Hi Alistair. I think the key issue is that during the re-IP process, your clusters will temporarily lose access to Active Directory authentication if the domain controllers are offline.
To safely proceed, I recommend deploying a temporary domain controller (physical or virtual) that resides outside the affected subnets before starting the network changes. This allows cluster nodes and other services to authenticate during the transition. Once the readdressing and verification are complete, you can safely demote and remove the temporary DC. Alternatively, if you have recent backups of the virtual DCs, you could restore one to isolated hardware or use maintenance mode with static host file entries for authentication during the migration — though the temporary DC method is cleaner and more reliable.
I hope this information is useful.. If it is, don't forget to "Accept the answer" so that others could benefit too. Thank you .