To sync Active Directory changes to the MOSS user profile database, select the Push changes in AD to MOSS User Profile check box, and then enter SharePoint account information that has the “Manage User Profile” permission in order to read and update user profile information.
For detailed insight into Active Directory Domain Services, see this TechNet article from Microsoft.