I presume your Windows AD is in the list of external databases to search for unknown users?
I am not sure how the Solution Engine Appliance works but ACS3.3 installed on a Windows 2003 server, that is a member of the AD domain, can authenticate users in either form i.e user1 or domain\user1.
What does the log show if you do not use the FQUN?