Hello,
then we have an problem with the SPN/Kerberos configuration.
Could you check on the Active Directory Server with the command "setspn -Q HTTP/srvpid01.LDAP-TEST.dom" and check fi there are double entries?
Also on the client you can check, if the client gets correct kerberos tickets from the Domain Controller with the command "klist". Here it will list all available tickets with its SPN and properties. Take a look for other LDAP-TEST.dom tickets and the expired date.
best regards
Alexander Gimbel