If you have a baseDN such as the following, rosters will be messed up (all subscriptions = to):
ou=Jive Software\, Inc,dc=support,dc=jive,dc=com
This also seems to affect the groups that a user belongs to. It will always show up as "None" when you look at the user summary. On the client-side, presence does not work properly.
1) setup Openfire in LDAP mode with Active Directory
2) use a baseDN such as the one in the description
3) enable contact list sharing for a group
4) look at the roster for the members of that group. The subscriptions will all be "to". Presence in Spark will be messed up. The groups for a user will show as None
added generic system property "ldap.encloseDNs". Problem was caused by an unenclosed baseDN.