1 dn: CN=DnsAdmins
,CN=Users
,$
{DOMAINDN
}
3 description: DNS Administrators Group
4 sAMAccountName
: DnsAdmins
7 dn: CN=DnsUpdateProxy
,CN=Users
,$
{DOMAINDN
}
9 description: DNS clients who are permitted to perform dynamic updates on behal
10 f of some other clients
(such as DHCP servers
).
11 sAMAccountName
: DnsUpdateProxy
12 groupType
: -2147483646
14 dn: CN=MicrosoftDNS
,CN=System
,$
{DOMAINDN
}
15 objectClass: container
16 displayName
: DNS Servers
18 dn: DC=RootDNSServers
,CN=MicrosoftDNS
,CN=System
,$
{DOMAINDN
}
21 dn: DC=@
,DC=RootDNSServers
,CN=MicrosoftDNS
,CN=System
,$
{DOMAINDN
}
23 dnsRecord
:: FgACAAUIAAAAAAAAAAAAAAAAAAAAAAAAFAMBagxyb290LXNlcnZlcnMDbmV0AA
==
24 dnsRecord
:: FgACAAUIAAAAAAAAAAAAAAAAAAAAAAAAFAMBZAxyb290LXNlcnZlcnMDbmV0AA
==
25 dnsRecord
:: FgACAAUIAAAAAAAAAAAAAAAAAAAAAAAAFAMBYgxyb290LXNlcnZlcnMDbmV0AA
==
26 dnsRecord
:: FgACAAUIAAAAAAAAAAAAAAAAAAAAAAAAFAMBYQxyb290LXNlcnZlcnMDbmV0AA
==
27 dnsRecord
:: FgACAAUIAAAAAAAAAAAAAAAAAAAAAAAAFAMBaQxyb290LXNlcnZlcnMDbmV0AA
==
28 dnsRecord
:: FgACAAUIAAAAAAAAAAAAAAAAAAAAAAAAFAMBbAxyb290LXNlcnZlcnMDbmV0AA
==
29 dnsRecord
:: FgACAAUIAAAAAAAAAAAAAAAAAAAAAAAAFAMBbQxyb290LXNlcnZlcnMDbmV0AA
==
30 dnsRecord
:: FgACAAUIAAAAAAAAAAAAAAAAAAAAAAAAFAMBZwxyb290LXNlcnZlcnMDbmV0AA
==
31 dnsRecord
:: FgACAAUIAAAAAAAAAAAAAAAAAAAAAAAAFAMBZQxyb290LXNlcnZlcnMDbmV0AA
==
32 dnsRecord
:: FgACAAUIAAAAAAAAAAAAAAAAAAAAAAAAFAMBawxyb290LXNlcnZlcnMDbmV0AA
==
33 dnsRecord
:: FgACAAUIAAAAAAAAAAAAAAAAAAAAAAAAFAMBZgxyb290LXNlcnZlcnMDbmV0AA
==
34 dnsRecord
:: FgACAAUIAAAAAAAAAAAAAAAAAAAAAAAAFAMBYwxyb290LXNlcnZlcnMDbmV0AA
==
35 dnsRecord
:: FgACAAUIAAAAAAAAAAAAAAAAAAAAAAAAFAMBaAxyb290LXNlcnZlcnMDbmV0AA
==
37 dn: DC=h.root
-servers.net
,DC=RootDNSServers
,CN=MicrosoftDNS
,CN=System
,$
{DOMAINDN
}
39 dnsRecord
:: BAABAAUIAAAAAAAAAAAAAAAAAAAAAAAAgD8CNQ
==
41 dn: DC=c.root
-servers.net
,DC=RootDNSServers
,CN=MicrosoftDNS
,CN=System
,$
{DOMAINDN
}
43 dnsRecord
:: BAABAAUIAAAAAAAAAAAAAAAAAAAAAAAAwCEEDA
==
45 dn: DC=f.root
-servers.net
,DC=RootDNSServers
,CN=MicrosoftDNS
,CN=System
,$
{DOMAINDN
}
47 dnsRecord
:: BAABAAUIAAAAAAAAAAAAAAAAAAAAAAAAwAUF8Q
==
49 dn: DC=k.root
-servers.net
,DC=RootDNSServers
,CN=MicrosoftDNS
,CN=System
,$
{DOMAINDN
}
51 dnsRecord
:: BAABAAUIAAAAAAAAAAAAAAAAAAAAAAAAwQAOgQ
==
53 dn: DC=e.root
-servers.net
,DC=RootDNSServers
,CN=MicrosoftDNS
,CN=System
,$
{DOMAINDN
}
55 dnsRecord
:: BAABAAUIAAAAAAAAAAAAAAAAAAAAAAAAwMvmCg
==
57 dn: DC=g.root
-servers.net
,DC=RootDNSServers
,CN=MicrosoftDNS
,CN=System
,$
{DOMAINDN
}
59 dnsRecord
:: BAABAAUIAAAAAAAAAAAAAAAAAAAAAAAAwHAkBA
==
61 dn: DC=m.root
-servers.net
,DC=RootDNSServers
,CN=MicrosoftDNS
,CN=System
,$
{DOMAINDN
}
63 dnsRecord
:: BAABAAUIAAAAAAAAAAAAAAAAAAAAAAAAygwbIQ
==
65 dn: DC=l.root
-servers.net
,DC=RootDNSServers
,CN=MicrosoftDNS
,CN=System
,$
{DOMAINDN
}
67 dnsRecord
:: BAABAAUIAAAAAAAAAAAAAAAAAAAAAAAAxwdTKg
==
69 dn: DC=i.root
-servers.net
,DC=RootDNSServers
,CN=MicrosoftDNS
,CN=System
,$
{DOMAINDN
}
71 dnsRecord
:: BAABAAUIAAAAAAAAAAAAAAAAAAAAAAAAwCSUEQ
==
73 dn: DC=a.root
-servers.net
,DC=RootDNSServers
,CN=MicrosoftDNS
,CN=System
,$
{DOMAINDN
}
75 dnsRecord
:: BAABAAUIAAAAAAAAAAAAAAAAAAAAAAAAxikABA
==
77 dn: DC=b.root
-servers.net
,DC=RootDNSServers
,CN=MicrosoftDNS
,CN=System
,$
{DOMAINDN
}
79 dnsRecord
:: BAABAAUIAAAAAAAAAAAAAAAAAAAAAAAAwORPyQ
==
81 dn: DC=d.root
-servers.net
,DC=RootDNSServers
,CN=MicrosoftDNS
,CN=System
,$
{DOMAINDN
}
83 dnsRecord
:: BAABAAUIAAAAAAAAAAAAAAAAAAAAAAAAgAgKWg
==
85 dn: DC=j.root
-servers.net
,DC=RootDNSServers
,CN=MicrosoftDNS
,CN=System
,$
{DOMAINDN
}
87 dnsRecord
:: BAABAAUIAAAAAAAAAAAAAAAAAAAAAAAAwDqAHg
==
90 # NOTE: This account is SAMBA4 specific!
91 # we have it to avoid the need for the bind daemon to
92 # have access to the whole secrets.keytab for the domain,
93 # otherwise bind could impersonate any user
94 dn: CN=dns
-$
{HOSTNAME
},CN=Users
,$
{DOMAINDN
}
97 objectClass: organizationalPerson
99 description: DNS Service Account for $
{HOSTNAME
}
100 userAccountControl
: 512
101 accountExpires
: 9223372036854775807
102 sAMAccountName
: dns
-$
{HOSTNAME
}
103 servicePrincipalName
: DNS
/$
{DNSNAME
}
104 servicePrincipalName
: DNS
/$
{DNSDOMAIN
}
105 clearTextPassword
:: $
{DNSPASS_B64
}
106 isCriticalSystemObject
: TRUE