It seems you are trying to use both MIT & AD together while enabling kerberos through Ambari. This is not possible at once.
If you want to use MIT KDC for hadoop service and AD/LDAP for user authentication you need to first enable kerberos using MIT KDC only and once your kerberos is enabled successfully go for configuring "One Way trust between MIT KDC and Active Directory".
With this setup all your hadoop services will be authenticated against MIT KDC and AD users will be autheticated against Active Directory. You can refer below links to do this setup:
1) Enable Kerberos using existing MIT KDC
2) Setup trust between MIT and AD KDC
In case you do not want to setup 2 KDC (MIT KDC for hadoop & AD KDC for bussiness users), You can go for complete MIT KDC setup or Complete AD KDC setup.
To address your issue:
javax.naming.AuthenticationException: [LDAP: error code 49 - 80090308: LdapErr: DSID-0C09042F, comment:
AcceptSecurityContext error, data 52e, v2580]
LDAP: error code 49: usually means username is valid but password is invalid
You are getting this issue because you are trying to authenticate kadmin/admin user with AD KDC and it seems this particular user isn't available in AD.