LDAP AD groups not refreshing?

sorry i looked through the forums and couldnt find an answer to this:

test env

win2k8 native domain

openfire on windows with ldap integration working

adding users to the AD then refreshing in openfire console shows them quickly BUT adding/removing them from groups does not. It seems i have to start and stop the service for it to refresh the groups? Ideally Id like to share my department AD groups to all users so everyone shows up and i guess i can live with stopping and starting if someone comes or goes but was curious if there is a fix or setting for this?

http://www.igniterealtime.org/community/message/151093#151093 this sort of answers it but not really? any insights here?