I was not getting the rules to apply to AD users, then I checked in the documentation that in the "domain admin" field we don't need to enter the "domainname" before the user, after I removed it the rules were successfully applied to AD users.
I hope I have contributed
Júlio César de Sousa Leal