System administrators will sometimes come across the need to make an account member of local or VAS groups.
Accounts, both local and VAS unix enabled ones in AD, can be members of local or VAS groups. The OS will transparently deal with the group memberships. AIX LAM authentication can be somewhat strict about sharing information between the different modules. Additional configuration could be used as a workaround for it.
Additional information on group memberships and AIX: https://support.quest.com/SUPPORT/index?page=solution&id=SOL15054&pmv=true