Hi Rick,
Adding to what I suggested, regarding the attributes mapping there are two scenarios:
1. user is not a member of any group
2. user is member of a group
for 1. user is not a member of any group
===============================
on ldap the user account should have some value for all the following attributes
1. Email
2.givenName
3.sn
4. o = one of org's which is on your portal
5. title = developer
on portal
=======
6.under role mapping for developer , in the box type developer
so while authenticating, the user title from ldap is pulled as developer and this developer is mapped as developer role according to above step 6
So in the portal config menu what ever we type in the box on the right hand side is mapped with role which is on the left hand side ( under role mappings )
for 2. user is member of a group
=========================
in portal config menu for role add "memberOf"
and for example for developer role, in the box against the role add the Distinguished Name value of the group to which the user is a member
Hope this helps,
Regards,
Amit.