Web Reports LDAP User creation vs. LDAP Group member creation

Using server 9.5.16 (Windows 2016) with AD LDAP server and SAML.

Issue I started noticing:
If I add an LDAP user and assign permissions, they are unable to sign in to Web Reports with the error message below.
MicrosoftTeams-image

If I add an LDAP group with the same user and assign permissions, they are able to sign in.

I also then noticed that LDAP users who were members of a group providing access look like this:
lastname.i
(Web Reports User Management “Name” column)

But, if I attempt to add an LDAP user directly, the “Name” column appears last ,

Is there a setting to manage user field mapping for Web Reports User Names? Or do I need to make an adjustment elsewhere.

It is kinda nice to force me to use groups instead of explicit users, but I feel like it should work either way.