SquidGuard Ldap search group

  • How to create a group ACL in SquidGurad where Client (source)  is group of LDAP?
    I think it is Ldap search but what is the correct syntax?

    SquidGurad reports:
    IP: - Subnet: or - IP-Range:
    Domain: foo.bar matches foo.bar or *.foo.bar
    Username: 'user1'
    ldapusersearch ldap://,DC=com?sAMAccountName?sub?(&(sAMAccountName=%s)(memberOf=CN=it%2cCN=Users%2cDC=domain%2cDC=com))

    mydomain: prova.loc
    LDAP group: users1

