s3: Fix EnumDomainAliases when no aliases are in LDAP
[Samba.git] / source4 / setup / provision_basedn_modify.ldif
blob39fd08e0d87d1828fea553e1b3a8825a8064b283
1 ###############################
2 # Domain Naming Context
3 ###############################
4 dn: ${DOMAINDN}
5 changetype: modify
7 # This should be 0x0001, but the 0 byte is not allowed - therefore encoded
8 replace: auditingPolicy
9 auditingPolicy:: AAE=
11 replace: creationTime
12 creationTime: ${CREATTIME}
14 replace: forceLogoff
15 forceLogoff: -9223372036854775808
17 # "fSMORoleOwner" filled in later
18 replace: gPLink
19 gPLink: [LDAP://CN={${POLICYGUID}},CN=Policies,CN=System,${DOMAINDN};0]
21 replace: isCriticalSystemObject
22 isCriticalSystemObject: TRUE
24 replace: lockoutDuration
25 lockoutDuration: -18000000000
27 replace: lockOutObservationWindow
28 lockOutObservationWindow: -18000000000
30 replace: lockoutThreshold
31 lockoutThreshold: 0
33 # "masteredBy" filled in later
34 replace: maxPwdAge
35 maxPwdAge: -37108517437440
37 # FIXME: This should be "-864000000000" when we fully comply with passwords pol.
38 replace: minPwdAge
39 minPwdAge: 0
41 replace: minPwdLength
42 minPwdLength: 7
44 replace: modifiedCount
45 modifiedCount: 1
47 replace: modifiedCountAtLastProm
48 modifiedCountAtLastProm: 0
50 replace: msDS-AllUsersTrustQuota
51 msDS-AllUsersTrustQuota: 1000
53 replace: msDS-Behavior-Version
54 msDS-Behavior-Version: ${DOMAIN_FUNCTIONALITY}
56 replace: ms-DS-MachineAccountQuota
57 ms-DS-MachineAccountQuota: 10
59 # "msDs-masteredBy" filled in later
60 replace: msDS-PerUserTrustQuota
61 msDS-PerUserTrustQuota: 1
63 replace: msDS-PerUserTrustTombstonesQuota
64 msDS-PerUserTrustTombstonesQuota: 10
66 replace: nextRid
67 nextRid: 1000
69 replace: nTMixedDomain
70 nTMixedDomain: 0
72 replace: objectSid
73 objectSid: ${DOMAINSID}
75 # This exists only in SAMBA
76 replace: oEMInformation
77 oEMInformation: Provisioned by SAMBA ${SAMBA_VERSION_STRING}
79 replace: pwdProperties
80 pwdProperties: 1
82 replace: pwdHistoryLength
83 pwdHistoryLength: 24
85 replace: rIDManagerReference
86 rIDManagerReference: CN=RID Manager$,CN=System,${DOMAINDN}
88 replace: serverState
89 serverState: 1
91 replace: subRefs
92 subRefs: ${CONFIGDN}
94 replace: systemFlags
95 systemFlags: -1946157056
97 replace: uASCompat
98 uASCompat: 1
100 replace: wellKnownObjects
101 wellKnownObjects: B:32:6227f0af1fc2410d8e3bb10615bb5b0f:CN=NTDS Quotas,${DOMAINDN}
102 wellKnownObjects: B:32:f4be92a4c777485e878e9421d53087db:CN=Microsoft,CN=Program Data,${DOMAINDN}
103 wellKnownObjects: B:32:09460c08ae1e4a4ea0f64aee7daa1e5a:CN=Program Data,${DOMAINDN}
104 wellKnownObjects: B:32:22b70c67d56e4efb91e9300fca3dc1aa:CN=ForeignSecurityPrincipals,${DOMAINDN}
105 wellKnownObjects: B:32:18e2ea80684f11d2b9aa00c04f79f805:CN=Deleted Objects,${DOMAINDN}
106 wellKnownObjects: B:32:2fbac1870ade11d297c400c04fd8d5cd:CN=Infrastructure,${DOMAINDN}
107 wellKnownObjects: B:32:ab8153b7768811d1aded00c04fd8d5cd:CN=LostAndFound,${DOMAINDN}
108 wellKnownObjects: B:32:ab1d30f3768811d1aded00c04fd8d5cd:CN=System,${DOMAINDN}
109 wellKnownObjects: B:32:a361b2ffffd211d1aa4b00c04fd7d83a:OU=Domain Controllers,${DOMAINDN}
110 wellKnownObjects: B:32:aa312825768811d1aded00c04fd8d5cd:CN=Computers,${DOMAINDN}
111 wellKnownObjects: B:32:a9d1ca15768811d1aded00c04fd8d5cd:CN=Users,${DOMAINDN}
113 ${DOMAINGUID_MOD}