You don’t need to change the login method, local accounts and AD accounts can live together. What do you use as User-ID attribute