i've noticed that some of my users (imported from openldap) don't have
personal user groups, but the new ones that i make within freeipa do.

Is there a way of marking the existing accounts such that they get user
groups made for them ? I couldn't seem to see the groups that IPA is making
in the LDAP output so it must be creating them via some other means.

Is there some sort of  'ipa user create-private-group <userA>' command ?

The only work around i have is to make hundreds of fake private groups by
making normal user groups each with one user, which'll clutter the UI up
with pointless groups.
