Windows 2000 組織中部署 AD DSDeploying AD DS in a Windows 2000 Organization

適用於:Windows Server 2016、Windows Server 2012 R2、Windows Server 2012Applies To: Windows Server 2016, Windows Server 2012 R2, Windows Server 2012

如果您的組織目前執行的是 Windows 2000 Active Directory,您可以執行的部分或所有的 Windows Server 2008 網域控制站的作業系統就地升級或簡介到您的環境中執行 Windows Server 2008 網域控制站部署 Windows Server 2008 Active Directory Domain Services (AD DS)。If your organization is currently running Windows 2000 Active Directory, you can deploy Windows Server 2008 Active Directory Domain Services (AD DS) by either performing an in-place upgrade of some or all of your domain controllers' operating systems to Windows Server 2008 or by introducing domain controllers running Windows Server 2008 into your environment.

您可以加入現有的 Windows 2000 Active Directory domain 到執行 Windows Server 2008 的網域控制站之前,您必須在執行adprep,此命令列工具。Before you can add a domain controller running Windows Server 2008 to an existing Windows 2000 Active Directory domain, you must run adprep, a command-line tool. Adprep 延伸 AD DS 架構、更新物件選取的預設安全性描述與所需的某些應用程式中新增新的 directory 物件。Adprep extends the AD DS schema, updates default security descriptors of selected objects, and adds new directory objects as required by some applications. Adprep 可 (\sources\adprep\adprep.exe) 的 Windows Server 2008 安裝磁碟上。Adprep is available on the Windows Server 2008 installation disk (\sources\adprep\adprep.exe). 如需詳細資訊,請查看 Adprep (。For more information, see Adprep (


如果您想要執行的 Windows Server 2008 現有 Windows 2000 AD DS 網域控制站就地升級,您必須伺服器第一次升級到 Windows Server 2003,再升級到 Windows Server 2008。If you want to perform an in-place upgrade of an existing Windows 2000 AD DS domain controller to Windows Server 2008 , you must first upgrade the server to Windows Server 2003, and then upgrade it to Windows Server 2008 .

下圖顯示部署 Windows Server 2008 AD DS,目前執行的是 Windows 2000 Active Directory 網路環境中的步驟。The following illustration shows the steps for deploying the Windows Server 2008 AD DS in a network environment that is currently running Windows 2000 Active Directory.

在 windows 2000 組織中部署


如果您想要為 Windows Server 2008 的網域或森林功能層級,所有的網域控制站在您的環境中必須執行 Windows Server 2008 的作業系統。If you want to set the domain or forest functional level to Windows Server 2008 , all domain controllers in your environment must run the Windows Server 2008 operating system.

整合升級的 Windows Server 2008 AD DS 一部分從 Windows 2000 環境就地的資源和 account 網域樹系內網域重新建構可能需要部署。Consolidating resource and account domains that are upgraded in place from a Windows 2000 environment as part of your Windows Server 2008 AD DS deployment may require interforest or intraforest domain restructuring. 樹系之間 AD DS 網域重新建構可協助您減少複雜的組織和系統管理成本。Restructuring AD DS domains between forests helps you reduce the complexity of your organization and the associated administrative costs. 重新建構 AD DS 網域中的樹系可協助您管理您的組織負擔減少降低複寫流量、減少的使用者和群組所需的、管理及簡化的群組原則管理。Restructuring AD DS domains within a forest helps you to decrease the administrative overhead for your organization by reducing replication traffic, reducing the amount of user and group administration that is required, and simplifying the administration of Group Policy. 如需詳細資訊,請查看 ADMT v3.1 移轉指南 (。For more information, see ADMT v3.1 Migration Guide (

如需詳細的工作,您可以使用計劃和部署 AD DS 目前執行的是 Windows 2000 Active Directory 組織中的清單,請查看檢查清單︰ 部署 Windows 2000 組織 AD DSFor a list of detailed tasks that you can use to plan and deploy AD DS in an organization that is currently running Windows 2000 Active Directory, see Checklist: Deploying AD DS in a Windows 2000 Organization.