I have two domains in separate forests with a two-way non-transitive trust, a resource domain and a user domain. The resource domain hosts an application and only allows certain users in the user domain to access it. There is an application tier that hosts a web service that the user credentials need...