LDAP SSO Win2k8 native AD assist?

i folloowed the walkthrough on the SSO setup and am stumped. I started this thread now and will post client logs later today. If anyone knows of any insights or gotchas on 2k8 AD for SSO please post thoughts here.

One thing to note after i followed the steps it seemed i couldnt logon to the console. I went into ad and reset the xmpp-openfire password back to what it was and then was able to logon. almost seemed that one of the steps in key generation or something which required this acct info locked out the account? i was asked to enter the pass but never saw any error indicating i had fat fingered it.