If you do not change log level in LDAP before trying to add/remove users, it is very likely that you will not see anything related to LDAP in syslog. Reason is that if error is due to LDAP not behaving as expected for, let say, access right reason, as this is not an error from LDAP standpoint, it will not generate any entry in syslog.