This should help #330 but doesnt allow the user to login even if they have the right objectclasses, but the query didnt return them.
Now logins are allowed by any objectclass unless LDAP_LOGIN_OBJECTCLASS is defined, we should be an array of allowed objectClass (any match). Improvement for #245