Domain Functional Level Upgrade
However if you want all domain controllers in your new windows server 2008 environment to run windows server 2008 set the forest functional level and then the domain functional level to windows server 2008 when you install the first domain controller in your forest.
Domain functional level upgrade. Doing this saves time and enables all the forest level and domain level features in windows server 2008. Windows server applies to. Welche domain controller bei welchem domain functional level unterstützt werden geht ebenfalls auf der liste hervor. This password replication is a separate change within ad and occurs after the dfl has been raised.
For example if you raise the domain functional level to windows server 2012 you will not be able to promote a server that is running windows server 2008 to domain controller. Domain functional level dfl determines the features of a domain controller dc based on the windows server operating system os it runs on. Dieser artikel beschreibt das auslösen der domänen und gesamtstrukturfunktionsebenen die von microsoft windows server 2003 basierten oder neuer domänencontroller unterstützt. This functional level is provided for upgrades of existing windows nt 4 0 domains where one or more windows nt 4 0 backup domain controllers bdcs must function after the upgrade.
Aktualisieren von domänencontrollern auf windows server 2016 upgrade domain controllers to windows server 2016. Informationen zu windows server 2016 und neue features in active directory domänendienste ad ds finden sie unter was ist neu in active directory domain services für windows server 2016. After upgrading all dcs in the domain or forest the administrator is able to raise the functional level and this level acts as a flag informing the dcs and other components as well that certain features can now be enabled. Die folgenden tabelle stellt dar wie sich die windows server versionen bezüglich domain functional levels geändert haben.
In 2003 functional level the kerberos key distribution centre kdc used either rc4 hmac 128 bit or des cbc md5 56 bit for kerberos encryption however when moving to 2008 domain functional level or higher you upgrade the key distribution centre kdc to use advanced kerberos encryption which uses aes 128 and aes 256 encryption. Dieses thema enthält hintergrundinformationen zu active directory domain services in windows server 2016 und erläutert den prozess zum aktualisieren von domänen controllern. When the domain functional level is raised it not possible to promote operating systems that are running earlier versions of the os.