Quote:

ldap to be run with the domain admin account




KRB

I really think you should rethink this idea. This is VERY unsecure and could potentially lead to your entire network being compromised and damaged either intentionally or unintenionally by a normal user.

If you're running AD you might be able to delegate enough rights for a user to create a user but even that is not recommended.

Search for RUNNAS here on the board which might be able to assist you with this task, but again I'd have to recommend against it as I don't think you're quite aware of what you'e asking to do.