^ agree, need to sort it out at the domain level.
Can set all your "new" users to manually authenticate until you can fix the issue properly.
I suppose you could set up 2 different APP services (configured to access different LDAP servers) and point the different sets of users at the different servers somehow - probably not a supported configuration though.