Section 22.1.1, Issue with Multiple User Objects
Section 22.1.2, Authorization ID
LDAP bind with SASL GSSAPI fails if the same Kerberos principal is associated with multiple eDirectory user objects.
RFC2222 specifies support for an authorization ID sent by the user and client. This is not supported by the SASL GSSAPI method.