1 ###############################
2 # Domain Naming Context
3 ###############################
7 # This should be 0x0001, but the 0 byte is not allowed - therefore encoded
8 replace
: auditingPolicy
12 creationTime
: $
{CREATTIME
}
15 forceLogoff
: -9223372036854775808
17 # "fSMORoleOwner" filled in later
19 gPLink
: [LDAP
://CN={$
{POLICYGUID
}},CN=Policies
,CN=System
,$
{DOMAINDN
};0]
21 replace
: isCriticalSystemObject
22 isCriticalSystemObject
: TRUE
24 replace
: lockoutDuration
25 lockoutDuration
: -18000000000
27 replace
: lockOutObservationWindow
28 lockOutObservationWindow
: -18000000000
30 replace
: lockoutThreshold
33 # "masteredBy" filled in later
35 maxPwdAge
: -37108517437440
37 # FIXME: This should be "-864000000000" when we fully comply with passwords pol.
44 replace
: modifiedCount
47 replace
: modifiedCountAtLastProm
48 modifiedCountAtLastProm
: 0
50 replace
: msDS
-AllUsersTrustQuota
51 msDS
-AllUsersTrustQuota
: 1000
53 replace
: msDS
-Behavior
-Version
54 msDS
-Behavior
-Version
: $
{DOMAIN_FUNCTIONALITY
}
56 replace
: ms
-DS
-MachineAccountQuota
57 ms
-DS
-MachineAccountQuota
: 10
59 # "msDs-masteredBy" filled in later
60 replace
: msDS
-PerUserTrustQuota
61 msDS
-PerUserTrustQuota
: 1
63 replace
: msDS
-PerUserTrustTombstonesQuota
64 msDS
-PerUserTrustTombstonesQuota
: 10
69 replace
: nTMixedDomain
73 objectSid
: $
{DOMAINSID
}
75 # This exists only in SAMBA
76 replace
: oEMInformation
77 oEMInformation
: Provisioned by SAMBA $
{SAMBA_VERSION_STRING
}
79 replace
: pwdProperties
82 replace
: pwdHistoryLength
85 replace
: rIDManagerReference
86 rIDManagerReference
: CN=RID
Manager$
,CN=System
,$
{DOMAINDN
}
95 systemFlags
: -1946157056