We have two 2003 AD domains, I'll call them Domain1 and Domain2.
Domain1 has been around forever and it is a mess. Group structure, permissions, group policy, AD, etc. all need to be re-worked. It is in mixed mode. Rather than continually upgrading and bandaging this old beast, we decided to create a new domain, Domain2, to replace it. Domain2 is up and running with its own DCs, but with very little on it at the moment. It is in native mode. The idea is to eventually be only on Domain2 and we would take Domain1 down, once everything is off of it.
The two domains trust each other, but obviously when moving users and servers to another domain, you have to make sure everyone can see what they need to work, because none of this can go down for very long and you can only move one thing at a time.
We have a disagreement in our IT department as to how the move should take place, so I'm looking for some advice.
Some people think we should move the servers (we have about 80 Windows servers) to Domain2 first, then follow that by the users.
Others think we should move the users (we have about 500 of them) to Domain2 first, then move the servers once the users are all done.
Can someone help us with pros and cons of each plan? Will one way have a lot less issues than the other or go more smoothly?
Thanks.