Hi Klaus,
Thanks for your response, we have tested two scenarios ,
Scenario one:
changing the password on Domain Controller & simultaneously on the IWA realm account on Proxy SG side, it works & could see User authentication is going via Kerberos. ...