Tip

Do you want a mixed-mode domain?

James Michael Stewart, Contributor

Windows 2000 Server and Windows Server 2003 Active Directory can be deployed in mixed mode, which allows for Windows NT 4.0 Server BDCs. In fact, when you upgrade to Windows 2000 Server, you first upgrade the primary domain controller (PDC), and it's automatically acting in mixed mode. Thus the upgraded server acts as the PDC for all the backup domain controllers, and it serves as the interoperability partner to the Windows NT 4.0 BDC by being backward-compatible. It knows what to transfer to the BDCs and what not to. The ability to retain legacy BDCs on a network migrating towards more modern releases ensures that you can maintain the necessary level of productivity. This is especially important when you are running older or outdated software that does not run on newer operating systems.

However, there are some limitations to mixed-mode operation that need to be taken into consideration. First, the size of the domain will be limited to that of Windows NT 4.0 Active Directory, namely 40,000 objects. Second, universal groups, nested groups, and the special Security groups cannot be used anywhere in the domain because they are not supported by Windows NT 4.0.

With the presence of Windows NT 4.0 BDCs, it is important to remember that some of the features of Windows 2000 Server or Windows Server 2003 Active Directory will not be available on the Windows NT 4.0 BDCs. These include Kerberos authentication, organizational units, and group policy.

If you have

    Requires Free Membership to View

no Windows NT 4.0 BDCs and have no plans what-so-ever to deploy one, then you can safely migrate to native mode. However, once you move to native mode, you cannot return to mixed mode without complete domain destruction and re-building.

James Michael Stewart is a partner and researcher for ITinfopros, a technology-focused writing and training organization.


This was first published in August 2003

There are Comments. Add yours.

 
TIP: Want to include a code block in your comment? Use <pre> or <code> tags around the desired text. Ex: <code>insert code</code>

REGISTER or login:

Forgot Password?
By submitting you agree to receive email from TechTarget and its partners. If you reside outside of the United States, you consent to having your personal data transferred to and processed in the United States. Privacy
Sort by: OldestNewest

Forgot Password?

No problem! Submit your e-mail address below. We'll send you an email containing your password.

Your password has been sent to:

Disclaimer: Our Tips Exchange is a forum for you to share technical advice and expertise with your peers and to learn from other enterprise IT professionals. TechTarget provides the infrastructure to facilitate this sharing of information. However, we cannot guarantee the accuracy or validity of the material submitted. You agree that your use of the Ask The Expert services and your reliance on any questions, answers, information or other materials received through this Web site is at your own risk.