I use a W2K08R2 server for the integration in Novell CIFS on OES2.0.3
(x86_64). It is a test lab to evaluate if user authentication of AD
users work.
I configured CIFS to use "Third Party Dommain" and used all default for
LM compatibillity. The test users exist in AD and eDirectory and they
are assigned to universal password policies. The passwords of the users
in AD and eDirectory are equal.

srv:/media/nss/cifs1/ # novcifs -o
------------------------------
Server Operational Parameters:
------------------------------
Server - "SRV_W"
Comment - ""
Authentication - "Domain(passthrough)"
File Flush - Disabled
LMCompatibilityLevel - 0
Oplocks - Disabled
DFS - Disabled
Unicode - Enabled
Domain Add-on - Enabled
Cross Protocol Lock - Enabled
Auditing - Disabled
Guest Login - Disabled
Subtree Search - Disabled
Maximum Cached Subdirectories Per Volume - 102400
Maximum Cached Files Per Subdirectory - 10240
Maximum Cached Files Per Volume - 256000
SMB Signatures - Disabled

/var/log/messages always shows this error :

Mar 9 16:50:46 srv CIFS[11901]: CRITICAL: AUTH: Bad password.
tempSES->nwLoginError is 222
Mar 9 16:50:46 srv CIFS[11901]: CRITICAL: AUTH: Domain Auth.. Fail !!]
Mar 9 16:50:46 srv CIFS[11901]: CRITICAL: AUTH: sessetup fail
Mar 9 16:50:46 srv CIFS[11901]: WARNING: CODIR: Failed to authenticate
User : maxx-adm , err : 222
Mar 9 16:50:46 srv CIFS[11901]: CRITICAL: AUTH: Bad password.
tempSES->nwLoginError is 222

I disabled SMB signing in the registry in order to avoid signing
problems- If possible i would prefer to activate it again.

Are there any other settings i have to care of ?