During authentication testing I noticed we are not able to authenticate users in AD Global Group if Global Group is a member of AD Local Group and Local Group is added to WFA admin group. Users (in global group) are able to authenticate if we directly add AD Global Group in WFA admin.
So I guess question is WFA able to authenticate users in AD nested group using LDAP?
Or I need to change LDAP settings to perform this…