When openldap is configured to make use of the dynlist module it can update the member and memberOf population recursively for nested groups by just quering with a searchfilter memberOf for it.

This should eliminates the need for nested group searches because it returns all memberships

Similar: issue: 2409

Can we have a setting to enable this like LDAP_MATCHING_RULE_IN_CHAIN for AD