Here is an article 897721 "You may not be able to connect to a domain controller by using LDAP over an SSL connection when the domain controller is running Windows 2000 Server with SP4" In this code change we introduced a mechanism to to re-enumerate