Sorry to revive an old thread but this problem happened for me as well.
The fix for was that the LDAP Test connectivity (User & Device > LDAP
Servers) went through even though the 'Common Name Identifier' was wrong
due to a typo. sAMAccoutnName inste...