Just wanted to let others know and see if anyone had any ideas for us.
Since the 9.9 update, LDAP user group assignments are not working correctly. We are getting partial assignments but the whole groups are no longer being seen by the JSS. What's even worse is that Apps and Config profiles are then pulled off of the ipads if a user is not seen as being in a group!
Example: We have a group with all 1600 High School students in it. (AD LDAP group) We assign a bunch of apps and a config profile to that LDAP group. (Assign to all users, limit to the group)
Right now we are only getting 400 users with the correct assignments, everyone else lost the apps and the profile.
Device-based assignments are fine. JSS User Groups are fine. I worked for 3 hours with JAMF support yesterday on this but they are stumped too. AD servers seem fine.