As far as I can see, ApacheDS does currently not support cross realm authentification for Kerberos. Are there any plans to implement this in one of the next releases? Bye, Tanja