source: branches/samba-3.5.x/source4/setup/provision_self_join.ldif

Last change on this file was 414, checked in by Herwig Bauernfeind, 16 years ago

Samba 3.5.0: Initial import

File size: 2.8 KB
Line 
1# Accounts for selfjoin (joins DC to itself)
2
3# Object under "Domain Controllers"
4dn: CN=${NETBIOSNAME},OU=Domain Controllers,${DOMAINDN}
5objectClass: top
6objectClass: person
7objectClass: organizationalPerson
8objectClass: user
9objectClass: computer
10accountExpires: 9223372036854775807
11dNSHostName: ${DNSNAME}
12# "frsComputerReferenceBL" doesn't exist since we still miss FRS support
13isCriticalSystemObject: TRUE
14localPolicyFlags: 0
15operatingSystem: Samba
16operatingSystemVersion: ${SAMBA_VERSION_STRING}
17primaryGroupID: 516
18# "rIDSetReferences" doesn't exist since we still miss distributed RIDs
19sAMAccountName: ${NETBIOSNAME}$
20# "servicePrincipalName" for FRS doesn't exit since we still miss FRS support
21# "servicePrincipalName"s for DNS ("ldap/../ForestDnsZones",
22# "ldap/../DomainDnsZones", "DNS/..") don't exist since we don't support AD DNS
23servicePrincipalName: GC/${DNSNAME}/${REALM}
24servicePrincipalName: HOST/${DNSNAME}/${DOMAIN}
25servicePrincipalName: HOST/${NETBIOSNAME}
26servicePrincipalName: HOST/${DNSNAME}
27servicePrincipalName: HOST/${DNSNAME}/${REALM}
28# "servicePrincipalName"s with GUIDs are located in
29# "provision_self_join_modify.ldif"
30servicePrincipalName: ldap/${DNSNAME}/${DOMAIN}
31servicePrincipalName: ldap/${NETBIOSNAME}
32servicePrincipalName: ldap/${DNSNAME}
33servicePrincipalName: ldap/${DNSNAME}/${REALM}
34userAccountControl: 532480
35userPassword:: ${MACHINEPASS_B64}
36
37# Here are missing the objects for the NTFRS subscription and the RID set since
38# we don't support those techniques (FRS, distributed RIDs) yet.
39
40# Objects under "Configuration/Sites/<Default sitename>/Servers"
41
42dn: ${SERVERDN}
43objectClass: top
44objectClass: server
45systemFlags: 1375731712
46dNSHostName: ${DNSNAME}
47serverReference: CN=${NETBIOSNAME},OU=Domain Controllers,${DOMAINDN}
48
49dn: CN=NTDS Settings,${SERVERDN}
50objectClass: top
51objectClass: applicationSettings
52objectClass: nTDSDSA
53dMDLocation: ${SCHEMADN}
54hasMasterNCs: ${CONFIGDN}
55hasMasterNCs: ${SCHEMADN}
56hasMasterNCs: ${DOMAINDN}
57invocationId: ${INVOCATIONID}
58msDS-Behavior-Version: ${DOMAIN_CONTROLLER_FUNCTIONALITY}
59msDS-HasDomainNCs: ${DOMAINDN}
60# "msDS-HasInstantiatedNCs"s for DNS don't exist since we don't support AD DNS
61msDS-HasInstantiatedNCs: B:8:0000000D:${CONFIGDN}
62msDS-HasInstantiatedNCs: B:8:0000000D:${SCHEMADN}
63msDS-HasInstantiatedNCs: B:8:00000005:${DOMAINDN}
64# "msDS-hasMasterNCs"s for DNS don't exist since we don't support AD DNS
65msDS-hasMasterNCs: ${CONFIGDN}
66msDS-hasMasterNCs: ${SCHEMADN}
67msDS-hasMasterNCs: ${DOMAINDN}
68options: 1
69systemFlags: 33554432
70
71# Provides an account for DNS keytab export
72dn: CN=dns,CN=Users,${DOMAINDN}
73objectClass: top
74objectClass: person
75objectClass: organizationalPerson
76objectClass: user
77description: DNS Service Account
78userAccountControl: 514
79accountExpires: 9223372036854775807
80sAMAccountName: dns
81servicePrincipalName: DNS/${DNSDOMAIN}
82userPassword:: ${DNSPASS_B64}
83isCriticalSystemObject: TRUE
Note: See TracBrowser for help on using the repository browser.