And this is a Windows Active Directory domain? If so, LDAP Schema should be Active Directory. You should also put in just hostingservice.src.cnr.it for the LDAP servers and check Use TLS. Just be sure that they use TLS over port 389.
Granted, if it's Active Directory, both Search User and Search Base should end with DC=hostingservice,DC=src,DC=cnr,DC=it. You can pull the distingushedName by enabling Extended Attributes under View menu in Active Directory Users and Computers, then go down the tree and right click, choose Properties, and you should see a tab that says "Attribute Editor." This works for both OU and specific users.
Make sure your Search Base encompasses everyone.