With the new LDAP and SSO integrations, one issue is that we must use the published roll names like ROLE_LEM_ADMINISTRATORS . Most organizations have naming standards within their LDAP and we should be able to use our own naming standard and map the group names to LEM roll's.