Avoid user lookup in active directory trusted domains from samba
It sounds like this functionality regressed from Samba prior to 3.0.26. A patch was proposed and it was re-added to Samba 3.3.
If you're prepared to patch Samba's source code yourself, there is an "only domains" patch, which is the inverse of "ignore domains".