More of a general "macOS playing nicely in a Microsoft environment" question:
If you were setting up a brand new AD Forest with new domain controllers in a mixed Windows and macOS environment, what Mac-specific AD requirements, features and nice-to-haves should be considered?
Macs would be bound to AD (not using Nomad or Jamf Connect) and AD accounts would be used to authenticate to almost everything: wireless, VPN, Windows shares, Sharepoint, Exchange and Skype for Business on-prem, PaperCut accounts, Jamf (through LDAP), CAS, etc.
