If you are using Redhat, look into using their Identity Management software. It's based on FreeIPA, which has a really nice GUI and integrates LDAP, kerberos, and tons of other things into one place. I was looking for something very similar to you, and FreeIPA's GUI was the best that I found.