Can you give sudo 1.7rc1 a try? It has a number of LDAP improvements and, given a similar setup, works correctly for me. http://www.sudo.ws/sudo/dist/beta/sudo-1.7.0rc1.tar.gz - todd