I can verify this by testing, but maybe someone can save me the trouble and let me know the answer to this question:
With multiple external Active Directory hosts configured for authentication, are these hosts used in a round-robin fashion or does the first host failover to the second?
I'm guessing round-robin, which isn't useful in my situation. If that is the case, how are other folks doing AD failover?
(And I don't want to use zimbraAuthFallbackToLocal )