Want to enable LDAPS on openfire server

I am running openfire on a linux ubuntu server. I have been using AD authentication via LDAP successfully for some time. I want to move to LDAPS on port 636. I have tested ldaps from my windws pc to my domain controller and have no issues, but when I test it from openfire no success. I am using the hostname on the certificate, and I have added the fully qualified host name of the DC to the hosts file of the OS, so it does resolve correctly. Not sure what I am missing? Would I need to import the CA certificate from my Microsoft CA server to the linux box?