Hello Richard,
Unfortunately, there is no such possibility because it is not allowed to use wildcards for DN syntax properties in LDAP filters. However, thank you for the suggestion, we will consider it.
As a solution, you can create a separate Web Interface action for each OU and specify the OU in the Allow selecting only AD objects located under field.