Add the new, updated AD schema file from Microsoft
[samba.git] / source4 / setup / ad-schema / MS-AD_Schema_2K8Classes.txt
similarity index 88%
rename from source4/setup/ad-schema/MS-AD_Schema_Classes_v20080618.txt
rename to source4/setup/ad-schema/MS-AD_Schema_2K8Classes.txt
index e2655d57daa3bee6b09d9eafe08e1474e86621b1..87edde7e0b20f72fa24614b0713508cfe1308dad 100644 (file)
@@ -1,51 +1,13 @@
-# © 2008 Microsoft Corporation. All rights reserved\r
+#Intellectual Property Rights Notice for Protocol Documentation\r
+#\95     Copyrights. This protocol documentation is covered by Microsoft copyrights. Regardless of any other terms that are contained in the terms of use for the Microsoft website that hosts this documentation, you may make copies of it in order to develop implementations of the protocols, and may distribute portions of it in your implementations of the protocols or your documentation as necessary to properly document the implementation. You may also distribute in your implementation, with or without modification, any schema, IDL\92s, or code samples that are included in the documentation. This permission also applies to any documents that are referenced in the protocol documentation. \r
+#\95     No Trade Secrets. Microsoft does not claim any trade secret rights in this documentation. \r
+#\95     Patents. Microsoft has patents that may cover your implementations of the protocols. Neither this notice nor Microsoft's delivery of the documentation grants any licenses under those or any other Microsoft patents. However, the protocols may be covered by Microsoft\92s Open Specification Promise (available here: http://www.microsoft.com/interop/osp). If you would prefer a written license, or if the protocols are not covered by the OSP, patent licenses are available by contacting protocol@microsoft.com. \r
+#\95     Trademarks. The names of companies and products contained in this documentation may be covered by trademarks or similar intellectual property rights. This notice does not grant any licenses under those rights. \r
+#Reservation of Rights. All other rights are reserved, and this notice does not grant any rights other than specifically described above, whether by implication, estoppel, or otherwise. \r
+#Tools. This protocol documentation is intended for use in conjunction with publicly available standard specifications and network programming art, and assumes that the reader either is familiar with the aforementioned material or has immediate access to it. A protocol specification does not require the use of Microsoft programming tools or programming environments in order for you to develop an implementation. If you have access to Microsoft programming tools and environments you are free to take advantage of them.\r
 #\r
-# Intellectual Property Rights Notice for Protocol Documentation\r
-#\r
-# Copyrights. \r
-# This protocol documentation is covered by Microsoft\r
-# copyrights. Regardless of any other terms that are contained in the\r
-# terms of use for the Microsoft website that hosts this documentation,\r
-# you may make copies of it in order to develop implementations of the\r
-# protocols, and may distribute portions of it in your implementations\r
-# of the protocols or your documentation as necessary to properly\r
-# document the implementation. You may also distribute in your\r
-# implementation, with or without modification, any schema, IDL's, or\r
-# code samples that are included in the documentation. This permission\r
-# also applies to any documents that are referenced in the protocol\r
-# documentation.\r
-# \r
-# No Trade Secrets. \r
-# Microsoft does not claim any trade secret rights in this documentation.\r
-# \r
-# Patents. \r
-# Microsoft has patents that may cover your implementations of the\r
-# protocols.  Neither this notice nor Microsoft's delivery of the\r
-# documentation grants any licenses under those or any other Microsoft\r
-# patents.  However, the protocols may be covered by Microsoft\92s Open\r
-# Specification Promise (available here:\r
-# http://www.microsoft.com/interop/osp).  If you would prefer a written\r
-# license, or if the protocols are not covered by the OSP, patent\r
-# licenses are available by contacting protocol@microsoft.com.\r
-# \r
-# Trademarks. \r
-# The names of companies and products contained in this documentation\r
-# may be covered by trademarks or similar intellectual property\r
-# rights. This notice does not grant any licenses under those\r
-# rights.Reservation of Rights.  All other rights are reserved, and this\r
-# notice does not grant any rights other than specifically described\r
-# above, whether by implication, estoppel, or otherwise.\r
-# \r
-# Tools. \r
-# This protocol documentation is intended for use in conjunction with\r
-# publicly available standard specifications and network programming\r
-# art, and assumes that the reader either is familiar with the\r
-# aforementioned material or has immediate access to it.  A protocol\r
-# specification does not require the use of Microsoft programming tools\r
-# or programming environments in order for you to develop an\r
-# implementation.  If you have access to Microsoft programming tools and\r
-# environments you are free to take advantage of them.\r
-\r
+#AD Schema Classes\r
+#____________________\r
 cn: account\r
 ldapDisplayName: account\r
 governsId: 0.9.2342.19200300.100.4.5\r
@@ -75,6 +37,92 @@ systemOnly: FALSE
 defaultObjectCategory: CN=Application-Site-Settings,CN=Schema,CN=Configuration,<RootDomainDN>\r
 systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
 \r
+cn: ms-DFSR-Connection\r
+ldapDisplayName: msDFSR-Connection\r
+governsId: 1.2.840.113556.1.6.13.4.10\r
+objectClassCategory: 1\r
+rdnAttId: cn\r
+subClassOf: top\r
+mustContain: fromServer\r
+mayContain: msDFSR-Options2, msDFSR-DisablePacketPrivacy,msDFSR-Priority, msDFSR-Enabled, msDFSR-RdcEnabled,msDFSR-RdcMinFileSizeInKb, msDFSR-Keywords, msDFSR-Schedule,msDFSR-Flags, msDFSR-Options, msDFSR-Extension\r
+possSuperiors: msDFSR-Member\r
+schemaIdGuid:e58f972e-64b5-46ef-8d8b-bbc3e1897eab\r
+defaultSecurityDescriptor: D:(A;;RPLCLORC;;;AU)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;DA)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;CO)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;SY)\r
+defaultHidingValue: TRUE\r
+systemOnly: FALSE\r
+defaultObjectCategory: CN=ms-DFSR-Connection,CN=Schema,CN=Configuration,<RootDomainDN>\r
+\r
+cn: ms-DFSR-Content\r
+ldapDisplayName: msDFSR-Content\r
+governsId: 1.2.840.113556.1.6.13.4.6\r
+objectClassCategory: 1\r
+rdnAttId: cn\r
+subClassOf: top\r
+mayContain: msDFSR-Options2, msDFSR-Flags, msDFSR-Options,msDFSR-Extension\r
+possSuperiors: msDFSR-ReplicationGroup\r
+schemaIdGuid:64759b35-d3a1-42e4-b5f1-a3de162109b3\r
+defaultSecurityDescriptor: D:(A;;RPLCLORC;;;AU)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;DA)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;CO)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;SY)\r
+defaultHidingValue: TRUE\r
+systemOnly: FALSE\r
+defaultObjectCategory: CN=ms-DFSR-Content,CN=Schema,CN=Configuration,<RootDomainDN>\r
+\r
+cn: ms-DFSR-ContentSet\r
+ldapDisplayName: msDFSR-ContentSet\r
+governsId: 1.2.840.113556.1.6.13.4.7\r
+objectClassCategory: 1\r
+rdnAttId: cn\r
+subClassOf: top\r
+mayContain: msDFSR-Options2, msDFSR-OnDemandExclusionDirectoryFilter,msDFSR-OnDemandExclusionFileFilter,msDFSR-DefaultCompressionExclusionFilter, msDFSR-DeletedSizeInMb,msDFSR-Priority, msDFSR-ConflictSizeInMb, msDFSR-StagingSizeInMb,msDFSR-RootSizeInMb, description, msDFSR-DfsPath, msDFSR-FileFilter,msDFSR-DirectoryFilter, msDFSR-Flags, msDFSR-Options,msDFSR-Extension\r
+possSuperiors: msDFSR-Content\r
+schemaIdGuid:4937f40d-a6dc-4d48-97ca-06e5fbfd3f16\r
+defaultSecurityDescriptor: D:(A;;RPLCLORC;;;AU)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;DA)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;CO)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;SY)\r
+defaultHidingValue: TRUE\r
+systemOnly: FALSE\r
+defaultObjectCategory: CN=ms-DFSR-ContentSet,CN=Schema,CN=Configuration,<RootDomainDN>\r
+\r
+cn: ms-DFSR-GlobalSettings\r
+ldapDisplayName: msDFSR-GlobalSettings\r
+governsId: 1.2.840.113556.1.6.13.4.4\r
+objectClassCategory: 1\r
+rdnAttId: cn\r
+subClassOf: top\r
+mayContain: msDFSR-Options2, msDFSR-Flags, msDFSR-Options,msDFSR-Extension\r
+possSuperiors: container\r
+schemaIdGuid:7b35dbad-b3ec-486a-aad4-2fec9d6ea6f6\r
+defaultSecurityDescriptor: D:(A;;RPLCLORC;;;AU)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;DA)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;CO)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;SY)\r
+defaultHidingValue: TRUE\r
+systemOnly: FALSE\r
+defaultObjectCategory: CN=ms-DFSR-GlobalSettings,CN=Schema,CN=Configuration,<RootDomainDN>\r
+\r
+cn: ms-DFSR-LocalSettings\r
+ldapDisplayName: msDFSR-LocalSettings\r
+governsId: 1.2.840.113556.1.6.13.4.1\r
+objectClassCategory: 1\r
+rdnAttId: cn\r
+subClassOf: top\r
+mayContain: msDFSR-StagingCleanupTriggerInPercent,msDFSR-CommonStagingSizeInMb, msDFSR-CommonStagingPath,msDFSR-Options2, msDFSR-Version, msDFSR-Flags, msDFSR-Options,msDFSR-Extension\r
+possSuperiors: computer\r
+schemaIdGuid:fa85c591-197f-477e-83bd-ea5a43df2239\r
+defaultSecurityDescriptor: D:(A;;RPLCLORC;;;AU)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;DA)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;CO)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;SY)\r
+defaultHidingValue: TRUE\r
+systemOnly: FALSE\r
+defaultObjectCategory: CN=ms-DFSR-LocalSettings,CN=Schema,CN=Configuration,<RootDomainDN>\r
+\r
+cn: ms-DFSR-Member\r
+ldapDisplayName: msDFSR-Member\r
+governsId: 1.2.840.113556.1.6.13.4.9\r
+objectClassCategory: 1\r
+rdnAttId: cn\r
+subClassOf: top\r
+mustContain: msDFSR-ComputerReference\r
+mayContain: msDFSR-Options2, serverReference, msDFSR-Keywords,msDFSR-Flags, msDFSR-Options, msDFSR-Extension\r
+possSuperiors: msDFSR-Topology\r
+schemaIdGuid:4229c897-c211-437c-a5ae-dbf705b696e5\r
+defaultSecurityDescriptor: D:(A;;RPLCLORC;;;AU)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;DA)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;CO)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;SY)\r
+defaultHidingValue: TRUE\r
+systemOnly: FALSE\r
+defaultObjectCategory: CN=ms-DFSR-Member,CN=Schema,CN=Configuration,<RootDomainDN>\r
+\r
 cn: ms-DFSR-ReplicationGroup\r
 ldapDisplayName: msDFSR-ReplicationGroup\r
 governsId: 1.2.840.113556.1.6.13.4.5\r
@@ -97,7 +145,7 @@ objectClassCategory: 1
 rdnAttId: cn\r
 subClassOf: top\r
 mustContain: msDFSR-MemberReference, msDFSR-ReplicationGroupGuid\r
-mayContain: msDFSR-Flags, msDFSR-Options, msDFSR-Extension\r
+mayContain: msDFSR-Options2, msDFSR-Flags, msDFSR-Options,msDFSR-Extension\r
 possSuperiors: msDFSR-LocalSettings\r
 schemaIdGuid:e11505d7-92c4-43e7-bf5c-295832ffc896\r
 defaultSecurityDescriptor: D:(A;;RPLCLORC;;;AU)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;DA)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;CO)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;SY)\r
@@ -126,7 +174,7 @@ governsId: 1.2.840.113556.1.6.13.4.8
 objectClassCategory: 1\r
 rdnAttId: cn\r
 subClassOf: top\r
-mayContain: msDFSR-Flags, msDFSR-Options, msDFSR-Extension\r
+mayContain: msDFSR-Options2, msDFSR-Flags, msDFSR-Options,msDFSR-Extension\r
 possSuperiors: msDFSR-ReplicationGroup\r
 schemaIdGuid:04828aa9-6e42-4e80-b962-e2fe00754d17\r
 defaultSecurityDescriptor: D:(A;;RPLCLORC;;;AU)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;DA)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;CO)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;SY)\r
@@ -134,6 +182,20 @@ defaultHidingValue: TRUE
 systemOnly: FALSE\r
 defaultObjectCategory: CN=ms-DFSR-Topology,CN=Schema,CN=Configuration,<RootDomainDN>\r
 \r
+cn: Application-Version\r
+ldapDisplayName: applicationVersion\r
+governsId: 1.2.840.113556.1.5.216\r
+objectClassCategory: 1\r
+rdnAttId: cn\r
+subClassOf: applicationSettings\r
+mayContain: owner, managedBy, keywords, versionNumberLo,versionNumberHi, versionNumber, vendor, appSchemaVersion\r
+possSuperiors: organizationalUnit, computer, container\r
+schemaIdGuid:ddc790ac-af4d-442a-8f0f-a1d4caa7dd92\r
+defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLCLORC;;;AU)\r
+defaultHidingValue: TRUE\r
+systemOnly: FALSE\r
+defaultObjectCategory: CN=Application-Version,CN=Schema,CN=Configuration,<RootDomainDN>\r
+\r
 cn: ms-DS-App-Configuration\r
 ldapDisplayName: msDS-App-Configuration\r
 governsId: 1.2.840.113556.1.5.220\r
@@ -223,20 +285,6 @@ systemOnly: FALSE
 defaultObjectCategory: CN=ms-DS-Az-Role,CN=Schema,CN=Configuration,<RootDomainDN>\r
 systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
 \r
-cn: Application-Version\r
-ldapDisplayName: applicationVersion\r
-governsId: 1.2.840.113556.1.5.216\r
-objectClassCategory: 1\r
-rdnAttId: cn\r
-subClassOf: applicationSettings\r
-mayContain: owner, managedBy, keywords, versionNumberLo,versionNumberHi, versionNumber, vendor, appSchemaVersion\r
-possSuperiors: organizationalUnit, computer, container\r
-schemaIdGuid:ddc790ac-af4d-442a-8f0f-a1d4caa7dd92\r
-defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLCLORC;;;AU)\r
-defaultHidingValue: TRUE\r
-systemOnly: FALSE\r
-defaultObjectCategory: CN=Application-Version,CN=Schema,CN=Configuration,<RootDomainDN>\r
-\r
 cn: ms-DS-Az-Scope\r
 ldapDisplayName: msDS-AzScope\r
 governsId: 1.2.840.113556.1.5.237\r
@@ -268,6 +316,22 @@ systemOnly: FALSE
 defaultObjectCategory: CN=ms-DS-Az-Task,CN=Schema,CN=Configuration,<RootDomainDN>\r
 systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
 \r
+cn: Attribute-Schema\r
+ldapDisplayName: attributeSchema\r
+governsId: 1.2.840.113556.1.3.14\r
+objectClassCategory: 1\r
+rdnAttId: cn\r
+subClassOf: top\r
+systemMustContain: schemaIDGUID, oMSyntax, lDAPDisplayName,isSingleValued, cn, attributeSyntax, attributeID\r
+systemMayContain: systemOnly, searchFlags, schemaFlagsEx, rangeUpper,rangeLower, oMObjectClass, msDs-Schema-Extensions, msDS-IntId,mAPIID, linkID, isMemberOfPartialAttributeSet, isEphemeral,isDefunct, extendedCharsAllowed, classDisplayName,attributeSecurityGUID\r
+systemPossSuperiors: dMD\r
+schemaIdGuid:bf967a80-0de6-11d0-a285-00aa003049e2\r
+defaultSecurityDescriptor: D:S:\r
+defaultHidingValue: TRUE\r
+systemOnly: FALSE\r
+defaultObjectCategory: CN=Attribute-Schema,CN=Schema,CN=Configuration,<RootDomainDN>\r
+systemFlags: FLAG_SCHEMA_BASE_OBJECT | FLAG_DOMAIN_DISALLOW_RENAME\r
+\r
 cn: ms-DS-Password-Settings\r
 ldapDisplayName: msDS-PasswordSettings\r
 governsId: 1.2.840.113556.1.5.255\r
@@ -289,7 +353,7 @@ governsId: 1.2.840.113556.1.5.256
 objectClassCategory: 1\r
 rdnAttId: cn\r
 subClassOf: top\r
-systemPossSuperiors: Container\r
+systemPossSuperiors: container\r
 schemaIdGuid: 5b06b06a-4cf3-44c0-bd16-43bc10a987da\r
 defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)\r
 systemOnly: FALSE\r
@@ -387,21 +451,18 @@ systemOnly: FALSE
 defaultObjectCategory: CN=MSMQ-Custom-Recipient,CN=Schema,CN=Configuration,<RootDomainDN>\r
 systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
 \r
-cn: Attribute-Schema\r
-ldapDisplayName: attributeSchema\r
-governsId: 1.2.840.113556.1.3.14\r
-objectClassCategory: 1\r
+cn: BootableDevice\r
+ldapDisplayName: bootableDevice\r
+governsId: 1.3.6.1.1.1.2.12\r
+objectClassCategory: 3\r
 rdnAttId: cn\r
 subClassOf: top\r
-systemMustContain: schemaIDGUID, oMSyntax, lDAPDisplayName,isSingleValued, cn, attributeSyntax, attributeID\r
-systemMayContain: systemOnly, searchFlags, schemaFlagsEx,rangeUpper, rangeLower, oMObjectClass, msDs-Schema-Extensions,msDS-IntId, mAPIID, linkID, isMemberOfPartialAttributeSet,isEphemeral, isDefunct, extendedCharsAllowed, classDisplayName,attributeSecurityGUID\r
-systemPossSuperiors: dMD\r
-schemaIdGuid:bf967a80-0de6-11d0-a285-00aa003049e2\r
-defaultSecurityDescriptor: D:S:\r
+mayContain: cn, bootParameter, bootFile\r
+schemaIdGuid:4bcb2477-4bb3-4545-a9fc-fb66e136b435\r
+defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLCLORC;;;AU)\r
 defaultHidingValue: TRUE\r
 systemOnly: FALSE\r
-defaultObjectCategory: CN=Attribute-Schema,CN=Schema,CN=Configuration,<RootDomainDN>\r
-systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
+defaultObjectCategory: CN=BootableDevice,CN=Schema,CN=Configuration,<RootDomainDN>\r
 \r
 cn: MSMQ-Group\r
 ldapDisplayName: msMQ-Group\r
@@ -515,7 +576,7 @@ governsId: 1.2.840.113556.1.5.196
 objectClassCategory: 1\r
 rdnAttId: cn\r
 subClassOf: top\r
-systemMayContain: msPKI-OID-User-Notice, msPKI-OIDLocalizedName,msPKI-OID-CPS, msPKI-OID-Attribute, msPKI-Cert-Template-OID\r
+systemMayContain: msDS-OIDToGroupLink, msPKI-OID-User-Notice,msPKI-OIDLocalizedName, msPKI-OID-CPS, msPKI-OID-Attribute,msPKI-Cert-Template-OID\r
 systemPossSuperiors: msPKI-Enterprise-Oid, container\r
 schemaIdGuid:37cfd85c-6719-4ad8-8f9e-8678ba627563\r
 defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLCLORC;;;AU)\r
@@ -553,18 +614,20 @@ systemOnly: FALSE
 defaultObjectCategory: CN=ms-PKI-Private-Key-Recovery-Agent,CN=Schema,CN=Configuration,<RootDomainDN>\r
 systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
 \r
-cn: BootableDevice\r
-ldapDisplayName: bootableDevice\r
-governsId: 1.3.6.1.1.1.2.12\r
-objectClassCategory: 3\r
+cn: Builtin-Domain\r
+ldapDisplayName: builtinDomain\r
+governsId: 1.2.840.113556.1.5.4\r
+objectClassCategory: 1\r
 rdnAttId: cn\r
 subClassOf: top\r
-mayContain: cn, bootParameter, bootFile\r
-schemaIdGuid:4bcb2477-4bb3-4545-a9fc-fb66e136b435\r
-defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLCLORC;;;AU)\r
+systemAuxiliaryClass: samDomainBase\r
+systemPossSuperiors: domainDNS\r
+schemaIdGuid:bf967a81-0de6-11d0-a285-00aa003049e2\r
+defaultSecurityDescriptor: D:(A;;RPLCLORC;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLCLORC;;;AU)\r
 defaultHidingValue: TRUE\r
 systemOnly: FALSE\r
-defaultObjectCategory: CN=BootableDevice,CN=Schema,CN=Configuration,<RootDomainDN>\r
+defaultObjectCategory: CN=Builtin-Domain,CN=Schema,CN=Configuration,<RootDomainDN>\r
+systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
 \r
 cn: ms-Print-ConnectionPolicy\r
 ldapDisplayName: msPrint-ConnectionPolicy\r
@@ -714,19 +777,19 @@ systemOnly: FALSE
 defaultObjectCategory: CN=ms-WMI-IntSetParam,CN=Schema,CN=Configuration,<RootDomainDN>\r
 systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
 \r
-cn: Builtin-Domain\r
-ldapDisplayName: builtinDomain\r
-governsId: 1.2.840.113556.1.5.4\r
+cn: Category-Registration\r
+ldapDisplayName: categoryRegistration\r
+governsId: 1.2.840.113556.1.5.74\r
 objectClassCategory: 1\r
 rdnAttId: cn\r
-subClassOf: top\r
-systemAuxiliaryClass: samDomainBase\r
-systemPossSuperiors: domainDNS\r
-schemaIdGuid:bf967a81-0de6-11d0-a285-00aa003049e2\r
-defaultSecurityDescriptor: D:(A;;RPLCLORC;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLCLORC;;;AU)\r
+subClassOf: leaf\r
+systemMayContain: managedBy, localizedDescription, localeID,categoryId\r
+systemPossSuperiors: classStore\r
+schemaIdGuid:7d6c0e9d-7e20-11d0-afd6-00c04fd930c9\r
+defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLCLORC;;;AU)\r
 defaultHidingValue: TRUE\r
 systemOnly: FALSE\r
-defaultObjectCategory: CN=Builtin-Domain,CN=Schema,CN=Configuration,<RootDomainDN>\r
+defaultObjectCategory: CN=Category-Registration,CN=Schema,CN=Configuration,<RootDomainDN>\r
 systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
 \r
 cn: ms-WMI-MergeablePolicyTemplate\r
@@ -882,19 +945,20 @@ systemOnly: FALSE
 defaultObjectCategory: CN=ms-WMI-Som,CN=Schema,CN=Configuration,<RootDomainDN>\r
 systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
 \r
-cn: Category-Registration\r
-ldapDisplayName: categoryRegistration\r
-governsId: 1.2.840.113556.1.5.74\r
-objectClassCategory: 1\r
+cn: Certification-Authority\r
+ldapDisplayName: certificationAuthority\r
+governsId: 2.5.6.16\r
+objectClassCategory: 0\r
 rdnAttId: cn\r
-subClassOf: leaf\r
-systemMayContain: managedBy, localizedDescription, localeID,categoryId\r
-systemPossSuperiors: classStore\r
-schemaIdGuid:7d6c0e9d-7e20-11d0-afd6-00c04fd930c9\r
+subClassOf: top\r
+systemMustContain: cn, certificateRevocationList, cACertificate,authorityRevocationList\r
+systemMayContain: teletexTerminalIdentifier,supportedApplicationContext, signatureAlgorithms, searchGuide,previousParentCA, previousCACertificates, pendingParentCA,pendingCACertificates, parentCACertificateChain, parentCA,enrollmentProviders, domainPolicyObject, domainID, dNSHostName,deltaRevocationList, currentParentCA, crossCertificatePair,cRLObject, certificateTemplates, cAWEBURL, cAUsages, cAConnect,cACertificateDN\r
+systemPossSuperiors: container\r
+schemaIdGuid:3fdfee50-47f4-11d1-a9c3-0000f80367c1\r
 defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLCLORC;;;AU)\r
 defaultHidingValue: TRUE\r
 systemOnly: FALSE\r
-defaultObjectCategory: CN=Category-Registration,CN=Schema,CN=Configuration,<RootDomainDN>\r
+defaultObjectCategory: CN=Certification-Authority,CN=Schema,CN=Configuration,<RootDomainDN>\r
 systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
 \r
 cn: ms-WMI-StringSetParam\r
@@ -1052,20 +1116,19 @@ systemOnly: TRUE
 defaultObjectCategory: CN=NTDS-DSA,CN=Schema,CN=Configuration,<RootDomainDN>\r
 systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
 \r
-cn: Certification-Authority\r
-ldapDisplayName: certificationAuthority\r
-governsId: 2.5.6.16\r
-objectClassCategory: 0\r
+cn: Class-Registration\r
+ldapDisplayName: classRegistration\r
+governsId: 1.2.840.113556.1.5.10\r
+objectClassCategory: 1\r
 rdnAttId: cn\r
-subClassOf: top\r
-systemMustContain: cn, certificateRevocationList, cACertificate,authorityRevocationList\r
-systemMayContain: teletexTerminalIdentifier,supportedApplicationContext, signatureAlgorithms, searchGuide,previousParentCA, previousCACertificates, pendingParentCA,pendingCACertificates, parentCACertificateChain, parentCA,enrollmentProviders, domainPolicyObject, domainID, dNSHostName,deltaRevocationList, currentParentCA, crossCertificatePair,cRLObject, certificateTemplates, cAWEBURL, cAUsages, cAConnect,cACertificateDN\r
-systemPossSuperiors: container\r
-schemaIdGuid:3fdfee50-47f4-11d1-a9c3-0000f80367c1\r
+subClassOf: leaf\r
+systemMayContain: requiredCategories, managedBy,implementedCategories, cOMTreatAsClassId, cOMProgID,cOMOtherProgId, cOMInterfaceID, cOMCLSID\r
+systemPossSuperiors: classStore\r
+schemaIdGuid:bf967a82-0de6-11d0-a285-00aa003049e2\r
 defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLCLORC;;;AU)\r
 defaultHidingValue: TRUE\r
 systemOnly: FALSE\r
-defaultObjectCategory: CN=Certification-Authority,CN=Schema,CN=Configuration,<RootDomainDN>\r
+defaultObjectCategory: CN=Class-Registration,CN=Schema,CN=Configuration,<RootDomainDN>\r
 systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
 \r
 cn: NTDS-DSA-RO\r
@@ -1088,7 +1151,7 @@ governsId: 1.2.840.113556.1.5.72
 objectClassCategory: 1\r
 rdnAttId: cn\r
 subClassOf: top\r
-systemMayContain: tombstoneLifetime, sPNMappings,replTopologyStayOfExecution, msDS-Other-Settings, garbageCollPeriod,dSHeuristics\r
+systemMayContain: msDS-DeletedObjectLifetime, tombstoneLifetime,sPNMappings, replTopologyStayOfExecution, msDS-Other-Settings,garbageCollPeriod, dSHeuristics\r
 systemPossSuperiors: container\r
 schemaIdGuid:19195a5f-6da0-11d0-afd3-00c04fd930c9\r
 defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLCLORC;;;AU)\r
@@ -1136,7 +1199,7 @@ subClassOf: top
 systemMayContain: schedule, msFRS-Topology-Pref, msFRS-Hub-Member,managedBy, fRSVersionGUID, fRSServiceCommand, fRSRootSecurity,fRSReplicaSetType, fRSReplicaSetGUID, fRSPrimaryMember,fRSPartnerAuthLevel, fRSLevelLimit, fRSFlags, fRSFileFilter,fRSExtensions, fRSDSPoll, fRSDirectoryFilter\r
 systemPossSuperiors: nTFRSSettings\r
 schemaIdGuid:5245803a-ca6a-11d0-afff-0000f80367c1\r
-defaultSecurityDescriptor: D:(A;;RPLCLORC;;;AU)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;DA)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;CO)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;SY)\r
+defaultSecurityDescriptor: D:(A;;RPLCLORC;;;AU)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;DA)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;CO)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;SY)(OA;;CCDC;2a132586-9373-11d1-aebc-0000f80367c1;;ED)\r
 defaultHidingValue: TRUE\r
 systemOnly: FALSE\r
 defaultObjectCategory: CN=NTFRS-Replica-Set,CN=Schema,CN=Configuration,<RootDomainDN>\r
@@ -1219,20 +1282,21 @@ systemOnly: FALSE
 defaultObjectCategory: CN=Organization,CN=Schema,CN=Configuration,<RootDomainDN>\r
 systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
 \r
-cn: Class-Registration\r
-ldapDisplayName: classRegistration\r
-governsId: 1.2.840.113556.1.5.10\r
+cn: Class-Schema\r
+ldapDisplayName: classSchema\r
+governsId: 1.2.840.113556.1.3.13\r
 objectClassCategory: 1\r
 rdnAttId: cn\r
-subClassOf: leaf\r
-systemMayContain: requiredCategories, managedBy,implementedCategories, cOMTreatAsClassId, cOMProgID,cOMOtherProgId, cOMInterfaceID, cOMCLSID\r
-systemPossSuperiors: classStore\r
-schemaIdGuid:bf967a82-0de6-11d0-a285-00aa003049e2\r
-defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLCLORC;;;AU)\r
+subClassOf: top\r
+systemMustContain: subClassOf, schemaIDGUID, objectClassCategory,governsID, defaultObjectCategory, cn\r
+systemMayContain: systemPossSuperiors, systemOnly, systemMustContain,systemMayContain, systemAuxiliaryClass, schemaFlagsEx, rDNAttID,possSuperiors, mustContain, msDs-Schema-Extensions, msDS-IntId,mayContain, lDAPDisplayName, isDefunct, defaultSecurityDescriptor,defaultHidingValue, classDisplayName, auxiliaryClass\r
+systemPossSuperiors: dMD\r
+schemaIdGuid:bf967a83-0de6-11d0-a285-00aa003049e2\r
+defaultSecurityDescriptor: D:S:\r
 defaultHidingValue: TRUE\r
 systemOnly: FALSE\r
-defaultObjectCategory: CN=Class-Registration,CN=Schema,CN=Configuration,<RootDomainDN>\r
-systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
+defaultObjectCategory: CN=Class-Schema,CN=Schema,CN=Configuration,<RootDomainDN>\r
+systemFlags: FLAG_SCHEMA_BASE_OBJECT | FLAG_DOMAIN_DISALLOW_RENAME\r
 \r
 cn: Organizational-Person\r
 ldapDisplayName: organizationalPerson\r
@@ -1350,7 +1414,7 @@ governsId: 1.2.840.113556.1.5.178
 objectClassCategory: 1\r
 rdnAttId: cn\r
 subClassOf: top\r
-systemMayContain: signatureAlgorithms, enrollmentProviders,dNSHostName, certificateTemplates, cACertificateDN, cACertificate\r
+systemMayContain: msPKI-Enrollment-Servers, msPKI-Site-Name,signatureAlgorithms, enrollmentProviders, dNSHostName,certificateTemplates, cACertificateDN, cACertificate\r
 systemPossSuperiors: container\r
 schemaIdGuid:ee4aa692-3bba-11d2-90cc-00c04fd91ab1\r
 defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLCLORC;;;AU)\r
@@ -1385,20 +1449,19 @@ defaultHidingValue: TRUE
 systemOnly: FALSE\r
 defaultObjectCategory: CN=PosixGroup,CN=Schema,CN=Configuration,<RootDomainDN>\r
 \r
-cn: Class-Schema\r
-ldapDisplayName: classSchema\r
-governsId: 1.2.840.113556.1.3.13\r
+cn: Class-Store\r
+ldapDisplayName: classStore\r
+governsId: 1.2.840.113556.1.5.44\r
 objectClassCategory: 1\r
 rdnAttId: cn\r
 subClassOf: top\r
-systemMustContain: subClassOf, schemaIDGUID, objectClassCategory,governsID, defaultObjectCategory, cn\r
-systemMayContain: systemPossSuperiors, systemOnly, systemMustContain,systemMayContain, systemAuxiliaryClass, schemaFlagsEx, rDNAttID,possSuperiors, mustContain, msDs-Schema-Extensions, msDS-IntId,mayContain, lDAPDisplayName, isDefunct, defaultSecurityDescriptor,defaultHidingValue, classDisplayName, auxiliaryClass\r
-systemPossSuperiors: dMD\r
-schemaIdGuid:bf967a83-0de6-11d0-a285-00aa003049e2\r
-defaultSecurityDescriptor: D:S:\r
+systemMayContain: versionNumber, nextLevelStore, lastUpdateSequence,appSchemaVersion\r
+systemPossSuperiors: domainPolicy, computer, group, user, classStore,organizationalUnit, domainDNS, container\r
+schemaIdGuid:bf967a84-0de6-11d0-a285-00aa003049e2\r
+defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLCLORC;;;AU)\r
 defaultHidingValue: TRUE\r
 systemOnly: FALSE\r
-defaultObjectCategory: CN=Class-Schema,CN=Schema,CN=Configuration,<RootDomainDN>\r
+defaultObjectCategory: CN=Class-Store,CN=Schema,CN=Configuration,<RootDomainDN>\r
 systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
 \r
 cn: Print-Queue\r
@@ -1552,19 +1615,35 @@ systemOnly: FALSE
 defaultObjectCategory: CN=Rpc-Container,CN=Schema,CN=Configuration,<RootDomainDN>\r
 systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
 \r
-cn: Class-Store\r
-ldapDisplayName: classStore\r
-governsId: 1.2.840.113556.1.5.44\r
+cn: ACS-Policy\r
+ldapDisplayName: aCSPolicy\r
+governsId: 1.2.840.113556.1.5.137\r
 objectClassCategory: 1\r
 rdnAttId: cn\r
 subClassOf: top\r
-systemMayContain: versionNumber, nextLevelStore, lastUpdateSequence,appSchemaVersion\r
-systemPossSuperiors: domainPolicy, computer, group, user, classStore,organizationalUnit, domainDNS, container\r
-schemaIdGuid:bf967a84-0de6-11d0-a285-00aa003049e2\r
+systemMayContain: aCSTotalNoOfFlows, aCSTimeOfDay, aCSServiceType,aCSPriority, aCSPermissionBits, aCSMinimumDelayVariation,aCSMinimumLatency, aCSMaximumSDUSize, aCSMinimumPolicedSize,aCSMaxTokenRatePerFlow, aCSMaxTokenBucketPerFlow,aCSMaxPeakBandwidthPerFlow, aCSMaxDurationPerFlow,aCSMaxAggregatePeakRatePerUser, aCSIdentityName, aCSDirection,aCSAggregateTokenRatePerUser\r
+systemPossSuperiors: container\r
+schemaIdGuid:7f561288-5301-11d1-a9c5-0000f80367c1\r
+defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLOLORCWOWDSDDTDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLCLORC;;;AU)\r
+defaultHidingValue: TRUE\r
+systemOnly: FALSE\r
+defaultObjectCategory: CN=ACS-Policy,CN=Schema,CN=Configuration,<RootDomainDN>\r
+systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
+\r
+cn: Com-Connection-Point\r
+ldapDisplayName: comConnectionPoint\r
+governsId: 1.2.840.113556.1.5.11\r
+objectClassCategory: 1\r
+rdnAttId: cn\r
+subClassOf: connectionPoint\r
+systemMustContain: cn\r
+systemMayContain: monikerDisplayName, moniker, marshalledInterface\r
+systemPossSuperiors: container\r
+schemaIdGuid:bf967a85-0de6-11d0-a285-00aa003049e2\r
 defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLCLORC;;;AU)\r
 defaultHidingValue: TRUE\r
 systemOnly: FALSE\r
-defaultObjectCategory: CN=Class-Store,CN=Schema,CN=Configuration,<RootDomainDN>\r
+defaultObjectCategory: CN=Com-Connection-Point,CN=Schema,CN=Configuration,<RootDomainDN>\r
 systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
 \r
 cn: rpc-Entry\r
@@ -1695,7 +1774,7 @@ subClassOf: top
 systemAuxiliaryClass: samDomainBase\r
 systemMayContain: treeName, rIDManagerReference, replicaSource,pwdProperties, pwdHistoryLength, privateKey, pekList,pekKeyChangeInterval, nTMixedDomain, nextRid, nETBIOSName,msDS-PerUserTrustTombstonesQuota, msDS-PerUserTrustQuota,ms-DS-MachineAccountQuota, msDS-LogonTimeSyncInterval,msDS-AllUsersTrustQuota, modifiedCountAtLastProm, minPwdLength,minPwdAge, maxPwdAge, lSAModifiedCount, lSACreationTime,lockoutThreshold, lockoutDuration, lockOutObservationWindow,gPOptions, gPLink, eFSPolicy, domainPolicyObject, desktopProfile,description, defaultLocalPolicyObject, creationTime,controlAccessRights, cACertificate, builtinModifiedCount,builtinCreationTime, auditingPolicy\r
 schemaIdGuid:bf967a90-0de6-11d0-a285-00aa003049e2\r
-defaultSecurityDescriptor: D:(A;;RP;;;WD)(OA;;CR;1131f6aa-9c07-11d1-f79f-00c04fc2dcd2;;ED)(OA;;CR;1131f6ab-9c07-11d1-f79f-00c04fc2dcd2;;ED)(OA;;CR;1131f6ac-9c07-11d1-f79f-00c04fc2dcd2;;ED)(OA;;CR;1131f6aa-9c07-11d1-f79f-00c04fc2dcd2;;BA)(OA;;CR;1131f6ab-9c07-11d1-f79f-00c04fc2dcd2;;BA)(OA;;CR;1131f6ac-9c07-11d1-f79f-00c04fc2dcd2;;BA)(A;;RPLCLORC;;;AU)(A;;RPWPCRLCLOCCRCWDWOSW;;;DA)(A;CI;RPWPCRLCLOCCRCWDWOSDSW;;;BA)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;SY)(A;CI;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;EA)(A;CI;LC;;;RU)(OA;CIIO;RP;037088f8-0ae1-11d2-b422-00a0c968f939;bf967aba-0de6-11d0-a285-00aa003049e2;RU)(OA;CIIO;RP;59ba2f42-79a2-11d0-9020-00c04fc2d3cf;bf967aba-0de6-11d0-a285-00aa003049e2;RU)(OA;CIIO;RP;bc0ac240-79a9-11d0-9020-00c04fc2d4cf;bf967aba-0de6-11d0-a285-00aa003049e2;RU)(OA;CIIO;RP;4c164200-20c0-11d0-a768-00aa006e0529;bf967aba-0de6-11d0-a285-00aa003049e2;RU)(OA;CIIO;RP;5f202010-79a5-11d0-9020-00c04fc2d4cf;bf967aba-0de6-11d0-a285-00aa003049e2;RU)(OA;;RP;c7407360-20bf-11d0-a768-00aa006e0529;;RU)(OA;CIIO;RPLCLORC;;bf967a9c-0de6-11d0-a285-00aa003049e2;RU)(A;;RPRC;;;RU)(OA;CIIO;RPLCLORC;;bf967aba-0de6-11d0-a285-00aa003049e2;RU)(A;;LCRPLORC;;;ED)(OA;CIIO;RP;037088f8-0ae1-11d2-b422-00a0c968f939;4828CC14-1437-45bc-9B07-AD6F015E5F28;RU)(OA;CIIO;RP;59ba2f42-79a2-11d0-9020-00c04fc2d3cf;4828CC14-1437-45bc-9B07-AD6F015E5F28;RU)(OA;CIIO;RP;bc0ac240-79a9-11d0-9020-00c04fc2d4cf;4828CC14-1437-45bc-9B07-AD6F015E5F28;RU)(OA;CIIO;RP;4c164200-20c0-11d0-a768-00aa006e0529;4828CC14-1437-45bc-9B07-AD6F015E5F28;RU)(OA;CIIO;RP;5f202010-79a5-11d0-9020-00c04fc2d4cf;4828CC14-1437-45bc-9B07-AD6F015E5F28;RU)(OA;CIIO;RPLCLORC;;4828CC14-1437-45bc-9B07-AD6F015E5F28;RU)(OA;;RP;b8119fd0-04f6-4762-ab7a-4986c76b3f9a;;RU)(OA;;RP;b8119fd0-04f6-4762-ab7a-4986c76b3f9a;;AU)(OA;CIIO;RP;b7c69e6d-2cc7-11d2-854e-00a0c983f608;bf967aba-0de6-11d0-a285-00aa003049e2;ED)(OA;CIIO;RP;b7c69e6d-2cc7-11d2-854e-00a0c983f608;bf967a9c-0de6-11d0-a285-00aa003049e2;ED)(OA;CIIO;RP;b7c69e6d-2cc7-11d2-854e-00a0c983f608;bf967a86-0de6-11d0-a285-00aa003049e2;ED)(OA;;CR;1131f6ad-9c07-11d1-f79f-00c04fc2dcd2;;DD)(OA;;CR;1131f6ad-9c07-11d1-f79f-00c04fc2dcd2;;BA)(OA;;CR;e2a36dc9-ae17-47c3-b58b-be34c55ba633;;S-1-5-32-557)(OA;;CR;280f369c-67c7-438e-ae98-1d46f3c6f541;;AU)(OA;;CR;ccc2dc7d-a6ad-4a7a-8846-c04e3cc53501;;AU)(OA;;CR;05c74c5e-4deb-43b4-bd9f-86664c2a7fd5;;AU)(OA;;CR;1131f6ae-9c07-11d1-f79f-00c04fc2dcd2;;ED)(OA;;CR;1131f6ae-9c07-11d1-f79f-00c04fc2dcd2;;BA)(OA;CIIO;CRRPWP;91e647de-d96f-4b70-9557-d63ff4f3ccd8;;PS)(OA;;CR;1131f6aa-9c07-11d1-f79f-00c04fc2dcd2;;RO)S:(AU;SA;WDWOWP;;;WD)(AU;SA;CR;;;BA)(AU;SA;CR;;;DU)(OU;CISA;WP;f30e3bbe-9ff0-11d1-b603-0000f80367c1;bf967aa5-0de6-11d0-a285-00aa003049e2;WD)(OU;CISA;WP;f30e3bbf-9ff0-11d1-b603-0000f80367c1;bf967aa5-0de6-11d0-a285-00aa003049e2;WD)\r
+defaultSecurityDescriptor: D:(A;;RP;;;WD)(OA;;CR;1131f6aa-9c07-11d1-f79f-00c04fc2dcd2;;ED)(OA;;CR;1131f6ab-9c07-11d1-f79f-00c04fc2dcd2;;ED)(OA;;CR;1131f6ac-9c07-11d1-f79f-00c04fc2dcd2;;ED)(OA;;CR;1131f6aa-9c07-11d1-f79f-00c04fc2dcd2;;BA)(OA;;CR;1131f6ab-9c07-11d1-f79f-00c04fc2dcd2;;BA)(OA;;CR;1131f6ac-9c07-11d1-f79f-00c04fc2dcd2;;BA)(A;;RPLCLORC;;;AU)(A;;RPWPCRLCLOCCRCWDWOSW;;;DA)(A;CI;RPWPCRLCLOCCRCWDWOSDSW;;;BA)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;SY)(A;CI;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;EA)(A;CI;LC;;;RU)(OA;CIIO;RP;037088f8-0ae1-11d2-b422-00a0c968f939;bf967aba-0de6-11d0-a285-00aa003049e2;RU)(OA;CIIO;RP;59ba2f42-79a2-11d0-9020-00c04fc2d3cf;bf967aba-0de6-11d0-a285-00aa003049e2;RU)(OA;CIIO;RP;bc0ac240-79a9-11d0-9020-00c04fc2d4cf;bf967aba-0de6-11d0-a285-00aa003049e2;RU)(OA;CIIO;RP;4c164200-20c0-11d0-a768-00aa006e0529;bf967aba-0de6-11d0-a285-00aa003049e2;RU)(OA;CIIO;RP;5f202010-79a5-11d0-9020-00c04fc2d4cf;bf967aba-0de6-11d0-a285-00aa003049e2;RU)(OA;;RP;c7407360-20bf-11d0-a768-00aa006e0529;;RU)(OA;CIIO;RPLCLORC;;bf967a9c-0de6-11d0-a285-00aa003049e2;RU)(A;;RPRC;;;RU)(OA;CIIO;RPLCLORC;;bf967aba-0de6-11d0-a285-00aa003049e2;RU)(A;;LCRPLORC;;;ED)(OA;CIIO;RP;037088f8-0ae1-11d2-b422-00a0c968f939;4828CC14-1437-45bc-9B07-AD6F015E5F28;RU)(OA;CIIO;RP;59ba2f42-79a2-11d0-9020-00c04fc2d3cf;4828CC14-1437-45bc-9B07-AD6F015E5F28;RU)(OA;CIIO;RP;bc0ac240-79a9-11d0-9020-00c04fc2d4cf;4828CC14-1437-45bc-9B07-AD6F015E5F28;RU)(OA;CIIO;RP;4c164200-20c0-11d0-a768-00aa006e0529;4828CC14-1437-45bc-9B07-AD6F015E5F28;RU)(OA;CIIO;RP;5f202010-79a5-11d0-9020-00c04fc2d4cf;4828CC14-1437-45bc-9B07-AD6F015E5F28;RU)(OA;CIIO;RPLCLORC;;4828CC14-1437-45bc-9B07-AD6F015E5F28;RU)(OA;;RP;b8119fd0-04f6-4762-ab7a-4986c76b3f9a;;RU)(OA;;RP;b8119fd0-04f6-4762-ab7a-4986c76b3f9a;;AU)(OA;CIIO;RP;b7c69e6d-2cc7-11d2-854e-00a0c983f608;bf967aba-0de6-11d0-a285-00aa003049e2;ED)(OA;CIIO;RP;b7c69e6d-2cc7-11d2-854e-00a0c983f608;bf967a9c-0de6-11d0-a285-00aa003049e2;ED)(OA;CIIO;RP;b7c69e6d-2cc7-11d2-854e-00a0c983f608;bf967a86-0de6-11d0-a285-00aa003049e2;ED)(OA;;CR;1131f6ad-9c07-11d1-f79f-00c04fc2dcd2;;DD)(OA;;CR;89e95b76-444d-4c62-991a-0facbeda640c;;ED)(OA;;CR;1131f6ad-9c07-11d1-f79f-00c04fc2dcd2;;BA)(OA;;CR;89e95b76-444d-4c62-991a-0facbeda640c;;BA)(OA;;CR;e2a36dc9-ae17-47c3-b58b-be34c55ba633;;S-1-5-32-557)(OA;;CR;280f369c-67c7-438e-ae98-1d46f3c6f541;;AU)(OA;;CR;ccc2dc7d-a6ad-4a7a-8846-c04e3cc53501;;AU)(OA;;CR;05c74c5e-4deb-43b4-bd9f-86664c2a7fd5;;AU)(OA;;CR;1131f6ae-9c07-11d1-f79f-00c04fc2dcd2;;ED)(OA;;CR;1131f6ae-9c07-11d1-f79f-00c04fc2dcd2;;BA)(OA;CIIO;CRRPWP;91e647de-d96f-4b70-9557-d63ff4f3ccd8;;PS)S:(AU;SA;WDWOWP;;;WD)(AU;SA;CR;;;BA)(AU;SA;CR;;;DU)(OU;CISA;WP;f30e3bbe-9ff0-11d1-b603-0000f80367c1;bf967aa5-0de6-11d0-a285-00aa003049e2;WD)(OU;CISA;WP;f30e3bbf-9ff0-11d1-b603-0000f80367c1;bf967aa5-0de6-11d0-a285-00aa003049e2;WD)\r
 defaultHidingValue: TRUE\r
 systemOnly: FALSE\r
 defaultObjectCategory: CN=Sam-Domain,CN=Schema,CN=Configuration,<RootDomainDN>\r
@@ -1714,35 +1793,21 @@ systemOnly: FALSE
 defaultObjectCategory: CN=Sam-Domain-Base,CN=Schema,CN=Configuration,<RootDomainDN>\r
 systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
 \r
-cn: ACS-Policy\r
-ldapDisplayName: aCSPolicy\r
-governsId: 1.2.840.113556.1.5.137\r
-objectClassCategory: 1\r
-rdnAttId: cn\r
-subClassOf: top\r
-systemMayContain: aCSTotalNoOfFlows, aCSTimeOfDay, aCSServiceType,aCSPriority, aCSPermissionBits, aCSMinimumDelayVariation,aCSMinimumLatency, aCSMaximumSDUSize, aCSMinimumPolicedSize,aCSMaxTokenRatePerFlow, aCSMaxTokenBucketPerFlow,aCSMaxPeakBandwidthPerFlow, aCSMaxDurationPerFlow,aCSMaxAggregatePeakRatePerUser, aCSIdentityName, aCSDirection,aCSAggregateTokenRatePerUser\r
-systemPossSuperiors: container\r
-schemaIdGuid:7f561288-5301-11d1-a9c5-0000f80367c1\r
-defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLOLORCWOWDSDDTDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLCLORC;;;AU)\r
-defaultHidingValue: TRUE\r
-systemOnly: FALSE\r
-defaultObjectCategory: CN=ACS-Policy,CN=Schema,CN=Configuration,<RootDomainDN>\r
-systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
-\r
-cn: Com-Connection-Point\r
-ldapDisplayName: comConnectionPoint\r
-governsId: 1.2.840.113556.1.5.11\r
+cn: Computer\r
+ldapDisplayName: computer\r
+governsId: 1.2.840.113556.1.3.30\r
 objectClassCategory: 1\r
 rdnAttId: cn\r
-subClassOf: connectionPoint\r
-systemMustContain: cn\r
-systemMayContain: monikerDisplayName, moniker, marshalledInterface\r
-systemPossSuperiors: container\r
-schemaIdGuid:bf967a85-0de6-11d0-a285-00aa003049e2\r
-defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLCLORC;;;AU)\r
-defaultHidingValue: TRUE\r
+subClassOf: user\r
+auxiliaryClass: ipHost\r
+mayContain: msSFU30Aliases, msSFU30NisDomain, nisMapName,msSFU30Name\r
+systemMayContain: msTSEndpointData, msTSEndpointType,msTS-EndpointPlugin, msDS-HostServiceAccount,msDS-IsUserCachableAtRodc, msTSProperty02,msTSProperty01, msTPM-OwnerInformation, msDS-RevealOnDemandGroup,msDS-NeverRevealGroup, msDS-PromotionSettings, msDS-SiteName,msDS-isRODC, msDS-isGC, msDS-AuthenticatedAtDC, msDS-RevealedList,msDS-RevealedUsers, msDS-ExecuteScriptPassword, msDS-KrbTgtLink,volumeCount, siteGUID, rIDSetReferences, policyReplicationFlags,physicalLocationObject, operatingSystemVersion,operatingSystemServicePack, operatingSystemHotfix, operatingSystem,networkAddress, netbootSIFFile, netbootMirrorDataFile,netbootMachineFilePath, netbootInitialization, netbootGUID,msDS-AdditionalSamAccountName, msDS-AdditionalDnsHostName,managedBy, machineRole, location, localPolicyFlags, dNSHostName,defaultLocalPolicyObject, cn, catalogs\r
+systemPossSuperiors: container, organizationalUnit, domainDNS\r
+schemaIdGuid:bf967a86-0de6-11d0-a285-00aa003049e2\r
+defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;AO)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPCRLCLORCSDDT;;;CO)(OA;;WP;4c164200-20c0-11d0-a768-00aa006e0529;;CO)(A;;RPLCLORC;;;AU)(OA;;CR;ab721a53-1e2f-11d0-9819-00aa0040529b;;WD)(A;;CCDC;;;PS)(OA;;CCDC;bf967aa8-0de6-11d0-a285-00aa003049e2;;PO)(OA;;RPWP;bf967a7f-0de6-11d0-a285-00aa003049e2;;CA)(OA;;SW;f3a64788-5306-11d1-a9c5-0000f80367c1;;PS)(OA;;RPWP;77B5B886-944A-11d1-AEBD-0000F80367C1;;PS)(OA;;SW;72e39547-7b18-11d1-adef-00c04fd8d5cd;;PS)(OA;;SW;72e39547-7b18-11d1-adef-00c04fd8d5cd;;CO)(OA;;SW;f3a64788-5306-11d1-a9c5-0000f80367c1;;CO)(OA;;WP;3e0abfd0-126a-11d0-a060-00aa006c33ed;bf967a86-0de6-11d0-a285-00aa003049e2;CO)(OA;;WP;5f202010-79a5-11d0-9020-00c04fc2d4cf;bf967a86-0de6-11d0-a285-00aa003049e2;CO)(OA;;WP;bf967950-0de6-11d0-a285-00aa003049e2;bf967a86-0de6-11d0-a285-00aa003049e2;CO)(OA;;WP;bf967953-0de6-11d0-a285-00aa003049e2;bf967a86-0de6-11d0-a285-00aa003049e2;CO)(OA;;RP;46a9b11d-60ae-405a-b7e8-ff8a58d456d2;;S-1-5-32-560)\r
+defaultHidingValue: FALSE\r
 systemOnly: FALSE\r
-defaultObjectCategory: CN=Com-Connection-Point,CN=Schema,CN=Configuration,<RootDomainDN>\r
+defaultObjectCategory: CN=Computer,CN=Schema,CN=Configuration,<RootDomainDN>\r
 systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
 \r
 cn: Sam-Server\r
@@ -1894,21 +1959,20 @@ systemOnly: FALSE
 defaultObjectCategory: CN=Service-Instance,CN=Schema,CN=Configuration,<RootDomainDN>\r
 systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
 \r
-cn: Computer\r
-ldapDisplayName: computer\r
-governsId: 1.2.840.113556.1.3.30\r
+cn: Configuration\r
+ldapDisplayName: configuration\r
+governsId: 1.2.840.113556.1.5.12\r
 objectClassCategory: 1\r
 rdnAttId: cn\r
-subClassOf: user\r
-auxiliaryClass: ipHost\r
-mayContain: msSFU30Aliases, msSFU30NisDomain, nisMapName,msSFU30Name\r
-systemMayContain: msDS-IsUserCachableAtRodc, msTSProperty02,msTSProperty01, msTPM-OwnerInformation, msDS-RevealOnDemandGroup,msDS-NeverRevealGroup, msDS-PromotionSettings, msDS-SiteName,msDS-isRODC, msDS-isGC, msDS-AuthenticatedAtDC, msDS-RevealedList,msDS-RevealedUsers, msDS-ExecuteScriptPassword, msDS-KrbTgtLink,volumeCount, siteGUID, rIDSetReferences, policyReplicationFlags,physicalLocationObject, operatingSystemVersion,operatingSystemServicePack, operatingSystemHotfix, operatingSystem,networkAddress, netbootSIFFile, netbootMirrorDataFile,netbootMachineFilePath, netbootInitialization, netbootGUID,msDS-AdditionalSamAccountName, msDS-AdditionalDnsHostName,managedBy, machineRole, location, localPolicyFlags, dNSHostName,defaultLocalPolicyObject, cn, catalogs\r
-systemPossSuperiors: container, organizationalUnit, domainDNS\r
-schemaIdGuid:bf967a86-0de6-11d0-a285-00aa003049e2\r
-defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;AO)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPCRLCLORCSDDT;;;CO)(OA;;WP;4c164200-20c0-11d0-a768-00aa006e0529;;CO)(A;;RPLCLORC;;;AU)(OA;;CR;ab721a53-1e2f-11d0-9819-00aa0040529b;;WD)(A;;CCDC;;;PS)(OA;;CCDC;bf967aa8-0de6-11d0-a285-00aa003049e2;;PO)(OA;;RPWP;bf967a7f-0de6-11d0-a285-00aa003049e2;;CA)(OA;;SW;f3a64788-5306-11d1-a9c5-0000f80367c1;;PS)(OA;;RPWP;77B5B886-944A-11d1-AEBD-0000F80367C1;;PS)(OA;;SW;72e39547-7b18-11d1-adef-00c04fd8d5cd;;PS)(OA;;SW;72e39547-7b18-11d1-adef-00c04fd8d5cd;;CO)(OA;;SW;f3a64788-5306-11d1-a9c5-0000f80367c1;;CO)(OA;;WP;3e0abfd0-126a-11d0-a060-00aa006c33ed;bf967a86-0de6-11d0-a285-00aa003049e2;CO)(OA;;WP;5f202010-79a5-11d0-9020-00c04fc2d4cf;bf967a86-0de6-11d0-a285-00aa003049e2;CO)(OA;;WP;bf967950-0de6-11d0-a285-00aa003049e2;bf967a86-0de6-11d0-a285-00aa003049e2;CO)(OA;;WP;bf967953-0de6-11d0-a285-00aa003049e2;bf967a86-0de6-11d0-a285-00aa003049e2;CO)(OA;;RP;46a9b11d-60ae-405a-b7e8-ff8a58d456d2;;S-1-5-32-560)\r
-defaultHidingValue: FALSE\r
-systemOnly: FALSE\r
-defaultObjectCategory: CN=Computer,CN=Schema,CN=Configuration,<RootDomainDN>\r
+subClassOf: top\r
+systemMustContain: cn\r
+systemMayContain: msDS-USNLastSyncSuccess, gPOptions, gPLink\r
+systemPossSuperiors: domainDNS\r
+schemaIdGuid:bf967a87-0de6-11d0-a285-00aa003049e2\r
+defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLCLORC;;;AU)\r
+defaultHidingValue: TRUE\r
+systemOnly: TRUE\r
+defaultObjectCategory: CN=Configuration,CN=Schema,CN=Configuration,<RootDomainDN>\r
 systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
 \r
 cn: ShadowAccount\r
@@ -2054,22 +2118,22 @@ defaultSecurityDescriptor: D:S:
 defaultHidingValue: TRUE\r
 systemOnly: TRUE\r
 defaultObjectCategory: CN=SubSchema,CN=Schema,CN=Configuration,<RootDomainDN>\r
-systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
+systemFlags: FLAG_SCHEMA_BASE_OBJECT | FLAG_DOMAIN_DISALLOW_RENAME\r
 \r
-cn: Configuration\r
-ldapDisplayName: configuration\r
-governsId: 1.2.840.113556.1.5.12\r
-objectClassCategory: 1\r
+cn: Connection-Point\r
+ldapDisplayName: connectionPoint\r
+governsId: 1.2.840.113556.1.5.14\r
+objectClassCategory: 2\r
 rdnAttId: cn\r
-subClassOf: top\r
+subClassOf: leaf\r
 systemMustContain: cn\r
-systemMayContain: gPOptions, gPLink\r
-systemPossSuperiors: domainDNS\r
-schemaIdGuid:bf967a87-0de6-11d0-a285-00aa003049e2\r
-defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLCLORC;;;AU)\r
+systemMayContain: msDS-Settings, managedBy, keywords\r
+systemPossSuperiors: container, computer\r
+schemaIdGuid:5cb41ecf-0e4c-11d0-a286-00aa003049e2\r
+defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLCLORC;;;AU)\r
 defaultHidingValue: TRUE\r
-systemOnly: TRUE\r
-defaultObjectCategory: CN=Configuration,CN=Schema,CN=Configuration,<RootDomainDN>\r
+systemOnly: FALSE\r
+defaultObjectCategory: CN=Connection-Point,CN=Schema,CN=Configuration,<RootDomainDN>\r
 systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
 \r
 cn: Top\r
@@ -2080,7 +2144,7 @@ rdnAttId: cn
 subClassOf: top\r
 systemMustContain: objectClass, objectCategory, nTSecurityDescriptor,instanceType\r
 mayContain: msSFU30PosixMemberOf, msDFSR-ComputerReferenceBL,msDFSR-MemberReferenceBL, msDS-ObjectReferenceBL\r
-systemMayContain: msDS-NcType, msDS-PSOApplied, msDS-PrincipalName,msDS-RevealedListBL, msDS-AuthenticatedToAccountlist,msDS-IsPartialReplicaFor, msDS-IsDomainFor, msDS-IsFullReplicaFor,msDS-RevealedDSAs, msDS-KrbTgtLinkBl, url, wWWHomePage, whenCreated,whenChanged, wellKnownObjects, wbemPath, uSNSource, uSNLastObjRem,USNIntersite, uSNDSALastObjRemoved, uSNCreated, uSNChanged,systemFlags, subSchemaSubEntry, subRefs, structuralObjectClass,siteObjectBL, serverReferenceBL, sDRightsEffective, revision,repsTo, repsFrom, directReports, replUpToDateVector,replPropertyMetaData, name, queryPolicyBL, proxyAddresses,proxiedObjectName, possibleInferiors, partialAttributeSet,partialAttributeDeletionList, otherWellKnownObjects, objectVersion,objectGUID, distinguishedName, nonSecurityMemberBL, netbootSCPBL,ownerBL, msDS-ReplValueMetaData, msDS-ReplAttributeMetaData,msDS-NonMembersBL, msDS-NCReplOutboundNeighbors,msDS-NCReplInboundNeighbors, msDS-NCReplCursors,msDS-TasksForAzRoleBL, msDS-TasksForAzTaskBL,msDS-OperationsForAzRoleBL, msDS-OperationsForAzTaskBL,msDS-MembersForAzRoleBL, msDs-masteredBy, mS-DS-ConsistencyGuid,mS-DS-ConsistencyChildCount, msDS-Approx-Immed-Subordinates,msCOM-PartitionSetLink, msCOM-UserLink, modifyTimeStamp, masteredBy,managedObjects, lastKnownParent, isPrivilegeHolder, memberOf,isDeleted, isCriticalSystemObject, showInAdvancedViewOnly,fSMORoleOwner, fRSMemberReferenceBL, frsComputerReferenceBL,fromEntry, flags, extensionName, dSASignature,dSCorePropagationData, displayNamePrintable, displayName,description, createTimeStamp, cn, canonicalName,bridgeheadServerListBL, allowedChildClassesEffective,allowedChildClasses, allowedAttributesEffective, allowedAttributes,adminDisplayName, adminDescription, msDS-NC-RO-Replica-Locations-BL\r
+systemMayContain: msTSPrimaryDesktopBL, msTSSecondaryDesktopsBL,msDS-EnabledFeatureBL, msDS-LastKnownRDN, msDS-HostServiceAccountBL,msDS-OIDToGroupLinkBl, msDS-LocalEffectiveRecycleTime,msDS-LocalEffectiveDeletionTime, isRecyled, msDS-NcType,msDS-PSOApplied, msDS-PrincipalName,msDS-RevealedListBL, msDS-AuthenticatedToAccountlist,msDS-IsPartialReplicaFor, msDS-IsDomainFor, msDS-IsFullReplicaFor,msDS-RevealedDSAs, msDS-KrbTgtLinkBl, url, wWWHomePage, whenCreated,whenChanged, wellKnownObjects, wbemPath, uSNSource, uSNLastObjRem,USNIntersite, uSNDSALastObjRemoved, uSNCreated, uSNChanged,systemFlags, subSchemaSubEntry, subRefs, structuralObjectClass,siteObjectBL, serverReferenceBL, sDRightsEffective, revision,repsTo, repsFrom, directReports, replUpToDateVector,replPropertyMetaData, name, queryPolicyBL, proxyAddresses,proxiedObjectName, possibleInferiors, partialAttributeSet,partialAttributeDeletionList, otherWellKnownObjects, objectVersion,objectGUID, distinguishedName, nonSecurityMemberBL, netbootSCPBL,ownerBL, msDS-ReplValueMetaData, msDS-ReplAttributeMetaData,msDS-NonMembersBL, msDS-NCReplOutboundNeighbors,msDS-NCReplInboundNeighbors, msDS-NCReplCursors,msDS-TasksForAzRoleBL, msDS-TasksForAzTaskBL,msDS-OperationsForAzRoleBL, msDS-OperationsForAzTaskBL,msDS-MembersForAzRoleBL, msDs-masteredBy, mS-DS-ConsistencyGuid,mS-DS-ConsistencyChildCount, msDS-Approx-Immed-Subordinates,msCOM-PartitionSetLink, msCOM-UserLink, modifyTimeStamp, masteredBy,managedObjects, lastKnownParent, isPrivilegeHolder, memberOf,isDeleted, isCriticalSystemObject, showInAdvancedViewOnly,fSMORoleOwner, fRSMemberReferenceBL, frsComputerReferenceBL,fromEntry, flags, extensionName, dSASignature,dSCorePropagationData, displayNamePrintable, displayName,description, createTimeStamp, cn, canonicalName,bridgeheadServerListBL, allowedChildClassesEffective,allowedChildClasses, allowedAttributesEffective, allowedAttributes,adminDisplayName, adminDescription, msDS-NC-RO-Replica-Locations-BL\r
 systemPossSuperiors: lostAndFound\r
 schemaIdGuid:bf967ab7-0de6-11d0-a285-00aa003049e2\r
 defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLCLORC;;;AU)\r
@@ -2128,9 +2192,9 @@ subClassOf: organizationalPerson
 auxiliaryClass: shadowAccount, posixAccount\r
 systemAuxiliaryClass: securityPrincipal, mailRecipient\r
 mayContain: msSFU30NisDomain, msSFU30Name, msDS-SourceObjectDN,x500uniqueIdentifier, userSMIMECertificate, userPKCS12, uid,secretary, roomNumber, preferredLanguage, photo, labeledURI,jpegPhoto, homePostalAddress, givenName, employeeType,employeeNumber, displayName, departmentNumber, carLicense, audio\r
-systemMayContain: msDS-ResultantPSO, MSTSLSProperty01,MSTSLSProperty02, msTSManagingLS2, msTSManagingLS3, msTSManagingLS4,msTSLicenseVersion2, msTSLicenseVersion3, msTSLicenseVersion4,msTSExpireDate2, msTSExpireDate3, msTSExpireDate4,msDS-AuthenticatedAtDC, msDS-UserPasswordExpiryTimeComputed,msTSManagingLS, msTSLicenseVersion, msTSExpireDate, msTSProperty02,msTSProperty01, msTSInitialProgram, msTSWorkDirectory,msTSDefaultToMainPrinter, msTSConnectPrinterDrives,msTSConnectClientDrives, msTSBrokenConnectionAction,msTSReconnectionAction, msTSMaxIdleTime, msTSMaxConnectionTime,msTSMaxDisconnectionTime, msTSRemoteControl, msTSAllowLogon,msTSHomeDrive, msTSHomeDirectory, msTSProfilePath,msDS-FailedInteractiveLogonCountAtLastSuccessfulLogon,msDS-FailedInteractiveLogonCount,msDS-LastFailedInteractiveLogonTime,msDS-LastSuccessfulInteractiveLogonTime,msRADIUS-SavedFramedIpv6Route, msRADIUS-FramedIpv6Route,msRADIUS-SavedFramedIpv6Prefix, msRADIUS-FramedIpv6Prefix,msRADIUS-SavedFramedInterfaceId, msRADIUS-FramedInterfaceId,msPKIAccountCredentials, msPKIDPAPIMasterKeys,msPKIRoamingTimeStamp, msDS-SupportedEncryptionTypes,msDS-SecondaryKrbTgtNumber, pager, o, mobile, manager, mail,initials, homePhone, businessCategory, userCertificate,userWorkstations, userSharedFolderOther, userSharedFolder,userPrincipalName, userParameters, userAccountControl, unicodePwd,terminalServer, servicePrincipalName, scriptPath, pwdLastSet,profilePath, primaryGroupID, preferredOU, otherLoginWorkstations,operatorCount, ntPwdHistory, networkAddress, msRASSavedFramedRoute,msRASSavedFramedIPAddress, msRASSavedCallbackNumber,msRADIUSServiceType, msRADIUSFramedRoute, msRADIUSFramedIPAddress,msRADIUSCallbackNumber, msNPSavedCallingStationID,msNPCallingStationID, msNPAllowDialin, mSMQSignCertificatesMig,mSMQSignCertificates, mSMQDigestsMig, mSMQDigests, msIIS-FTPRoot,msIIS-FTPDir, msDS-User-Account-Control-Computed,msDS-Site-Affinity, mS-DS-CreatorSID,msDS-Cached-Membership-Time-Stamp, msDS-Cached-Membership,msDRM-IdentityCertificate, msCOM-UserPartitionSetLink, maxStorage,logonWorkstation, logonHours, logonCount, lockoutTime, localeID,lmPwdHistory, lastLogonTimestamp, lastLogon, lastLogoff, homeDrive,homeDirectory, groupsToIgnore, groupPriority, groupMembershipSAM,dynamicLDAPServer, desktopProfile, defaultClassStore, dBCSPwd,controlAccessRights, codePage, badPwdCount, badPasswordTime,adminCount, aCSPolicyName, accountExpires\r
+systemMayContain:  msTSPrimaryDesktop, msTSSecondaryDesktops,msPKI-CredentialRoamingTokens, msDS-ResultantPSO, MSTSLSProperty01,MSTSLSProperty02, msTSManagingLS2, msTSManagingLS3, msTSManagingLS4,msTSLicenseVersion2, msTSLicenseVersion3, msTSLicenseVersion4,msTSExpireDate2, msTSExpireDate3, msTSExpireDate4,msDS-AuthenticatedAtDC, msDS-UserPasswordExpiryTimeComputed,msTSManagingLS, msTSLicenseVersion, msTSExpireDate, msTSProperty02,msTSProperty01, msTSInitialProgram, msTSWorkDirectory,msTSDefaultToMainPrinter, msTSConnectPrinterDrives,msTSConnectClientDrives, msTSBrokenConnectionAction,msTSReconnectionAction, msTSMaxIdleTime, msTSMaxConnectionTime,msTSMaxDisconnectionTime, msTSRemoteControl, msTSAllowLogon,msTSHomeDrive, msTSHomeDirectory, msTSProfilePath,msDS-FailedInteractiveLogonCountAtLastSuccessfulLogon,msDS-FailedInteractiveLogonCount,msDS-LastFailedInteractiveLogonTime,msDS-LastSuccessfulInteractiveLogonTime,msRADIUS-SavedFramedIpv6Route, msRADIUS-FramedIpv6Route,msRADIUS-SavedFramedIpv6Prefix, msRADIUS-FramedIpv6Prefix,msRADIUS-SavedFramedInterfaceId, msRADIUS-FramedInterfaceId,msPKIAccountCredentials, msPKIDPAPIMasterKeys,msPKIRoamingTimeStamp, msDS-SupportedEncryptionTypes,msDS-SecondaryKrbTgtNumber, pager, o, mobile, manager, mail,initials, homePhone, businessCategory, userCertificate,userWorkstations, userSharedFolderOther, userSharedFolder,userPrincipalName, userParameters, userAccountControl, unicodePwd,terminalServer, servicePrincipalName, scriptPath, pwdLastSet,profilePath, primaryGroupID, preferredOU, otherLoginWorkstations,operatorCount, ntPwdHistory, networkAddress, msRASSavedFramedRoute,msRASSavedFramedIPAddress, msRASSavedCallbackNumber,msRADIUSServiceType, msRADIUSFramedRoute, msRADIUSFramedIPAddress,msRADIUSCallbackNumber, msNPSavedCallingStationID,msNPCallingStationID, msNPAllowDialin, mSMQSignCertificatesMig,mSMQSignCertificates, mSMQDigestsMig, mSMQDigests, msIIS-FTPRoot,msIIS-FTPDir, msDS-User-Account-Control-Computed,msDS-Site-Affinity, mS-DS-CreatorSID,msDS-Cached-Membership-Time-Stamp, msDS-Cached-Membership,msDRM-IdentityCertificate, msCOM-UserPartitionSetLink, maxStorage,logonWorkstation, logonHours, logonCount, lockoutTime, localeID,lmPwdHistory, lastLogonTimestamp, lastLogon, lastLogoff, homeDrive,homeDirectory, groupsToIgnore, groupPriority, groupMembershipSAM,dynamicLDAPServer, desktopProfile, defaultClassStore, dBCSPwd,controlAccessRights, codePage, badPwdCount, badPasswordTime,adminCount, aCSPolicyName, accountExpires\r
 schemaIdGuid:bf967aba-0de6-11d0-a285-00aa003049e2\r
-defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;AO)(A;;RPLCLORC;;;PS)(OA;;CR;ab721a53-1e2f-11d0-9819-00aa0040529b;;PS)(OA;;CR;ab721a54-1e2f-11d0-9819-00aa0040529b;;PS)(OA;;CR;ab721a56-1e2f-11d0-9819-00aa0040529b;;PS)(OA;;RPWP;77B5B886-944A-11d1-AEBD-0000F80367C1;;PS)(OA;;RPWP;E45795B2-9455-11d1-AEBD-0000F80367C1;;PS)(OA;;RPWP;E45795B3-9455-11d1-AEBD-0000F80367C1;;PS)(OA;;RP;037088f8-0ae1-11d2-b422-00a0c968f939;;RS)(OA;;RP;4c164200-20c0-11d0-a768-00aa006e0529;;RS)(OA;;RP;bc0ac240-79a9-11d0-9020-00c04fc2d4cf;;RS)(A;;RC;;;AU)(OA;;RP;59ba2f42-79a2-11d0-9020-00c04fc2d3cf;;AU)(OA;;RP;77B5B886-944A-11d1-AEBD-0000F80367C1;;AU)(OA;;RP;E45795B3-9455-11d1-AEBD-0000F80367C1;;AU)(OA;;RP;e48d0154-bcf8-11d1-8702-00c04fb96050;;AU)(OA;;CR;ab721a53-1e2f-11d0-9819-00aa0040529b;;WD)(OA;;RP;5f202010-79a5-11d0-9020-00c04fc2d4cf;;RS)(OA;;RPWP;bf967a7f-0de6-11d0-a285-00aa003049e2;;CA)(OA;;RP;46a9b11d-60ae-405a-b7e8-ff8a58d456d2;;S-1-5-32-560)(OA;;WPRP;6db69a1c-9422-11d1-aebd-0000f80367c1;;S-1-5-32-561)\r
+defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;AO)(A;;RPLCLORC;;;PS)(OA;;CR;ab721a53-1e2f-11d0-9819-00aa0040529b;;PS)(OA;;CR;ab721a54-1e2f-11d0-9819-00aa0040529b;;PS)(OA;;CR;ab721a56-1e2f-11d0-9819-00aa0040529b;;PS)(OA;;RPWP;77B5B886-944A-11d1-AEBD-0000F80367C1;;PS)(OA;;RPWP;E45795B2-9455-11d1-AEBD-0000F80367C1;;PS)(OA;;RPWP;E45795B3-9455-11d1-AEBD-0000F80367C1;;PS)(OA;;RP;037088f8-0ae1-11d2-b422-00a0c968f939;;RS)(OA;;RP;4c164200-20c0-11d0-a768-00aa006e0529;;RS)(OA;;RP;bc0ac240-79a9-11d0-9020-00c04fc2d4cf;;RS)(A;;RC;;;AU)(OA;;RP;59ba2f42-79a2-11d0-9020-00c04fc2d3cf;;AU)(OA;;RP;77B5B886-944A-11d1-AEBD-0000F80367C1;;AU)(OA;;RP;E45795B3-9455-11d1-AEBD-0000F80367C1;;AU)(OA;;RP;e48d0154-bcf8-11d1-8702-00c04fb96050;;AU)(OA;;CR;ab721a53-1e2f-11d0-9819-00aa0040529b;;WD)(OA;;RP;5f202010-79a5-11d0-9020-00c04fc2d4cf;;RS)(OA;;RPWP;bf967a7f-0de6-11d0-a285-00aa003049e2;;CA)(OA;;RP;46a9b11d-60ae-405a-b7e8-ff8a58d456d2;;S-1-5-32-560)(OA;;WPRP;6db69a1c-9422-11d1-aebd-0000f80367c1;;S-1-5-32-561)(OA;;WPRP;5805bc62-bdc9-4428-a5e2-856a0f4c185e;;S-1-5-32-561)\r
 systemPossSuperiors: builtinDomain, organizationalUnit, domainDNS\r
 defaultHidingValue: FALSE\r
 systemOnly: FALSE\r
@@ -2153,22 +2217,6 @@ systemOnly: FALSE
 defaultObjectCategory: CN=Volume,CN=Schema,CN=Configuration,<RootDomainDN>\r
 systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
 \r
-cn: Connection-Point\r
-ldapDisplayName: connectionPoint\r
-governsId: 1.2.840.113556.1.5.14\r
-objectClassCategory: 2\r
-rdnAttId: cn\r
-subClassOf: leaf\r
-systemMustContain: cn\r
-systemMayContain: msDS-Settings, managedBy, keywords\r
-systemPossSuperiors: container, computer\r
-schemaIdGuid:5cb41ecf-0e4c-11d0-a286-00aa003049e2\r
-defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLCLORC;;;AU)\r
-defaultHidingValue: TRUE\r
-systemOnly: FALSE\r
-defaultObjectCategory: CN=Connection-Point,CN=Schema,CN=Configuration,<RootDomainDN>\r
-systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
-\r
 cn: Contact\r
 ldapDisplayName: contact\r
 governsId: 1.2.840.113556.1.5.15\r
@@ -2288,7 +2336,7 @@ governsId: 1.2.840.113556.1.5.7000.53
 objectClassCategory: 1\r
 rdnAttId: cn\r
 subClassOf: top\r
-systemMayContain: msDS-SPNSuffixes, uPNSuffixes, msDS-UpdateScript,msDS-ExecuteScriptPassword, msDS-Behavior-Version\r
+systemMayContain: msDS-EnabledFeature, msDS-SPNSuffixes, uPNSuffixes,msDS-UpdateScript, msDS-ExecuteScriptPassword, msDS-Behavior-Version\r
 systemPossSuperiors: configuration\r
 schemaIdGuid:ef9e60e0-56f7-11d1-a9c6-0000f80367c1\r
 defaultSecurityDescriptor: D:(A;;GA;;;SY)\r
@@ -2382,7 +2430,7 @@ objectClassCategory: 1
 rdnAttId: cn\r
 subClassOf: top\r
 systemMustContain: cn\r
-systemMayContain: schemaUpdate, schemaInfo, prefixMap,msDs-Schema-Extensions, msDS-IntId, dmdName\r
+systemMayContain: msDS-USNLastSyncSuccess, schemaUpdate, schemaInfo,prefixMap, msDs-Schema-Extensions, msDS-IntId, dmdName\r
 systemPossSuperiors: configuration\r
 schemaIdGuid:bf967a8f-0de6-11d0-a285-00aa003049e2\r
 defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLCLORC;;;AU)\r
@@ -2488,10 +2536,10 @@ objectClassCategory: 1
 rdnAttId: dc\r
 subClassOf: domain\r
 systemAuxiliaryClass: samDomain\r
-systemMayContain: msDS-Behavior-Version, msDS-AllowedDNSSuffixes,managedBy\r
+systemMayContain: msDS-EnabledFeature, msDS-USNLastSyncSuccess,msDS-Behavior-Version, msDS-AllowedDNSSuffixes, managedBy\r
 systemPossSuperiors: domainDNS\r
 schemaIdGuid:19195a5b-6da0-11d0-afd3-00c04fd930c9\r
-defaultSecurityDescriptor: D:(A;;RP;;;WD)(OA;;CR;1131f6aa-9c07-11d1-f79f-00c04fc2dcd2;;ED)(OA;;CR;1131f6ab-9c07-11d1-f79f-00c04fc2dcd2;;ED)(OA;;CR;1131f6ac-9c07-11d1-f79f-00c04fc2dcd2;;ED)(OA;;CR;1131f6aa-9c07-11d1-f79f-00c04fc2dcd2;;BA)(OA;;CR;1131f6ab-9c07-11d1-f79f-00c04fc2dcd2;;BA)(OA;;CR;1131f6ac-9c07-11d1-f79f-00c04fc2dcd2;;BA)(A;;RPLCLORC;;;AU)(A;;RPWPCRLCLOCCRCWDWOSW;;;DA)(A;CI;RPWPCRLCLOCCRCWDWOSDSW;;;BA)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;SY)(A;CI;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;EA)(A;CI;LC;;;RU)(OA;CIIO;RP;037088f8-0ae1-11d2-b422-00a0c968f939;bf967aba-0de6-11d0-a285-00aa003049e2;RU)(OA;CIIO;RP;59ba2f42-79a2-11d0-9020-00c04fc2d3cf;bf967aba-0de6-11d0-a285-00aa003049e2;RU)(OA;CIIO;RP;bc0ac240-79a9-11d0-9020-00c04fc2d4cf;bf967aba-0de6-11d0-a285-00aa003049e2;RU)(OA;CIIO;RP;4c164200-20c0-11d0-a768-00aa006e0529;bf967aba-0de6-11d0-a285-00aa003049e2;RU)(OA;CIIO;RP;5f202010-79a5-11d0-9020-00c04fc2d4cf;bf967aba-0de6-11d0-a285-00aa003049e2;RU)(OA;;RP;c7407360-20bf-11d0-a768-00aa006e0529;;RU)(OA;CIIO;RPLCLORC;;bf967a9c-0de6-11d0-a285-00aa003049e2;RU)(A;;RPRC;;;RU)(OA;CIIO;RPLCLORC;;bf967aba-0de6-11d0-a285-00aa003049e2;RU)(A;;LCRPLORC;;;ED)(OA;CIIO;RP;037088f8-0ae1-11d2-b422-00a0c968f939;4828CC14-1437-45bc-9B07-AD6F015E5F28;RU)(OA;CIIO;RP;59ba2f42-79a2-11d0-9020-00c04fc2d3cf;4828CC14-1437-45bc-9B07-AD6F015E5F28;RU)(OA;CIIO;RP;bc0ac240-79a9-11d0-9020-00c04fc2d4cf;4828CC14-1437-45bc-9B07-AD6F015E5F28;RU)(OA;CIIO;RP;4c164200-20c0-11d0-a768-00aa006e0529;4828CC14-1437-45bc-9B07-AD6F015E5F28;RU)(OA;CIIO;RP;5f202010-79a5-11d0-9020-00c04fc2d4cf;4828CC14-1437-45bc-9B07-AD6F015E5F28;RU)(OA;CIIO;RPLCLORC;;4828CC14-1437-45bc-9B07-AD6F015E5F28;RU)(OA;;RP;b8119fd0-04f6-4762-ab7a-4986c76b3f9a;;RU)(OA;;RP;b8119fd0-04f6-4762-ab7a-4986c76b3f9a;;AU)(OA;CIIO;RP;b7c69e6d-2cc7-11d2-854e-00a0c983f608;bf967aba-0de6-11d0-a285-00aa003049e2;ED)(OA;CIIO;RP;b7c69e6d-2cc7-11d2-854e-00a0c983f608;bf967a9c-0de6-11d0-a285-00aa003049e2;ED)(OA;CIIO;RP;b7c69e6d-2cc7-11d2-854e-00a0c983f608;bf967a86-0de6-11d0-a285-00aa003049e2;ED)(OA;;CR;1131f6ad-9c07-11d1-f79f-00c04fc2dcd2;;DD)(OA;;CR;1131f6ad-9c07-11d1-f79f-00c04fc2dcd2;;BA)(OA;;CR;e2a36dc9-ae17-47c3-b58b-be34c55ba633;;S-1-5-32-557)(OA;;CR;280f369c-67c7-438e-ae98-1d46f3c6f541;;AU)(OA;;CR;ccc2dc7d-a6ad-4a7a-8846-c04e3cc53501;;AU)(OA;;CR;05c74c5e-4deb-43b4-bd9f-86664c2a7fd5;;AU)(OA;;CR;1131f6ae-9c07-11d1-f79f-00c04fc2dcd2;;ED)(OA;;CR;1131f6ae-9c07-11d1-f79f-00c04fc2dcd2;;BA)(OA;CIIO;CRRPWP;91e647de-d96f-4b70-9557-d63ff4f3ccd8;;PS)(OA;;CR;1131f6aa-9c07-11d1-f79f-00c04fc2dcd2;;RO)S:(AU;SA;WDWOWP;;;WD)(AU;SA;CR;;;BA)(AU;SA;CR;;;DU)(OU;CISA;WP;f30e3bbe-9ff0-11d1-b603-0000f80367c1;bf967aa5-0de6-11d0-a285-00aa003049e2;WD)(OU;CISA;WP;f30e3bbf-9ff0-11d1-b603-0000f80367c1;bf967aa5-0de6-11d0-a285-00aa003049e2;WD)\r
+defaultSecurityDescriptor: D:(A;;RP;;;WD)(OA;;CR;1131f6aa-9c07-11d1-f79f-00c04fc2dcd2;;ED)(OA;;CR;1131f6ab-9c07-11d1-f79f-00c04fc2dcd2;;ED)(OA;;CR;1131f6ac-9c07-11d1-f79f-00c04fc2dcd2;;ED)(OA;;CR;1131f6aa-9c07-11d1-f79f-00c04fc2dcd2;;BA)(OA;;CR;1131f6ab-9c07-11d1-f79f-00c04fc2dcd2;;BA)(OA;;CR;1131f6ac-9c07-11d1-f79f-00c04fc2dcd2;;BA)(A;;RPLCLORC;;;AU)(A;;RPWPCRLCLOCCRCWDWOSW;;;DA)(A;CI;RPWPCRLCLOCCRCWDWOSDSW;;;BA)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;SY)(A;CI;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;EA)(A;CI;LC;;;RU)(OA;CIIO;RP;037088f8-0ae1-11d2-b422-00a0c968f939;bf967aba-0de6-11d0-a285-00aa003049e2;RU)(OA;CIIO;RP;59ba2f42-79a2-11d0-9020-00c04fc2d3cf;bf967aba-0de6-11d0-a285-00aa003049e2;RU)(OA;CIIO;RP;bc0ac240-79a9-11d0-9020-00c04fc2d4cf;bf967aba-0de6-11d0-a285-00aa003049e2;RU)(OA;CIIO;RP;4c164200-20c0-11d0-a768-00aa006e0529;bf967aba-0de6-11d0-a285-00aa003049e2;RU)(OA;CIIO;RP;5f202010-79a5-11d0-9020-00c04fc2d4cf;bf967aba-0de6-11d0-a285-00aa003049e2;RU)(OA;;RP;c7407360-20bf-11d0-a768-00aa006e0529;;RU)(OA;CIIO;RPLCLORC;;bf967a9c-0de6-11d0-a285-00aa003049e2;RU)(A;;RPRC;;;RU)(OA;CIIO;RPLCLORC;;bf967aba-0de6-11d0-a285-00aa003049e2;RU)(A;;LCRPLORC;;;ED)(OA;CIIO;RP;037088f8-0ae1-11d2-b422-00a0c968f939;4828CC14-1437-45bc-9B07-AD6F015E5F28;RU)(OA;CIIO;RP;59ba2f42-79a2-11d0-9020-00c04fc2d3cf;4828CC14-1437-45bc-9B07-AD6F015E5F28;RU)(OA;CIIO;RP;bc0ac240-79a9-11d0-9020-00c04fc2d4cf;4828CC14-1437-45bc-9B07-AD6F015E5F28;RU)(OA;CIIO;RP;4c164200-20c0-11d0-a768-00aa006e0529;4828CC14-1437-45bc-9B07-AD6F015E5F28;RU)(OA;CIIO;RP;5f202010-79a5-11d0-9020-00c04fc2d4cf;4828CC14-1437-45bc-9B07-AD6F015E5F28;RU)(OA;CIIO;RPLCLORC;;4828CC14-1437-45bc-9B07-AD6F015E5F28;RU)(OA;;RP;b8119fd0-04f6-4762-ab7a-4986c76b3f9a;;RU)(OA;;RP;b8119fd0-04f6-4762-ab7a-4986c76b3f9a;;AU)(OA;CIIO;RP;b7c69e6d-2cc7-11d2-854e-00a0c983f608;bf967aba-0de6-11d0-a285-00aa003049e2;ED)(OA;CIIO;RP;b7c69e6d-2cc7-11d2-854e-00a0c983f608;bf967a9c-0de6-11d0-a285-00aa003049e2;ED)(OA;CIIO;RP;b7c69e6d-2cc7-11d2-854e-00a0c983f608;bf967a86-0de6-11d0-a285-00aa003049e2;ED)(OA;;CR;1131f6ad-9c07-11d1-f79f-00c04fc2dcd2;;DD)(OA;;CR;89e95b76-444d-4c62-991a-0facbeda640c;;ED)(OA;;CR;1131f6ad-9c07-11d1-f79f-00c04fc2dcd2;;BA)(OA;;CR;89e95b76-444d-4c62-991a-0facbeda640c;;BA)(OA;;CR;e2a36dc9-ae17-47c3-b58b-be34c55ba633;;S-1-5-32-557)(OA;;CR;280f369c-67c7-438e-ae98-1d46f3c6f541;;AU)(OA;;CR;ccc2dc7d-a6ad-4a7a-8846-c04e3cc53501;;AU)(OA;;CR;05c74c5e-4deb-43b4-bd9f-86664c2a7fd5;;AU)(OA;;CR;1131f6ae-9c07-11d1-f79f-00c04fc2dcd2;;ED)(OA;;CR;1131f6ae-9c07-11d1-f79f-00c04fc2dcd2;;BA)(OA;CIIO;CRRPWP;91e647de-d96f-4b70-9557-d63ff4f3ccd8;;PS)S:(AU;SA;WDWOWP;;;WD)(AU;SA;CR;;;BA)(AU;SA;CR;;;DU)(OU;CISA;WP;f30e3bbe-9ff0-11d1-b603-0000f80367c1;bf967aa5-0de6-11d0-a285-00aa003049e2;WD)(OU;CISA;WP;f30e3bbf-9ff0-11d1-b603-0000f80367c1;bf967aa5-0de6-11d0-a285-00aa003049e2;WD)\r
 defaultHidingValue: FALSE\r
 systemOnly: FALSE\r
 defaultObjectCategory: CN=Domain-DNS,CN=Schema,CN=Configuration,<RootDomainDN>\r
@@ -2760,7 +2808,7 @@ subClassOf: user
 mayContain: x500uniqueIdentifier, userSMIMECertificate, userPKCS12,userCertificate, uid, secretary, roomNumber, preferredLanguage,photo, pager, o, mobile, manager, mail, labeledURI, jpegPhoto,initials, homePostalAddress, homePhone, givenName, employeeType,employeeNumber, displayName, departmentNumber, carLicense,businessCategory, audio\r
 possSuperiors: domainDNS, organizationalUnit, container\r
 schemaIdGuid:4828cc14-1437-45bc-9b07-ad6f015e5f28\r
-defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;AO)(A;;RPLCLORC;;;PS)(OA;;CR;ab721a53-1e2f-11d0-9819-00aa0040529b;;PS)(OA;;CR;ab721a54-1e2f-11d0-9819-00aa0040529b;;PS)(OA;;CR;ab721a56-1e2f-11d0-9819-00aa0040529b;;PS)(OA;;RPWP;77B5B886-944A-11d1-AEBD-0000F80367C1;;PS)(OA;;RPWP;E45795B2-9455-11d1-AEBD-0000F80367C1;;PS)(OA;;RPWP;E45795B3-9455-11d1-AEBD-0000F80367C1;;PS)(OA;;RP;037088f8-0ae1-11d2-b422-00a0c968f939;;RS)(OA;;RP;4c164200-20c0-11d0-a768-00aa006e0529;;RS)(OA;;RP;bc0ac240-79a9-11d0-9020-00c04fc2d4cf;;RS)(A;;RC;;;AU)(OA;;RP;59ba2f42-79a2-11d0-9020-00c04fc2d3cf;;AU)(OA;;RP;77B5B886-944A-11d1-AEBD-0000F80367C1;;AU)(OA;;RP;E45795B3-9455-11d1-AEBD-0000F80367C1;;AU)(OA;;RP;e48d0154-bcf8-11d1-8702-00c04fb96050;;AU)(OA;;CR;ab721a53-1e2f-11d0-9819-00aa0040529b;;WD)(OA;;RP;5f202010-79a5-11d0-9020-00c04fc2d4cf;;RS)(OA;;RPWP;bf967a7f-0de6-11d0-a285-00aa003049e2;;CA)(OA;;RP;46a9b11d-60ae-405a-b7e8-ff8a58d456d2;;S-1-5-32-560)(OA;;WPRP;6db69a1c-9422-11d1-aebd-0000f80367c1;;S-1-5-32-561)\r
+defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;AO)(A;;RPLCLORC;;;PS)(OA;;CR;ab721a53-1e2f-11d0-9819-00aa0040529b;;PS)(OA;;CR;ab721a54-1e2f-11d0-9819-00aa0040529b;;PS)(OA;;CR;ab721a56-1e2f-11d0-9819-00aa0040529b;;PS)(OA;;RPWP;77B5B886-944A-11d1-AEBD-0000F80367C1;;PS)(OA;;RPWP;E45795B2-9455-11d1-AEBD-0000F80367C1;;PS)(OA;;RPWP;E45795B3-9455-11d1-AEBD-0000F80367C1;;PS)(OA;;RP;037088f8-0ae1-11d2-b422-00a0c968f939;;RS)(OA;;RP;4c164200-20c0-11d0-a768-00aa006e0529;;RS)(OA;;RP;bc0ac240-79a9-11d0-9020-00c04fc2d4cf;;RS)(A;;RC;;;AU)(OA;;RP;59ba2f42-79a2-11d0-9020-00c04fc2d3cf;;AU)(OA;;RP;77B5B886-944A-11d1-AEBD-0000F80367C1;;AU)(OA;;RP;E45795B3-9455-11d1-AEBD-0000F80367C1;;AU)(OA;;RP;e48d0154-bcf8-11d1-8702-00c04fb96050;;AU)(OA;;CR;ab721a53-1e2f-11d0-9819-00aa0040529b;;WD)(OA;;RP;5f202010-79a5-11d0-9020-00c04fc2d4cf;;RS)(OA;;RPWP;bf967a7f-0de6-11d0-a285-00aa003049e2;;CA)(OA;;RP;46a9b11d-60ae-405a-b7e8-ff8a58d456d2;;S-1-5-32-560)(OA;;WPRP;6db69a1c-9422-11d1-aebd-0000f80367c1;;S-1-5-32-561)(OA;;WPRP;5805bc62-bdc9-4428-a5e2-856a0f4c185e;;S-1-5-32-561)\r
 defaultHidingValue: FALSE\r
 systemOnly: FALSE\r
 defaultObjectCategory: CN=Person,CN=Schema,CN=Configuration,<RootDomainDN>\r
@@ -3181,6 +3229,36 @@ systemOnly: FALSE
 defaultObjectCategory: CN=Meeting,CN=Schema,CN=Configuration,<RootDomainDN>\r
 systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
 \r
+cn: ms-net-ieee-80211-GroupPolicy\r
+lDAPDisplayName: ms-net-ieee-80211-GroupPolicy\r
+governsID: 1.2.840.113556.1.5.251\r
+objectClassCategory: 1\r
+rDNAttID: cn\r
+subClassOf: top\r
+systemMayContain: ms-net-ieee-80211-GP-PolicyReserved,ms-net-ieee-80211-GP-PolicyData, ms-net-ieee-80211-GP-PolicyGUID\r
+systemPossSuperiors: computer, container, person\r
+schemaIDGUID: 1cb81863-b822-4379-9ea2-5ff7bdc6386d\r
+defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLCLORC;;;AU)\r
+defaultHidingValue: TRUE\r
+systemOnly: FALSE\r
+defaultObjectCategory: CN=ms-net-ieee-80211-GroupPolicy,CN=Schema,CN=Configuration,<RootDomainDN>\r
+systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
+\r
+cn: ms-net-ieee-8023-GroupPolicy\r
+lDAPDisplayName: ms-net-ieee-8023-GroupPolicy\r
+governsID: 1.2.840.113556.1.5.252\r
+objectClassCategory: 1\r
+rDNAttID: cn\r
+subClassOf: top\r
+systemMayContain: ms-net-ieee-8023-GP-PolicyReserved,ms-net-ieee-8023-GP-PolicyData, ms-net-ieee-8023-GP-PolicyGUID\r
+systemPossSuperiors: computer, container, person\r
+schemaIDGUID: 99a03a6a-ab19-4446-9350-0cb878ed2d9b\r
+defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLCLORC;;;AU)\r
+defaultHidingValue: TRUE\r
+systemOnly: FALSE\r
+defaultObjectCategory: CN=ms-net-ieee-8023-GroupPolicy,CN=Schema,CN=Configuration,<RootDomainDN>\r
+systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
+\r
 cn: MS-SQL-OLAPCube\r
 ldapDisplayName: mS-SQL-OLAPCube\r
 governsId: 1.2.840.113556.1.5.190\r
@@ -3226,6 +3304,20 @@ systemOnly: FALSE
 defaultObjectCategory: CN=MS-SQL-OLAPServer,CN=Schema,CN=Configuration,<RootDomainDN>\r
 systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
 \r
+cn: Application-Settings\r
+ldapDisplayName: applicationSettings\r
+governsId: 1.2.840.113556.1.5.7000.49\r
+objectClassCategory: 2\r
+rdnAttId: cn\r
+subClassOf: top\r
+systemMayContain: notificationList, msDS-Settings, applicationName\r
+systemPossSuperiors: server\r
+schemaIdGuid:f780acc1-56f0-11d1-a9c6-0000f80367c1\r
+defaultHidingValue: TRUE\r
+systemOnly: FALSE\r
+defaultObjectCategory: CN=Application-Settings,CN=Schema,CN=Configuration,<RootDomainDN>\r
+systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
+\r
 cn: MS-SQL-SQLDatabase\r
 ldapDisplayName: mS-SQL-SQLDatabase\r
 governsId: 1.2.840.113556.1.5.188\r
@@ -3256,20 +3348,6 @@ systemOnly: FALSE
 defaultObjectCategory: CN=MS-SQL-SQLPublication,CN=Schema,CN=Configuration,<RootDomainDN>\r
 systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
 \r
-cn: Application-Settings\r
-ldapDisplayName: applicationSettings\r
-governsId: 1.2.840.113556.1.5.7000.49\r
-objectClassCategory: 2\r
-rdnAttId: cn\r
-subClassOf: top\r
-systemMayContain: notificationList, msDS-Settings, applicationName\r
-systemPossSuperiors: server\r
-schemaIdGuid:f780acc1-56f0-11d1-a9c6-0000f80367c1\r
-defaultHidingValue: TRUE\r
-systemOnly: FALSE\r
-defaultObjectCategory: CN=Application-Settings,CN=Schema,CN=Configuration,<RootDomainDN>\r
-systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
-\r
 cn: MS-SQL-SQLRepository\r
 ldapDisplayName: mS-SQL-SQLRepository\r
 governsId: 1.2.840.113556.1.5.186\r
@@ -3330,89 +3408,66 @@ systemOnly: FALSE
 defaultObjectCategory: CN=ms-COM-PartitionSet,CN=Schema,CN=Configuration,<RootDomainDN>\r
 systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
 \r
-cn: ms-DFSR-Connection\r
-ldapDisplayName: msDFSR-Connection\r
-governsId: 1.2.840.113556.1.6.13.4.10\r
+cn: ms-DFS-Deleted-Link-v2\r
+ldapDisplayName: msDFS-DeletedLinkv2\r
+governsId: 1.2.840.113556.1.5.260\r
 objectClassCategory: 1\r
 rdnAttId: cn\r
 subClassOf: top\r
-mustContain: fromServer\r
-mayContain: msDFSR-Options2, msDFSR-DisablePacketPrivacy,msDFSR-Priority, msDFSR-Enabled, msDFSR-RdcEnabled,msDFSR-RdcMinFileSizeInKb, msDFSR-Keywords, msDFSR-Schedule,msDFSR-Flags, msDFSR-Options, msDFSR-Extension\r
-possSuperiors: msDFSR-Member\r
-schemaIdGuid:e58f972e-64b5-46ef-8d8b-bbc3e1897eab\r
-defaultSecurityDescriptor: D:(A;;RPLCLORC;;;AU)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;DA)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;CO)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;SY)\r
-defaultHidingValue: TRUE\r
-systemOnly: FALSE\r
-defaultObjectCategory: CN=ms-DFSR-Connection,CN=Schema,CN=Configuration,<RootDomainDN>\r
-\r
-cn: ms-DFSR-Content\r
-ldapDisplayName: msDFSR-Content\r
-governsId: 1.2.840.113556.1.6.13.4.6\r
-objectClassCategory: 1\r
-rdnAttId: cn\r
-subClassOf: top\r
-mayContain: msDFSR-Flags, msDFSR-Options, msDFSR-Extension\r
-possSuperiors: msDFSR-ReplicationGroup\r
-schemaIdGuid:64759b35-d3a1-42e4-b5f1-a3de162109b3\r
-defaultSecurityDescriptor: D:(A;;RPLCLORC;;;AU)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;DA)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;CO)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;SY)\r
-defaultHidingValue: TRUE\r
-systemOnly: FALSE\r
-defaultObjectCategory: CN=ms-DFSR-Content,CN=Schema,CN=Configuration,<RootDomainDN>\r
-\r
-cn: ms-DFSR-ContentSet\r
-ldapDisplayName: msDFSR-ContentSet\r
-governsId: 1.2.840.113556.1.6.13.4.7\r
-objectClassCategory: 1\r
-rdnAttId: cn\r
-subClassOf: top\r
-mayContain: msDFSR-Options2, msDFSR-OnDemandExclusionDirectoryFilter,msDFSR-OnDemandExclusionFileFilter,msDFSR-DefaultCompressionExclusionFilter, msDFSR-DeletedSizeInMb,msDFSR-Priority, msDFSR-ConflictSizeInMb, msDFSR-StagingSizeInMb,msDFSR-RootSizeInMb, description, msDFSR-DfsPath, msDFSR-FileFilter,msDFSR-DirectoryFilter, msDFSR-Flags, msDFSR-Options,msDFSR-Extension\r
-possSuperiors: msDFSR-Content\r
-schemaIdGuid:4937f40d-a6dc-4d48-97ca-06e5fbfd3f16\r
-defaultSecurityDescriptor: D:(A;;RPLCLORC;;;AU)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;DA)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;CO)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;SY)\r
+systemMustContain: msDFS-NamespaceIdentityGUIDv2,msDFS-LinkIdentityGUIDv2, msDFS-LastModifiedv2, msDFS-LinkPathv2\r
+systemMayContain: msDFS-Commentv2, msDFS-ShortNameLinkPathv2\r
+systemPossSuperiors: msDFS-Namespacev2\r
+schemaIdGuid: 25173408-04ca-40e8-865e-3f9ce9bf1bd3\r
+defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLCLORC;;;AU)\r
 defaultHidingValue: TRUE\r
 systemOnly: FALSE\r
-defaultObjectCategory: CN=ms-DFSR-ContentSet,CN=Schema,CN=Configuration,<RootDomainDN>\r
+defaultObjectCategory: CN=ms-DFS-Deleted-Link-v2, CN=Schema,CN=Configuration, <RootDomainDN>\r
+systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
 \r
-cn: ms-DFSR-GlobalSettings\r
-ldapDisplayName: msDFSR-GlobalSettings\r
-governsId: 1.2.840.113556.1.6.13.4.4\r
+cn: ms-DFS-Link-v2\r
+ldapDisplayName: msDFS-Linkv2\r
+governsId: 1.2.840.113556.1.5.259\r
 objectClassCategory: 1\r
 rdnAttId: cn\r
 subClassOf: top\r
-mayContain: msDFSR-Flags, msDFSR-Options, msDFSR-Extension\r
-possSuperiors: container\r
-schemaIdGuid:7b35dbad-b3ec-486a-aad4-2fec9d6ea6f6\r
-defaultSecurityDescriptor: D:(A;;RPLCLORC;;;AU)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;DA)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;CO)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;SY)\r
+systemMustContain: msDFS-GenerationGUIDv2,msDFS-NamespaceIdentityGUIDv2, msDFS-LinkIdentityGUIDv2,msDFS-LastModifiedv2, msDFS-Ttlv2, msDFS-TargetListv2,msDFS-Propertiesv2, msDFS-LinkPathv2\r
+systemMayContain: msDFS-Commentv2, msDFS-LinkSecurityDescriptorv2,msDFS-ShortNameLinkPathv2\r
+systemPossSuperiors: msDFS-Namespacev2\r
+schemaIdGuid: 7769fb7a-1159-4e96-9ccd-68bc487073eb\r
+defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLCLORC;;;AU)\r
 defaultHidingValue: TRUE\r
 systemOnly: FALSE\r
-defaultObjectCategory: CN=ms-DFSR-GlobalSettings,CN=Schema,CN=Configuration,<RootDomainDN>\r
+defaultObjectCategory: CN=ms-DFS-Link-v2, CN=Schema,CN=Configuration, <RootDomainDN>\r
+systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
 \r
-cn: ms-DFSR-LocalSettings\r
-ldapDisplayName: msDFSR-LocalSettings\r
-governsId: 1.2.840.113556.1.6.13.4.1\r
+cn: ms-DFS-Namespace-Anchor\r
+ldapDisplayName: msDFS-NamespaceAnchor\r
+governsId: 1.2.840.113556.1.5.257\r
 objectClassCategory: 1\r
 rdnAttId: cn\r
 subClassOf: top\r
-mayContain: msDFSR-Version, msDFSR-Flags, msDFSR-Options,msDFSR-Extension\r
-possSuperiors: computer\r
-schemaIdGuid:fa85c591-197f-477e-83bd-ea5a43df2239\r
-defaultSecurityDescriptor: D:(A;;RPLCLORC;;;AU)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;DA)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;CO)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;SY)\r
+systemMustContain: msDFS-SchemaMajorVersion\r
+systemPossSuperiors: dfsConfiguration\r
+schemaIdGuid: da73a085-6e64-4d61-b064-015d04164795\r
+defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLCLORC;;;AU)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;CO)\r
 defaultHidingValue: TRUE\r
 systemOnly: FALSE\r
-defaultObjectCategory: CN=ms-DFSR-LocalSettings,CN=Schema,CN=Configuration,<RootDomainDN>\r
+defaultObjectCategory: CN=ms-DFS-Namespace-Anchor, CN=Schema,CN=Configuration, <RootDomainDN>\r
+systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
 \r
-cn: ms-DFSR-Member\r
-ldapDisplayName: msDFSR-Member\r
-governsId: 1.2.840.113556.1.6.13.4.9\r
+cn: ms-DFS-Namespace-v2\r
+ldapDisplayName: msDFS-Namespacev2\r
+governsId: 1.2.840.113556.1.5.258\r
 objectClassCategory: 1\r
 rdnAttId: cn\r
 subClassOf: top\r
-mustContain: msDFSR-ComputerReference\r
-mayContain: serverReference, msDFSR-Keywords, msDFSR-Flags,msDFSR-Options, msDFSR-Extension\r
-possSuperiors: msDFSR-Topology\r
-schemaIdGuid:4229c897-c211-437c-a5ae-dbf705b696e5\r
-defaultSecurityDescriptor: D:(A;;RPLCLORC;;;AU)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;DA)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;CO)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;SY)\r
+systemMustContain: msDFS-SchemaMajorVersion,msDFS-SchemaMinorVersion, msDFS-GenerationGUIDv2,msDFS-NamespaceIdentityGUIDv2, msDFS-LastModifiedv2, msDFS-Ttlv2,msDFS-TargetListv2, msDFS-Propertiesv2\r
+systemMayContain: msDFS-Commentv2\r
+systemPossSuperiors: msDFS-NamespaceAnchor\r
+schemaIdGuid: 21cb8628-f3c3-4bbf-bff6-060b2d8f299a\r
+defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLCLORC;;;AU)\r
 defaultHidingValue: TRUE\r
 systemOnly: FALSE\r
-defaultObjectCategory: CN=ms-DFSR-Member,CN=Schema,CN=Configuration,<RootDomainDN>\r
+defaultObjectCategory: CN=ms-DFS-Namespace-v2, CN=Schema,CN=Configuration, <RootDomainDN>\r
+systemFlags: FLAG_SCHEMA_BASE_OBJECT\r
 \r