Instead of getting the above LDAP group settings working open up Knox Authorization to everyone by using the 'Public' group value on the Knox policy and then do authorization at the other service level policies like HDFS, HIVE, HBASE, etc.
This knox log setting should show you what is getting passed to RANGER from the KNOX Plugin.
Modify the like below, restart Knox and review the ranger Knox plugin log in the file ranger.knoxagent.log