Understandably most of you will recommend not binding to AD. However in our environment its necessary due to a variety of factors. My question is, what's the best way to do an AD migration for our end users?
All of our Machines are FV enabled, and are spilt between macOS 10.12.6 and 10.14.3 (We're in the process of upgrading to Mojave). I'm aware of the FV changes and the secure token in Mojave. The user name will stay the same from the old to the new.
Would it be easier to convert the mobile accounts to local & then back again, or does it make more sense to update the UID after unbinding/rebinding? I'm try to figure out what would be the easiest workflow so that this could be published as a self service policy as well as managing FV.
