#disclaimer - Author of an AD integration solution that never got off the ground.
https://github.com/gregn610/padnag
That's the type of feature that should be implemented as a plugin.
The problem with that is that it requires users to have been created inside postgres first, and that you can't manage group membership inside AD.
That's the type of feature that should be implemented as a plugin.