The access to LDAP should be encapsulated totally in LdapConnection so that it can support RACF or any other LDAP server that supports OrganizationalUnits.
That is, only two configurations of LDAP would be supported, RADF and the standard LDAP schemas for groups and members that are typically installed by default in LDAP directory servers.
Customers would be expected to have these schemas installed in their directory server, and use them for the groups and members used by LDAP-RTC Synchronizer.