> I don't think so. This is a known problem with the Kerberos > implementation in the Java virtual machine. It generates this error when > the SASL minssf configuration parameter is 0. You should be able to > change this OpenLDAP setting as follows: Yes, that seem to do the trick and the domain now got successfully added. I have not tried to use it yet though ...