In order to bring `kolab_auth_ldap` and `Net_LDAP3` config options in line, `Net_LDAP3::domain_root_dfind_domain()` should check if `domain_filter` contains a %s`%s` placeholder and otherwise just append `(associateddomain=<domain>)` to the filter string.