Are there any options to deploy it within an existing domain with the constraints being:
- no domain delegation - write access to the applicable zone file prohibited - registering/using an external domain impossible; also no external nameserver access - FreeIPA allowing for no single label domain; hack to override not sensible if multi-forest windows connection where to be necessary in the future - apparently no alternative to DNS as for Kerberos config files?