I guess it depends on how much of the heavy lifting you want to do.
You seemed to indicate that you were using Active Directory so perhaps that was a poor assumption on my part.
That said it is possible to tailor the Active Directory User source to connect to other LDAP servers, so long as you understand that it was intended to work with AD. Here are a couple of links where other people have been successful doing such things, they are a little dated.