1 dn: flatname=${DOMAIN},CN=Primary Domains
3 objectClass: primaryDomain
4 objectClass: kerberosSecret
7 secret:: ${MACHINEPASS_B64}
9 sAMAccountName: ${NETBIOSNAME}$
10 msDS-KeyVersionNumber: 1
11 objectSid: ${DOMAINSID}
12 privateKeytab: ${SECRETS_KEYTAB}
14 #Update a keytab for the external DNS server to use
15 dn: servicePrincipalName=DNS/${DNSDOMAIN},CN=Principals
18 objectClass: kerberosSecret
20 servicePrincipalName: DNS/${DNSDOMAIN}
21 msDS-KeyVersionNumber: 1
22 privateKeytab: ${DNS_KEYTAB}
23 secret:: ${DNSPASS_B64}