Afaik, um doesn't support AD groups but you can create groups manually set the permission on groups level. You can also submit for a feature request but before you do that, why do you need AD groups in UM? If you are planning to integrate through UM as UM being the endpoint for everything, I strongly recommend not doing that. Unless you are using UM internally (in this case, it will still be an overkill to use AD groups for access) or have a very spesific use case where it makes sense to expose UM, I wouldn't do it.