by Ken Task.
Congrats!
Just to be clear ... you did leave at least two accounts on Moodle set to admin levels in Moodle that do NOT authenticate via LDAP. Yes?
If your LDAP ever hickups (and anticipate it will), no one can log into Moodle - not even admin users if ALL authenticate via LDAP.
SSO ... has it's yins/yangs also. So be sure to think about the 'dark side' when venturing down that path.
Technology is grand ... when it works! :\
'spirit of sharing', Ken