r674: use the same -I flags as before
[samba.git] / source4 / provision.ldif
1 dn: @INDEXLIST
2 @IDXATTR: name
3 @IDXATTR: sAMAccountName
4 @IDXATTR: objectSid
5 @IDXATTR: objectClass
6
7 dn: @ATTRIBUTES
8 name: CASE_INSENSITIVE WILDCARD
9 sAMAccountName: CASE_INSENSITIVE WILDCARD
10 objectClass: CASE_INSENSITIVE
11 numMembers: HIDDEN
12
13 dn: @SUBCLASSES
14 top: domain
15 top: person
16 top: group
17 domain: domainDNS
18 domain: builtinDomain
19 person: organizationalPerson
20 organizationalPerson: user
21 user: computer
22 template: userTemplate
23 template: groupTemplate
24
25 dn: ${BASEDN}
26 objectClass: top
27 objectClass: domain
28 objectClass: domainDNS
29 name: ${DOMAIN}
30 dc: ${DOMAIN}
31 objectGUID: ${NEWGUID}
32 creationTime: ${NTTIME}
33 forceLogoff: 0x8000000000000000
34 lockoutDuration: -18000000000
35 lockOutObservationWindow: -18000000000
36 lockoutThreshold: 0
37 whenCreated: ${LDAPTIME}
38 whenChanged: ${LDAPTIME}
39 uSNCreated: 1
40 uSNChanged: 1
41 maxPwdAge: -37108517437440
42 minPwdAge: 0
43 minPwdLength: 7
44 modifiedCountAtLastProm: 0
45 nextRid: 1001
46 pwdProperties: 1
47 pwdHistoryLength: 24
48 objectSid: ${DOMAINSID}
49 serverState: 1
50 uASCompat: 1
51 modifiedCount: 1
52 objectCategory: CN=Domain-DNS,CN=Schema,CN=Configuration,${BASEDN}
53 isCriticalSystemObject: TRUE
54
55 dn: CN=Users,${BASEDN}
56 objectClass: top
57 objectClass: container
58 cn: Users
59 description: Default container for upgraded user accounts
60 instanceType: 4
61 whenCreated: ${LDAPTIME}
62 whenChanged: ${LDAPTIME}
63 uSNCreated: 1
64 uSNChanged: 1
65 showInAdvancedViewOnly: FALSE
66 name: Users
67 objectGUID: ${NEWGUID}
68 systemFlags: 0x8c000000
69 objectCategory: CN=Container,CN=Schema,CN=Configuration,${BASEDN}
70 isCriticalSystemObject: TRUE
71
72 dn: CN=Computers,${BASEDN}
73 objectClass: top
74 objectClass: container
75 cn: Computers
76 description: Default container for upgraded computer accounts
77 instanceType: 4
78 whenCreated: ${LDAPTIME}
79 whenChanged: ${LDAPTIME}
80 uSNCreated: 1
81 uSNChanged: 1
82 showInAdvancedViewOnly: FALSE
83 name: Computers
84 objectGUID: ${NEWGUID}
85 systemFlags: 0x8c000000
86 objectCategory: CN=Container,CN=Schema,CN=Configuration,${BASEDN}
87 isCriticalSystemObject: TRUE
88
89 dn: OU=Domain Controllers,${BASEDN}
90 objectClass: top
91 objectClass: organizationalUnit
92 ou: Domain Controllers
93 description: Default container for domain controllers
94 instanceType: 4
95 whenCreated: ${LDAPTIME}
96 whenChanged: ${LDAPTIME}
97 uSNCreated: 1
98 uSNChanged: 1
99 showInAdvancedViewOnly: FALSE
100 name: Domain Controllers
101 objectGUID: ${NEWGUID}
102 systemFlags: 0x8c000000
103 objectCategory: CN=Organizational-Unit,CN=Schema,CN=Configuration,${BASEDN}
104 isCriticalSystemObject: TRUE
105
106 dn: CN=ForeignSecurityPrincipals,${BASEDN}
107 objectClass: top
108 objectClass: container
109 cn: ForeignSecurityPrincipals
110 description: Default container for security identifiers (SIDs) associated with objects from external, trusted domains
111 instanceType: 4
112 whenCreated: ${LDAPTIME}
113 whenChanged: ${LDAPTIME}
114 uSNCreated: 1
115 uSNChanged: 1
116 showInAdvancedViewOnly: FALSE
117 name: ForeignSecurityPrincipals
118 objectGUID: ${NEWGUID}
119 systemFlags: 0x8c000000
120 objectCategory: CN=Container,CN=Schema,CN=Configuration,${BASEDN}
121 isCriticalSystemObject: TRUE
122
123 dn: CN=Builtin,${BASEDN}
124 objectClass: top
125 objectClass: builtinDomain
126 cn: Builtin
127 instanceType: 4
128 showInAdvancedViewOnly: FALSE
129 name: Builtin
130 forceLogoff: 0x8000000000000000
131 lockoutDuration: -18000000000
132 lockOutObservationWindow: -18000000000
133 lockoutThreshold: 0
134 maxPwdAge: -37108517437440
135 minPwdAge: 0
136 minPwdLength: 0
137 modifiedCountAtLastProm: 0
138 nextRid: 1000
139 pwdProperties: 0
140 pwdHistoryLength: 0
141 objectSid: S-1-5-32
142 serverState: 1
143 uASCompat: 1
144 modifiedCount: 1
145 objectCategory: CN=Builtin-Domain,CN=Schema,CN=Configuration,${BASEDN}
146 isCriticalSystemObject: TRUE
147
148 dn: CN=Administrator,CN=Users,${BASEDN}
149 objectClass: top
150 objectClass: person
151 objectClass: organizationalPerson
152 objectClass: user
153 cn: Administrator
154 description: Built-in account for administering the computer/domain
155 instanceType: 4
156 whenCreated: ${LDAPTIME}
157 whenChanged: ${LDAPTIME}
158 uSNCreated: 1
159 memberOf: CN=Group Policy Creator Owners,CN=Users,${BASEDN}
160 memberOf: CN=Domain Admins,CN=Users,${BASEDN}
161 memberOf: CN=Enterprise Admins,CN=Users,${BASEDN}
162 memberOf: CN=Schema Admins,CN=Users,${BASEDN}
163 memberOf: CN=Administrators,CN=Builtin,${BASEDN}
164 uSNChanged: 1
165 name: Administrator
166 objectGUID: ${NEWGUID}
167 userAccountControl: 0x10200
168 badPwdCount: 0
169 codePage: 0
170 countryCode: 0
171 badPasswordTime: 0
172 lastLogoff: 0
173 lastLogon: 0
174 pwdLastSet: 0
175 primaryGroupID: 513
176 objectSid: ${DOMAINSID}-500
177 adminCount: 1
178 accountExpires: -1
179 logonCount: 0
180 sAMAccountName: Administrator
181 sAMAccountType: 0x30000000
182 objectCategory: CN=Person,CN=Schema,CN=Configuration,${BASEDN}
183 isCriticalSystemObject: TRUE
184
185 dn: CN=Guest,CN=Users,${BASEDN}
186 objectClass: top
187 objectClass: person
188 objectClass: organizationalPerson
189 objectClass: user
190 cn: Guest
191 description: Built-in account for guest access to the computer/domain
192 instanceType: 4
193 whenCreated: ${LDAPTIME}
194 whenChanged: ${LDAPTIME}
195 uSNCreated: 1
196 memberOf: CN=Guests,CN=Builtin,${BASEDN}
197 uSNChanged: 1
198 name: Guest
199 objectGUID: ${NEWGUID}
200 userAccountControl: 0x10222
201 badPwdCount: 0
202 codePage: 0
203 countryCode: 0
204 badPasswordTime: 0
205 lastLogoff: 0
206 lastLogon: 0
207 pwdLastSet: 0
208 primaryGroupID: 514
209 objectSid: ${DOMAINSID}-501
210 accountExpires: -1
211 logonCount: 0
212 sAMAccountName: Guest
213 sAMAccountType: 0x30000000
214 objectCategory: CN=Person,CN=Schema,CN=Configuration,${BASEDN}
215 isCriticalSystemObject: TRUE
216
217 dn: CN=Administrators,CN=Builtin,${BASEDN}
218 objectClass: top
219 objectClass: group
220 cn: Administrators
221 description: Administrators have complete and unrestricted access to the computer/domain
222 member: CN=Domain Admins,CN=Users,${BASEDN}
223 member: CN=Enterprise Admins,CN=Users,${BASEDN}
224 member: CN=Administrator,CN=Users,${BASEDN}
225 instanceType: 4
226 whenCreated: ${LDAPTIME}
227 whenChanged: ${LDAPTIME}
228 uSNCreated: 1
229 uSNChanged: 1
230 name: Administrators
231 objectGUID: ${NEWGUID}
232 objectSid: S-1-5-32-544
233 adminCount: 1
234 sAMAccountName: Administrators
235 sAMAccountType: 0x20000000
236 systemFlags: 0x8c000000
237 groupType: 0x80000005
238 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
239 isCriticalSystemObject: TRUE
240
241 dn: CN=Users,CN=Builtin,${BASEDN}
242 objectClass: top
243 objectClass: group
244 cn: Users
245 description: Users are prevented from making accidental or intentional system-wide changes.  Thus, Users can run certified applications, but not most legacy applications
246 member: CN=Domain Users,CN=Users,${BASEDN}
247 instanceType: 4
248 whenCreated: ${LDAPTIME}
249 whenChanged: ${LDAPTIME}
250 uSNCreated: 1
251 uSNChanged: 1
252 name: Users
253 objectGUID: ${NEWGUID}
254 objectSid: S-1-5-32-545
255 sAMAccountName: Users
256 sAMAccountType: 0x20000000
257 systemFlags: 0x8c000000
258 groupType: 0x80000005
259 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
260 isCriticalSystemObject: TRUE
261
262 dn: CN=Guests,CN=Builtin,${BASEDN}
263 objectClass: top
264 objectClass: group
265 cn: Guests
266 description: Guests have the same access as members of the Users group by default, except for the Guest account which is further restricted
267 member: CN=Domain Guests,CN=Users,${BASEDN}
268 member: CN=Guest,CN=Users,${BASEDN}
269 instanceType: 4
270 whenCreated: ${LDAPTIME}
271 whenChanged: ${LDAPTIME}
272 uSNCreated: 1
273 uSNChanged: 1
274 name: Guests
275 objectGUID: ${NEWGUID}
276 objectSid: S-1-5-32-546
277 sAMAccountName: Guests
278 sAMAccountType: 0x20000000
279 systemFlags: 0x8c000000
280 groupType: 0x80000005
281 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
282 isCriticalSystemObject: TRUE
283
284 dn: CN=Print Operators,CN=Builtin,${BASEDN}
285 objectClass: top
286 objectClass: group
287 cn: Print Operators
288 description: Members can administer domain printers
289 instanceType: 4
290 whenCreated: ${LDAPTIME}
291 whenChanged: ${LDAPTIME}
292 uSNCreated: 1
293 uSNChanged: 1
294 name: Print Operators
295 objectGUID: ${NEWGUID}
296 objectSid: S-1-5-32-550
297 adminCount: 1
298 sAMAccountName: Print Operators
299 sAMAccountType: 0x20000000
300 systemFlags: 0x8c000000
301 groupType: 0x80000005
302 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
303 isCriticalSystemObject: TRUE
304
305 dn: CN=Backup Operators,CN=Builtin,${BASEDN}
306 objectClass: top
307 objectClass: group
308 cn: Backup Operators
309 description: Backup Operators can override security restrictions for the sole purpose of backing up or restoring files
310 instanceType: 4
311 whenCreated: ${LDAPTIME}
312 whenChanged: ${LDAPTIME}
313 uSNCreated: 1
314 uSNChanged: 1
315 name: Backup Operators
316 objectGUID: ${NEWGUID}
317 objectSid: S-1-5-32-551
318 adminCount: 1
319 sAMAccountName: Backup Operators
320 sAMAccountType: 0x20000000
321 systemFlags: 0x8c000000
322 groupType: 0x80000005
323 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
324 isCriticalSystemObject: TRUE
325
326 dn: CN=Replicator,CN=Builtin,${BASEDN}
327 objectClass: top
328 objectClass: group
329 cn: Replicator
330 description: Supports file replication in a domain
331 instanceType: 4
332 whenCreated: ${LDAPTIME}
333 whenChanged: ${LDAPTIME}
334 uSNCreated: 1
335 uSNChanged: 1
336 name: Replicator
337 objectGUID: ${NEWGUID}
338 objectSid: S-1-5-32-552
339 adminCount: 1
340 sAMAccountName: Replicator
341 sAMAccountType: 0x20000000
342 systemFlags: 0x8c000000
343 groupType: 0x80000005
344 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
345 isCriticalSystemObject: TRUE
346
347 dn: CN=Remote Desktop Users,CN=Builtin,${BASEDN}
348 objectClass: top
349 objectClass: group
350 cn: Remote Desktop Users
351 description: Members in this group are granted the right to logon remotely
352 instanceType: 4
353 whenCreated: ${LDAPTIME}
354 whenChanged: ${LDAPTIME}
355 uSNCreated: 1
356 uSNChanged: 1
357 name: Remote Desktop Users
358 objectGUID: ${NEWGUID}
359 objectSid: S-1-5-32-555
360 sAMAccountName: Remote Desktop Users
361 sAMAccountType: 0x20000000
362 systemFlags: 0x8c000000
363 groupType: 0x80000005
364 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
365 isCriticalSystemObject: TRUE
366
367 dn: CN=Network Configuration Operators,CN=Builtin,${BASEDN}
368 objectClass: top
369 objectClass: group
370 cn: Network Configuration Operators
371 description: Members in this group can have some administrative privileges to manage configuration of networking features
372 instanceType: 4
373 whenCreated: ${LDAPTIME}
374 whenChanged: ${LDAPTIME}
375 uSNCreated: 1
376 uSNChanged: 1
377 name: Network Configuration Operators
378 objectGUID: ${NEWGUID}
379 objectSid: S-1-5-32-556
380 sAMAccountName: Network Configuration Operators
381 sAMAccountType: 0x20000000
382 systemFlags: 0x8c000000
383 groupType: 0x80000005
384 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
385 isCriticalSystemObject: TRUE
386
387 dn: CN=Performance Monitor Users,CN=Builtin,${BASEDN}
388 objectClass: top
389 objectClass: group
390 cn: Performance Monitor Users
391 description: Members of this group have remote access to monitor this computer
392 instanceType: 4
393 whenCreated: ${LDAPTIME}
394 whenChanged: ${LDAPTIME}
395 uSNCreated: 1
396 uSNChanged: 1
397 name: Performance Monitor Users
398 objectGUID: ${NEWGUID}
399 objectSid: S-1-5-32-558
400 sAMAccountName: Performance Monitor Users
401 sAMAccountType: 0x20000000
402 systemFlags: 0x8c000000
403 groupType: 0x80000005
404 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
405 isCriticalSystemObject: TRUE
406
407 dn: CN=Performance Log Users,CN=Builtin,${BASEDN}
408 objectClass: top
409 objectClass: group
410 cn: Performance Log Users
411 description: Members of this group have remote access to schedule logging of performance counters on this computer
412 instanceType: 4
413 whenCreated: ${LDAPTIME}
414 whenChanged: ${LDAPTIME}
415 uSNCreated: 1
416 uSNChanged: 1
417 name: Performance Log Users
418 objectGUID: ${NEWGUID}
419 objectSid: S-1-5-32-559
420 sAMAccountName: Performance Log Users
421 sAMAccountType: 0x20000000
422 systemFlags: 0x8c000000
423 groupType: 0x80000005
424 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
425 isCriticalSystemObject: TRUE
426
427 dn: CN=${HOSTNAME},OU=Domain Controllers,${BASEDN}
428 objectClass: top
429 objectClass: person
430 objectClass: organizationalPerson
431 objectClass: user
432 objectClass: computer
433 cn: ${HOSTNAME}
434 instanceType: 4
435 whenCreated: ${LDAPTIME}
436 whenChanged: ${LDAPTIME}
437 uSNCreated: 1
438 uSNChanged: 1
439 name: ${HOSTNAME}
440 objectGUID: ${NEWGUID}
441 userAccountControl: 532480
442 badPwdCount: 0
443 codePage: 0
444 countryCode: 0
445 badPasswordTime: 0
446 lastLogoff: 0
447 lastLogon: 127273269057298624
448 localPolicyFlags: 0
449 pwdLastSet: 127258826171655328
450 primaryGroupID: 516
451 objectSid: ${DOMAINSID}-1000
452 accountExpires: 9223372036854775807
453 logonCount: 30
454 sAMAccountName: ${HOSTNAME}$
455 sAMAccountType: 805306369
456 operatingSystem: Samba
457 operatingSystemVersion: 4.0
458 dNSHostName: ${DNSNAME}
459 objectCategory: CN=Computer,CN=Schema,CN=Configuration,${BASEDN}
460 isCriticalSystemObject: TRUE
461
462 dn: CN=krbtgt,CN=Users,${BASEDN}
463 objectClass: top
464 objectClass: person
465 objectClass: organizationalPerson
466 objectClass: user
467 cn: krbtgt
468 description: Key Distribution Center Service Account
469 instanceType: 4
470 whenCreated: ${LDAPTIME}
471 whenChanged: ${LDAPTIME}
472 uSNCreated: 1
473 uSNChanged: 1
474 showInAdvancedViewOnly: TRUE
475 name: krbtgt
476 objectGUID: ${NEWGUID}
477 userAccountControl: 514
478 badPwdCount: 0
479 codePage: 0
480 countryCode: 0
481 badPasswordTime: 0
482 lastLogoff: 0
483 lastLogon: 0
484 pwdLastSet: 127258826179466560
485 primaryGroupID: 513
486 objectSid: ${DOMAINSID}-502
487 adminCount: 1
488 accountExpires: 9223372036854775807
489 logonCount: 0
490 sAMAccountName: krbtgt
491 sAMAccountType: 805306368
492 servicePrincipalName: kadmin/changepw
493 objectCategory: CN=Person,CN=Schema,CN=Configuration,${BASEDN}
494 isCriticalSystemObject: TRUE
495
496 dn: CN=Domain Computers,CN=Users,${BASEDN}
497 objectClass: top
498 objectClass: group
499 cn: Domain Computers
500 description: All workstations and servers joined to the domain
501 instanceType: 4
502 whenCreated: ${LDAPTIME}
503 whenChanged: ${LDAPTIME}
504 uSNCreated: 1
505 uSNChanged: 1
506 name: Domain Computers
507 objectGUID: ${NEWGUID}
508 objectSid: ${DOMAINSID}-515
509 sAMAccountName: Domain Computers
510 sAMAccountType: 268435456
511 groupType: -2147483646
512 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
513 isCriticalSystemObject: TRUE
514
515 dn: CN=Domain Controllers,CN=Users,${BASEDN}
516 objectClass: top
517 objectClass: group
518 cn: Domain Controllers
519 description: All domain controllers in the domain
520 instanceType: 4
521 whenCreated: ${LDAPTIME}
522 whenChanged: ${LDAPTIME}
523 uSNCreated: 1
524 uSNChanged: 1
525 name: Domain Controllers
526 objectGUID: ${NEWGUID}
527 objectSid: ${DOMAINSID}-516
528 adminCount: 1
529 sAMAccountName: Domain Controllers
530 sAMAccountType: 268435456
531 groupType: -2147483646
532 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
533 isCriticalSystemObject: TRUE
534
535 dn: CN=Schema Admins,CN=Users,${BASEDN}
536 objectClass: top
537 objectClass: group
538 cn: Schema Admins
539 description: Designated administrators of the schema
540 member: CN=Administrator,CN=Users,${BASEDN}
541 instanceType: 4
542 whenCreated: ${LDAPTIME}
543 whenChanged: ${LDAPTIME}
544 uSNCreated: 1
545 uSNChanged: 1
546 name: Schema Admins
547 objectGUID: ${NEWGUID}
548 objectSid: ${DOMAINSID}-518
549 adminCount: 1
550 sAMAccountName: Schema Admins
551 sAMAccountType: 268435456
552 groupType: -2147483646
553 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
554 isCriticalSystemObject: TRUE
555
556 dn: CN=Enterprise Admins,CN=Users,${BASEDN}
557 objectClass: top
558 objectClass: group
559 cn: Enterprise Admins
560 description: Designated administrators of the enterprise
561 member: CN=Administrator,CN=Users,${BASEDN}
562 instanceType: 4
563 whenCreated: ${LDAPTIME}
564 whenChanged: ${LDAPTIME}
565 uSNCreated: 1
566 memberOf: CN=Administrators,CN=Builtin,${BASEDN}
567 uSNChanged: 1
568 name: Enterprise Admins
569 objectGUID: ${NEWGUID}
570 objectSid: ${DOMAINSID}-519
571 adminCount: 1
572 sAMAccountName: Enterprise Admins
573 sAMAccountType: 268435456
574 groupType: -2147483646
575 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
576 isCriticalSystemObject: TRUE
577
578 dn: CN=Cert Publishers,CN=Users,${BASEDN}
579 objectClass: top
580 objectClass: group
581 cn: Cert Publishers
582 description: Members of this group are permitted to publish certificates to the Active Directory
583 instanceType: 4
584 whenCreated: ${LDAPTIME}
585 whenChanged: ${LDAPTIME}
586 uSNCreated: 1
587 uSNChanged: 1
588 name: Cert Publishers
589 objectGUID: ${NEWGUID}
590 objectSid: ${DOMAINSID}-517
591 sAMAccountName: Cert Publishers
592 sAMAccountType: 0x20000000
593 groupType: -2147483644
594 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
595 isCriticalSystemObject: TRUE
596
597 dn: CN=Domain Admins,CN=Users,${BASEDN}
598 objectClass: top
599 objectClass: group
600 cn: Domain Admins
601 description: Designated administrators of the domain
602 member: CN=Administrator,CN=Users,${BASEDN}
603 instanceType: 4
604 whenCreated: ${LDAPTIME}
605 whenChanged: ${LDAPTIME}
606 uSNCreated: 1
607 memberOf: CN=Administrators,CN=Builtin,${BASEDN}
608 uSNChanged: 1
609 name: Domain Admins
610 objectGUID: ${NEWGUID}
611 objectSid: ${DOMAINSID}-512
612 adminCount: 1
613 sAMAccountName: Domain Admins
614 sAMAccountType: 268435456
615 groupType: -2147483646
616 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
617 isCriticalSystemObject: TRUE
618
619 dn: CN=Domain Users,CN=Users,${BASEDN}
620 objectClass: top
621 objectClass: group
622 cn: Domain Users
623 description: All domain users
624 instanceType: 4
625 whenCreated: ${LDAPTIME}
626 whenChanged: ${LDAPTIME}
627 uSNCreated: 1
628 memberOf: CN=Users,CN=Builtin,${BASEDN}
629 uSNChanged: 1
630 name: Domain Users
631 objectGUID: ${NEWGUID}
632 objectSid: ${DOMAINSID}-513
633 sAMAccountName: Domain Users
634 sAMAccountType: 268435456
635 groupType: -2147483646
636 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
637 isCriticalSystemObject: TRUE
638
639 dn: CN=Domain Guests,CN=Users,${BASEDN}
640 objectClass: top
641 objectClass: group
642 cn: Domain Guests
643 description: All domain guests
644 instanceType: 4
645 whenCreated: ${LDAPTIME}
646 whenChanged: ${LDAPTIME}
647 uSNCreated: 1
648 memberOf: CN=Guests,CN=Builtin,${BASEDN}
649 uSNChanged: 1
650 name: Domain Guests
651 objectGUID: ${NEWGUID}
652 objectSid: ${DOMAINSID}-514
653 sAMAccountName: Domain Guests
654 sAMAccountType: 268435456
655 groupType: -2147483646
656 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
657 isCriticalSystemObject: TRUE
658
659 dn: CN=Group Policy Creator Owners,CN=Users,${BASEDN}
660 objectClass: top
661 objectClass: group
662 cn: Group Policy Creator Owners
663 description: Members in this group can modify group policy for the domain
664 member: CN=Administrator,CN=Users,${BASEDN}
665 instanceType: 4
666 whenCreated: ${LDAPTIME}
667 whenChanged: ${LDAPTIME}
668 uSNCreated: 1
669 uSNChanged: 1
670 name: Group Policy Creator Owners
671 objectGUID: ${NEWGUID}
672 objectSid: ${DOMAINSID}-520
673 sAMAccountName: Group Policy Creator Owners
674 sAMAccountType: 268435456
675 groupType: -2147483646
676 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
677 isCriticalSystemObject: TRUE
678
679 dn: CN=RAS and IAS Servers,CN=Users,${BASEDN}
680 objectClass: top
681 objectClass: group
682 cn: RAS and IAS Servers
683 description: Servers in this group can access remote access properties of users
684 instanceType: 4
685 whenCreated: ${LDAPTIME}
686 whenChanged: ${LDAPTIME}
687 uSNCreated: 1
688 uSNChanged: 1
689 name: RAS and IAS Servers
690 objectGUID: ${NEWGUID}
691 objectSid: ${DOMAINSID}-553
692 sAMAccountName: RAS and IAS Servers
693 sAMAccountType: 0x20000000
694 groupType: -2147483644
695 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
696 isCriticalSystemObject: TRUE
697
698 dn: CN=Server Operators,CN=Builtin,${BASEDN}
699 objectClass: top
700 objectClass: group
701 cn: Server Operators
702 description: Members can administer domain servers
703 instanceType: 4
704 whenCreated: ${LDAPTIME}
705 whenChanged: ${LDAPTIME}
706 uSNCreated: 1
707 uSNChanged: 1
708 name: Server Operators
709 objectGUID: ${NEWGUID}
710 objectSid: S-1-5-32-549
711 adminCount: 1
712 sAMAccountName: Server Operators
713 sAMAccountType: 0x20000000
714 systemFlags: 0x8c000000
715 groupType: 0x80000005
716 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
717 isCriticalSystemObject: TRUE
718
719 dn: CN=Account Operators,CN=Builtin,${BASEDN}
720 objectClass: top
721 objectClass: group
722 cn: Account Operators
723 description: Members can administer domain user and group accounts
724 instanceType: 4
725 whenCreated: ${LDAPTIME}
726 whenChanged: ${LDAPTIME}
727 uSNCreated: 1
728 uSNChanged: 1
729 name: Account Operators
730 objectGUID: ${NEWGUID}
731 objectSid: S-1-5-32-548
732 adminCount: 1
733 sAMAccountName: Account Operators
734 sAMAccountType: 0x20000000
735 systemFlags: 0x8c000000
736 groupType: 0x80000005
737 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
738 isCriticalSystemObject: TRUE
739
740 dn: CN=Templates,${BASEDN}
741 objectClass: top
742 objectClass: container
743 cn: Templates
744 description: Container for SAM account templates
745 instanceType: 4
746 whenCreated: ${LDAPTIME}
747 whenChanged: ${LDAPTIME}
748 uSNCreated: 1
749 uSNChanged: 1
750 showInAdvancedViewOnly: FALSE
751 name: Templates
752 objectGUID: ${NEWGUID}
753 systemFlags: 0x8c000000
754 objectCategory: CN=Container,CN=Schema,CN=Configuration,${BASEDN}
755 isCriticalSystemObject: TRUE
756
757 dn: CN=TemplateUser,CN=Templates,${BASEDN}
758 objectClass: top
759 objectClass: person
760 objectClass: organizationalPerson
761 objectClass: Template
762 objectClass: userTemplate
763 cn: TemplateUser
764 name: TemplateUser
765 instanceType: 4
766 userAccountControl: 0x222
767 badPwdCount: 0
768 codePage: 0
769 countryCode: 0
770 badPasswordTime: 0
771 lastLogoff: 0
772 lastLogon: 0
773 pwdLastSet: 0
774 primaryGroupID: 513
775 accountExpires: -1
776 logonCount: 0
777 sAMAccountType: 0x30000000
778
779 dn: CN=TemplateGroup,CN=Templates,${BASEDN}
780 objectClass: top
781 objectClass: Template
782 objectClass: groupTemplate
783 cn: TemplateGroup
784 name: TemplateGroup
785 instanceType: 4
786 sAMAccountType: 0x10000000