0ac412abd225450e1a5a4595885b77cd7f16c1af
[samba.git] / source / setup / provision.ldif
1 dn: @INDEXLIST
2 @IDXATTR: name
3 @IDXATTR: sAMAccountName
4 @IDXATTR: objectSid
5 @IDXATTR: objectClass
6 @IDXATTR: member
7 @IDXATTR: unixID
8 @IDXATTR: unixName
9 @IDXATTR: privilege
10
11 dn: @ATTRIBUTES
12 realm: CASE_INSENSITIVE
13 userPrincipalName: CASE_INSENSITIVE
14 servicePrincipalName: CASE_INSENSITIVE
15 dnsDomain: CASE_INSENSITIVE
16 cn: CASE_INSENSITIVE
17 dc: CASE_INSENSITIVE
18 name: CASE_INSENSITIVE WILDCARD
19 dn: CASE_INSENSITIVE WILDCARD
20 sAMAccountName: CASE_INSENSITIVE WILDCARD
21 objectClass: CASE_INSENSITIVE
22 unicodePwd: HIDDEN
23 ntPwdHash: HIDDEN
24 ntPwdHistory: HIDDEN
25 lmPwdHash: HIDDEN
26 lmPwdHistory: HIDDEN
27 createTimestamp: HIDDEN
28 modifyTimestamp: HIDDEN
29
30 dn: @SUBCLASSES
31 top: domain
32 top: person
33 top: group
34 domain: domainDNS
35 domain: builtinDomain
36 person: organizationalPerson
37 organizationalPerson: user
38 user: computer
39 template: userTemplate
40 template: groupTemplate
41
42 #Add modules to the list to activate them by default
43 #beware often order is important
44 dn: @MODULES
45 @LIST: samldb,timestamps
46
47 ###############################
48 # Domain Naming Context
49 ###############################
50 dn: ${BASEDN}
51 objectClass: top
52 objectClass: domain
53 objectClass: domainDNS
54 name: ${DOMAIN}
55 flatname: ${DOMAIN}
56 realm: ${REALM}
57 dnsDomain: ${DNSDOMAIN}
58 dc: ${DOMAIN}
59 objectGUID: ${DOMAINGUID}
60 creationTime: ${NTTIME}
61 forceLogoff: 0x8000000000000000
62 lockoutDuration: -18000000000
63 lockOutObservationWindow: -18000000000
64 lockoutThreshold: 0
65 whenCreated: ${LDAPTIME}
66 whenChanged: ${LDAPTIME}
67 uSNCreated: 1
68 uSNChanged: 1
69 maxPwdAge: -37108517437440
70 minPwdAge: 0
71 minPwdLength: 7
72 modifiedCountAtLastProm: 0
73 nextRid: 1001
74 pwdProperties: 1
75 pwdHistoryLength: 24
76 objectSid: ${DOMAINSID}
77 serverState: 1
78 nTMixedDomain: 1
79 msDS-Behavior-Version: 0
80 ridManagerReference: CN=RID Manager$,CN=System,${BASEDN}
81 uASCompat: 1
82 modifiedCount: 1
83 objectCategory: CN=Domain-DNS,CN=Schema,CN=Configuration,${BASEDN}
84 isCriticalSystemObject: TRUE
85 subRefs: CN=Configuration,${BASEDN}
86 subRefs: CN=Schema,CN=Configuration,${BASEDN}
87
88 dn: CN=Users,${BASEDN}
89 objectClass: top
90 objectClass: container
91 cn: Users
92 description: Default container for upgraded user accounts
93 instanceType: 4
94 whenCreated: ${LDAPTIME}
95 whenChanged: ${LDAPTIME}
96 uSNCreated: 1
97 uSNChanged: 1
98 showInAdvancedViewOnly: FALSE
99 name: Users
100 objectGUID: ${NEWGUID}
101 systemFlags: 0x8c000000
102 objectCategory: CN=Container,CN=Schema,CN=Configuration,${BASEDN}
103 isCriticalSystemObject: TRUE
104
105 dn: CN=Computers,${BASEDN}
106 objectClass: top
107 objectClass: container
108 cn: Computers
109 description: Default container for upgraded computer accounts
110 instanceType: 4
111 whenCreated: ${LDAPTIME}
112 whenChanged: ${LDAPTIME}
113 uSNCreated: 1
114 uSNChanged: 1
115 showInAdvancedViewOnly: FALSE
116 name: Computers
117 objectGUID: ${NEWGUID}
118 systemFlags: 0x8c000000
119 objectCategory: CN=Container,CN=Schema,CN=Configuration,${BASEDN}
120 isCriticalSystemObject: TRUE
121
122 dn: OU=Domain Controllers,${BASEDN}
123 objectClass: top
124 objectClass: organizationalUnit
125 ou: Domain Controllers
126 description: Default container for domain controllers
127 instanceType: 4
128 whenCreated: ${LDAPTIME}
129 whenChanged: ${LDAPTIME}
130 uSNCreated: 1
131 uSNChanged: 1
132 showInAdvancedViewOnly: FALSE
133 name: Domain Controllers
134 objectGUID: ${NEWGUID}
135 systemFlags: 0x8c000000
136 objectCategory: CN=Organizational-Unit,CN=Schema,CN=Configuration,${BASEDN}
137 isCriticalSystemObject: TRUE
138
139 dn: CN=ForeignSecurityPrincipals,${BASEDN}
140 objectClass: top
141 objectClass: container
142 cn: ForeignSecurityPrincipals
143 description: Default container for security identifiers (SIDs) associated with objects from external, trusted domains
144 instanceType: 4
145 whenCreated: ${LDAPTIME}
146 whenChanged: ${LDAPTIME}
147 uSNCreated: 1
148 uSNChanged: 1
149 showInAdvancedViewOnly: FALSE
150 name: ForeignSecurityPrincipals
151 objectGUID: ${NEWGUID}
152 systemFlags: 0x8c000000
153 objectCategory: CN=Container,CN=Schema,CN=Configuration,${BASEDN}
154 isCriticalSystemObject: TRUE
155
156 dn: CN=System,${BASEDN}
157 objectClass: top
158 objectClass: container
159 cn: System
160 description: Builtin system settings
161 instanceType: 4
162 whenCreated: ${LDAPTIME}
163 whenChanged: ${LDAPTIME}
164 uSNCreated: 1
165 uSNChanged: 1
166 showInAdvancedViewOnly: TRUE
167 name: System
168 objectGUID: ${NEWGUID}
169 systemFlags: 0x8c000000
170 objectCategory: CN=Container,CN=Schema,CN=Configuration,${BASEDN}
171 isCriticalSystemObject: TRUE
172
173 dn: CN=RID Manager$,CN=System,${BASEDN}
174 objectclass: top
175 objectclass: rIDManager
176 cn: RID Manager$
177 instanceType: 4
178 whenCreated: ${LDAPTIME}
179 whenChanged: ${LDAPTIME}
180 uSNCreated: 1
181 uSNChanged: 1
182 showInAdvancedViewOnly: TRUE
183 name: RID Manager$
184 objectGUID: ${NEWGUID}
185 systemFlags: 0x8c000000
186 objectCategory: CN=RID-Manager,CN=Schema,CN=Configuration,${BASEDN}
187 isCriticalSystemObject: TRUE
188 fSMORoleOwner: CN=NTDS Settings,CN=${NETBIOSNAME},CN=Servers,CN=${DEFAULTSITE},CN=Sites,CN=Configuration,${BASEDN}
189 rIDAvailablePool: 4611686014132423217
190
191 dn: CN=DomainUpdates,CN=System,${BASEDN}
192 objectClass: top
193 objectClass: container
194 cn: DomainUpdates
195 instanceType: 4
196 whenCreated: ${LDAPTIME}
197 whenChanged: ${LDAPTIME}
198 uSNCreated: 1
199 uSNChanged: 1
200 showInAdvancedViewOnly: TRUE
201 name: DomainUpdates
202 objectGUID: ${NEWGUID}
203 objectCategory: CN=Container,CN=Schema,CN=Configuration,${BASEDN}
204
205 dn: CN=Windows2003Update,CN=DomainUpdates,CN=System,${BASEDN}
206 objectClass: top
207 objectClass: container
208 cn: Windows2003Update
209 instanceType: 4
210 whenCreated: ${LDAPTIME}
211 whenChanged: ${LDAPTIME}
212 uSNCreated: 1
213 uSNChanged: 1
214 showInAdvancedViewOnly: TRUE
215 name: Windows2003Update
216 objectGUID: ${NEWGUID}
217 objectCategory: CN=Container,CN=Schema,CN=Configuration,${BASEDN}
218 revision: 8
219
220 dn: CN=Infrastructure,${BASEDN}
221 objectclass: top
222 objectclass: infrastructureUpdate
223 cn: Infrastructure
224 instanceType: 4
225 whenCreated: ${LDAPTIME}
226 whenChanged: ${LDAPTIME}
227 uSNCreated: 1
228 uSNChanged: 1
229 showInAdvancedViewOnly: TRUE
230 name: Infrastructure
231 objectGUID: ${NEWGUID}
232 systemFlags: 0x8c000000
233 objectCategory: CN=Infrastructure-Update,CN=Schema,CN=Configuration,${BASEDN}
234 isCriticalSystemObject: TRUE
235 fSMORoleOwner: CN=NTDS Settings,CN=${NETBIOSNAME},CN=Servers,CN=${DEFAULTSITE},CN=Sites,CN=Configuration,${BASEDN}
236
237 dn: CN=Builtin,${BASEDN}
238 objectClass: top
239 objectClass: builtinDomain
240 cn: Builtin
241 instanceType: 4
242 showInAdvancedViewOnly: FALSE
243 name: Builtin
244 forceLogoff: 0x8000000000000000
245 lockoutDuration: -18000000000
246 lockOutObservationWindow: -18000000000
247 lockoutThreshold: 0
248 maxPwdAge: -37108517437440
249 minPwdAge: 0
250 minPwdLength: 0
251 modifiedCountAtLastProm: 0
252 nextRid: 1000
253 pwdProperties: 0
254 pwdHistoryLength: 0
255 objectSid: S-1-5-32
256 serverState: 1
257 uASCompat: 1
258 modifiedCount: 1
259 objectCategory: CN=Builtin-Domain,CN=Schema,CN=Configuration,${BASEDN}
260 isCriticalSystemObject: TRUE
261
262 dn: CN=Administrator,CN=Users,${BASEDN}
263 objectClass: top
264 objectClass: person
265 objectClass: organizationalPerson
266 objectClass: user
267 cn: Administrator
268 description: Built-in account for administering the computer/domain
269 instanceType: 4
270 whenCreated: ${LDAPTIME}
271 whenChanged: ${LDAPTIME}
272 uSNCreated: 1
273 memberOf: CN=Group Policy Creator Owners,CN=Users,${BASEDN}
274 memberOf: CN=Domain Admins,CN=Users,${BASEDN}
275 memberOf: CN=Enterprise Admins,CN=Users,${BASEDN}
276 memberOf: CN=Schema Admins,CN=Users,${BASEDN}
277 memberOf: CN=Administrators,CN=Builtin,${BASEDN}
278 uSNChanged: 1
279 name: Administrator
280 objectGUID: ${NEWGUID}
281 userAccountControl: 0x10200
282 badPwdCount: 0
283 codePage: 0
284 countryCode: 0
285 badPasswordTime: 0
286 lastLogoff: 0
287 lastLogon: 0
288 pwdLastSet: 0
289 primaryGroupID: 513
290 objectSid: ${DOMAINSID}-500
291 adminCount: 1
292 accountExpires: -1
293 logonCount: 0
294 sAMAccountName: Administrator
295 sAMAccountType: 0x30000000
296 objectCategory: CN=Person,CN=Schema,CN=Configuration,${BASEDN}
297 isCriticalSystemObject: TRUE
298 unicodePwd: ${ADMINPASS}
299 unixName: root
300
301 dn: CN=Guest,CN=Users,${BASEDN}
302 objectClass: top
303 objectClass: person
304 objectClass: organizationalPerson
305 objectClass: user
306 cn: Guest
307 description: Built-in account for guest access to the computer/domain
308 instanceType: 4
309 whenCreated: ${LDAPTIME}
310 whenChanged: ${LDAPTIME}
311 uSNCreated: 1
312 memberOf: CN=Guests,CN=Builtin,${BASEDN}
313 uSNChanged: 1
314 name: Guest
315 objectGUID: ${NEWGUID}
316 userAccountControl: 0x10222
317 badPwdCount: 0
318 codePage: 0
319 countryCode: 0
320 badPasswordTime: 0
321 lastLogoff: 0
322 lastLogon: 0
323 pwdLastSet: 0
324 primaryGroupID: 514
325 objectSid: ${DOMAINSID}-501
326 accountExpires: -1
327 logonCount: 0
328 sAMAccountName: Guest
329 sAMAccountType: 0x30000000
330 objectCategory: CN=Person,CN=Schema,CN=Configuration,${BASEDN}
331 isCriticalSystemObject: TRUE
332
333 dn: CN=Administrators,CN=Builtin,${BASEDN}
334 objectClass: top
335 objectClass: group
336 cn: Administrators
337 description: Administrators have complete and unrestricted access to the computer/domain
338 member: CN=Domain Admins,CN=Users,${BASEDN}
339 member: CN=Enterprise Admins,CN=Users,${BASEDN}
340 member: CN=Administrator,CN=Users,${BASEDN}
341 instanceType: 4
342 whenCreated: ${LDAPTIME}
343 whenChanged: ${LDAPTIME}
344 uSNCreated: 1
345 uSNChanged: 1
346 name: Administrators
347 objectGUID: ${NEWGUID}
348 objectSid: S-1-5-32-544
349 adminCount: 1
350 sAMAccountName: Administrators
351 sAMAccountType: 0x20000000
352 systemFlags: 0x8c000000
353 groupType: 0x80000005
354 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
355 isCriticalSystemObject: TRUE
356 unixName: ${WHEEL}
357 privilege: SeSecurityPrivilege
358 privilege: SeBackupPrivilege
359 privilege: SeRestorePrivilege
360 privilege: SeSystemtimePrivilege
361 privilege: SeShutdownPrivilege
362 privilege: SeRemoteShutdownPrivilege
363 privilege: SeTakeOwnershipPrivilege
364 privilege: SeDebugPrivilege
365 privilege: SeSystemEnvironmentPrivilege
366 privilege: SeSystemProfilePrivilege
367 privilege: SeProfileSingleProcessPrivilege
368 privilege: SeIncreaseBasePriorityPrivilege
369 privilege: SeLoadDriverPrivilege
370 privilege: SeCreatePagefilePrivilege
371 privilege: SeIncreaseQuotaPrivilege
372 privilege: SeChangeNotifyPrivilege
373 privilege: SeUndockPrivilege
374 privilege: SeManageVolumePrivilege
375 privilege: SeImpersonatePrivilege
376 privilege: SeCreateGlobalPrivilege
377 privilege: SeEnableDelegationPrivilege
378 privilege: SeInteractiveLogonRight
379 privilege: SeNetworkLogonRight
380 privilege: SeRemoteInteractiveLogonRight
381
382
383 dn: CN=Users,CN=Builtin,${BASEDN}
384 objectClass: top
385 objectClass: group
386 cn: Users
387 description: Users are prevented from making accidental or intentional system-wide changes.  Thus, Users can run certified applications, but not most legacy applications
388 member: CN=Domain Users,CN=Users,${BASEDN}
389 instanceType: 4
390 whenCreated: ${LDAPTIME}
391 whenChanged: ${LDAPTIME}
392 uSNCreated: 1
393 uSNChanged: 1
394 name: Users
395 objectGUID: ${NEWGUID}
396 objectSid: S-1-5-32-545
397 sAMAccountName: Users
398 sAMAccountType: 0x20000000
399 systemFlags: 0x8c000000
400 groupType: 0x80000005
401 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
402 isCriticalSystemObject: TRUE
403
404 dn: CN=Guests,CN=Builtin,${BASEDN}
405 objectClass: top
406 objectClass: group
407 cn: Guests
408 description: Guests have the same access as members of the Users group by default, except for the Guest account which is further restricted
409 member: CN=Domain Guests,CN=Users,${BASEDN}
410 member: CN=Guest,CN=Users,${BASEDN}
411 instanceType: 4
412 whenCreated: ${LDAPTIME}
413 whenChanged: ${LDAPTIME}
414 uSNCreated: 1
415 uSNChanged: 1
416 name: Guests
417 objectGUID: ${NEWGUID}
418 objectSid: S-1-5-32-546
419 sAMAccountName: Guests
420 sAMAccountType: 0x20000000
421 systemFlags: 0x8c000000
422 groupType: 0x80000005
423 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
424 isCriticalSystemObject: TRUE
425 unixName: ${NOGROUP}
426
427 dn: CN=Print Operators,CN=Builtin,${BASEDN}
428 objectClass: top
429 objectClass: group
430 cn: Print Operators
431 description: Members can administer domain printers
432 instanceType: 4
433 whenCreated: ${LDAPTIME}
434 whenChanged: ${LDAPTIME}
435 uSNCreated: 1
436 uSNChanged: 1
437 name: Print Operators
438 objectGUID: ${NEWGUID}
439 objectSid: S-1-5-32-550
440 adminCount: 1
441 sAMAccountName: Print Operators
442 sAMAccountType: 0x20000000
443 systemFlags: 0x8c000000
444 groupType: 0x80000005
445 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
446 isCriticalSystemObject: TRUE
447 privilege: SeLoadDriverPrivilege
448 privilege: SeShutdownPrivilege
449 privilege: SeInteractiveLogonRight
450
451 dn: CN=Backup Operators,CN=Builtin,${BASEDN}
452 objectClass: top
453 objectClass: group
454 cn: Backup Operators
455 description: Backup Operators can override security restrictions for the sole purpose of backing up or restoring files
456 instanceType: 4
457 whenCreated: ${LDAPTIME}
458 whenChanged: ${LDAPTIME}
459 uSNCreated: 1
460 uSNChanged: 1
461 name: Backup Operators
462 objectGUID: ${NEWGUID}
463 objectSid: S-1-5-32-551
464 adminCount: 1
465 sAMAccountName: Backup Operators
466 sAMAccountType: 0x20000000
467 systemFlags: 0x8c000000
468 groupType: 0x80000005
469 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
470 isCriticalSystemObject: TRUE
471 privilege: SeBackupPrivilege
472 privilege: SeRestorePrivilege
473 privilege: SeShutdownPrivilege
474 privilege: SeInteractiveLogonRight
475
476 dn: CN=Replicator,CN=Builtin,${BASEDN}
477 objectClass: top
478 objectClass: group
479 cn: Replicator
480 description: Supports file replication in a domain
481 instanceType: 4
482 whenCreated: ${LDAPTIME}
483 whenChanged: ${LDAPTIME}
484 uSNCreated: 1
485 uSNChanged: 1
486 name: Replicator
487 objectGUID: ${NEWGUID}
488 objectSid: S-1-5-32-552
489 adminCount: 1
490 sAMAccountName: Replicator
491 sAMAccountType: 0x20000000
492 systemFlags: 0x8c000000
493 groupType: 0x80000005
494 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
495 isCriticalSystemObject: TRUE
496
497 dn: CN=Remote Desktop Users,CN=Builtin,${BASEDN}
498 objectClass: top
499 objectClass: group
500 cn: Remote Desktop Users
501 description: Members in this group are granted the right to logon remotely
502 instanceType: 4
503 whenCreated: ${LDAPTIME}
504 whenChanged: ${LDAPTIME}
505 uSNCreated: 1
506 uSNChanged: 1
507 name: Remote Desktop Users
508 objectGUID: ${NEWGUID}
509 objectSid: S-1-5-32-555
510 sAMAccountName: Remote Desktop Users
511 sAMAccountType: 0x20000000
512 systemFlags: 0x8c000000
513 groupType: 0x80000005
514 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
515 isCriticalSystemObject: TRUE
516
517 dn: CN=Network Configuration Operators,CN=Builtin,${BASEDN}
518 objectClass: top
519 objectClass: group
520 cn: Network Configuration Operators
521 description: Members in this group can have some administrative privileges to manage configuration of networking features
522 instanceType: 4
523 whenCreated: ${LDAPTIME}
524 whenChanged: ${LDAPTIME}
525 uSNCreated: 1
526 uSNChanged: 1
527 name: Network Configuration Operators
528 objectGUID: ${NEWGUID}
529 objectSid: S-1-5-32-556
530 sAMAccountName: Network Configuration Operators
531 sAMAccountType: 0x20000000
532 systemFlags: 0x8c000000
533 groupType: 0x80000005
534 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
535 isCriticalSystemObject: TRUE
536
537 dn: CN=Performance Monitor Users,CN=Builtin,${BASEDN}
538 objectClass: top
539 objectClass: group
540 cn: Performance Monitor Users
541 description: Members of this group have remote access to monitor this computer
542 instanceType: 4
543 whenCreated: ${LDAPTIME}
544 whenChanged: ${LDAPTIME}
545 uSNCreated: 1
546 uSNChanged: 1
547 name: Performance Monitor Users
548 objectGUID: ${NEWGUID}
549 objectSid: S-1-5-32-558
550 sAMAccountName: Performance Monitor Users
551 sAMAccountType: 0x20000000
552 systemFlags: 0x8c000000
553 groupType: 0x80000005
554 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
555 isCriticalSystemObject: TRUE
556
557 dn: CN=Performance Log Users,CN=Builtin,${BASEDN}
558 objectClass: top
559 objectClass: group
560 cn: Performance Log Users
561 description: Members of this group have remote access to schedule logging of performance counters on this computer
562 instanceType: 4
563 whenCreated: ${LDAPTIME}
564 whenChanged: ${LDAPTIME}
565 uSNCreated: 1
566 uSNChanged: 1
567 name: Performance Log Users
568 objectGUID: ${NEWGUID}
569 objectSid: S-1-5-32-559
570 sAMAccountName: Performance Log Users
571 sAMAccountType: 0x20000000
572 systemFlags: 0x8c000000
573 groupType: 0x80000005
574 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
575 isCriticalSystemObject: TRUE
576
577 dn: CN=${NETBIOSNAME},OU=Domain Controllers,${BASEDN}
578 objectClass: top
579 objectClass: person
580 objectClass: organizationalPerson
581 objectClass: user
582 objectClass: computer
583 cn: ${NETBIOSNAME}
584 instanceType: 4
585 whenCreated: ${LDAPTIME}
586 whenChanged: ${LDAPTIME}
587 uSNCreated: 1
588 uSNChanged: 1
589 name: ${NETBIOSNAME}
590 objectGUID: ${HOSTGUID}
591 userAccountControl: 532480
592 badPwdCount: 0
593 codePage: 0
594 countryCode: 0
595 badPasswordTime: 0
596 lastLogoff: 0
597 lastLogon: 127273269057298624
598 localPolicyFlags: 0
599 pwdLastSet: 127258826171655328
600 primaryGroupID: 516
601 objectSid: ${DOMAINSID}-1000
602 accountExpires: 9223372036854775807
603 logonCount: 30
604 sAMAccountName: ${NETBIOSNAME}$
605 sAMAccountType: 805306369
606 operatingSystem: Samba
607 operatingSystemVersion: 4.0
608 dNSHostName: ${DNSNAME}
609 objectCategory: CN=Computer,CN=Schema,CN=Configuration,${BASEDN}
610 isCriticalSystemObject: TRUE
611 unicodePwd: ${JOINPASS}
612 servicePrincipalName: HOST/${DNSNAME}
613 servicePrincipalName: HOST/${NETBIOSNAME}
614 servicePrincipalName: CIFS/${DNSNAME}
615 servicePrincipalName: CIFS/${NETBIOSNAME}
616 servicePrincipalName: LDAP/${DNSNAME}
617 servicePrincipalName: LDAP/${NETBIOSNAME}
618
619 dn: CN=krbtgt,CN=Users,${BASEDN}
620 objectClass: top
621 objectClass: person
622 objectClass: organizationalPerson
623 objectClass: user
624 cn: krbtgt
625 description: Key Distribution Center Service Account
626 instanceType: 4
627 whenCreated: ${LDAPTIME}
628 whenChanged: ${LDAPTIME}
629 uSNCreated: 1
630 uSNChanged: 1
631 showInAdvancedViewOnly: TRUE
632 name: krbtgt
633 objectGUID: ${NEWGUID}
634 userAccountControl: 514
635 badPwdCount: 0
636 codePage: 0
637 countryCode: 0
638 badPasswordTime: 0
639 lastLogoff: 0
640 lastLogon: 0
641 pwdLastSet: 127258826179466560
642 primaryGroupID: 513
643 objectSid: ${DOMAINSID}-502
644 adminCount: 1
645 accountExpires: 9223372036854775807
646 logonCount: 0
647 sAMAccountName: krbtgt
648 sAMAccountType: 805306368
649 servicePrincipalName: kadmin/changepw
650 objectCategory: CN=Person,CN=Schema,CN=Configuration,${BASEDN}
651 isCriticalSystemObject: TRUE
652 unicodePwd: ${RANDPASS}
653
654 dn: CN=Domain Computers,CN=Users,${BASEDN}
655 objectClass: top
656 objectClass: group
657 cn: Domain Computers
658 description: All workstations and servers joined to the domain
659 instanceType: 4
660 whenCreated: ${LDAPTIME}
661 whenChanged: ${LDAPTIME}
662 uSNCreated: 1
663 uSNChanged: 1
664 name: Domain Computers
665 objectGUID: ${NEWGUID}
666 objectSid: ${DOMAINSID}-515
667 sAMAccountName: Domain Computers
668 sAMAccountType: 0x10000000
669 groupType: 0x80000002
670 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
671 isCriticalSystemObject: TRUE
672
673 dn: CN=Domain Controllers,CN=Users,${BASEDN}
674 objectClass: top
675 objectClass: group
676 cn: Domain Controllers
677 description: All domain controllers in the domain
678 instanceType: 4
679 whenCreated: ${LDAPTIME}
680 whenChanged: ${LDAPTIME}
681 uSNCreated: 1
682 uSNChanged: 1
683 name: Domain Controllers
684 objectGUID: ${NEWGUID}
685 objectSid: ${DOMAINSID}-516
686 adminCount: 1
687 sAMAccountName: Domain Controllers
688 sAMAccountType: 0x10000000
689 groupType: 0x80000002
690 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
691 isCriticalSystemObject: TRUE
692
693 dn: CN=Schema Admins,CN=Users,${BASEDN}
694 objectClass: top
695 objectClass: group
696 cn: Schema Admins
697 description: Designated administrators of the schema
698 member: CN=Administrator,CN=Users,${BASEDN}
699 instanceType: 4
700 whenCreated: ${LDAPTIME}
701 whenChanged: ${LDAPTIME}
702 uSNCreated: 1
703 uSNChanged: 1
704 name: Schema Admins
705 objectGUID: ${NEWGUID}
706 objectSid: ${DOMAINSID}-518
707 adminCount: 1
708 sAMAccountName: Schema Admins
709 sAMAccountType: 0x10000000
710 groupType: 0x80000002
711 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
712 isCriticalSystemObject: TRUE
713 unixName: ${WHEEL}
714
715 dn: CN=Enterprise Admins,CN=Users,${BASEDN}
716 objectClass: top
717 objectClass: group
718 cn: Enterprise Admins
719 description: Designated administrators of the enterprise
720 member: CN=Administrator,CN=Users,${BASEDN}
721 instanceType: 4
722 whenCreated: ${LDAPTIME}
723 whenChanged: ${LDAPTIME}
724 uSNCreated: 1
725 memberOf: CN=Administrators,CN=Builtin,${BASEDN}
726 uSNChanged: 1
727 name: Enterprise Admins
728 objectGUID: ${NEWGUID}
729 objectSid: ${DOMAINSID}-519
730 adminCount: 1
731 sAMAccountName: Enterprise Admins
732 sAMAccountType: 0x10000000
733 groupType: 0x80000002
734 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
735 isCriticalSystemObject: TRUE
736 unixName: ${WHEEL}
737
738 dn: CN=Cert Publishers,CN=Users,${BASEDN}
739 objectClass: top
740 objectClass: group
741 cn: Cert Publishers
742 description: Members of this group are permitted to publish certificates to the Active Directory
743 instanceType: 4
744 whenCreated: ${LDAPTIME}
745 whenChanged: ${LDAPTIME}
746 uSNCreated: 1
747 uSNChanged: 1
748 name: Cert Publishers
749 objectGUID: ${NEWGUID}
750 objectSid: ${DOMAINSID}-517
751 sAMAccountName: Cert Publishers
752 sAMAccountType: 0x20000000
753 groupType: 0x80000004
754 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
755 isCriticalSystemObject: TRUE
756
757 dn: CN=Domain Admins,CN=Users,${BASEDN}
758 objectClass: top
759 objectClass: group
760 cn: Domain Admins
761 description: Designated administrators of the domain
762 member: CN=Administrator,CN=Users,${BASEDN}
763 instanceType: 4
764 whenCreated: ${LDAPTIME}
765 whenChanged: ${LDAPTIME}
766 uSNCreated: 1
767 memberOf: CN=Administrators,CN=Builtin,${BASEDN}
768 uSNChanged: 1
769 name: Domain Admins
770 objectGUID: ${NEWGUID}
771 objectSid: ${DOMAINSID}-512
772 adminCount: 1
773 sAMAccountName: Domain Admins
774 sAMAccountType: 0x10000000
775 groupType: 0x80000002
776 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
777 isCriticalSystemObject: TRUE
778 unixName: ${WHEEL}
779
780 dn: CN=Domain Users,CN=Users,${BASEDN}
781 objectClass: top
782 objectClass: group
783 cn: Domain Users
784 description: All domain users
785 instanceType: 4
786 whenCreated: ${LDAPTIME}
787 whenChanged: ${LDAPTIME}
788 uSNCreated: 1
789 memberOf: CN=Users,CN=Builtin,${BASEDN}
790 uSNChanged: 1
791 name: Domain Users
792 objectGUID: ${NEWGUID}
793 objectSid: ${DOMAINSID}-513
794 sAMAccountName: Domain Users
795 sAMAccountType: 0x10000000
796 groupType: 0x80000002
797 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
798 isCriticalSystemObject: TRUE
799 unixName: ${USERS}
800
801 dn: CN=Domain Guests,CN=Users,${BASEDN}
802 objectClass: top
803 objectClass: group
804 cn: Domain Guests
805 description: All domain guests
806 instanceType: 4
807 whenCreated: ${LDAPTIME}
808 whenChanged: ${LDAPTIME}
809 uSNCreated: 1
810 memberOf: CN=Guests,CN=Builtin,${BASEDN}
811 uSNChanged: 1
812 name: Domain Guests
813 objectGUID: ${NEWGUID}
814 objectSid: ${DOMAINSID}-514
815 sAMAccountName: Domain Guests
816 sAMAccountType: 0x10000000
817 groupType: 0x80000002
818 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
819 isCriticalSystemObject: TRUE
820
821 dn: CN=Group Policy Creator Owners,CN=Users,${BASEDN}
822 objectClass: top
823 objectClass: group
824 cn: Group Policy Creator Owners
825 description: Members in this group can modify group policy for the domain
826 member: CN=Administrator,CN=Users,${BASEDN}
827 instanceType: 4
828 whenCreated: ${LDAPTIME}
829 whenChanged: ${LDAPTIME}
830 uSNCreated: 1
831 uSNChanged: 1
832 name: Group Policy Creator Owners
833 objectGUID: ${NEWGUID}
834 objectSid: ${DOMAINSID}-520
835 sAMAccountName: Group Policy Creator Owners
836 sAMAccountType: 0x10000000
837 groupType: 0x80000002
838 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
839 isCriticalSystemObject: TRUE
840 unixName: ${WHEEL}
841
842 dn: CN=RAS and IAS Servers,CN=Users,${BASEDN}
843 objectClass: top
844 objectClass: group
845 cn: RAS and IAS Servers
846 description: Servers in this group can access remote access properties of users
847 instanceType: 4
848 whenCreated: ${LDAPTIME}
849 whenChanged: ${LDAPTIME}
850 uSNCreated: 1
851 uSNChanged: 1
852 name: RAS and IAS Servers
853 objectGUID: ${NEWGUID}
854 objectSid: ${DOMAINSID}-553
855 sAMAccountName: RAS and IAS Servers
856 sAMAccountType: 0x20000000
857 groupType: 0x80000004
858 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
859 isCriticalSystemObject: TRUE
860
861 dn: CN=Server Operators,CN=Builtin,${BASEDN}
862 objectClass: top
863 objectClass: group
864 cn: Server Operators
865 description: Members can administer domain servers
866 instanceType: 4
867 whenCreated: ${LDAPTIME}
868 whenChanged: ${LDAPTIME}
869 uSNCreated: 1
870 uSNChanged: 1
871 name: Server Operators
872 objectGUID: ${NEWGUID}
873 objectSid: S-1-5-32-549
874 adminCount: 1
875 sAMAccountName: Server Operators
876 sAMAccountType: 0x20000000
877 systemFlags: 0x8c000000
878 groupType: 0x80000005
879 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
880 isCriticalSystemObject: TRUE
881 privilege: SeBackupPrivilege
882 privilege: SeSystemtimePrivilege
883 privilege: SeRemoteShutdownPrivilege
884 privilege: SeRestorePrivilege
885 privilege: SeShutdownPrivilege
886 privilege: SeInteractiveLogonRight
887
888 dn: CN=Account Operators,CN=Builtin,${BASEDN}
889 objectClass: top
890 objectClass: group
891 cn: Account Operators
892 description: Members can administer domain user and group accounts
893 instanceType: 4
894 whenCreated: ${LDAPTIME}
895 whenChanged: ${LDAPTIME}
896 uSNCreated: 1
897 uSNChanged: 1
898 name: Account Operators
899 objectGUID: ${NEWGUID}
900 objectSid: S-1-5-32-548
901 adminCount: 1
902 sAMAccountName: Account Operators
903 sAMAccountType: 0x20000000
904 systemFlags: 0x8c000000
905 groupType: 0x80000005
906 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
907 isCriticalSystemObject: TRUE
908 privilege: SeInteractiveLogonRight
909
910 dn: CN=Templates,${BASEDN}
911 objectClass: top
912 objectClass: container
913 cn: Templates
914 description: Container for SAM account templates
915 instanceType: 4
916 whenCreated: ${LDAPTIME}
917 whenChanged: ${LDAPTIME}
918 uSNCreated: 1
919 uSNChanged: 1
920 showInAdvancedViewOnly: TRUE
921 name: Templates
922 objectGUID: ${NEWGUID}
923 systemFlags: 0x8c000000
924 objectCategory: CN=Container,CN=Schema,CN=Configuration,${BASEDN}
925 isCriticalSystemObject: TRUE
926
927 ###
928 # note! the template users must not match normal searches. Be careful
929 # with what classes you put them in
930 ###
931
932 dn: CN=TemplateUser,CN=Templates,${BASEDN}
933 objectClass: top
934 objectClass: person
935 objectClass: organizationalPerson
936 objectClass: Template
937 objectClass: userTemplate
938 cn: TemplateUser
939 name: TemplateUser
940 instanceType: 4
941 userAccountControl: 0x202
942 badPwdCount: 0
943 codePage: 0
944 countryCode: 0
945 badPasswordTime: 0
946 lastLogoff: 0
947 lastLogon: 0
948 pwdLastSet: 0
949 primaryGroupID: 513
950 accountExpires: -1
951 logonCount: 0
952 sAMAccountType: 0x30000000
953
954 dn: CN=TemplateMemberServer,CN=Templates,${BASEDN}
955 objectClass: top
956 objectClass: Template
957 objectClass: userTemplate
958 cn: TemplateMemberServer
959 name: TemplateMemberServer
960 instanceType: 4
961 userAccountControl: 0x1002
962 badPwdCount: 0
963 codePage: 0
964 countryCode: 0
965 badPasswordTime: 0
966 lastLogoff: 0
967 lastLogon: 0
968 pwdLastSet: 0
969 primaryGroupID: 513
970 accountExpires: -1
971 logonCount: 0
972 sAMAccountType: 0x30000001
973
974 dn: CN=TemplateDomainController,CN=Templates,${BASEDN}
975 objectClass: top
976 objectClass: Template
977 objectClass: userTemplate
978 cn: TemplateDomainController
979 name: TemplateDomainController
980 instanceType: 4
981 userAccountControl: 0x2002
982 badPwdCount: 0
983 codePage: 0
984 countryCode: 0
985 badPasswordTime: 0
986 lastLogoff: 0
987 lastLogon: 0
988 pwdLastSet: 0
989 primaryGroupID: 513
990 accountExpires: -1
991 logonCount: 0
992 sAMAccountType: 0x30000001
993
994 dn: CN=TemplateTrustingDomain,CN=Templates,${BASEDN}
995 objectClass: top
996 objectClass: Template
997 objectClass: userTemplate
998 cn: TemplateTrustingDomain
999 name: TemplateTrustingDomain
1000 instanceType: 4
1001 userAccountControl: 0x820
1002 badPwdCount: 0
1003 codePage: 0
1004 countryCode: 0
1005 badPasswordTime: 0
1006 lastLogoff: 0
1007 lastLogon: 0
1008 pwdLastSet: 0
1009 primaryGroupID: 513
1010 accountExpires: -1
1011 logonCount: 0
1012 sAMAccountType: 0x30000002
1013
1014 dn: CN=TemplateGroup,CN=Templates,${BASEDN}
1015 objectClass: top
1016 objectClass: Template
1017 objectClass: groupTemplate
1018 cn: TemplateGroup
1019 name: TemplateGroup
1020 instanceType: 4
1021 groupType: 0x80000002
1022 sAMAccountType: 0x10000000
1023
1024 dn: CN=TemplateAlias,CN=Templates,${BASEDN}
1025 objectClass: top
1026 objectClass: Template
1027 objectClass: aliasTemplate
1028 cn: TemplateAlias
1029 name: TemplateAlias
1030 instanceType: 4
1031 groupType: 0x80000004
1032 sAMAccountType: 0x10000000
1033
1034 dn: CN=TemplateForeignSecurityPrincipal,CN=Templates,${BASEDN}
1035 objectClass: top
1036 objectClass: Template
1037 objectClass: foreignSecurityPrincipalTemplate
1038 cn: TemplateForeignSecurityPrincipal
1039 name: TemplateForeignSecurityPrincipal
1040
1041 dn: CN=TemplateSecret,CN=Templates,${BASEDN}
1042 objectClass: top
1043 objectClass: leaf
1044 objectClass: Template
1045 objectClass: secretTemplate
1046 cn: TemplateSecret
1047 name: TemplateSecret
1048 instanceType: 4
1049
1050 dn: CN=TemplateTrustedDomain,CN=Templates,${BASEDN}
1051 objectClass: top
1052 objectClass: leaf
1053 objectClass: Template
1054 objectClass: trustedDomainTemplate
1055 cn: TemplateTrustedDomain
1056 name: TemplateTrustedDomain
1057 instanceType: 4
1058
1059 ###############################
1060 # Configuration Naming Context
1061 ###############################
1062 dn: CN=Configuration,${BASEDN}
1063 objectClass: top
1064 objectClass: configuration
1065 cn: Configuration
1066 instanceType: 13
1067 whenCreated: ${LDAPTIME}
1068 whenChanged: ${LDAPTIME}
1069 uSNCreated: ${USN}
1070 uSNChanged: ${USN}
1071 showInAdvancedViewOnly: TRUE
1072 name: Configuration
1073 objectGUID: ${NEWGUID}
1074 objectCategory: CN=Configuration,CN=Schema,CN=Configuration,${BASEDN}
1075 subRefs: CN=Schema,CN=Configuration,${BASEDN}
1076 masteredBy: CN=NTDS Settings,CN=${NETBIOSNAME},CN=Servers,CN=${DEFAULTSITE},CN=Sites,CN=Configuration,${BASEDN}
1077 msDs-masteredBy: CN=NTDS Settings,CN=${NETBIOSNAME},CN=Servers,CN=${DEFAULTSITE},CN=Sites,CN=Configuration,${BASEDN}
1078
1079 dn: CN=Partitions,CN=Configuration,${BASEDN}
1080 objectClass: top
1081 objectClass: crossRefContainer
1082 cn: Partitions
1083 instanceType: 4
1084 whenCreated: ${LDAPTIME}
1085 whenChanged: ${LDAPTIME}
1086 uSNCreated: ${USN}
1087 uSNChanged: ${USN}
1088 showInAdvancedViewOnly: TRUE
1089 name: Partitions
1090 objectGUID: ${NEWGUID}
1091 systemFlags: 0x80000000
1092 objectCategory: CN=Cross-Ref-Container,CN=Schema,CN=Configuration,${BASEDN}
1093 msDS-Behavior-Version: 0
1094 fSMORoleOwner: CN=NTDS Settings,CN=${NETBIOSNAME},CN=Servers,CN=${DEFAULTSITE},CN=Sites,CN=Configuration,${BASEDN}
1095
1096 dn: CN=Enterprise Configuration,CN=Partitions,CN=Configuration,${BASEDN}
1097 objectClass: top
1098 objectClass: crossRef
1099 cn: Enterprise Configuration
1100 instanceType: 4
1101 whenCreated: ${LDAPTIME}
1102 whenChanged: ${LDAPTIME}
1103 uSNCreated: ${USN}
1104 uSNChanged: ${USN}
1105 showInAdvancedViewOnly: TRUE
1106 name: Enterprise Configuration
1107 objectGUID: ${NEWGUID}
1108 systemFlags: 0x00000001
1109 objectCategory: CN=Cross-Ref,CN=Schema,CN=Configuration,${BASEDN}
1110 nCName: CN=Configuration,${BASEDN}
1111 dnsRoot: ${DNSDOMAIN}
1112
1113 dn: CN=Enterprise Schema,CN=Partitions,CN=Configuration,${BASEDN}
1114 objectClass: top
1115 objectClass: crossRef
1116 cn: Enterprise Schema
1117 instanceType: 4
1118 whenCreated: ${LDAPTIME}
1119 whenChanged: ${LDAPTIME}
1120 uSNCreated: ${USN}
1121 uSNChanged: ${USN}
1122 showInAdvancedViewOnly: TRUE
1123 name: Enterprise Schema
1124 objectGUID: ${NEWGUID}
1125 systemFlags: 0x00000001
1126 objectCategory: CN=Cross-Ref,CN=Schema,CN=Configuration,${BASEDN}
1127 nCName: CN=Schema,CN=Configuration,${BASEDN}
1128 dnsRoot: ${DNSDOMAIN}
1129
1130 dn: CN=${DOMAIN},CN=Partitions,CN=Configuration,${BASEDN}
1131 objectClass: top
1132 objectClass: crossRef
1133 cn: ${DOMAIN}
1134 instanceType: 4
1135 whenCreated: ${LDAPTIME}
1136 whenChanged: ${LDAPTIME}
1137 uSNCreated: ${USN}
1138 uSNChanged: ${USN}
1139 showInAdvancedViewOnly: TRUE
1140 name: ${DOMAIN}
1141 objectGUID: ${NEWGUID}
1142 systemFlags: 0x00000003
1143 objectCategory: CN=Cross-Ref,CN=Schema,CN=Configuration,${BASEDN}
1144 nCName: ${BASEDN}
1145 nETBIOSName: ${DOMAIN}
1146 dnsRoot: ${DNSDOMAIN}
1147
1148 dn: CN=Sites,CN=Configuration,${BASEDN}
1149 objectClass: top
1150 objectClass: sitesContainer
1151 cn: Sites
1152 instanceType: 4
1153 whenCreated: ${LDAPTIME}
1154 whenChanged: ${LDAPTIME}
1155 uSNCreated: ${USN}
1156 uSNChanged: ${USN}
1157 showInAdvancedViewOnly: TRUE
1158 name: Sites
1159 objectGUID: ${NEWGUID}
1160 systemFlags: 0x82000000
1161 objectCategory: CN=Sites-Container,CN=Schema,CN=Configuration,${BASEDN}
1162
1163 dn: CN=${DEFAULTSITE},CN=Sites,CN=Configuration,${BASEDN}
1164 objectClass: top
1165 objectClass: site
1166 cn: Sites
1167 instanceType: 4
1168 whenCreated: ${LDAPTIME}
1169 whenChanged: ${LDAPTIME}
1170 uSNCreated: ${USN}
1171 uSNChanged: ${USN}
1172 showInAdvancedViewOnly: TRUE
1173 name: Sites
1174 objectGUID: ${NEWGUID}
1175 systemFlags: 0x82000000
1176 objectCategory: CN=Site,CN=Schema,CN=Configuration,${BASEDN}
1177
1178 dn: CN=Servers,CN=${DEFAULTSITE},CN=Sites,CN=Configuration,${BASEDN}
1179 objectClass: top
1180 objectClass: serversContainer
1181 cn: Servers
1182 instanceType: 4
1183 whenCreated: ${LDAPTIME}
1184 whenChanged: ${LDAPTIME}
1185 uSNCreated: ${USN}
1186 uSNChanged: ${USN}
1187 showInAdvancedViewOnly: TRUE
1188 name: Servers
1189 objectGUID: ${NEWGUID}
1190 systemFlags: 0x82000000
1191 objectCategory: CN=Servers-Container,CN=Schema,CN=Configuration,${BASEDN}
1192
1193 dn: CN=${NETBIOSNAME},CN=Servers,CN=${DEFAULTSITE},CN=Sites,CN=Configuration,${BASEDN}
1194 objectClass: top
1195 objectClass: server
1196 cn: ${NETBIOSNAME}
1197 instanceType: 4
1198 whenCreated: ${LDAPTIME}
1199 whenChanged: ${LDAPTIME}
1200 uSNCreated: ${USN}
1201 uSNChanged: ${USN}
1202 showInAdvancedViewOnly: TRUE
1203 name: ${NETBIOSNAME}
1204 objectGUID: ${NEWGUID}
1205 systemFlags: 0x52000000
1206 objectCategory: CN=Server,CN=Schema,CN=Configuration,${BASEDN}
1207 dNSHostName: ${DNSNAME}
1208 serverReference: CN=${NETBIOSNAME},OU=Domain Controllers,${BASEDN}
1209
1210 dn: CN=NTDS Settings,CN=${NETBIOSNAME},CN=Servers,CN=${DEFAULTSITE},CN=Sites,CN=Configuration,${BASEDN}
1211 objectClass: top
1212 objectClass: applicationSettings
1213 objectClass: nTDSDSA
1214 cn: NTDS Settings
1215 instanceType: 4
1216 whenCreated: ${LDAPTIME}
1217 whenChanged: ${LDAPTIME}
1218 uSNCreated: ${USN}
1219 uSNChanged: ${USN}
1220 showInAdvancedViewOnly: TRUE
1221 name: NTDS Settings
1222 systemFlags: 0x02000000
1223 objectCategory: CN=NTDS-DSA,CN=Schema,CN=Configuration,${BASEDN}
1224 dMDLocation: CN=Schema,CN=Configuration,${BASEDN}
1225 objectGUID: ${INVOCATIONID}
1226 invocationId: ${INVOCATIONID}
1227 msDS-Behavior-Version: 2
1228
1229 ###############################
1230 # Schema Naming Context
1231 ###############################
1232 dn: CN=Schema,CN=Configuration,${BASEDN}
1233 objectClass: top
1234 objectClass: dMD
1235 cn: Schema
1236 instanceType: 13
1237 whenCreated: ${LDAPTIME}
1238 whenChanged: ${LDAPTIME}
1239 uSNCreated: ${USN}
1240 uSNChanged: ${USN}
1241 showInAdvancedViewOnly: TRUE
1242 name: Schema
1243 objectGUID: ${NEWGUID}
1244 objectCategory: CN=DMD,CN=Schema,CN=Configuration,${BASEDN}
1245 masteredBy: CN=NTDS Settings,CN=${NETBIOSNAME},CN=Servers,CN=${DEFAULTSITE},CN=Sites,CN=Configuration,${BASEDN}
1246 msDs-masteredBy: CN=NTDS Settings,CN=${NETBIOSNAME},CN=Servers,CN=${DEFAULTSITE},CN=Sites,CN=Configuration,${BASEDN}
1247 fSMORoleOwner: CN=NTDS Settings,CN=${NETBIOSNAME},CN=Servers,CN=${DEFAULTSITE},CN=Sites,CN=Configuration,${BASEDN}
1248 objectVersion: 30