and update ldap schema and acls appropriately. *cough*