I’m seeing more and more people starting to look into using account/password synchronisation tools such as MIIS 2003 and/or ADAM. Microsoft published a guide lastnight that promises you that this "Step-by-Step document shows how to install, configure, and use PCNS and management agents to receive and send password change requests" so that you can synchronise passwods between domain controllers, presumably in different forests.