I was able to get cross realm trust working with 2k8 R2 DC and RHEL 6.4 beta. I created an external group in IPA and then added member MSAD\Domain Users Now in the members of group external-test I have an unresolved sid instead of the name of the group. How might I go about troubleshooting / fixing this? Thanks, Brian