We need to re-configure our UCSM to use LDAP channel binding and LDAP signing since Microsoft has recommended this change on all the domain controllers under the below links https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/ADV190023...