I have some 400 app objects where i want to change the configuration

Since we heavily use Groups for administrating it slows down the search of
the NAL dramatically. Additionally the eDirectory becomes slower due to
lots of searches.

For this reason i would like to make the following change:
1. Add file system rights that currently have been assigned to groups to
application objects
2. Replace the Group associations with direct user association
3. Remove the Group option from the search policy
4. Delete the Group objects

That way i will need to handle less objects and will have all rights at
the same location and should see faster login performance.

But the big issue right now is... i am looking for an automatic way to
transfer the group membership to the application object, so that i dont
have to manually assoicate user by user.
Any one an idea on how to do this?