The problem with questions like this is that you are always going to get two answers.
The first answer is the sensical one. ***No***. I'm of this mind, and so is every other rational admin in the world.
Then you get the fellas who talk about how it "can be done", but provide no
1) Links for proof
2) Steps to make it happen
Now, the original poster asked a valid enough question. So my beef isnt really with him.
<< You know, there are ways to do a temporary active directory for Exchange2K that links to your NT 4 domain >>
I think you are speaking of an ADC connection agreement.
The idea behind this being that it provides a migration path for
1) Exchange 5.5 mailbox accounts
2) NT4 User accounts
So that they can become mailbox enabled 2k active directory user accounts. In no way, shape, or form does this mean that the 2k DC in the Active Directory domain with Exchange 2000 is a BDC to the NT4 domain's PDC.
<< The first thing that could go wrong is the SID generation algorithm possibly changing across different versions of OS. >>
Of all the problems you would face trying to make a 2k DC into a bonafide NT4 BDC, I think "SID generation algorithims" would be the least of your worries.
<< my experience teached me not to mess with servers already working properly >>
Sound's like a good plan friend.
Lets try to keep the advice here decent guys. You are confusing the original poster with your "ideas"
Sorry to rant.
Gantry, it cannot be done. If I am wrong, I am firm in the belief that you would not want to do it anyway.