Microsoft® provides tools and documentation to facilitate conversion of a Windows network from Windows NT domains to Active Directory. This topics and its subtopics assume you have read the applicable documents from Microsoft and are familiar with the terminology they use and the procedures they describe. In particular, it assumes you have read the Microsoft white paper Planning Migration from Microsoft Windows NT to Microsoft Windows 2000. (It is distributed as part of the Windows 2000 Support Tools and is also available on the Microsoft Web site.) That document and related documents introduce several key concepts (native mode, mixed mode, domain upgrade, domain migration, SID history, and cloning of principals) which are essential to understanding Active Directory.
In an Active Directory environment, some details of user and group identity are handled differently than they are in a Windows NT domain environment. Depending on how your Windows NT domain environment is configured, where your Rational ClearCase user and group accounts exist in this domain structure, and how your organization plans to convert Windows NT domains to Active Directory domains, you may need to take steps during and after the conversion to maintain user access to artifacts under Rational ClearCase control.
In general, sites that have the simplest domain structure (all Rational ClearCase users and hosts in a single domain) encounter very few problems during the conversion process. Sites with more complex domain structures (users from multiple domains accessing a common set of VOBs and views) can benefit from the improved interdomain security features of Active Directory after they modify some existing user and group account information.
A knowledgeable Rational ClearCase administrator who has reviewed this chapter and applicable documents from Microsoft and who understands the impact of various conversion or migration strategies on Rational ClearCase, should review (and if possible help plan) your organization's conversion from Windows NT domains to Active Directory.