Assigning LDAP user to group

I know the LDAP interface supports the ability to leverage an LDAP attribute to define what groups an LDAP authenticated user belongs to. I would like to be able to define an LDAP authenticated user and assign to a group before they sign in the first time. Is this possible? I can obviously manually create and invite a user but such users never use LDAP to authenticate(?) Any pointers appreciated.

Hi @brianwilson
Via Group Mapping:
https://www.metabase.com/docs/latest/administration-guide/10-single-sign-on.html#enabling-ldap-authentication