Looking in my LDAP logs, it seems as if the group search is of the form:
SRCH base="uid=testuser,ou=people,dc=localdomain" scope=2 filter="(uid=testuser)" attrs="member"
which won't be searching in oe=groups.
I can't see an obvious way of setting the search base for groups.