I have groups dynamically created on an edir2edir driver. The groups are
created in the command transformation on the subscriber channel of my
"authentication tree". I'm using an adapted version of Father Ramon's
policy i found somewhere on coolsolutions. Basically I'm adding/removing
the groupMembership and securityEquals attributes to user objects
depending on multivalued attributes.

This works fine, the user's groups are getting updated on my auth tree.
BUT: I need the changes I make to sync back to my vault because these
groups need to be synchronized to other applications from there on.

I guess the loopback protection is doing a good job. But in this
specific case i need to get around it.

What is the best way to do this?