Great tutorial. There's one single point I'd like to make:

The tutorial says:

* Store Password using reversible encryption for all users on domain (Disabled)
Not sure of the implications...
...