For LDAP integration, it is recommended that you assign roles based on your LDAP groups.
To ensure that users have the correct roles as soon as they log in, you create groups in Studio that have the same name as your LDAP groups, but in lowercase, then assign the correct roles to each group.
To create a group and then assign a role to that group:
The new group page is displayed.
Make sure the name is the lowercase version of the name of a group from your LDAP system. For example, if the LDAP group is called SystemUsers, then the user group name would be systemusers.
The group is added to the User Groups list.
The group is added to the Current tab as a group assigned that user role.