In case you were wondering, here's how you use the command line to manually bind a Mac client to a 3rd party LDAP server and Kerberos realm...
$ sudo dscl /Search create / SearchPolicy CSPSearchpath
$ sudo defaults write /Library/Preferences/DirectoryService/Di rectoryService LDAPv3 Active
$ sudo killall DirectoryService
$ sudo dsconfigldap -v -a servername.domain.com -n servername -u directoryadmin -p adminpassword -l clientadmin -q clientpassword
$ sudo dscl /Search append / CSPSearchPath /LDAPv3/servername.domain.com
$ sudo /usr/sbin/sso_util configure -r servername.domain.com -a diradmin -p adminpassword -f /LDAPv3/servername.domain.com -v 1 all
$ sudo dscl /Search create / SearchPolicy CSPSearchpath
$ sudo defaults write /Library/Preferences/DirectoryService/Di
$ sudo killall DirectoryService
$ sudo dsconfigldap -v -a servername.domain.com -n servername -u directoryadmin -p adminpassword -l clientadmin -q clientpassword
$ sudo dscl /Search append / CSPSearchPath /LDAPv3/servername.domain.com
$ sudo /usr/sbin/sso_util configure -r servername.domain.com -a diradmin -p adminpassword -f /LDAPv3/servername.domain.com -v 1 all

Comments
it DOES show up in the bash history, though.