Is it as simple as having a separate Windows Server, adding AD on it with a new domain?
I am not "fluent" in this area of domains, forests etc, so I do not know how it will affect the primary network and its domain. That, of course, is what I am try to avoid.