I will admit it has been a while since I have dug into our OO AD authentication settings. However, I do know that we had issues because our user dn's contained special characters (or was it comma's). I am not sure what version of OO you are using, but you might want to contact HP support for the HotFix.
The configuration was driving me crazy until I got ahold of that hotfix.
I could use the "AD Deprecated" settings, but not the "LDAP settings" if I remember correctly.
You need to correct your filter "LDAP search filter that tries to match the user groups"
Are you trying to make that user member of all the groups under OU=Corp groups? if yes try using a filter: (sAMAccountName=*) if not which I am assuming should be the case you can add multiple filters lke: (sAMAccountName=Domain Users) where Domain Users is the AD group under Corp groups
Once you get all your LDAP/AD filters and settings sorted out, there is one additional bit you need to configure. Make sure whatever group name you are pulling out of LDAP/AD, also exists in OO!
You will find the specific section here (as an OO admin user): * OO Central > Administration > Manage Groups * Click "Add New Group" * Fill out the details in the 1st & 2nd tabs * Fill out the group you are mapping against from LDAP in the 3rd tab * Click "Create Group", and your done!
This will resolve issues where your config "tests" clean, but the LDAP authenticated users keep getting mapped to the "Everyone" group.