What are the options to have windows domain controller? We got some 20-30 windows7 and 10 pcs and need to centrally manage them - with profile roaming, with SMB ACL, and Administrative policies.<p>With this strong push towards Azure, there is still no replacement for AD, neither samba reached the point of being a primary controller replacement. Are active directory domain services supposed to be an alternative? It seems to me they only provide ldaps and able to login on windows, but no trusts and nothing to enable sharing ACLs.<p>So for a new deployment, with ample time to learn the options, I still have to setup some redundant windows servers, with AD and trusts, the old way.