Hi
you may have to play with those ldap object attributes or eventually define your own custom one in your AD for more control.
Personally I don't use the pdm_ldap as we have our own in house solution but the below filter against a MS AD give generally a good result to me:
(&(objectCategory=person)(objectClass=user))
Hope this help
/J