1 ###############################
2 # Domain Naming Context
3 ###############################
7 # This should be 0x0001, but the 0 byte is not allowed - therefore encoded
8 replace
: auditingPolicy
12 creationTime
: $
{CREATTIME
}
14 # "dSCorePropagationDate" should contain the provision data
16 forceLogoff
: -9223372036854775808
18 # "fSMORoleOwner" filled in later
20 gPLink
: [LDAP
://CN={$
{POLICYGUID
}},CN=Policies
,CN=System
,$
{DOMAINDN
};0]
22 replace
: isCriticalSystemObject
23 isCriticalSystemObject
: TRUE
25 replace
: lockoutDuration
26 lockoutDuration
: -18000000000
28 replace
: lockOutObservationWindow
29 lockOutObservationWindow
: -18000000000
31 replace
: lockoutThreshold
34 # "masteredBy" filled in later
36 maxPwdAge
: -37108517437440
38 # FIXME: This should be "-864000000000" when we fully comply with passwords pol.
45 replace
: modifiedCount
48 replace
: modifiedCountAtLastProm
49 modifiedCountAtLastProm
: 0
51 replace
: msDS
-AllUsersTrustQuota
52 msDS
-AllUsersTrustQuota
: 1000
54 replace
: msDS
-Behavior
-Version
55 msDS
-Behavior
-Version
: $
{DOMAIN_FUNCTIONALITY
}
57 replace
: ms
-DS
-MachineAccountQuota
58 ms
-DS
-MachineAccountQuota
: 10
60 # "msDs-masteredBy" filled in later
64 replace
: msDS
-PerUserTrustQuota
65 msDS
-PerUserTrustQuota
: 1
67 replace
: msDS
-PerUserTrustTombstonesQuota
68 msDS
-PerUserTrustTombstonesQuota
: 10
73 replace
: nTMixedDomain
77 objectSid
: $
{DOMAINSID
}
79 # This does only exist in SAMBA
80 replace
: oEMInformation
81 oEMInformation
: Provisioned by SAMBA $
{SAMBA_VERSION_STRING
}
83 replace
: pwdProperties
86 replace
: pwdHistoryLength
89 replace
: rIDManagerReference
90 rIDManagerReference
: CN=RID
Manager$
,CN=System
,$
{DOMAINDN
}
99 systemFlags
: -1946157056