https://bugs.openldap.org/show_bug.cgi?id=9343
--- Comment #3 from David Coutadeur david.coutadeur@gmail.com --- +1 for this feature!
A user-selecting function like dynlist would be interesting, but not sure it could cover all use-cases? For example, a simple use case would be to bind a policy to every user in a particular group, with no memberOf-like feature enabled.
In another hand, maybe having a user-selecting function more like an ACL / acl-set would be overkill...