r6565: Cludge, cludge, cludge...
[kai/samba.git] / source / setup / provision.ldif
1 dn: @INDEXLIST
2 @IDXATTR: name
3 @IDXATTR: sAMAccountName
4 @IDXATTR: objectSid
5 @IDXATTR: objectClass
6 @IDXATTR: member
7 @IDXATTR: unixID
8 @IDXATTR: unixName
9 @IDXATTR: privilege
10
11 dn: @ATTRIBUTES
12 realm: CASE_INSENSITIVE
13 userPrincipalName: CASE_INSENSITIVE
14 servicePrincipalName: CASE_INSENSITIVE
15 cn: CASE_INSENSITIVE
16 dc: CASE_INSENSITIVE
17 name: CASE_INSENSITIVE WILDCARD
18 dn: CASE_INSENSITIVE WILDCARD
19 sAMAccountName: CASE_INSENSITIVE WILDCARD
20 objectClass: CASE_INSENSITIVE
21 unicodePwd: HIDDEN
22 ntPwdHash: HIDDEN
23 ntPwdHistory: HIDDEN
24 lmPwdHash: HIDDEN
25 lmPwdHistory: HIDDEN
26 createTimestamp: HIDDEN
27 modifyTimestamp: HIDDEN
28
29 dn: @SUBCLASSES
30 top: domain
31 top: person
32 top: group
33 domain: domainDNS
34 domain: builtinDomain
35 person: organizationalPerson
36 organizationalPerson: user
37 user: computer
38 template: userTemplate
39 template: groupTemplate
40
41 #Add modules to the list to activate them by default
42 #beware often order is important
43 dn: @MODULES
44 @LIST: samldb,timestamps
45
46 ###############################
47 # Domain Naming Context
48 ###############################
49 dn: ${BASEDN}
50 objectClass: top
51 objectClass: domain
52 objectClass: domainDNS
53 name: ${DOMAIN}
54 flatname: ${DOMAIN}
55 realm: ${REALM}
56 dnsDomain: ${DNSDOMAIN}
57 dc: ${DOMAIN}
58 objectGUID: ${DOMAINGUID}
59 creationTime: ${NTTIME}
60 forceLogoff: 0x8000000000000000
61 lockoutDuration: -18000000000
62 lockOutObservationWindow: -18000000000
63 lockoutThreshold: 0
64 whenCreated: ${LDAPTIME}
65 whenChanged: ${LDAPTIME}
66 uSNCreated: 1
67 uSNChanged: 1
68 maxPwdAge: -37108517437440
69 minPwdAge: 0
70 minPwdLength: 7
71 modifiedCountAtLastProm: 0
72 nextRid: 1001
73 pwdProperties: 1
74 pwdHistoryLength: 24
75 objectSid: ${DOMAINSID}
76 serverState: 1
77 nTMixedDomain: 1
78 msDS-Behavior-Version: 0
79 ridManagerReference: CN=RID Manager$,CN=System,${BASEDN}
80 uASCompat: 1
81 modifiedCount: 1
82 objectCategory: CN=Domain-DNS,CN=Schema,CN=Configuration,${BASEDN}
83 isCriticalSystemObject: TRUE
84 subRefs: CN=Configuration,${BASEDN}
85 subRefs: CN=Schema,CN=Configuration,${BASEDN}
86
87 dn: CN=Users,${BASEDN}
88 objectClass: top
89 objectClass: container
90 cn: Users
91 description: Default container for upgraded user accounts
92 instanceType: 4
93 whenCreated: ${LDAPTIME}
94 whenChanged: ${LDAPTIME}
95 uSNCreated: 1
96 uSNChanged: 1
97 showInAdvancedViewOnly: FALSE
98 name: Users
99 objectGUID: ${NEWGUID}
100 systemFlags: 0x8c000000
101 objectCategory: CN=Container,CN=Schema,CN=Configuration,${BASEDN}
102 isCriticalSystemObject: TRUE
103
104 dn: CN=Computers,${BASEDN}
105 objectClass: top
106 objectClass: container
107 cn: Computers
108 description: Default container for upgraded computer accounts
109 instanceType: 4
110 whenCreated: ${LDAPTIME}
111 whenChanged: ${LDAPTIME}
112 uSNCreated: 1
113 uSNChanged: 1
114 showInAdvancedViewOnly: FALSE
115 name: Computers
116 objectGUID: ${NEWGUID}
117 systemFlags: 0x8c000000
118 objectCategory: CN=Container,CN=Schema,CN=Configuration,${BASEDN}
119 isCriticalSystemObject: TRUE
120
121 dn: OU=Domain Controllers,${BASEDN}
122 objectClass: top
123 objectClass: organizationalUnit
124 ou: Domain Controllers
125 description: Default container for domain controllers
126 instanceType: 4
127 whenCreated: ${LDAPTIME}
128 whenChanged: ${LDAPTIME}
129 uSNCreated: 1
130 uSNChanged: 1
131 showInAdvancedViewOnly: FALSE
132 name: Domain Controllers
133 objectGUID: ${NEWGUID}
134 systemFlags: 0x8c000000
135 objectCategory: CN=Organizational-Unit,CN=Schema,CN=Configuration,${BASEDN}
136 isCriticalSystemObject: TRUE
137
138 dn: CN=ForeignSecurityPrincipals,${BASEDN}
139 objectClass: top
140 objectClass: container
141 cn: ForeignSecurityPrincipals
142 description: Default container for security identifiers (SIDs) associated with objects from external, trusted domains
143 instanceType: 4
144 whenCreated: ${LDAPTIME}
145 whenChanged: ${LDAPTIME}
146 uSNCreated: 1
147 uSNChanged: 1
148 showInAdvancedViewOnly: FALSE
149 name: ForeignSecurityPrincipals
150 objectGUID: ${NEWGUID}
151 systemFlags: 0x8c000000
152 objectCategory: CN=Container,CN=Schema,CN=Configuration,${BASEDN}
153 isCriticalSystemObject: TRUE
154
155 dn: CN=System,${BASEDN}
156 objectClass: top
157 objectClass: container
158 cn: System
159 description: Builtin system settings
160 instanceType: 4
161 whenCreated: ${LDAPTIME}
162 whenChanged: ${LDAPTIME}
163 uSNCreated: 1
164 uSNChanged: 1
165 showInAdvancedViewOnly: TRUE
166 name: System
167 objectGUID: ${NEWGUID}
168 systemFlags: 0x8c000000
169 objectCategory: CN=Container,CN=Schema,CN=Configuration,${BASEDN}
170 isCriticalSystemObject: TRUE
171
172 dn: CN=RID Manager$,CN=System,${BASEDN}
173 objectclass: top
174 objectclass: rIDManager
175 cn: RID Manager$
176 instanceType: 4
177 whenCreated: ${LDAPTIME}
178 whenChanged: ${LDAPTIME}
179 uSNCreated: 1
180 uSNChanged: 1
181 showInAdvancedViewOnly: TRUE
182 name: RID Manager$
183 objectGUID: ${NEWGUID}
184 systemFlags: 0x8c000000
185 objectCategory: CN=RID-Manager,CN=Schema,CN=Configuration,${BASEDN}
186 isCriticalSystemObject: TRUE
187 fSMORoleOwner: CN=NTDS Settings,CN=${NETBIOSNAME},CN=Servers,CN=${DEFAULTSITE},CN=Sites,CN=Configuration,${BASEDN}
188 rIDAvailablePool: 4611686014132423217
189
190 dn: CN=DomainUpdates,CN=System,${BASEDN}
191 objectClass: top
192 objectClass: container
193 cn: DomainUpdates
194 instanceType: 4
195 whenCreated: ${LDAPTIME}
196 whenChanged: ${LDAPTIME}
197 uSNCreated: 1
198 uSNChanged: 1
199 showInAdvancedViewOnly: TRUE
200 name: DomainUpdates
201 objectGUID: ${NEWGUID}
202 objectCategory: CN=Container,CN=Schema,CN=Configuration,${BASEDN}
203
204 dn: CN=Windows2003Update,CN=DomainUpdates,CN=System,${BASEDN}
205 objectClass: top
206 objectClass: container
207 cn: Windows2003Update
208 instanceType: 4
209 whenCreated: ${LDAPTIME}
210 whenChanged: ${LDAPTIME}
211 uSNCreated: 1
212 uSNChanged: 1
213 showInAdvancedViewOnly: TRUE
214 name: Windows2003Update
215 objectGUID: ${NEWGUID}
216 objectCategory: CN=Container,CN=Schema,CN=Configuration,${BASEDN}
217 revision: 8
218
219 dn: CN=Infrastructure,${BASEDN}
220 objectclass: top
221 objectclass: infrastructureUpdate
222 cn: Infrastructure
223 instanceType: 4
224 whenCreated: ${LDAPTIME}
225 whenChanged: ${LDAPTIME}
226 uSNCreated: 1
227 uSNChanged: 1
228 showInAdvancedViewOnly: TRUE
229 name: Infrastructure
230 objectGUID: ${NEWGUID}
231 systemFlags: 0x8c000000
232 objectCategory: CN=Infrastructure-Update,CN=Schema,CN=Configuration,${BASEDN}
233 isCriticalSystemObject: TRUE
234 fSMORoleOwner: CN=NTDS Settings,CN=${NETBIOSNAME},CN=Servers,CN=${DEFAULTSITE},CN=Sites,CN=Configuration,${BASEDN}
235
236 dn: CN=Builtin,${BASEDN}
237 objectClass: top
238 objectClass: builtinDomain
239 cn: Builtin
240 instanceType: 4
241 showInAdvancedViewOnly: FALSE
242 name: Builtin
243 forceLogoff: 0x8000000000000000
244 lockoutDuration: -18000000000
245 lockOutObservationWindow: -18000000000
246 lockoutThreshold: 0
247 maxPwdAge: -37108517437440
248 minPwdAge: 0
249 minPwdLength: 0
250 modifiedCountAtLastProm: 0
251 nextRid: 1000
252 pwdProperties: 0
253 pwdHistoryLength: 0
254 objectSid: S-1-5-32
255 serverState: 1
256 uASCompat: 1
257 modifiedCount: 1
258 objectCategory: CN=Builtin-Domain,CN=Schema,CN=Configuration,${BASEDN}
259 isCriticalSystemObject: TRUE
260
261 dn: CN=Administrator,CN=Users,${BASEDN}
262 objectClass: top
263 objectClass: person
264 objectClass: organizationalPerson
265 objectClass: user
266 cn: Administrator
267 description: Built-in account for administering the computer/domain
268 instanceType: 4
269 whenCreated: ${LDAPTIME}
270 whenChanged: ${LDAPTIME}
271 uSNCreated: 1
272 memberOf: CN=Group Policy Creator Owners,CN=Users,${BASEDN}
273 memberOf: CN=Domain Admins,CN=Users,${BASEDN}
274 memberOf: CN=Enterprise Admins,CN=Users,${BASEDN}
275 memberOf: CN=Schema Admins,CN=Users,${BASEDN}
276 memberOf: CN=Administrators,CN=Builtin,${BASEDN}
277 uSNChanged: 1
278 name: Administrator
279 objectGUID: ${NEWGUID}
280 userAccountControl: 0x10200
281 badPwdCount: 0
282 codePage: 0
283 countryCode: 0
284 badPasswordTime: 0
285 lastLogoff: 0
286 lastLogon: 0
287 pwdLastSet: 0
288 primaryGroupID: 513
289 objectSid: ${DOMAINSID}-500
290 adminCount: 1
291 accountExpires: -1
292 logonCount: 0
293 sAMAccountName: Administrator
294 sAMAccountType: 0x30000000
295 objectCategory: CN=Person,CN=Schema,CN=Configuration,${BASEDN}
296 isCriticalSystemObject: TRUE
297 unicodePwd: ${ADMINPASS}
298 unixName: root
299
300 dn: CN=Guest,CN=Users,${BASEDN}
301 objectClass: top
302 objectClass: person
303 objectClass: organizationalPerson
304 objectClass: user
305 cn: Guest
306 description: Built-in account for guest access to the computer/domain
307 instanceType: 4
308 whenCreated: ${LDAPTIME}
309 whenChanged: ${LDAPTIME}
310 uSNCreated: 1
311 memberOf: CN=Guests,CN=Builtin,${BASEDN}
312 uSNChanged: 1
313 name: Guest
314 objectGUID: ${NEWGUID}
315 userAccountControl: 0x10222
316 badPwdCount: 0
317 codePage: 0
318 countryCode: 0
319 badPasswordTime: 0
320 lastLogoff: 0
321 lastLogon: 0
322 pwdLastSet: 0
323 primaryGroupID: 514
324 objectSid: ${DOMAINSID}-501
325 accountExpires: -1
326 logonCount: 0
327 sAMAccountName: Guest
328 sAMAccountType: 0x30000000
329 objectCategory: CN=Person,CN=Schema,CN=Configuration,${BASEDN}
330 isCriticalSystemObject: TRUE
331
332 dn: CN=Administrators,CN=Builtin,${BASEDN}
333 objectClass: top
334 objectClass: group
335 cn: Administrators
336 description: Administrators have complete and unrestricted access to the computer/domain
337 member: CN=Domain Admins,CN=Users,${BASEDN}
338 member: CN=Enterprise Admins,CN=Users,${BASEDN}
339 member: CN=Administrator,CN=Users,${BASEDN}
340 instanceType: 4
341 whenCreated: ${LDAPTIME}
342 whenChanged: ${LDAPTIME}
343 uSNCreated: 1
344 uSNChanged: 1
345 name: Administrators
346 objectGUID: ${NEWGUID}
347 objectSid: S-1-5-32-544
348 adminCount: 1
349 sAMAccountName: Administrators
350 sAMAccountType: 0x20000000
351 systemFlags: 0x8c000000
352 groupType: 0x80000005
353 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
354 isCriticalSystemObject: TRUE
355 unixName: ${WHEEL}
356 privilege: SeSecurityPrivilege
357 privilege: SeBackupPrivilege
358 privilege: SeRestorePrivilege
359 privilege: SeSystemtimePrivilege
360 privilege: SeShutdownPrivilege
361 privilege: SeRemoteShutdownPrivilege
362 privilege: SeTakeOwnershipPrivilege
363 privilege: SeDebugPrivilege
364 privilege: SeSystemEnvironmentPrivilege
365 privilege: SeSystemProfilePrivilege
366 privilege: SeProfileSingleProcessPrivilege
367 privilege: SeIncreaseBasePriorityPrivilege
368 privilege: SeLoadDriverPrivilege
369 privilege: SeCreatePagefilePrivilege
370 privilege: SeIncreaseQuotaPrivilege
371 privilege: SeChangeNotifyPrivilege
372 privilege: SeUndockPrivilege
373 privilege: SeManageVolumePrivilege
374 privilege: SeImpersonatePrivilege
375 privilege: SeCreateGlobalPrivilege
376 privilege: SeEnableDelegationPrivilege
377 privilege: SeInteractiveLogonRight
378 privilege: SeNetworkLogonRight
379 privilege: SeRemoteInteractiveLogonRight
380
381
382 dn: CN=Users,CN=Builtin,${BASEDN}
383 objectClass: top
384 objectClass: group
385 cn: Users
386 description: Users are prevented from making accidental or intentional system-wide changes.  Thus, Users can run certified applications, but not most legacy applications
387 member: CN=Domain Users,CN=Users,${BASEDN}
388 instanceType: 4
389 whenCreated: ${LDAPTIME}
390 whenChanged: ${LDAPTIME}
391 uSNCreated: 1
392 uSNChanged: 1
393 name: Users
394 objectGUID: ${NEWGUID}
395 objectSid: S-1-5-32-545
396 sAMAccountName: Users
397 sAMAccountType: 0x20000000
398 systemFlags: 0x8c000000
399 groupType: 0x80000005
400 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
401 isCriticalSystemObject: TRUE
402
403 dn: CN=Guests,CN=Builtin,${BASEDN}
404 objectClass: top
405 objectClass: group
406 cn: Guests
407 description: Guests have the same access as members of the Users group by default, except for the Guest account which is further restricted
408 member: CN=Domain Guests,CN=Users,${BASEDN}
409 member: CN=Guest,CN=Users,${BASEDN}
410 instanceType: 4
411 whenCreated: ${LDAPTIME}
412 whenChanged: ${LDAPTIME}
413 uSNCreated: 1
414 uSNChanged: 1
415 name: Guests
416 objectGUID: ${NEWGUID}
417 objectSid: S-1-5-32-546
418 sAMAccountName: Guests
419 sAMAccountType: 0x20000000
420 systemFlags: 0x8c000000
421 groupType: 0x80000005
422 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
423 isCriticalSystemObject: TRUE
424 unixName: ${NOGROUP}
425
426 dn: CN=Print Operators,CN=Builtin,${BASEDN}
427 objectClass: top
428 objectClass: group
429 cn: Print Operators
430 description: Members can administer domain printers
431 instanceType: 4
432 whenCreated: ${LDAPTIME}
433 whenChanged: ${LDAPTIME}
434 uSNCreated: 1
435 uSNChanged: 1
436 name: Print Operators
437 objectGUID: ${NEWGUID}
438 objectSid: S-1-5-32-550
439 adminCount: 1
440 sAMAccountName: Print Operators
441 sAMAccountType: 0x20000000
442 systemFlags: 0x8c000000
443 groupType: 0x80000005
444 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
445 isCriticalSystemObject: TRUE
446 privilege: SeLoadDriverPrivilege
447 privilege: SeShutdownPrivilege
448 privilege: SeInteractiveLogonRight
449
450 dn: CN=Backup Operators,CN=Builtin,${BASEDN}
451 objectClass: top
452 objectClass: group
453 cn: Backup Operators
454 description: Backup Operators can override security restrictions for the sole purpose of backing up or restoring files
455 instanceType: 4
456 whenCreated: ${LDAPTIME}
457 whenChanged: ${LDAPTIME}
458 uSNCreated: 1
459 uSNChanged: 1
460 name: Backup Operators
461 objectGUID: ${NEWGUID}
462 objectSid: S-1-5-32-551
463 adminCount: 1
464 sAMAccountName: Backup Operators
465 sAMAccountType: 0x20000000
466 systemFlags: 0x8c000000
467 groupType: 0x80000005
468 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
469 isCriticalSystemObject: TRUE
470 privilege: SeBackupPrivilege
471 privilege: SeRestorePrivilege
472 privilege: SeShutdownPrivilege
473 privilege: SeInteractiveLogonRight
474
475 dn: CN=Replicator,CN=Builtin,${BASEDN}
476 objectClass: top
477 objectClass: group
478 cn: Replicator
479 description: Supports file replication in a domain
480 instanceType: 4
481 whenCreated: ${LDAPTIME}
482 whenChanged: ${LDAPTIME}
483 uSNCreated: 1
484 uSNChanged: 1
485 name: Replicator
486 objectGUID: ${NEWGUID}
487 objectSid: S-1-5-32-552
488 adminCount: 1
489 sAMAccountName: Replicator
490 sAMAccountType: 0x20000000
491 systemFlags: 0x8c000000
492 groupType: 0x80000005
493 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
494 isCriticalSystemObject: TRUE
495
496 dn: CN=Remote Desktop Users,CN=Builtin,${BASEDN}
497 objectClass: top
498 objectClass: group
499 cn: Remote Desktop Users
500 description: Members in this group are granted the right to logon remotely
501 instanceType: 4
502 whenCreated: ${LDAPTIME}
503 whenChanged: ${LDAPTIME}
504 uSNCreated: 1
505 uSNChanged: 1
506 name: Remote Desktop Users
507 objectGUID: ${NEWGUID}
508 objectSid: S-1-5-32-555
509 sAMAccountName: Remote Desktop Users
510 sAMAccountType: 0x20000000
511 systemFlags: 0x8c000000
512 groupType: 0x80000005
513 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
514 isCriticalSystemObject: TRUE
515
516 dn: CN=Network Configuration Operators,CN=Builtin,${BASEDN}
517 objectClass: top
518 objectClass: group
519 cn: Network Configuration Operators
520 description: Members in this group can have some administrative privileges to manage configuration of networking features
521 instanceType: 4
522 whenCreated: ${LDAPTIME}
523 whenChanged: ${LDAPTIME}
524 uSNCreated: 1
525 uSNChanged: 1
526 name: Network Configuration Operators
527 objectGUID: ${NEWGUID}
528 objectSid: S-1-5-32-556
529 sAMAccountName: Network Configuration Operators
530 sAMAccountType: 0x20000000
531 systemFlags: 0x8c000000
532 groupType: 0x80000005
533 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
534 isCriticalSystemObject: TRUE
535
536 dn: CN=Performance Monitor Users,CN=Builtin,${BASEDN}
537 objectClass: top
538 objectClass: group
539 cn: Performance Monitor Users
540 description: Members of this group have remote access to monitor this computer
541 instanceType: 4
542 whenCreated: ${LDAPTIME}
543 whenChanged: ${LDAPTIME}
544 uSNCreated: 1
545 uSNChanged: 1
546 name: Performance Monitor Users
547 objectGUID: ${NEWGUID}
548 objectSid: S-1-5-32-558
549 sAMAccountName: Performance Monitor Users
550 sAMAccountType: 0x20000000
551 systemFlags: 0x8c000000
552 groupType: 0x80000005
553 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
554 isCriticalSystemObject: TRUE
555
556 dn: CN=Performance Log Users,CN=Builtin,${BASEDN}
557 objectClass: top
558 objectClass: group
559 cn: Performance Log Users
560 description: Members of this group have remote access to schedule logging of performance counters on this computer
561 instanceType: 4
562 whenCreated: ${LDAPTIME}
563 whenChanged: ${LDAPTIME}
564 uSNCreated: 1
565 uSNChanged: 1
566 name: Performance Log Users
567 objectGUID: ${NEWGUID}
568 objectSid: S-1-5-32-559
569 sAMAccountName: Performance Log Users
570 sAMAccountType: 0x20000000
571 systemFlags: 0x8c000000
572 groupType: 0x80000005
573 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
574 isCriticalSystemObject: TRUE
575
576 dn: CN=${NETBIOSNAME},OU=Domain Controllers,${BASEDN}
577 objectClass: top
578 objectClass: person
579 objectClass: organizationalPerson
580 objectClass: user
581 objectClass: computer
582 cn: ${NETBIOSNAME}
583 instanceType: 4
584 whenCreated: ${LDAPTIME}
585 whenChanged: ${LDAPTIME}
586 uSNCreated: 1
587 uSNChanged: 1
588 name: ${NETBIOSNAME}
589 objectGUID: ${HOSTGUID}
590 userAccountControl: 532480
591 badPwdCount: 0
592 codePage: 0
593 countryCode: 0
594 badPasswordTime: 0
595 lastLogoff: 0
596 lastLogon: 127273269057298624
597 localPolicyFlags: 0
598 pwdLastSet: 127258826171655328
599 primaryGroupID: 516
600 objectSid: ${DOMAINSID}-1000
601 accountExpires: 9223372036854775807
602 logonCount: 30
603 sAMAccountName: ${NETBIOSNAME}$
604 sAMAccountType: 805306369
605 operatingSystem: Samba
606 operatingSystemVersion: 4.0
607 dNSHostName: ${DNSNAME}
608 objectCategory: CN=Computer,CN=Schema,CN=Configuration,${BASEDN}
609 isCriticalSystemObject: TRUE
610 unicodePwd: ${JOINPASS}
611 servicePrincipalName: HOST/${DNSNAME}
612 servicePrincipalName: HOST/${NETBIOSNAME}
613 servicePrincipalName: CIFS/${DNSNAME}
614 servicePrincipalName: CIFS/${NETBIOSNAME}
615 servicePrincipalName: LDAP/${DNSNAME}
616 servicePrincipalName: LDAP/${NETBIOSNAME}
617
618 dn: CN=krbtgt,CN=Users,${BASEDN}
619 objectClass: top
620 objectClass: person
621 objectClass: organizationalPerson
622 objectClass: user
623 cn: krbtgt
624 description: Key Distribution Center Service Account
625 instanceType: 4
626 whenCreated: ${LDAPTIME}
627 whenChanged: ${LDAPTIME}
628 uSNCreated: 1
629 uSNChanged: 1
630 showInAdvancedViewOnly: TRUE
631 name: krbtgt
632 objectGUID: ${NEWGUID}
633 userAccountControl: 514
634 badPwdCount: 0
635 codePage: 0
636 countryCode: 0
637 badPasswordTime: 0
638 lastLogoff: 0
639 lastLogon: 0
640 pwdLastSet: 127258826179466560
641 primaryGroupID: 513
642 objectSid: ${DOMAINSID}-502
643 adminCount: 1
644 accountExpires: 9223372036854775807
645 logonCount: 0
646 sAMAccountName: krbtgt
647 sAMAccountType: 805306368
648 servicePrincipalName: kadmin/changepw
649 objectCategory: CN=Person,CN=Schema,CN=Configuration,${BASEDN}
650 isCriticalSystemObject: TRUE
651 unicodePwd: ${RANDPASS}
652
653 dn: CN=Domain Computers,CN=Users,${BASEDN}
654 objectClass: top
655 objectClass: group
656 cn: Domain Computers
657 description: All workstations and servers joined to the domain
658 instanceType: 4
659 whenCreated: ${LDAPTIME}
660 whenChanged: ${LDAPTIME}
661 uSNCreated: 1
662 uSNChanged: 1
663 name: Domain Computers
664 objectGUID: ${NEWGUID}
665 objectSid: ${DOMAINSID}-515
666 sAMAccountName: Domain Computers
667 sAMAccountType: 0x10000000
668 groupType: 0x80000002
669 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
670 isCriticalSystemObject: TRUE
671
672 dn: CN=Domain Controllers,CN=Users,${BASEDN}
673 objectClass: top
674 objectClass: group
675 cn: Domain Controllers
676 description: All domain controllers in the domain
677 instanceType: 4
678 whenCreated: ${LDAPTIME}
679 whenChanged: ${LDAPTIME}
680 uSNCreated: 1
681 uSNChanged: 1
682 name: Domain Controllers
683 objectGUID: ${NEWGUID}
684 objectSid: ${DOMAINSID}-516
685 adminCount: 1
686 sAMAccountName: Domain Controllers
687 sAMAccountType: 0x10000000
688 groupType: 0x80000002
689 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
690 isCriticalSystemObject: TRUE
691
692 dn: CN=Schema Admins,CN=Users,${BASEDN}
693 objectClass: top
694 objectClass: group
695 cn: Schema Admins
696 description: Designated administrators of the schema
697 member: CN=Administrator,CN=Users,${BASEDN}
698 instanceType: 4
699 whenCreated: ${LDAPTIME}
700 whenChanged: ${LDAPTIME}
701 uSNCreated: 1
702 uSNChanged: 1
703 name: Schema Admins
704 objectGUID: ${NEWGUID}
705 objectSid: ${DOMAINSID}-518
706 adminCount: 1
707 sAMAccountName: Schema Admins
708 sAMAccountType: 0x10000000
709 groupType: 0x80000002
710 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
711 isCriticalSystemObject: TRUE
712 unixName: ${WHEEL}
713
714 dn: CN=Enterprise Admins,CN=Users,${BASEDN}
715 objectClass: top
716 objectClass: group
717 cn: Enterprise Admins
718 description: Designated administrators of the enterprise
719 member: CN=Administrator,CN=Users,${BASEDN}
720 instanceType: 4
721 whenCreated: ${LDAPTIME}
722 whenChanged: ${LDAPTIME}
723 uSNCreated: 1
724 memberOf: CN=Administrators,CN=Builtin,${BASEDN}
725 uSNChanged: 1
726 name: Enterprise Admins
727 objectGUID: ${NEWGUID}
728 objectSid: ${DOMAINSID}-519
729 adminCount: 1
730 sAMAccountName: Enterprise Admins
731 sAMAccountType: 0x10000000
732 groupType: 0x80000002
733 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
734 isCriticalSystemObject: TRUE
735 unixName: ${WHEEL}
736
737 dn: CN=Cert Publishers,CN=Users,${BASEDN}
738 objectClass: top
739 objectClass: group
740 cn: Cert Publishers
741 description: Members of this group are permitted to publish certificates to the Active Directory
742 instanceType: 4
743 whenCreated: ${LDAPTIME}
744 whenChanged: ${LDAPTIME}
745 uSNCreated: 1
746 uSNChanged: 1
747 name: Cert Publishers
748 objectGUID: ${NEWGUID}
749 objectSid: ${DOMAINSID}-517
750 sAMAccountName: Cert Publishers
751 sAMAccountType: 0x20000000
752 groupType: 0x80000004
753 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
754 isCriticalSystemObject: TRUE
755
756 dn: CN=Domain Admins,CN=Users,${BASEDN}
757 objectClass: top
758 objectClass: group
759 cn: Domain Admins
760 description: Designated administrators of the domain
761 member: CN=Administrator,CN=Users,${BASEDN}
762 instanceType: 4
763 whenCreated: ${LDAPTIME}
764 whenChanged: ${LDAPTIME}
765 uSNCreated: 1
766 memberOf: CN=Administrators,CN=Builtin,${BASEDN}
767 uSNChanged: 1
768 name: Domain Admins
769 objectGUID: ${NEWGUID}
770 objectSid: ${DOMAINSID}-512
771 adminCount: 1
772 sAMAccountName: Domain Admins
773 sAMAccountType: 0x10000000
774 groupType: 0x80000002
775 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
776 isCriticalSystemObject: TRUE
777 unixName: ${WHEEL}
778
779 dn: CN=Domain Users,CN=Users,${BASEDN}
780 objectClass: top
781 objectClass: group
782 cn: Domain Users
783 description: All domain users
784 instanceType: 4
785 whenCreated: ${LDAPTIME}
786 whenChanged: ${LDAPTIME}
787 uSNCreated: 1
788 memberOf: CN=Users,CN=Builtin,${BASEDN}
789 uSNChanged: 1
790 name: Domain Users
791 objectGUID: ${NEWGUID}
792 objectSid: ${DOMAINSID}-513
793 sAMAccountName: Domain Users
794 sAMAccountType: 0x10000000
795 groupType: 0x80000002
796 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
797 isCriticalSystemObject: TRUE
798 unixName: ${USERS}
799
800 dn: CN=Domain Guests,CN=Users,${BASEDN}
801 objectClass: top
802 objectClass: group
803 cn: Domain Guests
804 description: All domain guests
805 instanceType: 4
806 whenCreated: ${LDAPTIME}
807 whenChanged: ${LDAPTIME}
808 uSNCreated: 1
809 memberOf: CN=Guests,CN=Builtin,${BASEDN}
810 uSNChanged: 1
811 name: Domain Guests
812 objectGUID: ${NEWGUID}
813 objectSid: ${DOMAINSID}-514
814 sAMAccountName: Domain Guests
815 sAMAccountType: 0x10000000
816 groupType: 0x80000002
817 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
818 isCriticalSystemObject: TRUE
819
820 dn: CN=Group Policy Creator Owners,CN=Users,${BASEDN}
821 objectClass: top
822 objectClass: group
823 cn: Group Policy Creator Owners
824 description: Members in this group can modify group policy for the domain
825 member: CN=Administrator,CN=Users,${BASEDN}
826 instanceType: 4
827 whenCreated: ${LDAPTIME}
828 whenChanged: ${LDAPTIME}
829 uSNCreated: 1
830 uSNChanged: 1
831 name: Group Policy Creator Owners
832 objectGUID: ${NEWGUID}
833 objectSid: ${DOMAINSID}-520
834 sAMAccountName: Group Policy Creator Owners
835 sAMAccountType: 0x10000000
836 groupType: 0x80000002
837 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
838 isCriticalSystemObject: TRUE
839 unixName: ${WHEEL}
840
841 dn: CN=RAS and IAS Servers,CN=Users,${BASEDN}
842 objectClass: top
843 objectClass: group
844 cn: RAS and IAS Servers
845 description: Servers in this group can access remote access properties of users
846 instanceType: 4
847 whenCreated: ${LDAPTIME}
848 whenChanged: ${LDAPTIME}
849 uSNCreated: 1
850 uSNChanged: 1
851 name: RAS and IAS Servers
852 objectGUID: ${NEWGUID}
853 objectSid: ${DOMAINSID}-553
854 sAMAccountName: RAS and IAS Servers
855 sAMAccountType: 0x20000000
856 groupType: 0x80000004
857 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
858 isCriticalSystemObject: TRUE
859
860 dn: CN=Server Operators,CN=Builtin,${BASEDN}
861 objectClass: top
862 objectClass: group
863 cn: Server Operators
864 description: Members can administer domain servers
865 instanceType: 4
866 whenCreated: ${LDAPTIME}
867 whenChanged: ${LDAPTIME}
868 uSNCreated: 1
869 uSNChanged: 1
870 name: Server Operators
871 objectGUID: ${NEWGUID}
872 objectSid: S-1-5-32-549
873 adminCount: 1
874 sAMAccountName: Server Operators
875 sAMAccountType: 0x20000000
876 systemFlags: 0x8c000000
877 groupType: 0x80000005
878 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
879 isCriticalSystemObject: TRUE
880 privilege: SeBackupPrivilege
881 privilege: SeSystemtimePrivilege
882 privilege: SeRemoteShutdownPrivilege
883 privilege: SeRestorePrivilege
884 privilege: SeShutdownPrivilege
885 privilege: SeInteractiveLogonRight
886
887 dn: CN=Account Operators,CN=Builtin,${BASEDN}
888 objectClass: top
889 objectClass: group
890 cn: Account Operators
891 description: Members can administer domain user and group accounts
892 instanceType: 4
893 whenCreated: ${LDAPTIME}
894 whenChanged: ${LDAPTIME}
895 uSNCreated: 1
896 uSNChanged: 1
897 name: Account Operators
898 objectGUID: ${NEWGUID}
899 objectSid: S-1-5-32-548
900 adminCount: 1
901 sAMAccountName: Account Operators
902 sAMAccountType: 0x20000000
903 systemFlags: 0x8c000000
904 groupType: 0x80000005
905 objectCategory: CN=Group,CN=Schema,CN=Configuration,${BASEDN}
906 isCriticalSystemObject: TRUE
907 privilege: SeInteractiveLogonRight
908
909 dn: CN=Templates,${BASEDN}
910 objectClass: top
911 objectClass: container
912 cn: Templates
913 description: Container for SAM account templates
914 instanceType: 4
915 whenCreated: ${LDAPTIME}
916 whenChanged: ${LDAPTIME}
917 uSNCreated: 1
918 uSNChanged: 1
919 showInAdvancedViewOnly: TRUE
920 name: Templates
921 objectGUID: ${NEWGUID}
922 systemFlags: 0x8c000000
923 objectCategory: CN=Container,CN=Schema,CN=Configuration,${BASEDN}
924 isCriticalSystemObject: TRUE
925
926 ###
927 # note! the template users must not match normal searches. Be careful
928 # with what classes you put them in
929 ###
930
931 dn: CN=TemplateUser,CN=Templates,${BASEDN}
932 objectClass: top
933 objectClass: person
934 objectClass: organizationalPerson
935 objectClass: Template
936 objectClass: userTemplate
937 cn: TemplateUser
938 name: TemplateUser
939 instanceType: 4
940 userAccountControl: 0x202
941 badPwdCount: 0
942 codePage: 0
943 countryCode: 0
944 badPasswordTime: 0
945 lastLogoff: 0
946 lastLogon: 0
947 pwdLastSet: 0
948 primaryGroupID: 513
949 accountExpires: -1
950 logonCount: 0
951 sAMAccountType: 0x30000000
952
953 dn: CN=TemplateMemberServer,CN=Templates,${BASEDN}
954 objectClass: top
955 objectClass: Template
956 objectClass: userTemplate
957 cn: TemplateMemberServer
958 name: TemplateMemberServer
959 instanceType: 4
960 userAccountControl: 0x1002
961 badPwdCount: 0
962 codePage: 0
963 countryCode: 0
964 badPasswordTime: 0
965 lastLogoff: 0
966 lastLogon: 0
967 pwdLastSet: 0
968 primaryGroupID: 513
969 accountExpires: -1
970 logonCount: 0
971 sAMAccountType: 0x30000001
972
973 dn: CN=TemplateDomainController,CN=Templates,${BASEDN}
974 objectClass: top
975 objectClass: Template
976 objectClass: userTemplate
977 cn: TemplateDomainController
978 name: TemplateDomainController
979 instanceType: 4
980 userAccountControl: 0x2002
981 badPwdCount: 0
982 codePage: 0
983 countryCode: 0
984 badPasswordTime: 0
985 lastLogoff: 0
986 lastLogon: 0
987 pwdLastSet: 0
988 primaryGroupID: 513
989 accountExpires: -1
990 logonCount: 0
991 sAMAccountType: 0x30000001
992
993 dn: CN=TemplateTrustingDomain,CN=Templates,${BASEDN}
994 objectClass: top
995 objectClass: Template
996 objectClass: userTemplate
997 cn: TemplateTrustingDomain
998 name: TemplateTrustingDomain
999 instanceType: 4
1000 userAccountControl: 0x820
1001 badPwdCount: 0
1002 codePage: 0
1003 countryCode: 0
1004 badPasswordTime: 0
1005 lastLogoff: 0
1006 lastLogon: 0
1007 pwdLastSet: 0
1008 primaryGroupID: 513
1009 accountExpires: -1
1010 logonCount: 0
1011 sAMAccountType: 0x30000002
1012
1013 dn: CN=TemplateGroup,CN=Templates,${BASEDN}
1014 objectClass: top
1015 objectClass: Template
1016 objectClass: groupTemplate
1017 cn: TemplateGroup
1018 name: TemplateGroup
1019 instanceType: 4
1020 groupType: 0x80000002
1021 sAMAccountType: 0x10000000
1022
1023 dn: CN=TemplateAlias,CN=Templates,${BASEDN}
1024 objectClass: top
1025 objectClass: Template
1026 objectClass: aliasTemplate
1027 cn: TemplateAlias
1028 name: TemplateAlias
1029 instanceType: 4
1030 groupType: 0x80000004
1031 sAMAccountType: 0x10000000
1032
1033 dn: CN=TemplateForeignSecurityPrincipal,CN=Templates,${BASEDN}
1034 objectClass: top
1035 objectClass: Template
1036 objectClass: foreignSecurityPrincipalTemplate
1037 cn: TemplateForeignSecurityPrincipal
1038 name: TemplateForeignSecurityPrincipal
1039
1040 dn: CN=TemplateSecret,CN=Templates,${BASEDN}
1041 objectClass: top
1042 objectClass: leaf
1043 objectClass: Template
1044 objectClass: secretTemplate
1045 cn: TemplateSecret
1046 name: TemplateSecret
1047 instanceType: 4
1048
1049 dn: CN=TemplateTrustedDomain,CN=Templates,${BASEDN}
1050 objectClass: top
1051 objectClass: leaf
1052 objectClass: Template
1053 objectClass: trustedDomainTemplate
1054 cn: TemplateTrustedDomain
1055 name: TemplateTrustedDomain
1056 instanceType: 4
1057
1058 ###############################
1059 # Configuration Naming Context
1060 ###############################
1061 dn: CN=Configuration,${BASEDN}
1062 objectClass: top
1063 objectClass: configuration
1064 cn: Configuration
1065 instanceType: 13
1066 whenCreated: ${LDAPTIME}
1067 whenChanged: ${LDAPTIME}
1068 uSNCreated: ${USN}
1069 uSNChanged: ${USN}
1070 showInAdvancedViewOnly: TRUE
1071 name: Configuration
1072 objectGUID: ${NEWGUID}
1073 objectCategory: CN=Configuration,CN=Schema,CN=Configuration,${BASEDN}
1074 subRefs: CN=Schema,CN=Configuration,${BASEDN}
1075 masteredBy: CN=NTDS Settings,CN=${NETBIOSNAME},CN=Servers,CN=${DEFAULTSITE},CN=Sites,CN=Configuration,${BASEDN}
1076 msDs-masteredBy: CN=NTDS Settings,CN=${NETBIOSNAME},CN=Servers,CN=${DEFAULTSITE},CN=Sites,CN=Configuration,${BASEDN}
1077
1078 dn: CN=Partitions,CN=Configuration,${BASEDN}
1079 objectClass: top
1080 objectClass: crossRefContainer
1081 cn: Partitions
1082 instanceType: 4
1083 whenCreated: ${LDAPTIME}
1084 whenChanged: ${LDAPTIME}
1085 uSNCreated: ${USN}
1086 uSNChanged: ${USN}
1087 showInAdvancedViewOnly: TRUE
1088 name: Partitions
1089 objectGUID: ${NEWGUID}
1090 systemFlags: 0x80000000
1091 objectCategory: CN=Cross-Ref-Container,CN=Schema,CN=Configuration,${BASEDN}
1092 msDS-Behavior-Version: 0
1093 fSMORoleOwner: CN=NTDS Settings,CN=${NETBIOSNAME},CN=Servers,CN=${DEFAULTSITE},CN=Sites,CN=Configuration,${BASEDN}
1094
1095 dn: CN=Enterprise Configuration,CN=Partitions,CN=Configuration,${BASEDN}
1096 objectClass: top
1097 objectClass: crossRef
1098 cn: Enterprise Configuration
1099 instanceType: 4
1100 whenCreated: ${LDAPTIME}
1101 whenChanged: ${LDAPTIME}
1102 uSNCreated: ${USN}
1103 uSNChanged: ${USN}
1104 showInAdvancedViewOnly: TRUE
1105 name: Enterprise Configuration
1106 objectGUID: ${NEWGUID}
1107 systemFlags: 0x00000001
1108 objectCategory: CN=Cross-Ref,CN=Schema,CN=Configuration,${BASEDN}
1109 nCName: CN=Configuration,${BASEDN}
1110 dnsRoot: ${DNSDOMAIN}
1111
1112 dn: CN=Enterprise Schema,CN=Partitions,CN=Configuration,${BASEDN}
1113 objectClass: top
1114 objectClass: crossRef
1115 cn: Enterprise Schema
1116 instanceType: 4
1117 whenCreated: ${LDAPTIME}
1118 whenChanged: ${LDAPTIME}
1119 uSNCreated: ${USN}
1120 uSNChanged: ${USN}
1121 showInAdvancedViewOnly: TRUE
1122 name: Enterprise Schema
1123 objectGUID: ${NEWGUID}
1124 systemFlags: 0x00000001
1125 objectCategory: CN=Cross-Ref,CN=Schema,CN=Configuration,${BASEDN}
1126 nCName: CN=Schema,CN=Configuration,${BASEDN}
1127 dnsRoot: ${DNSDOMAIN}
1128
1129 dn: CN=${DOMAIN},CN=Partitions,CN=Configuration,${BASEDN}
1130 objectClass: top
1131 objectClass: crossRef
1132 cn: ${DOMAIN}
1133 instanceType: 4
1134 whenCreated: ${LDAPTIME}
1135 whenChanged: ${LDAPTIME}
1136 uSNCreated: ${USN}
1137 uSNChanged: ${USN}
1138 showInAdvancedViewOnly: TRUE
1139 name: ${DOMAIN}
1140 objectGUID: ${NEWGUID}
1141 systemFlags: 0x00000003
1142 objectCategory: CN=Cross-Ref,CN=Schema,CN=Configuration,${BASEDN}
1143 nCName: ${BASEDN}
1144 nETBIOSName: ${DOMAIN}
1145 dnsRoot: ${DNSDOMAIN}
1146
1147 dn: CN=Sites,CN=Configuration,${BASEDN}
1148 objectClass: top
1149 objectClass: sitesContainer
1150 cn: Sites
1151 instanceType: 4
1152 whenCreated: ${LDAPTIME}
1153 whenChanged: ${LDAPTIME}
1154 uSNCreated: ${USN}
1155 uSNChanged: ${USN}
1156 showInAdvancedViewOnly: TRUE
1157 name: Sites
1158 objectGUID: ${NEWGUID}
1159 systemFlags: 0x82000000
1160 objectCategory: CN=Sites-Container,CN=Schema,CN=Configuration,${BASEDN}
1161
1162 dn: CN=${DEFAULTSITE},CN=Sites,CN=Configuration,${BASEDN}
1163 objectClass: top
1164 objectClass: site
1165 cn: Sites
1166 instanceType: 4
1167 whenCreated: ${LDAPTIME}
1168 whenChanged: ${LDAPTIME}
1169 uSNCreated: ${USN}
1170 uSNChanged: ${USN}
1171 showInAdvancedViewOnly: TRUE
1172 name: Sites
1173 objectGUID: ${NEWGUID}
1174 systemFlags: 0x82000000
1175 objectCategory: CN=Site,CN=Schema,CN=Configuration,${BASEDN}
1176
1177 dn: CN=Servers,CN=${DEFAULTSITE},CN=Sites,CN=Configuration,${BASEDN}
1178 objectClass: top
1179 objectClass: serversContainer
1180 cn: Servers
1181 instanceType: 4
1182 whenCreated: ${LDAPTIME}
1183 whenChanged: ${LDAPTIME}
1184 uSNCreated: ${USN}
1185 uSNChanged: ${USN}
1186 showInAdvancedViewOnly: TRUE
1187 name: Servers
1188 objectGUID: ${NEWGUID}
1189 systemFlags: 0x82000000
1190 objectCategory: CN=Servers-Container,CN=Schema,CN=Configuration,${BASEDN}
1191
1192 dn: CN=${NETBIOSNAME},CN=Servers,CN=${DEFAULTSITE},CN=Sites,CN=Configuration,${BASEDN}
1193 objectClass: top
1194 objectClass: server
1195 cn: ${NETBIOSNAME}
1196 instanceType: 4
1197 whenCreated: ${LDAPTIME}
1198 whenChanged: ${LDAPTIME}
1199 uSNCreated: ${USN}
1200 uSNChanged: ${USN}
1201 showInAdvancedViewOnly: TRUE
1202 name: ${NETBIOSNAME}
1203 objectGUID: ${NEWGUID}
1204 systemFlags: 0x52000000
1205 objectCategory: CN=Server,CN=Schema,CN=Configuration,${BASEDN}
1206 dNSHostName: ${DNSNAME}
1207 serverReference: CN=${NETBIOSNAME},OU=Domain Controllers,${BASEDN}
1208
1209 dn: CN=NTDS Settings,CN=${NETBIOSNAME},CN=Servers,CN=${DEFAULTSITE},CN=Sites,CN=Configuration,${BASEDN}
1210 objectClass: top
1211 objectClass: applicationSettings
1212 objectClass: nTDSDSA
1213 cn: NTDS Settings
1214 instanceType: 4
1215 whenCreated: ${LDAPTIME}
1216 whenChanged: ${LDAPTIME}
1217 uSNCreated: ${USN}
1218 uSNChanged: ${USN}
1219 showInAdvancedViewOnly: TRUE
1220 name: NTDS Settings
1221 systemFlags: 0x02000000
1222 objectCategory: CN=NTDS-DSA,CN=Schema,CN=Configuration,${BASEDN}
1223 dMDLocation: CN=Schema,CN=Configuration,${BASEDN}
1224 objectGUID: ${INVOCATIONID}
1225 invocationId: ${INVOCATIONID}
1226 msDS-Behavior-Version: 2
1227
1228 ###############################
1229 # Schema Naming Context
1230 ###############################
1231 dn: CN=Schema,CN=Configuration,${BASEDN}
1232 objectClass: top
1233 objectClass: dMD
1234 cn: Schema
1235 instanceType: 13
1236 whenCreated: ${LDAPTIME}
1237 whenChanged: ${LDAPTIME}
1238 uSNCreated: ${USN}
1239 uSNChanged: ${USN}
1240 showInAdvancedViewOnly: TRUE
1241 name: Schema
1242 objectGUID: ${NEWGUID}
1243 objectCategory: CN=DMD,CN=Schema,CN=Configuration,${BASEDN}
1244 masteredBy: CN=NTDS Settings,CN=${NETBIOSNAME},CN=Servers,CN=${DEFAULTSITE},CN=Sites,CN=Configuration,${BASEDN}
1245 msDs-masteredBy: CN=NTDS Settings,CN=${NETBIOSNAME},CN=Servers,CN=${DEFAULTSITE},CN=Sites,CN=Configuration,${BASEDN}
1246 fSMORoleOwner: CN=NTDS Settings,CN=${NETBIOSNAME},CN=Servers,CN=${DEFAULTSITE},CN=Sites,CN=Configuration,${BASEDN}
1247 objectVersion: 30