We initially played around with using ADAM for our secondary
authentication source. It does work. You can connect to it with the
AD Membership provider using an LDAP connection string.
We decided against using it and went with anothe full active
directory using FBA, as it was easier for our helpdesk to manage the
users.