We have a few MAC users who can only access the address book when they are internal as their LDP server is set to a DC which is inside our LAN.

I want to give them remote access to the LDAP so need to register an external A record and configure the LDAP and a NAT rule on our firewall.

My question is though how do I go about publishing the LDAP directory?  Is there a procedure I need to follow or do I just NAT to one of DC's internal IP?

Really appreciate some guidance on this.