Hi Alex,>The documentation is only conflicting if you are using it in a
conflicting way.
> The choice of Kerberos library is important. Samba AD DC with MIT Kerberos still is broken regarding trust to FreeIPA.Pardon my ignorance, I am just going by the documentation as is w/ no prior knowledge ... where in the documentation is that specified?
The two main documentation pages I see when googling "freeipa AD trust" are:
https://www.freeipa.org/page/Active_Directory_trust_setup
https://www.freeipa.org/page/Windows_authentication_against_ FreeIPA