Using LDAP and DNS - connect to Active Directory, and pull objects.
Create Connector groups matching AD Sites - map to single ServerGroup
Create Active Directory Domain Controllers segment, mapped to servergroup.
Pull other objects from Active Directory - create segment containing objects for user access.