Hi I need some advice here.
Background: I worked for a MSP and now work as in house IT for one of the clients I did work for and both parties are happy about this.
Active directory users & computers is a mess and on top of it most users having local admin privileges to their machines which is preventing me from turning on PS remoting out of concern.
The business owns 3 different companies (company.com, othercompany.com, onlinecompany.com) who are all under the One domain tree using the same OU which has their own nested OU to separate them, each holding their own OU for groups, computers, and users.
The MSP installed and used server essentials dashboard which I want to disable and use AAD Connect, during my prep to make the change I started to think about the structure and what I should do with it.
Any thoughts on what I should do, leave it, create a domain for each company, trash it all and start fresh with server nano?
If there is a better place to ask this question let me know.