The question:
Can you give a single combination of LDAP search base and query that will identify every real human user in your organisation (excluding all roles/mailboxes/test IDs etc.)?
If not, I would posit that you are failing your organisation right now…