I've uploaded a screengrab of all my LDAP settings:
- LDAP Authentication
- LDAP Enrolment
- LDAP Cohort Sync
They are available here: http://cdal.co.uk/2013/12/05/moodle-ldap-setup-for-ldap-auto-enrolment/
I think you should be able to achieve what you're looking for with LDAP Enrolment (if you can't get cohort sync working)
The basics are:
You have two OUs in AD, one for student groups and one for teachers. Within these ou you have groups which represent courses. In your case, under students, you would make a group for each course and then add the intake group to each group. You would then need to make the same structure under the teacher OU and add teachers to those groups. One thing to watch out for is the pre windows 2000 group in AD. LDAP enrolment doesn't use these names but you can't have two groups with the same pre 2000 name in AD so I just append "- Student" or "- Teacher" depending on which OU they are in.
If you want further help on this then please let me know!