I haven't been officially Microsoft trained so forgive my incompetence discussing what we want done and how to go about it.
We currently have a MPLS style network hosting different sites which each have their own DC, OU and file/folder/print shares. We also have a centrally located PDC behind the MPLS firewall which is accessible from all of the sites in question. What we need to do is remove an onsite DC away from the domain keeping the previous AD user accounts, passwords, file/folder permissions and print shares (GP) intact and change the domain name whilst making it completely independent (disjoining the site from MPLS connectivity) on it's own new domain and promote it to a PDC. I've had a look through the ADMT tool which seems to migrate all the SiDs to a new target domain, but from what I gather in doing so would involve using a new box to act as a PDC and this would also mean that file/folder permissions would not be carried over to the new domain. If at all possible I'd like to do this from the site DC without using any other box's to act as an interim DC or alike.
I wanted to know if anyone has any experience doing this sort of task and whether anyone had any advice in doing so?