The following Active Roles operations are supported using AD LDS.
1. Add AD LDS user to directory
2. Add AD LDS group to directory
3. ADD or remove members from AD LDS group
4. Disable or enable AD LDS user
5. Modify password of AD LDS user
6. Add OU to AD LDS
7. Add AD LDS proxy object
There is only one Active Roles policy related to AD LDS and that is the "Built-in Policy - AD LDS - Default Rules to Generate Properties" policy.
Deprovisioning objects is not supported using AD LDS.