LDAP authentication is great. In our use case, it would be useful to have a filter based on the AD groups the user is member of. Only member of the "Crackerjack" security group in AD should be able to log in.
In the same way, another group could be used to configure if the user shall be admin or not in Crackerjack.