I have a customer who is deploying NAC appliance in a multi-tenancy building. The solution is likely have NAC act as an authentication proxy for Active Directory. What isn't clear is whether there will be a single instance of Active Directory across all tenants, multiple instances of Active Directory (potentially one per tenant), or an instance of Active Directory configured with trust relationships with tenant's own authentication systems.
Are all three of these designs supported/possible?
Thanks for any help you can provide.