You need to ensure that all passwords for user accounts that are stored on the new member servers are protected by using strong encryption
You need to protect the Active Directory database from cryptographic attack, while maintaining legacy application compatibility and allowing non-administrators to restart servers
You need to create Group Policy objects (GPOs) to apply security settings to existing servers that have specific roles installed