Appliance (vApp), users may encounter an SSLHandshakeException.
This error is typically logged as java.security.cert.CertificateException: No subject alternative names present, preventing the tool from establishing a secure connection to the appliance.
Identity Suite vApp 14.x
The default self-signed certificate included with the Identity Suite vApp does not contain the required "Subject Alternative Names" (SAN) extension.
Modern Java clients, including Pentaho Kettle, strictly validate this extension during the SSL handshake process to ensure the certificate matches the hostname, causing the connection to fail.
To resolve this connectivity issue, choose one of the following methods:
http://<vAppIPAddress>:8082Note: Option 2 bypasses SSL encryption. Ensure this aligns with your organization's security policy.
To speak with a customer representative or a Support Engineer see . Scroll to the bottom of the page and click on your respective region.