The migration of ad from Server 2003 to Server 2008 brings more than just performance improvements, and the most enjoyable for managers is the ease and efficiency of management and maintenance. Server 2008 has unlimited potential, the following author shares with you 3 techniques to enhance the efficiency and security of AD management.
1, do not reboot DC fast into the ad offline mode
Anyone who has done an ad (Active Directory) knows that a Windows Server 2000/2003-based DC (domain controller) must reboot the DC and then enter the ad's Restore mode if it is to maintain the ad offline. The disadvantage is that it is obvious that under AD, such as RIS services, file services, print services, and so on, will be affected and not run. In Windows Server 2008, we can stop the ad service without restarting the DC, and then perform the actions that are only available when the ad is offline and have no effect on the other services.
Stopping the ad service in Windows Server 2008 and stopping any other service stops the ad service from executing "net stop NTDS" under command Line (CMD), and of course stops ad-related services such as File replication services, intersite communications, DNS servers, and so on. But the impact on the entire server is small, at least the proportion of the starting DC to fast faster. (Figure 1)
Figure 1 Stopping the ad service in Windows Server 2008