Enhance LDAP Monitor to allow a user to belong to multiple AD groups

Currently the LDAP Monitor can be configured to sync multiple AD groups to OpCon Roles but the issue occurs when the same user is in multiple AD groups. When this happens the last sync takes control and only permissions for the last ADGroup/OpCon Role are applied.

It would be great if LDAP monitor could review all OpCon groups it is about to sync and then layer in permissions for each AD group that get synced.

The enhanced usage of Self Service and Vision has had several clients run into issues on this as they try and leverage their internal AD groups with OpCon.

