yast ldap didn't help
but i was successful in just using openldap
the domain name appears to be just a way to show it in the client, but i made it the same as the TREE name
used ldaps://, imported the CA cert from a .pem
used the cn=admin,o=org as it was DEV. now that i know it works. I will try to reduce that down to a standard ldap browse userid i have in the tree.
VC appliance 5.1u1.
Peter