i think the current ldap configuration procedure is rather difficult to figure out and test.
it would be better to configure it from admin home. also by configuring it from admin home it would make more sense, since many config optios are set up inside the database