Hello,
I need to replace the admin account that I use for LDAP/AD access. The same account is used for the authentication sources as well as to join to the domain. The new account is a clone of the original as far as rights are concerned.
I was planning on just changing the authentication sources first with the new account and then unjoin the domain and rejoin with the new account. Are there any tips or caveats in doing it this way? How about affect on users? While the domain is not joined I know the MSCHAP auths won't work. I'm doing this during a maintenance window so a minimal hit to users would be fine.