Shield with AD/LDAPS - javax.net.ssl.SSLPeerUnverifiedException: peer not authenticated

I've been able to get this setup working with an external LDAP provider, so possibly this is related to the in-house AD servers running on Windows 2003 - is this likely?