3 import "security.idl", "misc.idl", "samr.idl";
6 uuid("e3514235-4b06-11d1-ab04-00c04fc2dcd2"),
8 endpoint("ncacn_np:[\\pipe\\lsass]","ncacn_np:[\\pipe\\protected_storage]", "ncacn_ip_tcp:", "ncalrpc:"),
10 helpstring("Active Directory Replication"),
11 helper("librpc/ndr/ndr_drsuapi.h"),
12 pointer_default(unique)
16 typedef bitmap samr_GroupAttrs samr_GroupAttrs;
20 typedef [bitmap32bit] bitmap {
21 DRSUAPI_SUPPORTED_EXTENSION_BASE = 0x00000001,
22 DRSUAPI_SUPPORTED_EXTENSION_ASYNC_REPLICATION = 0x00000002,
23 DRSUAPI_SUPPORTED_EXTENSION_REMOVEAPI = 0x00000004,
24 DRSUAPI_SUPPORTED_EXTENSION_MOVEREQ_V2 = 0x00000008,
25 DRSUAPI_SUPPORTED_EXTENSION_GETCHG_COMPRESS = 0x00000010,
26 DRSUAPI_SUPPORTED_EXTENSION_DCINFO_V1 = 0x00000020,
27 DRSUAPI_SUPPORTED_EXTENSION_RESTORE_USN_OPTIMIZATION = 0x00000040,
28 DRSUAPI_SUPPORTED_EXTENSION_00000080 = 0x00000080,
29 DRSUAPI_SUPPORTED_EXTENSION_KCC_EXECUTE = 0x00000100,
30 DRSUAPI_SUPPORTED_EXTENSION_ADDENTRY_V2 = 0x00000200,
31 DRSUAPI_SUPPORTED_EXTENSION_LINKED_VALUE_REPLICATION = 0x00000400,
32 DRSUAPI_SUPPORTED_EXTENSION_DCINFO_V2 = 0x00000800,
33 DRSUAPI_SUPPORTED_EXTENSION_INSTANCE_TYPE_NOT_REQ_ON_MOD= 0x00001000,
34 DRSUAPI_SUPPORTED_EXTENSION_CRYPTO_BIND = 0x00002000,
35 DRSUAPI_SUPPORTED_EXTENSION_GET_REPL_INFO = 0x00004000,
36 DRSUAPI_SUPPORTED_EXTENSION_STRONG_ENCRYPTION = 0x00008000,
37 DRSUAPI_SUPPORTED_EXTENSION_DCINFO_V01 = 0x00010000,
38 DRSUAPI_SUPPORTED_EXTENSION_TRANSITIVE_MEMBERSHIP = 0x00020000,
39 DRSUAPI_SUPPORTED_EXTENSION_ADD_SID_HISTORY = 0x00040000,
40 DRSUAPI_SUPPORTED_EXTENSION_POST_BETA3 = 0x00080000,
41 DRSUAPI_SUPPORTED_EXTENSION_00100000 = 0x00100000,
42 DRSUAPI_SUPPORTED_EXTENSION_GET_MEMBERSHIPS2 = 0x00200000,
43 DRSUAPI_SUPPORTED_EXTENSION_GETCHGREQ_V6 = 0x00400000,
44 DRSUAPI_SUPPORTED_EXTENSION_NONDOMAIN_NCS = 0x00800000,
45 DRSUAPI_SUPPORTED_EXTENSION_GETCHGREQ_V8 = 0x01000000,
46 DRSUAPI_SUPPORTED_EXTENSION_GETCHGREPLY_V5 = 0x02000000,
47 DRSUAPI_SUPPORTED_EXTENSION_GETCHGREPLY_V6 = 0x04000000,
49 * the following 3 have the same value
50 * repadmin.exe /bind says that
52 DRSUAPI_SUPPORTED_EXTENSION_ADDENTRYREPLY_V3 = 0x08000000,
53 DRSUAPI_SUPPORTED_EXTENSION_GETCHGREPLY_V7 = 0x08000000,
54 DRSUAPI_SUPPORTED_EXTENSION_VERIFY_OBJECT = 0x08000000,
55 DRSUAPI_SUPPORTED_EXTENSION_XPRESS_COMPRESS = 0x10000000,
56 DRSUAPI_SUPPORTED_EXTENSION_20000000 = 0x20000000,
57 DRSUAPI_SUPPORTED_EXTENSION_40000000 = 0x40000000,
58 DRSUAPI_SUPPORTED_EXTENSION_80000000 = 0x80000000
59 } drsuapi_SupportedExtensions;
61 /* this is used by w2k */
63 drsuapi_SupportedExtensions supported_extensions;
66 } drsuapi_DsBindInfo24;
68 /* this is used by w2k3 */
70 drsuapi_SupportedExtensions supported_extensions;
74 } drsuapi_DsBindInfo28;
77 [flag(NDR_REMAINING)] DATA_BLOB info;
78 } drsuapi_DsBindInfoFallBack;
80 typedef [nodiscriminant] union {
81 [case(24)][subcontext(4)] drsuapi_DsBindInfo24 info24;
82 [case(28)][subcontext(4)] drsuapi_DsBindInfo28 info28;
83 [default][subcontext(4)] drsuapi_DsBindInfoFallBack FallBack;
86 /* the drsuapi_DsBindInfoCtr was this before
87 * typedef [flag(NDR_PAHEX)] struct {
88 * [range(1,10000)] uint32 length;
89 * [size_is(length)] uint8 data[];
90 * } drsuapi_DsBindInfo;
92 * but we don't want the caller to manually decode this blob,
93 * so we're doing it here
97 [range(1,10000)] uint32 length;
98 [switch_is(length)] drsuapi_DsBindInfo info;
99 } drsuapi_DsBindInfoCtr;
101 /* this is a magic guid you need to pass to DsBind to make drsuapi_DsWriteAccountSpn() work
103 * maybe the bind_guid could also be the invocation_id see drsuapi_DsReplicaConnection04
105 const char *DRSUAPI_DS_BIND_GUID = "e24d201a-4fd6-11d1-a3da-0000f875ae0d";
107 * this magic guid are needed to fetch the whole tree with drsuapi_DsGetNCChanges()
108 * as administrator and this values are also used in the destination_dsa_guid field
109 * of drsuapi_DsGetNCChangesReq5/8 and the source_dsa_guid is zero.
111 const char *DRSUAPI_DS_BIND_GUID_W2K = "6abec3d1-3054-41c8-a362-5a0c5b7d5d71";
112 const char *DRSUAPI_DS_BIND_GUID_W2K3 = "6afab99c-6e26-464a-975f-f58f105218bc";
114 [public] WERROR drsuapi_DsBind(
115 [in,unique] GUID *bind_guid,
116 [in,out,unique] drsuapi_DsBindInfoCtr *bind_info,
117 [out] policy_handle *bind_handle
122 WERROR drsuapi_DsUnbind(
123 [in,out] policy_handle *bind_handle
128 typedef [public,gensize] struct {
129 [value(ndr_size_drsuapi_DsReplicaObjectIdentifier(r, ndr->flags)-4)] uint32 __ndr_size;
130 [value(ndr_size_dom_sid28(&sid, ndr->flags))] uint32 __ndr_size_sid;
133 [flag(STR_SIZE4|STR_CHARLEN|STR_CONFORMANT)] string dn;
134 } drsuapi_DsReplicaObjectIdentifier;
136 typedef [public] bitmap {
137 DRSUAPI_DS_REPLICA_SYNC_ASYNCHRONOUS_OPERATION = 0x00000001,
138 DRSUAPI_DS_REPLICA_SYNC_WRITEABLE = 0x00000002,
139 DRSUAPI_DS_REPLICA_SYNC_PERIODIC = 0x00000004,
140 DRSUAPI_DS_REPLICA_SYNC_INTERSITE_MESSAGING = 0x00000008,
141 DRSUAPI_DS_REPLICA_SYNC_ALL_SOURCES = 0x00000010,
142 DRSUAPI_DS_REPLICA_SYNC_FULL = 0x00000020,
143 DRSUAPI_DS_REPLICA_SYNC_URGENT = 0x00000040,
144 DRSUAPI_DS_REPLICA_SYNC_NO_DISCARD = 0x00000080,
145 DRSUAPI_DS_REPLICA_SYNC_FORCE = 0x00000100,
146 DRSUAPI_DS_REPLICA_SYNC_ADD_REFERENCE = 0x00000200,
147 DRSUAPI_DS_REPLICA_SYNC_NEVER_COMPLETED = 0x00000400,
148 DRSUAPI_DS_REPLICA_SYNC_TWO_WAY = 0x00000800,
149 DRSUAPI_DS_REPLICA_SYNC_NEVER_NOTIFY = 0x00001000,
150 DRSUAPI_DS_REPLICA_SYNC_INITIAL = 0x00002000,
151 DRSUAPI_DS_REPLICA_SYNC_USE_COMPRESSION = 0x00004000,
152 DRSUAPI_DS_REPLICA_SYNC_ABANDONED = 0x00008000,
153 DRSUAPI_DS_REPLICA_SYNC_INITIAL_IN_PROGRESS = 0x00010000,
154 DRSUAPI_DS_REPLICA_SYNC_PARTIAL_ATTRIBUTE_SET = 0x00020000,
155 DRSUAPI_DS_REPLICA_SYNC_REQUEUE = 0x00040000,
156 DRSUAPI_DS_REPLICA_SYNC_NOTIFICATION = 0x00080000,
157 DRSUAPI_DS_REPLICA_SYNC_ASYNCHRONOUS_REPLICA = 0x00100000,
158 DRSUAPI_DS_REPLICA_SYNC_CRITICAL = 0x00200000,
159 DRSUAPI_DS_REPLICA_SYNC_FULL_IN_PROGRESS = 0x00400000,
160 DRSUAPI_DS_REPLICA_SYNC_PREEMPTED = 0x00800000
161 } drsuapi_DsReplicaSyncOptions;
164 drsuapi_DsReplicaObjectIdentifier *naming_context;
165 GUID source_dsa_guid;
166 astring *other_info; /* I assume this is related to the repsFromTo1OtherInfo dns_name */
167 drsuapi_DsReplicaSyncOptions options;
168 } drsuapi_DsReplicaSyncRequest1;
170 typedef [switch_type(int32)] union {
171 [case(1)] drsuapi_DsReplicaSyncRequest1 req1;
172 } drsuapi_DsReplicaSyncRequest;
174 WERROR drsuapi_DsReplicaSync(
175 [in] policy_handle *bind_handle,
177 [in,switch_is(level)] drsuapi_DsReplicaSyncRequest req
182 typedef [public] struct {
183 hyper tmp_highest_usn; /* updated after each object update */
185 hyper highest_usn; /* updated after a full replication cycle */
186 } drsuapi_DsReplicaHighWaterMark;
188 typedef [public] struct {
189 GUID source_dsa_invocation_id; /* the 'invocationId' field of the CN=NTDS Settings object */
190 hyper highest_usn; /* updated after a full replication cycle */
191 } drsuapi_DsReplicaCursor;
196 [range(0,0x100000)] uint32 count;
198 [size_is(count)] drsuapi_DsReplicaCursor cursors[];
199 } drsuapi_DsReplicaCursorCtrEx;
201 typedef [public] bitmap {
202 /* the _WRITEABLE flag indicates a replication with all attributes
206 DRSUAPI_DS_REPLICA_NEIGHBOUR_WRITEABLE = 0x00000010,
207 DRSUAPI_DS_REPLICA_NEIGHBOUR_SYNC_ON_STARTUP = 0x00000020,
208 DRSUAPI_DS_REPLICA_NEIGHBOUR_DO_SCHEDULED_SYNCS = 0x00000040,
209 DRSUAPI_DS_REPLICA_NEIGHBOUR_USE_ASYNC_INTERSIDE_TRANSPORT = 0x00000080,
210 DRSUAPI_DS_REPLICA_NEIGHBOUR_TWO_WAY_SYNC = 0x00000200,
211 DRSUAPI_DS_REPLICA_NEIGHBOUR_RETURN_OBJECT_PARENTS = 0x00000800,
212 DRSUAPI_DS_REPLICA_NEIGHBOUR_FULL_IN_PROGRESS = 0x00001000, /* was 0x00010000, */
213 DRSUAPI_DS_REPLICA_NEIGHBOUR_FULL_NEXT_PACKET = 0x00002000, /* was 0x00020000, */
214 DRSUAPI_DS_REPLICA_NEIGHBOUR_NEVER_SYNCED = 0x00200000,
215 DRSUAPI_DS_REPLICA_NEIGHBOUR_PREEMPTED = 0x01000000,
216 DRSUAPI_DS_REPLICA_NEIGHBOUR_IGNORE_CHANGE_NOTIFICATIONS = 0x04000000,
217 DRSUAPI_DS_REPLICA_NEIGHBOUR_DISABLE_SCHEDULED_SYNC = 0x08000000,
219 * the following NOTE applies to DsGetNCChangesRequest5:
220 * - the data is only compressed when 10 or more objects are replicated
221 * - but there could also be a size limit of 35 KBytes or something like that
222 * - the reply is DsGetNCChangesCtr2
223 * - maybe the same applies to DsGetNCChangesRequest8...
227 DRSUAPI_DS_REPLICA_NEIGHBOUR_COMPRESS_CHANGES = 0x10000000,
228 DRSUAPI_DS_REPLICA_NEIGHBOUR_NO_CHANGE_NOTIFICATIONS = 0x20000000,
229 DRSUAPI_DS_REPLICA_NEIGHBOUR_PARTIAL_ATTRIBUTE_SET = 0x40000000
230 } drsuapi_DsReplicaNeighbourFlags;
233 GUID destination_dsa_guid;
234 GUID source_dsa_invocation_id; /* the 'invocationId' field of the CN=NTDS Settings object */
235 [ref] drsuapi_DsReplicaObjectIdentifier *naming_context;
236 drsuapi_DsReplicaHighWaterMark highwatermark;
237 drsuapi_DsReplicaCursorCtrEx *uptodateness_vector;
238 drsuapi_DsReplicaNeighbourFlags replica_flags;
239 uint32 max_object_count; /* w2k3 uses min(133,max(100,max_object_count)) */
240 uint32 max_ndr_size; /* w2k3 seems to ignore this */
243 } drsuapi_DsGetNCChangesRequest5;
246 * In DRSUAPI all attributes with syntax 2.5.5.2
247 * are identified by uint32 values
249 * the following table shows the mapping used between the two representations
250 * e.g. - objectClass 'nTDSDSA' has governsID: 1.2.840.113556.1.5.7000.47
251 * and a UINT32-ID of '0x0017002F'.
252 * - so the OID 1.2.840.113556.1.5.7000.47 is splitted into a
253 * OID-prefix: 1.2.840.113556.1.5.7000
254 * and a value: 47 => 0x2F
255 * - the mapping table gives a UINT32-prefix: 0x00170000
256 * - and the UINT32-ID is 0x0017002F = 0x00170000 | 0x2F
258 * This prefix mapping table is replied in the drsuapi_DsReplicaOIDMapping_Ctr
259 * array. The following are the default mappings of w2k3
261 * OID-prefix => UINT32-Id prefix
263 * 2.5.4.* => 0x00000000 (standard attributes RFC2256 core.schema)
264 * 2.5.6.* => 0x00010000 (standard object classes RFC2256 core.schema)
265 * 1.2.840.113556.1.2.* => 0x00020000
266 * 1.2.840.113556.1.3.* => 0x00030000
267 * 2.5.5.* => 0x00080000 (attributeSyntax OID's)
268 * 1.2.840.113556.1.4.* => 0x00090000
269 * 1.2.840.113556.1.5.* => 0x000A0000
270 * 2.16.840.1.113730.3.* => 0x00140000
271 * 0.9.2342.19200300.100.1.* => 0x00150000
272 * 2.16.840.1.113730.3.1.* => 0x00160000
273 * 1.2.840.113556.1.5.7000.* => 0x00170000
274 * 2.5.21.* => 0x00180000 (attrs for SubSchema)
275 * 2.5.18.* => 0x00190000 (createTimeStamp,modifyTimeStamp, SubSchema)
276 * 2.5.20.* => 0x001A0000
277 * 1.3.6.1.4.1.1466.101.119.* => 0x001B0000 (dynamicObject, entryTTL)
278 * 2.16.840.1.113730.3.2.* => 0x001C0000
279 * 1.3.6.1.4.1.250.1.* => 0x001D0000
280 * 1.2.840.113549.1.9.* => 0x001E0000 (unstructuredAddress,unstructuredName)
281 * 0.9.2342.19200300.100.4.* => 0x001F0000
283 * Here's a list of used 'attributeSyntax' OID's
285 * 2.5.5.1 => Object(DS-DN) string
286 * struct drsuapi_DsObjectIdentifier3
288 * 2.5.5.2 => OID-string
289 * => all values are represented as uint32 values in drsuapi
290 * => governsID, attributeID and attributeSyntax returned as OID-Strings in LDAP
291 * => mayContain, mustContain and all other attributes with 2.5.5.2 syntax
292 * are returned as attribute names
294 * 2.5.5.4 => String(Teletex) case-insensitive string with teletex charset
296 * 2.5.5.5 => String(IA5) case-sensitive string
298 * 2.5.5.6 => String(Numeric)
299 * => eg. internationalISDNNumber
301 * 2.5.5.7 => Object(DN-Binary) B:<byte count>:<bytes>:<object DN>
302 * => e.g. wellKnownObjects
308 * 2.5.5.10 => DATA_BLOB
311 * 2.5.5.11 => LDAP timestring
314 * 2.5.5.12 => String(Unicode) case-insensitive string
315 * => 'standard strings'
317 * 2.5.5.13 => Object(Presentation-Address) string
318 * => used in objectClass applicationEntity
320 * 2.5.5.14 => Object(DN-String) S:<char count>:<string>:<object DN>
323 * 2.5.5.15 => ntSecurityDescriptor
327 * 2.5.5.17 => dom_sid
329 typedef [nopush,nopull] struct {
330 [range(0,10000),value(ndr_size_drsuapi_DsReplicaOID_oid(oid, 0))] uint32 __ndr_size;
331 [size_is(__ndr_size),charset(DOS)] uint8 *oid; /* it's encoded with asn1_write_OID_String() */
332 } drsuapi_DsReplicaOID;
336 drsuapi_DsReplicaOID oid;
337 } drsuapi_DsReplicaOIDMapping;
339 typedef [public] struct {
340 [range(0,0x100000)] uint32 num_mappings;
341 [size_is(num_mappings)] drsuapi_DsReplicaOIDMapping *mappings;
342 } drsuapi_DsReplicaOIDMapping_Ctr;
344 typedef [flag(NDR_PAHEX),v1_enum] enum {
345 DRSUAPI_OBJECTCLASS_top = 0x00010000,
346 DRSUAPI_OBJECTCLASS_classSchema = 0x0003000d,
347 DRSUAPI_OBJECTCLASS_attributeSchema = 0x0003000e
348 } drsuapi_DsObjectClassId;
350 typedef [flag(NDR_PAHEX),v1_enum,public] enum {
351 DRSUAPI_ATTRIBUTE_objectClass = 0x00000000,
352 DRSUAPI_ATTRIBUTE_description = 0x0000000d,
353 DRSUAPI_ATTRIBUTE_member = 0x0000001f,
354 DRSUAPI_ATTRIBUTE_instanceType = 0x00020001,
355 DRSUAPI_ATTRIBUTE_whenCreated = 0x00020002,
356 DRSUAPI_ATTRIBUTE_hasMasterNCs = 0x0002000e,
357 DRSUAPI_ATTRIBUTE_governsID = 0x00020016,
358 DRSUAPI_ATTRIBUTE_attributeID = 0x0002001e,
359 DRSUAPI_ATTRIBUTE_attributeSyntax = 0x00020020,
360 DRSUAPI_ATTRIBUTE_isSingleValued = 0x00020021,
361 DRSUAPI_ATTRIBUTE_rangeLower = 0x00020022,
362 DRSUAPI_ATTRIBUTE_rangeUpper = 0x00020023,
363 DRSUAPI_ATTRIBUTE_dMDLocation = 0x00020024,
364 DRSUAPI_ATTRIBUTE_objectVersion = 0x0002004c,
365 DRSUAPI_ATTRIBUTE_invocationId = 0x00020073,
366 DRSUAPI_ATTRIBUTE_showInAdvancedViewOnly = 0x000200a9,
367 DRSUAPI_ATTRIBUTE_adminDisplayName = 0x000200c2,
368 DRSUAPI_ATTRIBUTE_adminDescription = 0x000200e2,
369 DRSUAPI_ATTRIBUTE_oMSyntax = 0x000200e7,
370 DRSUAPI_ATTRIBUTE_ntSecurityDescriptor = 0x00020119,
371 DRSUAPI_ATTRIBUTE_searchFlags = 0x0002014e,
372 DRSUAPI_ATTRIBUTE_lDAPDisplayName = 0x000201cc,
373 DRSUAPI_ATTRIBUTE_name = 0x00090001,
374 DRSUAPI_ATTRIBUTE_currentValue = 0x0009001b,
375 DRSUAPI_ATTRIBUTE_objectSid = 0x00090092,
376 DRSUAPI_ATTRIBUTE_schemaIDGUID = 0x00090094,
377 DRSUAPI_ATTRIBUTE_dBCSPwd = 0x00090037,/* lmPwdHash */
378 DRSUAPI_ATTRIBUTE_unicodePwd = 0x0009005a,/* ntPwdHash */
379 DRSUAPI_ATTRIBUTE_ntPwdHistory = 0x0009005e,
380 DRSUAPI_ATTRIBUTE_priorValue = 0x00090064,
381 DRSUAPI_ATTRIBUTE_supplementalCredentials = 0x0009007d,
382 DRSUAPI_ATTRIBUTE_trustAuthIncoming = 0x00090081,
383 DRSUAPI_ATTRIBUTE_trustAuthOutgoing = 0x00090087,
384 DRSUAPI_ATTRIBUTE_lmPwdHistory = 0x000900a0,
385 DRSUAPI_ATTRIBUTE_sAMAccountName = 0x000900dd,
386 DRSUAPI_ATTRIBUTE_fSMORoleOwner = 0x00090171,
387 DRSUAPI_ATTRIBUTE_systemFlags = 0x00090177,
388 DRSUAPI_ATTRIBUTE_serverReference = 0x00090203,
389 DRSUAPI_ATTRIBUTE_serverReferenceBL = 0x00090204,
390 DRSUAPI_ATTRIBUTE_initialAuthIncoming = 0x0009021b,
391 DRSUAPI_ATTRIBUTE_initialAuthOutgoing = 0x0009021c,
392 DRSUAPI_ATTRIBUTE_wellKnownObjects = 0x0009026a,
393 DRSUAPI_ATTRIBUTE_isMemberOfPartialAttributeSet = 0x0009027f,
394 DRSUAPI_ATTRIBUTE_objectCategory = 0x0009030e,
395 DRSUAPI_ATTRIBUTE_gPLink = 0x0009037b,
396 DRSUAPI_ATTRIBUTE_msDS_Behavior_Version = 0x000905b3,
397 DRSUAPI_ATTRIBUTE_msDS_KeyVersionNumber = 0x000906f6,
398 DRSUAPI_ATTRIBUTE_msDS_HasDomainNCs = 0x0009071c,
399 DRSUAPI_ATTRIBUTE_msDS_hasMasterNCs = 0x0009072c
400 } drsuapi_DsAttributeId;
403 GUID destination_dsa_guid;
404 GUID source_dsa_invocation_id; /* the 'invocationId' field of the CN=NTDS Settings object */
405 [ref] drsuapi_DsReplicaObjectIdentifier *naming_context;
406 drsuapi_DsReplicaHighWaterMark highwatermark;
407 drsuapi_DsReplicaCursorCtrEx *uptodateness_vector;
408 drsuapi_DsReplicaNeighbourFlags replica_flags;
409 uint32 max_object_count; /* w2k3 uses min(133,max(100,max_object_count)) */
410 uint32 max_ndr_size; /* w2k3 seems to ignore this */
415 drsuapi_DsReplicaOIDMapping_Ctr mapping_ctr;
416 } drsuapi_DsGetNCChangesRequest8;
418 typedef [switch_type(int32)] union {
419 [case(5)] drsuapi_DsGetNCChangesRequest5 req5;
420 [case(8)] drsuapi_DsGetNCChangesRequest8 req8;
421 } drsuapi_DsGetNCChangesRequest;
423 typedef [public] struct {
424 GUID source_dsa_invocation_id; /* the 'invocationId' field of the CN=NTDS Settings object */
425 hyper highest_usn; /* updated after a full replication cycle */
426 NTTIME last_sync_success;
427 } drsuapi_DsReplicaCursor2;
432 [range(0,0x100000)] uint32 count;
434 [size_is(count)] drsuapi_DsReplicaCursor2 cursors[];
435 } drsuapi_DsReplicaCursor2CtrEx;
437 /* Generic DATA_BLOB values */
439 [range(0,10485760),value(ndr_size_DATA_BLOB(0,blob,0))] uint32 __ndr_size;
441 } drsuapi_DsAttributeValue;
444 [range(0,10485760)] uint32 num_values;
445 [size_is(num_values)] drsuapi_DsAttributeValue *values;
446 } drsuapi_DsAttributeValueCtr;
448 /* DN String values */
449 typedef [public,gensize] struct {
450 [value(ndr_size_drsuapi_DsReplicaObjectIdentifier3(r, ndr->flags))] uint32 __ndr_size;
451 [value(ndr_size_dom_sid28(&sid,ndr->flags))] uint32 __ndr_size_sid;
454 [flag(STR_SIZE4|STR_CHARLEN)] string dn;
455 } drsuapi_DsReplicaObjectIdentifier3;
457 typedef [public,gensize] struct {
458 [value(ndr_size_drsuapi_DsReplicaObjectIdentifier3Binary(r, ndr->flags))] uint32 __ndr_size;
459 [value(ndr_size_dom_sid28(&sid,ndr->flags))] uint32 __ndr_size_sid;
462 [flag(STR_SIZE4|STR_CHARLEN)] string dn;
463 [value(binary.length + 4)] uint32 __ndr_size_binary;
464 [flag(NDR_REMAINING)] DATA_BLOB binary;
465 } drsuapi_DsReplicaObjectIdentifier3Binary;
467 typedef [public] struct {
468 drsuapi_DsAttributeId attid;
469 drsuapi_DsAttributeValueCtr value_ctr;
470 } drsuapi_DsReplicaAttribute;
473 [range(0,1048576)] uint32 num_attributes;
474 [size_is(num_attributes)] drsuapi_DsReplicaAttribute *attributes;
475 } drsuapi_DsReplicaAttributeCtr;
477 typedef [public] struct {
478 drsuapi_DsReplicaObjectIdentifier *identifier;
480 drsuapi_DsReplicaAttributeCtr attribute_ctr;
481 } drsuapi_DsReplicaObject;
485 NTTIME_1sec originating_change_time;
486 GUID originating_invocation_id;
487 hyper originating_usn;
488 } drsuapi_DsReplicaMetaData;
490 typedef [public] struct {
491 [range(0,1048576)] uint32 count;
492 [size_is(count)] drsuapi_DsReplicaMetaData meta_data[];
493 } drsuapi_DsReplicaMetaDataCtr;
495 typedef [public,noprint] struct {
496 drsuapi_DsReplicaObjectListItemEx *next_object;
497 drsuapi_DsReplicaObject object;
499 GUID *parent_object_guid;
500 drsuapi_DsReplicaMetaDataCtr *meta_data_ctr;
501 } drsuapi_DsReplicaObjectListItemEx;
503 typedef [public,gensize] struct {
504 GUID source_dsa_guid; /* the 'objectGUID' field of the CN=NTDS Settings object */
505 GUID source_dsa_invocation_id; /* the 'invocationId' field of the CN=NTDS Settings object */
506 drsuapi_DsReplicaObjectIdentifier *naming_context;
507 drsuapi_DsReplicaHighWaterMark old_highwatermark;
508 drsuapi_DsReplicaHighWaterMark new_highwatermark;
509 drsuapi_DsReplicaCursorCtrEx *uptodateness_vector;
510 drsuapi_DsReplicaOIDMapping_Ctr mapping_ctr;
511 uint32 total_object_count;
513 /* this +55 is sometimes +56, so I don't know where this comes from... --metze */
514 [value(ndr_size_drsuapi_DsGetNCChangesCtr1(r,ndr->flags)+55)] uint32 __ndr_size;
515 drsuapi_DsReplicaObjectListItemEx *first_object;
517 } drsuapi_DsGetNCChangesCtr1;
520 * if the DRSUAPI_DS_LINKED_ATTRIBUTE_FLAG_ACTIVE flag
521 * isn't there it means the value is deleted
523 typedef [public] bitmap {
524 DRSUAPI_DS_LINKED_ATTRIBUTE_FLAG_ACTIVE = 0x00000001
525 } drsuapi_DsLinkedAttributeFlags;
527 typedef [public] struct {
528 drsuapi_DsReplicaObjectIdentifier *identifier;
529 drsuapi_DsAttributeId attid;
530 drsuapi_DsAttributeValue value;
531 drsuapi_DsLinkedAttributeFlags flags;
532 NTTIME_1sec originating_add_time;
533 drsuapi_DsReplicaMetaData meta_data;
534 } drsuapi_DsReplicaLinkedAttribute;
536 typedef [public,gensize] struct {
537 GUID source_dsa_guid; /* the 'objectGUID' field of the CN=NTDS Settings object */
538 GUID source_dsa_invocation_id; /* the 'invocationId' field of the CN=NTDS Settings object */
539 drsuapi_DsReplicaObjectIdentifier *naming_context;
540 drsuapi_DsReplicaHighWaterMark old_highwatermark;
541 drsuapi_DsReplicaHighWaterMark new_highwatermark;
542 drsuapi_DsReplicaCursor2CtrEx *uptodateness_vector;
543 drsuapi_DsReplicaOIDMapping_Ctr mapping_ctr;
544 uint32 total_object_count;
546 /* this +55 is sometimes +56, so I don't know where this comes from... --metze */
547 [value(ndr_size_drsuapi_DsGetNCChangesCtr6(r,ndr->flags)+55)] uint32 __ndr_size;
548 drsuapi_DsReplicaObjectListItemEx *first_object;
552 [range(0,1048576)] uint32 linked_attributes_count;
553 [size_is(linked_attributes_count)] drsuapi_DsReplicaLinkedAttribute *linked_attributes;
555 } drsuapi_DsGetNCChangesCtr6;
558 uint32 decompressed_length;
559 uint32 compressed_length;
560 [subcontext(4),subcontext_size(compressed_length),
561 compression(NDR_COMPRESSION_MSZIP,compressed_length,decompressed_length)]
562 drsuapi_DsGetNCChangesCtr1 *ctr1;
563 } drsuapi_DsGetNCChangesMSZIPCtr1;
566 uint32 decompressed_length;
567 uint32 compressed_length;
568 [subcontext(4),subcontext_size(compressed_length),
569 compression(NDR_COMPRESSION_MSZIP,compressed_length,decompressed_length)]
570 drsuapi_DsGetNCChangesCtr6 *ctr6;
571 } drsuapi_DsGetNCChangesMSZIPCtr6;
574 uint32 decompressed_length;
575 uint32 compressed_length;
576 [subcontext(4),subcontext_size(compressed_length),
577 compression(NDR_COMPRESSION_XPRESS,compressed_length,decompressed_length),
578 flag(NDR_REMAINING)] DATA_BLOB *decompressed;
579 } drsuapi_DsGetNCChangesXPRESSCtr1;
582 uint32 decompressed_length;
583 uint32 compressed_length;
584 [subcontext(4),subcontext_size(compressed_length),
585 compression(NDR_COMPRESSION_XPRESS,compressed_length,decompressed_length),
586 flag(NDR_REMAINING)] DATA_BLOB *decompressed;
587 } drsuapi_DsGetNCChangesXPRESSCtr6;
589 typedef [enum16bit] enum {
590 DRSUAPI_COMPRESSION_TYPE_MSZIP = 2,
591 DRSUAPI_COMPRESSION_TYPE_XPRESS = 3
592 } drsuapi_DsGetNCChangesCompressionType;
594 typedef [nodiscriminant,flag(NDR_PAHEX)] union {
595 [case(1|(DRSUAPI_COMPRESSION_TYPE_MSZIP<<16))] drsuapi_DsGetNCChangesMSZIPCtr1 mszip1;
596 [case(6|(DRSUAPI_COMPRESSION_TYPE_MSZIP<<16))] drsuapi_DsGetNCChangesMSZIPCtr6 mszip6;
597 [case(1|(DRSUAPI_COMPRESSION_TYPE_XPRESS<<16))] drsuapi_DsGetNCChangesXPRESSCtr1 xpress1;
598 [case(6|(DRSUAPI_COMPRESSION_TYPE_XPRESS<<16))] drsuapi_DsGetNCChangesXPRESSCtr6 xpress6;
599 } drsuapi_DsGetNCChangesCompressedCtr;
603 * this is a bit ugly, as the compression depends on the flags
604 * in the DsBind(), but only w2k uses DsGetNCChangesReq5
605 * and will get DsGetNCChangesCtr2 replies, and w2k only knowns
606 * about MSZIP and level 1 replies
608 [switch_is(1|(DRSUAPI_COMPRESSION_TYPE_MSZIP<<16))] drsuapi_DsGetNCChangesCompressedCtr ctr;
609 } drsuapi_DsGetNCChangesCtr2;
612 [range(0,6)] int32 level;
613 [range(2,3)] drsuapi_DsGetNCChangesCompressionType type;
614 [switch_is(level | (type<<16))] drsuapi_DsGetNCChangesCompressedCtr ctr;
615 } drsuapi_DsGetNCChangesCtr7;
617 typedef [switch_type(int32)] union {
618 [case(1)] drsuapi_DsGetNCChangesCtr1 ctr1;
619 [case(2)] drsuapi_DsGetNCChangesCtr2 ctr2;
620 [case(6)] drsuapi_DsGetNCChangesCtr6 ctr6;
621 [case(7)] drsuapi_DsGetNCChangesCtr7 ctr7;
622 } drsuapi_DsGetNCChangesCtr;
624 WERROR drsuapi_DsGetNCChanges(
625 [in] policy_handle *bind_handle,
626 [in,out,ref] int32 *level,
627 [in,switch_is(*level)] drsuapi_DsGetNCChangesRequest req,
628 [out,switch_is(*level)] drsuapi_DsGetNCChangesCtr ctr
634 DRSUAPI_DS_REPLICA_UPDATE_ASYNCHRONOUS_OPERATION = 0x00000001,
635 DRSUAPI_DS_REPLICA_UPDATE_WRITEABLE = 0x00000002,
636 DRSUAPI_DS_REPLICA_UPDATE_ADD_REFERENCE = 0x00000004,
637 DRSUAPI_DS_REPLICA_UPDATE_DELETE_REFERENCE = 0x00000008,
638 DRSUAPI_DS_REPLICA_UPDATE_0x00000010 = 0x00000010
639 } drsuapi_DsReplicaUpdateRefsOptions;
642 [ref] drsuapi_DsReplicaObjectIdentifier *naming_context;
643 [ref,charset(DOS),string] uint8 *dest_dsa_dns_name;
645 drsuapi_DsReplicaUpdateRefsOptions options;
646 } drsuapi_DsReplicaUpdateRefsRequest1;
648 typedef [switch_type(int32)] union {
649 [case(1)] drsuapi_DsReplicaUpdateRefsRequest1 req1;
650 } drsuapi_DsReplicaUpdateRefsRequest;
652 WERROR drsuapi_DsReplicaUpdateRefs(
653 [in] policy_handle *bind_handle,
655 [in,switch_is(level)] drsuapi_DsReplicaUpdateRefsRequest req
661 DRSUAPI_DS_REPLICA_ADD_ASYNCHRONOUS_OPERATION = 0x00000001,
662 DRSUAPI_DS_REPLICA_ADD_WRITEABLE = 0x00000002
664 } drsuapi_DsReplicaAddOptions;
666 WERROR DRSUAPI_REPLICA_ADD();
671 DRSUAPI_DS_REPLICA_DELETE_ASYNCHRONOUS_OPERATION = 0x00000001,
672 DRSUAPI_DS_REPLICA_DELETE_WRITEABLE = 0x00000002
674 } drsuapi_DsReplicaDeleteOptions;
676 WERROR DRSUAPI_REPLICA_DEL();
681 DRSUAPI_DS_REPLICA_MODIFY_ASYNCHRONOUS_OPERATION = 0x00000001,
682 DRSUAPI_DS_REPLICA_MODIFY_WRITEABLE = 0x00000002
683 } drsuapi_DsReplicaModifyOptions;
685 WERROR DRSUAPI_REPLICA_MODIFY();
689 WERROR DRSUAPI_VERIFY_NAMES();
694 /* how are type 4 and 7 different from 2 and 3 ? */
695 typedef [v1_enum] enum {
696 DRSUAPI_DS_MEMBERSHIP_TYPE_UNIVERSAL_AND_DOMAIN_GROUPS = 1,
697 DRSUAPI_DS_MEMBERSHIP_TYPE_DOMAIN_LOCAL_GROUPS = 2,
698 DRSUAPI_DS_MEMBERSHIP_TYPE_DOMAIN_GROUPS = 3,
699 DRSUAPI_DS_MEMBERSHIP_TYPE_DOMAIN_LOCAL_GROUPS2 = 4,
700 DRSUAPI_DS_MEMBERSHIP_TYPE_UNIVERSAL_GROUPS = 5,
701 DRSUAPI_DS_MEMBERSHIP_TYPE_GROUPMEMBERS = 6,
702 DRSUAPI_DS_MEMBERSHIP_TYPE_DOMAIN_GROUPS2 = 7
703 } drsuapi_DsMembershipType;
707 [range(0,10000)] uint32 num_memberships;
708 [range(0,10000)] uint32 num_sids;
709 [size_is(num_memberships)] drsuapi_DsReplicaObjectIdentifier **info_array;
710 [size_is(num_memberships)] samr_GroupAttrs *group_attrs;
711 [size_is(num_sids)] dom_sid28 **sids;
712 } drsuapi_DsGetMembershipsCtr1;
714 typedef [switch_type(int32)] union {
715 [case(1)] drsuapi_DsGetMembershipsCtr1 ctr1;
716 } drsuapi_DsGetMembershipsCtr;
718 const int DRSUAPI_DS_MEMBERSHIP_FLAG_GROUP_ATTR = 0x1;
721 [range(1,10000)] uint32 count;
722 [size_is(count)] drsuapi_DsReplicaObjectIdentifier **info_array;
724 drsuapi_DsMembershipType type;
725 drsuapi_DsReplicaObjectIdentifier *domain;
726 } drsuapi_DsGetMembershipsRequest1;
728 typedef [switch_type(int32)] union {
729 [case(1)] drsuapi_DsGetMembershipsRequest1 req1;
730 } drsuapi_DsGetMembershipsRequest;
732 WERROR drsuapi_DsGetMemberships(
733 [in] policy_handle *bind_handle,
734 [in,out] int32 level,
735 [in] [switch_is(level)] drsuapi_DsGetMembershipsRequest req,
736 [out] [switch_is(level)] drsuapi_DsGetMembershipsCtr ctr
741 WERROR DRSUAPI_INTER_DOMAIN_MOVE();
748 [range(0,0x00A00000)] uint32 length;
749 [size_is(length)] uint8 *data;
750 } drsuapi_DsGetNT4ChangeLogRequest1;
752 typedef [switch_type(uint32)] union {
753 [case(1)] drsuapi_DsGetNT4ChangeLogRequest1 req1;
754 } drsuapi_DsGetNT4ChangeLogRequest;
757 [range(0,0x00A00000)] uint32 length1;
758 [range(0,0x00A00000)] uint32 length2;
766 [size_is(length1)] uint8 *data1;
767 [size_is(length2)] uint8 *data2;
768 } drsuapi_DsGetNT4ChangeLogInfo1;
770 typedef [switch_type(uint32)] union {
771 [case(1)] drsuapi_DsGetNT4ChangeLogInfo1 info1;
772 } drsuapi_DsGetNT4ChangeLogInfo;
774 WERROR drsuapi_DsGetNT4ChangeLog(
775 [in] policy_handle *bind_handle,
776 [in,out] uint32 level,
777 [in] [switch_is(level)] drsuapi_DsGetNT4ChangeLogRequest req,
778 [out] [switch_is(level)] drsuapi_DsGetNT4ChangeLogInfo info
783 typedef [v1_enum] enum {
784 DRSUAPI_DS_NAME_STATUS_OK = 0,
785 DRSUAPI_DS_NAME_STATUS_RESOLVE_ERROR = 1,
786 DRSUAPI_DS_NAME_STATUS_NOT_FOUND = 2,
787 DRSUAPI_DS_NAME_STATUS_NOT_UNIQUE = 3,
788 DRSUAPI_DS_NAME_STATUS_NO_MAPPING = 4,
789 DRSUAPI_DS_NAME_STATUS_DOMAIN_ONLY = 5,
790 DRSUAPI_DS_NAME_STATUS_NO_SYNTACTICAL_MAPPING = 6,
791 DRSUAPI_DS_NAME_STATUS_TRUST_REFERRAL = 7
792 } drsuapi_DsNameStatus;
794 typedef [v1_enum] enum {
795 DRSUAPI_DS_NAME_FLAG_NO_FLAGS = 0x0,
796 DRSUAPI_DS_NAME_FLAG_SYNTACTICAL_ONLY = 0x1,
797 DRSUAPI_DS_NAME_FLAG_EVAL_AT_DC = 0x2,
798 DRSUAPI_DS_NAME_FLAG_GCVERIFY = 0x4,
799 DRSUAPI_DS_NAME_FLAG_TRUST_REFERRAL = 0x8
800 } drsuapi_DsNameFlags;
802 typedef [v1_enum] enum {
803 DRSUAPI_DS_NAME_FORMAT_UKNOWN = 0,
804 DRSUAPI_DS_NAME_FORMAT_FQDN_1779 = 1,
805 DRSUAPI_DS_NAME_FORMAT_NT4_ACCOUNT = 2,
806 DRSUAPI_DS_NAME_FORMAT_DISPLAY = 3,
807 DRSUAPI_DS_NAME_FORMAT_GUID = 6,
808 DRSUAPI_DS_NAME_FORMAT_CANONICAL = 7,
809 DRSUAPI_DS_NAME_FORMAT_USER_PRINCIPAL = 8,
810 DRSUAPI_DS_NAME_FORMAT_CANONICAL_EX = 9,
811 DRSUAPI_DS_NAME_FORMAT_SERVICE_PRINCIPAL = 10,
812 DRSUAPI_DS_NAME_FORMAT_SID_OR_SID_HISTORY = 11,
813 DRSUAPI_DS_NAME_FORMAT_DNS_DOMAIN = 12
814 } drsuapi_DsNameFormat;
817 [string,charset(UTF16)] uint16 *str;
818 } drsuapi_DsNameString;
821 uint32 codepage; /* 0x000004e4 - 1252 is german codepage*/
822 uint32 language; /* 0x00000407 - german language ID*/
823 drsuapi_DsNameFlags format_flags;
824 drsuapi_DsNameFormat format_offered;
825 drsuapi_DsNameFormat format_desired;
826 [range(1,10000)] uint32 count;
827 [size_is(count)] drsuapi_DsNameString *names;
828 } drsuapi_DsNameRequest1;
830 typedef [switch_type(int32)] union {
831 [case(1)] drsuapi_DsNameRequest1 req1;
832 } drsuapi_DsNameRequest;
835 drsuapi_DsNameStatus status;
836 [charset(UTF16),string] uint16 *dns_domain_name;
837 [charset(UTF16),string] uint16 *result_name;
838 } drsuapi_DsNameInfo1;
842 [size_is(count)] drsuapi_DsNameInfo1 *array;
843 } drsuapi_DsNameCtr1;
845 typedef [switch_type(int32)] union {
846 [case(1)] drsuapi_DsNameCtr1 *ctr1;
849 WERROR drsuapi_DsCrackNames(
850 [in] policy_handle *bind_handle,
851 [in, out] int32 level,
852 [in,switch_is(level)] drsuapi_DsNameRequest req,
853 [out,switch_is(level)] drsuapi_DsNameCtr ctr
858 typedef [v1_enum] enum {
859 DRSUAPI_DS_SPN_OPERATION_ADD = 0,
860 DRSUAPI_DS_SPN_OPERATION_REPLACE= 1,
861 DRSUAPI_DS_SPN_OPERATION_DELETE = 2
862 } drsuapi_DsSpnOperation;
865 drsuapi_DsSpnOperation operation;
867 [charset(UTF16),string] uint16 *object_dn;
868 [range(0,10000)] uint32 count;
869 [size_is(count)] drsuapi_DsNameString *spn_names;
870 } drsuapi_DsWriteAccountSpnRequest1;
872 typedef [switch_type(int32)] union {
873 [case(1)] drsuapi_DsWriteAccountSpnRequest1 req1;
874 } drsuapi_DsWriteAccountSpnRequest;
878 } drsuapi_DsWriteAccountSpnResult1;
880 typedef [switch_type(int32)] union {
881 [case(1)] drsuapi_DsWriteAccountSpnResult1 res1;
882 } drsuapi_DsWriteAccountSpnResult;
884 WERROR drsuapi_DsWriteAccountSpn(
885 [in] policy_handle *bind_handle,
886 [in,out] int32 level,
887 [in,switch_is(level)] drsuapi_DsWriteAccountSpnRequest req,
888 [out,switch_is(level)] drsuapi_DsWriteAccountSpnResult res
894 [charset(UTF16),string] uint16 *server_dn;
895 [charset(UTF16),string] uint16 *domain_dn;
896 uint32 unknown; /* 0x000000001 */
897 } drsuapi_DsRemoveDSServerRequest1;
899 typedef [switch_type(int32)] union {
900 [case(1)] drsuapi_DsRemoveDSServerRequest1 req1;
901 } drsuapi_DsRemoveDSServerRequest;
905 } drsuapi_DsRemoveDSServerResult1;
907 typedef [switch_type(int32)] union {
908 [case(1)] drsuapi_DsRemoveDSServerResult1 res1;
909 } drsuapi_DsRemoveDSServerResult;
911 WERROR drsuapi_DsRemoveDSServer(
912 [in] policy_handle *bind_handle,
913 [in,out] int32 level,
914 [in,switch_is(level)] drsuapi_DsRemoveDSServerRequest req,
915 [out,switch_is(level)] drsuapi_DsRemoveDSServerResult res
920 WERROR DRSUAPI_REMOVE_DS_DOMAIN();
925 [charset(UTF16),string] uint16 *domain_name; /* netbios or dns */
926 int32 level; /* specifies the switch level for the request */
927 } drsuapi_DsGetDCInfoRequest1;
929 typedef [switch_type(int32)] union {
930 [case(1)] drsuapi_DsGetDCInfoRequest1 req1;
931 } drsuapi_DsGetDCInfoRequest;
934 [charset(UTF16),string] uint16 *netbios_name;
935 [charset(UTF16),string] uint16 *dns_name;
936 [charset(UTF16),string] uint16 *site_name;
937 [charset(UTF16),string] uint16 *computer_dn;
938 [charset(UTF16),string] uint16 *server_dn;
941 } drsuapi_DsGetDCInfo1;
944 [range(0,10000)] uint32 count;
945 [size_is(count)] drsuapi_DsGetDCInfo1 *array;
946 } drsuapi_DsGetDCInfoCtr1;
949 [charset(UTF16),string] uint16 *netbios_name;
950 [charset(UTF16),string] uint16 *dns_name;
951 [charset(UTF16),string] uint16 *site_name;
952 [charset(UTF16),string] uint16 *site_dn;
953 [charset(UTF16),string] uint16 *computer_dn;
954 [charset(UTF16),string] uint16 *server_dn;
955 [charset(UTF16),string] uint16 *ntds_dn;
963 } drsuapi_DsGetDCInfo2;
966 [range(0,10000)] uint32 count;
967 [size_is(count)] drsuapi_DsGetDCInfo2 *array;
968 } drsuapi_DsGetDCInfoCtr2;
971 * this represents an active connection to the
972 * Directory System Agent (DSA)
973 * this can be via LDAP or DRSUAPI
976 [flag(NDR_BIG_ENDIAN)] ipv4address client_ip_address;
978 uint32 connection_time; /* in seconds */
983 * client_account can be the following:
984 * "W2K3\Administrator"
985 * "Administrator@W2K3"
986 * "cn=Administrator,cn=Users,DC=w2k3,DC=vmnet1,DC=vm,DC=base"
990 [charset(UTF16),string] uint16 *client_account;
991 } drsuapi_DsGetDCConnection01;
994 [range(0,10000)] uint32 count;
995 [size_is(count)] drsuapi_DsGetDCConnection01 *array;
996 } drsuapi_DsGetDCConnectionCtr01;
998 typedef [v1_enum] enum {
999 DRSUAPI_DC_INFO_CTR_1 = 1,
1000 DRSUAPI_DC_INFO_CTR_2 = 2,
1001 DRSUAPI_DC_CONNECTION_CTR_01 = -1
1002 } drsuapi_DsGetDCInfoCtrLevels;
1004 typedef [switch_type(int32)] union {
1005 [case(DRSUAPI_DC_INFO_CTR_1)] drsuapi_DsGetDCInfoCtr1 ctr1;
1006 [case(DRSUAPI_DC_INFO_CTR_2)] drsuapi_DsGetDCInfoCtr2 ctr2;
1007 [case(DRSUAPI_DC_CONNECTION_CTR_01)] drsuapi_DsGetDCConnectionCtr01 ctr01;
1008 } drsuapi_DsGetDCInfoCtr;
1010 WERROR drsuapi_DsGetDomainControllerInfo(
1011 [in] policy_handle *bind_handle,
1013 [in,switch_is(level)] drsuapi_DsGetDCInfoRequest req,
1014 [out] int32 level_out,
1015 [out,switch_is(level_out)] drsuapi_DsGetDCInfoCtr ctr
1020 typedef [public,noprint] struct {
1021 drsuapi_DsReplicaObjectListItem *next_object;
1022 drsuapi_DsReplicaObject object;
1023 } drsuapi_DsReplicaObjectListItem;
1026 * The DsAddEntry() call which creates a nTDSDSA object,
1027 * also adds a servicePrincipalName in the following form
1028 * to the computer account of the new domain controller
1029 * referenced by the "serverReferenece" attribute.
1031 * E3514235-4B06-11D1-AB04-00C04FC2DCD2/<new-ntdsdsa-object-guid-as-string>/<domain-dns-name>
1033 * also note that the "serverReference" isn't added to the new object!
1035 const char *DRSUAPI_NTDSDSA_KRB5_SERVICE_GUID = "E3514235-4B06-11D1-AB04-00C04FC2DCD2";
1038 * please note the the current idl
1039 * for DsAddEntry does only parse
1040 * what I saw between 2 w2k3 boxes
1041 * in my dssync experiments I got some other replies
1042 * so all I want to say is that this is very incomplete yet...
1046 drsuapi_DsReplicaObjectListItem first_object;
1047 } drsuapi_DsAddEntryRequest2;
1049 typedef [switch_type(int32)] union {
1050 [case(2)] drsuapi_DsAddEntryRequest2 req2;
1051 } drsuapi_DsAddEntryRequest;
1058 } drsuapi_DsAddEntryErrorInfoX;
1061 [range(0,10485760)] uint32 size;
1062 [size_is(size)] uint8 *data;
1063 } drsuapi_DsAddEntryExtraErrorBuffer;
1066 drsuapi_DsAddEntryErrorInfoX error;
1067 drsuapi_DsAttributeId attid;
1069 drsuapi_DsAddEntryExtraErrorBuffer buffer;
1070 } drsuapi_DsAddEntryExtraError1;
1072 typedef /*[noprint]*/ struct {
1073 drsuapi_DsAddEntryErrorListItem1 *next;
1074 drsuapi_DsAddEntryExtraError1 error;
1075 } drsuapi_DsAddEntryErrorListItem1;
1078 drsuapi_DsReplicaObjectIdentifier *id;
1080 drsuapi_DsAddEntryErrorListItem1 first;
1081 } drsuapi_DsAddEntryErrorInfo1;
1083 typedef [switch_type(uint32)] union {
1084 [case(1)] drsuapi_DsAddEntryErrorInfo1 error1;
1085 /* [case(2)] drsuapi_DsAddEntryErrorInfo2 error2;
1086 [case(3)] drsuapi_DsAddEntryErrorInfo3 error3;
1087 */ [case(4)] drsuapi_DsAddEntryErrorInfoX errorX;
1088 [case(5)] drsuapi_DsAddEntryErrorInfoX errorX;
1089 [case(6)] drsuapi_DsAddEntryErrorInfoX errorX;
1090 [case(7)] drsuapi_DsAddEntryErrorInfoX errorX;
1091 } drsuapi_DsAddEntryErrorInfo;
1096 [switch_is(level)] drsuapi_DsAddEntryErrorInfo *info;
1097 } drsuapi_DsAddEntryError1;
1099 typedef [switch_type(uint32)] union {
1100 [case(1)] drsuapi_DsAddEntryError1 info1;
1101 } drsuapi_DsAddEntryError;
1106 } drsuapi_DsReplicaObjectIdentifier2;
1109 drsuapi_DsReplicaObjectIdentifier *id;
1111 drsuapi_DsAddEntryErrorInfoX error;
1112 [range(0,10000)] uint32 count;
1113 [size_is(count)] drsuapi_DsReplicaObjectIdentifier2 *objects;
1114 } drsuapi_DsAddEntryCtr2;
1117 drsuapi_DsReplicaObjectIdentifier *id;
1119 [switch_is(level)] drsuapi_DsAddEntryError *error;
1120 [range(0,10000)] uint32 count;
1121 [size_is(count)] drsuapi_DsReplicaObjectIdentifier2 *objects;
1122 } drsuapi_DsAddEntryCtr3;
1124 typedef [switch_type(int32)] union {
1125 [case(2)] drsuapi_DsAddEntryCtr2 ctr2;
1126 [case(3)] drsuapi_DsAddEntryCtr3 ctr3;
1127 } drsuapi_DsAddEntryCtr;
1129 [public] WERROR drsuapi_DsAddEntry(
1130 [in] policy_handle *bind_handle,
1131 [in,out] int32 level,
1132 [in,switch_is(level)] drsuapi_DsAddEntryRequest req,
1133 [out,switch_is(level)] drsuapi_DsAddEntryCtr ctr
1138 WERROR DRSUAPI_EXECUTE_KCC();
1142 typedef [v1_enum] enum {
1143 DRSUAPI_DS_REPLICA_GET_INFO = 1,
1144 DRSUAPI_DS_REPLICA_GET_INFO2 = 2
1145 } drsuapi_DsReplicaGetInfoLevel;
1147 typedef [v1_enum] enum {
1148 DRSUAPI_DS_REPLICA_INFO_NEIGHBORS = 0,
1149 DRSUAPI_DS_REPLICA_INFO_CURSORS = 1,
1150 DRSUAPI_DS_REPLICA_INFO_OBJ_METADATA = 2,
1151 DRSUAPI_DS_REPLICA_INFO_KCC_DSA_CONNECT_FAILURES = 3,
1152 DRSUAPI_DS_REPLICA_INFO_KCC_DSA_LINK_FAILURES = 4,
1153 DRSUAPI_DS_REPLICA_INFO_PENDING_OPS = 5,
1154 DRSUAPI_DS_REPLICA_INFO_ATTRIBUTE_VALUE_METADATA = 6,
1155 DRSUAPI_DS_REPLICA_INFO_CURSORS2 = 7,
1156 DRSUAPI_DS_REPLICA_INFO_CURSORS3 = 8,
1157 DRSUAPI_DS_REPLICA_INFO_OBJ_METADATA2 = 9,
1158 DRSUAPI_DS_REPLICA_INFO_ATTRIBUTE_VALUE_METADATA2 = 10,
1159 DRSUAPI_DS_REPLICA_INFO_NEIGHBORS02 = -2,
1160 DRSUAPI_DS_REPLICA_INFO_CONNECTIONS04 = -4,
1161 DRSUAPI_DS_REPLICA_INFO_CURSORS05 = -5,
1162 DRSUAPI_DS_REPLICA_INFO_06 = -6
1163 } drsuapi_DsReplicaInfoType;
1166 drsuapi_DsReplicaInfoType info_type;
1167 [charset(UTF16),string] uint16 *object_dn;
1169 } drsuapi_DsReplicaGetInfoRequest1;
1172 drsuapi_DsReplicaInfoType info_type;
1173 [charset(UTF16),string] uint16 *object_dn;
1176 [charset(UTF16),string] uint16 *string1;
1177 [charset(UTF16),string] uint16 *string2;
1179 } drsuapi_DsReplicaGetInfoRequest2;
1181 typedef [switch_type(drsuapi_DsReplicaGetInfoLevel)] union {
1182 [case(DRSUAPI_DS_REPLICA_GET_INFO)] drsuapi_DsReplicaGetInfoRequest1 req1;
1183 [case(DRSUAPI_DS_REPLICA_GET_INFO2)] drsuapi_DsReplicaGetInfoRequest2 req2;
1184 } drsuapi_DsReplicaGetInfoRequest;
1187 [charset(UTF16),string] uint16 *naming_context_dn;
1188 [charset(UTF16),string] uint16 *source_dsa_obj_dn;
1189 [charset(UTF16),string] uint16 *source_dsa_address;
1190 [charset(UTF16),string] uint16 *transport_obj_dn;
1191 drsuapi_DsReplicaNeighbourFlags replica_flags;
1193 GUID naming_context_obj_guid;
1194 GUID source_dsa_obj_guid;
1195 GUID source_dsa_invocation_id;
1196 GUID transport_obj_guid;
1197 hyper tmp_highest_usn;
1199 NTTIME last_success;
1200 NTTIME last_attempt;
1201 WERROR result_last_attempt;
1202 uint32 consecutive_sync_failures;
1203 } drsuapi_DsReplicaNeighbour;
1208 [size_is(count)] drsuapi_DsReplicaNeighbour array[];
1209 } drsuapi_DsReplicaNeighbourCtr;
1214 [size_is(count)] drsuapi_DsReplicaCursor array[];
1215 } drsuapi_DsReplicaCursorCtr;
1218 [charset(UTF16),string] uint16 *attribute_name;
1220 NTTIME originating_change_time;
1221 GUID originating_invocation_id;
1222 hyper originating_usn;
1224 } drsuapi_DsReplicaObjMetaData;
1229 [size_is(count)] drsuapi_DsReplicaObjMetaData array[];
1230 } drsuapi_DsReplicaObjMetaDataCtr;
1233 [charset(UTF16),string] uint16 *dsa_obj_dn;
1235 NTTIME first_failure;
1236 uint32 num_failures;
1238 } drsuapi_DsReplicaKccDsaFailure;
1243 [size_is(count)] drsuapi_DsReplicaKccDsaFailure array[];
1244 } drsuapi_DsReplicaKccDsaFailuresCtr;
1247 DRSUAPI_DS_REPLICA_OP_TYPE_SYNC = 0,
1248 DRSUAPI_DS_REPLICA_OP_TYPE_ADD = 1,
1249 DRSUAPI_DS_REPLICA_OP_TYPE_DELETE = 2,
1250 DRSUAPI_DS_REPLICA_OP_TYPE_MODIFY = 3,
1251 DRSUAPI_DS_REPLICA_OP_TYPE_UPDATE_REFS = 4
1252 } drsuapi_DsReplicaOpType;
1254 typedef [switch_type(drsuapi_DsReplicaOpType)] union {
1255 [case(DRSUAPI_DS_REPLICA_OP_TYPE_SYNC)] drsuapi_DsReplicaSyncOptions sync;
1256 [case(DRSUAPI_DS_REPLICA_OP_TYPE_ADD)] drsuapi_DsReplicaAddOptions add;
1257 [case(DRSUAPI_DS_REPLICA_OP_TYPE_DELETE)] drsuapi_DsReplicaDeleteOptions delete;
1258 [case(DRSUAPI_DS_REPLICA_OP_TYPE_MODIFY)] drsuapi_DsReplicaModifyOptions modify;
1259 [case(DRSUAPI_DS_REPLICA_OP_TYPE_UPDATE_REFS)] drsuapi_DsReplicaUpdateRefsOptions update_refs;
1260 [default] uint32 unknown;
1261 } drsuapi_DsRplicaOpOptions;
1264 NTTIME operation_start;
1265 uint32 serial_num; /* unique till reboot */
1267 drsuapi_DsReplicaOpType operation_type;
1268 [switch_is(operation_type)] drsuapi_DsRplicaOpOptions options;
1269 [charset(UTF16),string] uint16 *nc_dn;
1270 [charset(UTF16),string] uint16 *remote_dsa_obj_dn;
1271 [charset(UTF16),string] uint16 *remote_dsa_address;
1273 GUID remote_dsa_obj_guid;
1274 } drsuapi_DsReplicaOp;
1279 [size_is(count)] drsuapi_DsReplicaOp array[];
1280 } drsuapi_DsReplicaOpCtr;
1283 [charset(UTF16),string] uint16 *attribute_name;
1284 [charset(UTF16),string] uint16 *object_dn;
1285 [value(ndr_size_DATA_BLOB(0,binary,0))] uint32 __ndr_size_binary;
1290 NTTIME originating_change_time;
1291 GUID originating_invocation_id;
1292 hyper originating_usn;
1294 } drsuapi_DsReplicaAttrValMetaData;
1298 int32 enumeration_context;
1299 [size_is(count)] drsuapi_DsReplicaAttrValMetaData array[];
1300 } drsuapi_DsReplicaAttrValMetaDataCtr;
1304 int32 enumeration_context;
1305 [size_is(count)] drsuapi_DsReplicaCursor2 array[];
1306 } drsuapi_DsReplicaCursor2Ctr;
1309 GUID source_dsa_invocation_id;
1311 NTTIME last_sync_success;
1312 [charset(UTF16),string] uint16 *source_dsa_obj_dn;
1313 } drsuapi_DsReplicaCursor3;
1317 int32 enumeration_context;
1318 [size_is(count)] drsuapi_DsReplicaCursor3 array[];
1319 } drsuapi_DsReplicaCursor3Ctr;
1322 [charset(UTF16),string] uint16 *attribute_name;
1324 NTTIME originating_change_time;
1325 GUID originating_invocation_id;
1326 hyper originating_usn;
1328 [charset(UTF16),string] uint16 *originating_dsa_dn;
1329 } drsuapi_DsReplicaObjMetaData2;
1333 int32 enumeration_context;
1334 [size_is(count)] drsuapi_DsReplicaObjMetaData2 array[];
1335 } drsuapi_DsReplicaObjMetaData2Ctr;
1338 [charset(UTF16),string] uint16 *attribute_name;
1339 [charset(UTF16),string] uint16 *object_dn;
1340 [value(ndr_size_DATA_BLOB(0,binary,0))] uint32 __ndr_size_binary;
1345 NTTIME originating_change_time;
1346 GUID originating_invocation_id;
1347 hyper originating_usn;
1349 [charset(UTF16),string] uint16 *originating_dsa_dn;
1350 } drsuapi_DsReplicaAttrValMetaData2;
1354 int32 enumeration_context;
1355 [size_is(count)] drsuapi_DsReplicaAttrValMetaData2 array[];
1356 } drsuapi_DsReplicaAttrValMetaData2Ctr;
1359 hyper u1; /* session number? */
1363 NTTIME_1sec bind_time;
1364 [flag(NDR_BIG_ENDIAN)] ipv4address client_ip_address;
1365 uint32 u5; /* this is the same value the client used as u1 in the DsBindInfoX struct */
1366 } drsuapi_DsReplicaConnection04;
1369 [range(0,10000)] uint32 count;
1371 [size_is(count)] drsuapi_DsReplicaConnection04 array[];
1372 } drsuapi_DsReplicaConnection04Ctr;
1375 [charset(UTF16),string] uint16 *str1;
1383 } drsuapi_DsReplica06;
1386 [range(0,256)] uint32 count;
1388 [size_is(count)] drsuapi_DsReplica06 array[];
1389 } drsuapi_DsReplica06Ctr;
1391 typedef [switch_type(drsuapi_DsReplicaInfoType)] union {
1392 [case(DRSUAPI_DS_REPLICA_INFO_NEIGHBORS)] drsuapi_DsReplicaNeighbourCtr *neighbours;
1393 [case(DRSUAPI_DS_REPLICA_INFO_CURSORS)] drsuapi_DsReplicaCursorCtr *cursors;
1394 [case(DRSUAPI_DS_REPLICA_INFO_OBJ_METADATA)] drsuapi_DsReplicaObjMetaDataCtr *objmetadata;
1395 [case(DRSUAPI_DS_REPLICA_INFO_KCC_DSA_CONNECT_FAILURES)] drsuapi_DsReplicaKccDsaFailuresCtr *connectfailures;
1396 [case(DRSUAPI_DS_REPLICA_INFO_KCC_DSA_LINK_FAILURES)] drsuapi_DsReplicaKccDsaFailuresCtr *linkfailures;
1397 [case(DRSUAPI_DS_REPLICA_INFO_PENDING_OPS)] drsuapi_DsReplicaOpCtr *pendingops;
1398 [case(DRSUAPI_DS_REPLICA_INFO_ATTRIBUTE_VALUE_METADATA)] drsuapi_DsReplicaAttrValMetaDataCtr *attrvalmetadata;
1399 [case(DRSUAPI_DS_REPLICA_INFO_CURSORS2)] drsuapi_DsReplicaCursor2Ctr *cursors2;
1400 [case(DRSUAPI_DS_REPLICA_INFO_CURSORS3)] drsuapi_DsReplicaCursor3Ctr *cursors3;
1401 [case(DRSUAPI_DS_REPLICA_INFO_OBJ_METADATA2)] drsuapi_DsReplicaObjMetaData2Ctr *objmetadata2;
1402 [case(DRSUAPI_DS_REPLICA_INFO_ATTRIBUTE_VALUE_METADATA2)] drsuapi_DsReplicaAttrValMetaData2Ctr *attrvalmetadata2;
1403 [case(DRSUAPI_DS_REPLICA_INFO_NEIGHBORS02)] drsuapi_DsReplicaNeighbourCtr *neighbours02;
1404 [case(DRSUAPI_DS_REPLICA_INFO_CONNECTIONS04)] drsuapi_DsReplicaConnection04Ctr *connections04;
1405 [case(DRSUAPI_DS_REPLICA_INFO_CURSORS05)] drsuapi_DsReplicaCursorCtrEx *cursors05;
1406 [case(DRSUAPI_DS_REPLICA_INFO_06)] drsuapi_DsReplica06Ctr *i06;
1407 } drsuapi_DsReplicaInfo;
1409 WERROR drsuapi_DsReplicaGetInfo(
1410 [in] policy_handle *bind_handle,
1411 [in] drsuapi_DsReplicaGetInfoLevel level,
1412 [in,switch_is(level)] drsuapi_DsReplicaGetInfoRequest req,
1413 [out] drsuapi_DsReplicaInfoType info_type,
1414 [out,switch_is(info_type)] drsuapi_DsReplicaInfo info
1419 WERROR DRSUAPI_ADD_SID_HISTORY();
1425 [range(0,10000)] uint32 num_entries;
1426 [size_is(num_entries)] drsuapi_DsGetMembershipsCtr1 **ctrl_array;
1427 } drsuapi_DsGetMemberships2Ctr1;
1429 typedef [switch_type(int32)] union {
1430 [case(1)] drsuapi_DsGetMembershipsCtr1 ctr1;
1431 } drsuapi_DsGetMemberships2Ctr;
1434 [range(1,10000)] uint32 num_req;
1435 [size_is(num_req)] drsuapi_DsGetMembershipsRequest1 **req_array;
1436 } drsuapi_DsGetMemberships2Request1;
1438 typedef [switch_type(int32)] union {
1439 [case(1)] drsuapi_DsGetMemberships2Request1 req1;
1440 } drsuapi_DsGetMemberships2Request;
1442 WERROR drsuapi_DsGetMemberships2(
1443 [in] policy_handle *bind_handle,
1444 [in,out] int32 level,
1445 [in] [switch_is(level)] drsuapi_DsGetMemberships2Request req,
1446 [out] [switch_is(level)] drsuapi_DsGetMemberships2Ctr ctr
1452 WERROR DRSUAPI_REPLICA_VERIFY_OBJECTS();
1456 WERROR DRSUAPI_GET_OBJECT_EXISTENCE();
1463 } drsuapi_DsSiteCostInfo;
1466 [range(0,10000)] uint32 num_info;
1467 [size_is(num_info)] drsuapi_DsSiteCostInfo *info;
1469 } drsuapi_QuerySitesByCostCtr1;
1471 typedef [switch_type(int32)] union {
1472 [case(1)] drsuapi_QuerySitesByCostCtr1 ctr1;
1473 } drsuapi_QuerySitesByCostCtr;
1476 [charset(UTF16),string] uint16 *site_from;
1477 [range(1,10000)] uint32 num_req;
1478 [size_is(num_req)] [charset(UTF16),string] uint16 **site_to;
1480 } drsuapi_QuerySitesByCostRequest1;
1482 typedef [switch_type(int32)] union {
1483 [case(1)] drsuapi_QuerySitesByCostRequest1 req1;
1484 } drsuapi_QuerySitesByCostRequest;
1486 WERROR drsuapi_QuerySitesByCost(
1487 [in] policy_handle *bind_handle,
1489 [in] [switch_is(level)] drsuapi_QuerySitesByCostRequest req,
1490 [out] int32 level_out,
1491 [out] [switch_is(level_out)] drsuapi_QuerySitesByCostCtr ctr