Let me clarify, if you are using SSL, the server name you use must match the CN field of the certificate sent by the LDAP server.