Hi Marc -- Thanks very much for following up on this. I did try Marcel and Andrew's suggestions (see below) but it did not work. When server DC01 is down, Windows users can still login fine, but when I try to ssh to a Linux box, the login hangs for a long time or forever. Also, Marcel and Andrew did not address my follow-up question about the krb.conf file. They only mentioned the krb5.conf file.

For reference, my krb.conf looks like this...

MYCHARTS.MD<http://MYCHARTS.MD>     dc01.mycharts.md:88<http://dc01.mycharts.md:88>
MYCHARTS.MD<http://MYCHARTS.MD>     dc01.mycharts.md:749<http://dc01.mycharts.md:749> admin server

My krb5.conf looks like the following... note the second entry for the DC named TS04.

 default = FILE:/var/log/krb5libs.log
 kdc = FILE:/var/log/krb5kdc.log
 admin_server = FILE:/var/log/kadmind.log

 default_realm = MYCHARTS.MD<http://MYCHARTS.MD>
 dns_lookup_realm = true
 dns_lookup_kdc = true

  kdc = dc01.mycharts.md:88<http://dc01.mycharts.md:88>
  kdc = ts04.mycharts.md:88<http://ts04.mycharts.md:88>
  admin_server = dc01.mycharts.md:749<http://dc01.mycharts.md:749>
  kpasswd_server = dc01.mycharts.md:464<http://dc01.mycharts.md:464>
  kpasswd_protocol = SET_CHANGE
  #default_domain = example.com<http://example.com>

 *.mycharts.md<http://mycharts.md> = MYCHARTS.MD<http://MYCHARTS.MD>
 .mycharts.md<http://mycharts.md> = MYCHARTS.MD<http://MYCHARTS.MD>

 profile = /var/kerberos/krb5kdc/kdc.conf

 pam = {
   debug = false
   ticket_lifetime = 36000
   renew_lifetime = 36000
   forwardable = true
   krb4_convert = false


