The branch, master has been updated
       via  554923ce1b1a3ab3a05bed14c0a2795e0c13febd (commit)
       via  c9b6e9fd038e1fe42c30d27939893c12ecee5776 (commit)
       via  d409a12ccd20abd45f8c0f399e55094f5ff9d0a7 (commit)
      from  a2e72ac5562d69fa40c7389a9d9d7e6551e39b41 (commit)

http://gitweb.samba.org/?p=samba.git;a=shortlog;h=master


- Log -----------------------------------------------------------------
commit 554923ce1b1a3ab3a05bed14c0a2795e0c13febd
Author: Andrew Kroeger <[email protected]>
Date:   Thu May 28 20:18:33 2009 -0500

    s4: Add additional 2-letter SID/RID mappings.
    
    Information from 
http://msdn.microsoft.com/en-us/library/aa379602(VS.85).aspx

commit c9b6e9fd038e1fe42c30d27939893c12ecee5776
Author: Andrew Kroeger <[email protected]>
Date:   Thu May 28 20:02:42 2009 -0500

    s4: Add additional well-known SID's/RID's.
    
    Information was found at http://support.microsoft.com/kb/243330
    
    Not all well-known identifiers were included - only those necessary for
    enhancing the 2-letter mappings used in SDDL strings were added.

commit d409a12ccd20abd45f8c0f399e55094f5ff9d0a7
Author: Andrew Bartlett <[email protected]>
Date:   Fri May 29 12:15:28 2009 +1000

    s4:setup Remove generated attributes from provision_configuration
    
    Incorrectly added in 95eeef91d3ed7daf8e19029eadcc610caf26db63, and
    found by OpenLDAP backend tests run by Theodor Chirana <[email protected]>
    
    Andrew Bartlett

-----------------------------------------------------------------------

Summary of changes:
 librpc/gen_ndr/security.h                  |    4 +
 librpc/idl/security.idl                    |    4 +
 source4/libcli/security/sddl.c             |   23 ++++
 source4/setup/provision_configuration.ldif |  195 ----------------------------
 4 files changed, 31 insertions(+), 195 deletions(-)


Changeset truncated at 500 lines:

diff --git a/librpc/gen_ndr/security.h b/librpc/gen_ndr/security.h
index 9db2108..d1dcbe5 100644
--- a/librpc/gen_ndr/security.h
+++ b/librpc/gen_ndr/security.h
@@ -121,17 +121,21 @@
 #define SID_BUILTIN_REPLICATOR ( "S-1-5-32-552" )
 #define SID_BUILTIN_RAS_SERVERS        ( "S-1-5-32-553" )
 #define SID_BUILTIN_PREW2K     ( "S-1-5-32-554" )
+#define SID_BUILTIN_REMOTE_DESKTOP_USERS       ( "S-1-5-32-555" )
+#define SID_BUILTIN_NETWORK_CONF_OPERATORS     ( "S-1-5-32-556" )
 #define DOMAIN_RID_LOGON       ( 9 )
 #define DOMAIN_RID_ADMINISTRATOR       ( 500 )
 #define DOMAIN_RID_GUEST       ( 501 )
 #define DOMAIN_RID_KRBTGT      ( 502 )
 #define DOMAIN_RID_ADMINS      ( 512 )
 #define DOMAIN_RID_USERS       ( 513 )
+#define DOMAIN_RID_GUESTS      ( 514 )
 #define DOMAIN_RID_DOMAIN_MEMBERS      ( 515 )
 #define DOMAIN_RID_DCS ( 516 )
 #define DOMAIN_RID_CERT_ADMINS ( 517 )
 #define DOMAIN_RID_SCHEMA_ADMINS       ( 518 )
 #define DOMAIN_RID_ENTERPRISE_ADMINS   ( 519 )
+#define DOMAIN_RID_POLICY_ADMINS       ( 520 )
 #define NT4_ACL_REVISION       ( SECURITY_ACL_REVISION_NT4 )
 #define SD_REVISION    ( SECURITY_DESCRIPTOR_REVISION_1 )
 struct dom_sid {
diff --git a/librpc/idl/security.idl b/librpc/idl/security.idl
index 941883f..9728c7f 100644
--- a/librpc/idl/security.idl
+++ b/librpc/idl/security.idl
@@ -219,6 +219,8 @@ interface security
        const string SID_BUILTIN_REPLICATOR        = "S-1-5-32-552";
        const string SID_BUILTIN_RAS_SERVERS       = "S-1-5-32-553";
        const string SID_BUILTIN_PREW2K            = "S-1-5-32-554";
+       const string SID_BUILTIN_REMOTE_DESKTOP_USERS   = "S-1-5-32-555";
+       const string SID_BUILTIN_NETWORK_CONF_OPERATORS = "S-1-5-32-556";
 
        /* well-known domain RIDs */
        const int DOMAIN_RID_LOGON                 = 9;
@@ -227,11 +229,13 @@ interface security
        const int DOMAIN_RID_KRBTGT                = 502;
        const int DOMAIN_RID_ADMINS                = 512;
        const int DOMAIN_RID_USERS                 = 513;
+       const int DOMAIN_RID_GUESTS                = 514;
        const int DOMAIN_RID_DOMAIN_MEMBERS        = 515;
        const int DOMAIN_RID_DCS                   = 516;
        const int DOMAIN_RID_CERT_ADMINS           = 517;
        const int DOMAIN_RID_SCHEMA_ADMINS         = 518;
        const int DOMAIN_RID_ENTERPRISE_ADMINS     = 519;
+       const int DOMAIN_RID_POLICY_ADMINS         = 520;
 
 
        /*
diff --git a/source4/libcli/security/sddl.c b/source4/libcli/security/sddl.c
index a8d893f..39bdf04 100644
--- a/source4/libcli/security/sddl.c
+++ b/source4/libcli/security/sddl.c
@@ -80,11 +80,34 @@ static const struct {
        { "CO", SID_CREATOR_OWNER },
        { "CG", SID_CREATOR_GROUP },
 
+       { "AN", SID_NT_ANONYMOUS },
+       { "BG", SID_BUILTIN_GUESTS },
+       { "BO", SID_BUILTIN_BACKUP_OPERATORS },
+       { "BU", SID_BUILTIN_USERS },
+       { "IU", SID_NT_INTERACTIVE },
+       { "LS", SID_NT_LOCAL_SERVICE },
+       { "NO", SID_BUILTIN_NETWORK_CONF_OPERATORS },
+       { "NS", SID_NT_NETWORK_SERVICE },
+       { "NU", SID_NT_NETWORK },
+       { "PU", SID_BUILTIN_POWER_USERS },
+       { "RC", SID_NT_RESTRICTED },
+       { "RD", SID_BUILTIN_REMOTE_DESKTOP_USERS },
+       { "RE", SID_BUILTIN_REPLICATOR },
+       { "SO", SID_BUILTIN_ACCOUNT_OPERATORS },
+       { "SU", SID_NT_SERVICE },
+
        { "DA", NULL, DOMAIN_RID_ADMINS },
        { "EA", NULL, DOMAIN_RID_ENTERPRISE_ADMINS },
        { "DD", NULL, DOMAIN_RID_DCS },
        { "DU", NULL, DOMAIN_RID_USERS },
        { "CA", NULL, DOMAIN_RID_CERT_ADMINS },
+
+       { "DC", NULL, DOMAIN_RID_DOMAIN_MEMBERS },
+       { "DG", NULL, DOMAIN_RID_GUESTS },
+       { "LA", NULL, DOMAIN_RID_ADMINISTRATOR },
+       { "LG", NULL, DOMAIN_RID_GUEST },
+       { "PA", NULL, DOMAIN_RID_POLICY_ADMINS },
+       { "SA", NULL, DOMAIN_RID_SCHEMA_ADMINS },
 };
 
 /*
diff --git a/source4/setup/provision_configuration.ldif 
b/source4/setup/provision_configuration.ldif
index 63b807b..fff3805 100644
--- a/source4/setup/provision_configuration.ldif
+++ b/source4/setup/provision_configuration.ldif
@@ -96,21 +96,15 @@ dn: CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: container
 cn: Extended-Rights
-instanceType: 4
-showInAdvancedViewOnly: TRUE
 systemFlags: -2147483648
-objectCategory: CN=Container,CN=Schema,${CONFIGDN}
 
 dn: CN=Change-Rid-Master,CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: controlAccessRight
 cn: Change-Rid-Master
-instanceType: 4
 displayName: Change Rid Master
-showInAdvancedViewOnly: TRUE
 rightsGuid: d58d5f36-0a98-11d1-adbb-00c04fd8d5cd
 appliesTo: 6617188d-8f3c-11d0-afda-00c04fd930c9
-objectCategory: CN=Control-Access-Right,CN=Schema,${CONFIGDN}
 localizationDisplayId: 29
 validAccesses: 256
 
@@ -118,12 +112,9 @@ dn: CN=Do-Garbage-Collection,CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: controlAccessRight
 cn: Do-Garbage-Collection
-instanceType: 4
 displayName: Do Garbage Collection
-showInAdvancedViewOnly: TRUE
 rightsGuid: fec364e0-0a98-11d1-adbb-00c04fd8d5cd
 appliesTo: f0f8ffab-1191-11d0-a060-00aa006c33ed
-objectCategory: CN=Control-Access-Right,CN=Schema,${CONFIGDN}
 localizationDisplayId: 31
 validAccesses: 256
 
@@ -131,12 +122,9 @@ dn: CN=Recalculate-Hierarchy,CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: controlAccessRight
 cn: Recalculate-Hierarchy
-instanceType: 4
 displayName: Recalculate Hierarchy
-showInAdvancedViewOnly: TRUE
 rightsGuid: 0bc1554e-0a99-11d1-adbb-00c04fd8d5cd
 appliesTo: f0f8ffab-1191-11d0-a060-00aa006c33ed
-objectCategory: CN=Control-Access-Right,CN=Schema,${CONFIGDN}
 localizationDisplayId: 32
 validAccesses: 256
 
@@ -144,12 +132,9 @@ dn: CN=Allocate-Rids,CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: controlAccessRight
 cn: Allocate-Rids
-instanceType: 4
 displayName: Allocate Rids
-showInAdvancedViewOnly: TRUE
 rightsGuid: 1abd7cf8-0a99-11d1-adbb-00c04fd8d5cd
 appliesTo: f0f8ffab-1191-11d0-a060-00aa006c33ed
-objectCategory: CN=Control-Access-Right,CN=Schema,${CONFIGDN}
 localizationDisplayId: 33
 validAccesses: 256
 
@@ -157,12 +142,9 @@ dn: CN=Change-PDC,CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: controlAccessRight
 cn: Change-PDC
-instanceType: 4
 displayName: Change PDC
-showInAdvancedViewOnly: TRUE
 rightsGuid: bae50096-4752-11d1-9052-00c04fc2d4cf
 appliesTo: 19195a5b-6da0-11d0-afd3-00c04fd930c9
-objectCategory: CN=Control-Access-Right,CN=Schema,${CONFIGDN}
 localizationDisplayId: 34
 validAccesses: 256
 
@@ -170,12 +152,9 @@ dn: CN=Add-GUID,CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: controlAccessRight
 cn: Add-GUID
-instanceType: 4
 displayName: Add GUID
-showInAdvancedViewOnly: TRUE
 rightsGuid: 440820ad-65b4-11d1-a3da-0000f875ae0d
 appliesTo: 19195a5b-6da0-11d0-afd3-00c04fd930c9
-objectCategory: CN=Control-Access-Right,CN=Schema,${CONFIGDN}
 localizationDisplayId: 35
 validAccesses: 256
 
@@ -183,12 +162,9 @@ dn: CN=Change-Domain-Master,CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: controlAccessRight
 cn: Change-Domain-Master
-instanceType: 4
 displayName: Change Domain Master
-showInAdvancedViewOnly: TRUE
 rightsGuid: 014bf69c-7b3b-11d1-85f6-08002be74fab
 appliesTo: ef9e60e0-56f7-11d1-a9c6-0000f80367c1
-objectCategory: CN=Control-Access-Right,CN=Schema,${CONFIGDN}
 localizationDisplayId: 36
 validAccesses: 256
 
@@ -196,14 +172,11 @@ dn: CN=Public-Information,CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: controlAccessRight
 cn: Public-Information
-instanceType: 4
 displayName: Public Information
-showInAdvancedViewOnly: TRUE
 rightsGuid: e48d0154-bcf8-11d1-8702-00c04fb96050
 appliesTo: 4828CC14-1437-45bc-9B07-AD6F015E5F28
 appliesTo: bf967a86-0de6-11d0-a285-00aa003049e2
 appliesTo: bf967aba-0de6-11d0-a285-00aa003049e2
-objectCategory: CN=Control-Access-Right,CN=Schema,${CONFIGDN}
 localizationDisplayId: 37
 validAccesses: 48
 
@@ -211,12 +184,9 @@ dn: 
CN=msmq-Receive-Dead-Letter,CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: controlAccessRight
 cn: msmq-Receive-Dead-Letter
-instanceType: 4
 displayName: Receive Dead Letter
-showInAdvancedViewOnly: TRUE
 rightsGuid: 4b6e08c0-df3c-11d1-9c86-006008764d0e
 appliesTo: 9a0dc344-c100-11d1-bbc5-0080c76670c0
-objectCategory: CN=Control-Access-Right,CN=Schema,${CONFIGDN}
 localizationDisplayId: 38
 validAccesses: 256
 
@@ -224,12 +194,9 @@ dn: CN=msmq-Peek-Dead-Letter,CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: controlAccessRight
 cn: msmq-Peek-Dead-Letter
-instanceType: 4
 displayName: Peek Dead Letter
-showInAdvancedViewOnly: TRUE
 rightsGuid: 4b6e08c1-df3c-11d1-9c86-006008764d0e
 appliesTo: 9a0dc344-c100-11d1-bbc5-0080c76670c0
-objectCategory: CN=Control-Access-Right,CN=Schema,${CONFIGDN}
 localizationDisplayId: 39
 validAccesses: 256
 
@@ -237,12 +204,9 @@ dn: 
CN=msmq-Receive-computer-Journal,CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: controlAccessRight
 cn: msmq-Receive-computer-Journal
-instanceType: 4
 displayName: Receive Computer Journal
-showInAdvancedViewOnly: TRUE
 rightsGuid: 4b6e08c2-df3c-11d1-9c86-006008764d0e
 appliesTo: 9a0dc344-c100-11d1-bbc5-0080c76670c0
-objectCategory: CN=Control-Access-Right,CN=Schema,${CONFIGDN}
 localizationDisplayId: 40
 validAccesses: 256
 
@@ -250,12 +214,9 @@ dn: 
CN=msmq-Peek-computer-Journal,CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: controlAccessRight
 cn: msmq-Peek-computer-Journal
-instanceType: 4
 displayName: Peek Computer Journal
-showInAdvancedViewOnly: TRUE
 rightsGuid: 4b6e08c3-df3c-11d1-9c86-006008764d0e
 appliesTo: 9a0dc344-c100-11d1-bbc5-0080c76670c0
-objectCategory: CN=Control-Access-Right,CN=Schema,${CONFIGDN}
 localizationDisplayId: 41
 validAccesses: 256
 
@@ -263,12 +224,9 @@ dn: CN=msmq-Receive,CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: controlAccessRight
 cn: msmq-Receive
-instanceType: 4
 displayName: Receive Message
-showInAdvancedViewOnly: TRUE
 rightsGuid: 06bd3200-df3e-11d1-9c86-006008764d0e
 appliesTo: 9a0dc343-c100-11d1-bbc5-0080c76670c0
-objectCategory: CN=Control-Access-Right,CN=Schema,${CONFIGDN}
 localizationDisplayId: 42
 validAccesses: 256
 
@@ -276,12 +234,9 @@ dn: CN=msmq-Peek,CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: controlAccessRight
 cn: msmq-Peek
-instanceType: 4
 displayName: Peek Message
-showInAdvancedViewOnly: TRUE
 rightsGuid: 06bd3201-df3e-11d1-9c86-006008764d0e
 appliesTo: 9a0dc343-c100-11d1-bbc5-0080c76670c0
-objectCategory: CN=Control-Access-Right,CN=Schema,${CONFIGDN}
 localizationDisplayId: 43
 validAccesses: 256
 
@@ -289,13 +244,10 @@ dn: CN=msmq-Send,CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: controlAccessRight
 cn: msmq-Send
-instanceType: 4
 displayName: Send Message
-showInAdvancedViewOnly: TRUE
 rightsGuid: 06bd3202-df3e-11d1-9c86-006008764d0e
 appliesTo: 46b27aac-aafa-4ffb-b773-e5bf621ee87b
 appliesTo: 9a0dc343-c100-11d1-bbc5-0080c76670c0
-objectCategory: CN=Control-Access-Right,CN=Schema,${CONFIGDN}
 localizationDisplayId: 44
 validAccesses: 256
 
@@ -303,12 +255,9 @@ dn: CN=msmq-Receive-journal,CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: controlAccessRight
 cn: msmq-Receive-journal
-instanceType: 4
 displayName: Receive Journal
-showInAdvancedViewOnly: TRUE
 rightsGuid: 06bd3203-df3e-11d1-9c86-006008764d0e
 appliesTo: 9a0dc343-c100-11d1-bbc5-0080c76670c0
-objectCategory: CN=Control-Access-Right,CN=Schema,${CONFIGDN}
 localizationDisplayId: 45
 validAccesses: 256
 
@@ -316,12 +265,9 @@ dn: CN=msmq-Open-Connector,CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: controlAccessRight
 cn: msmq-Open-Connector
-instanceType: 4
 displayName: Open Connector Queue
-showInAdvancedViewOnly: TRUE
 rightsGuid: b4e60130-df3f-11d1-9c86-006008764d0e
 appliesTo: bf967ab3-0de6-11d0-a285-00aa003049e2
-objectCategory: CN=Control-Access-Right,CN=Schema,${CONFIGDN}
 localizationDisplayId: 46
 validAccesses: 256
 
@@ -329,12 +275,9 @@ dn: CN=Apply-Group-Policy,CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: controlAccessRight
 cn: Apply-Group-Policy
-instanceType: 4
 displayName: Apply Group Policy
-showInAdvancedViewOnly: TRUE
 rightsGuid: edacfd8f-ffb3-11d1-b41d-00a0c968f939
 appliesTo: f30e3bc2-9ff0-11d1-b603-0000f80367c1
-objectCategory: CN=Control-Access-Right,CN=Schema,${CONFIGDN}
 localizationDisplayId: 47
 validAccesses: 256
 
@@ -342,13 +285,10 @@ dn: CN=RAS-Information,CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: controlAccessRight
 cn: RAS-Information
-instanceType: 4
 displayName: Remote Access Information
-showInAdvancedViewOnly: TRUE
 rightsGuid: 037088f8-0ae1-11d2-b422-00a0c968f939
 appliesTo: 4828CC14-1437-45bc-9B07-AD6F015E5F28
 appliesTo: bf967aba-0de6-11d0-a285-00aa003049e2
-objectCategory: CN=Control-Access-Right,CN=Schema,${CONFIGDN}
 localizationDisplayId: 48
 validAccesses: 48
 
@@ -356,12 +296,9 @@ dn: CN=DS-Install-Replica,CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: controlAccessRight
 cn: DS-Install-Replica
-instanceType: 4
 displayName: Add/Remove Replica In Domain
-showInAdvancedViewOnly: TRUE
 rightsGuid: 9923a32a-3607-11d2-b9be-0000f87a36b2
 appliesTo: 19195a5b-6da0-11d0-afd3-00c04fd930c9
-objectCategory: CN=Control-Access-Right,CN=Schema,${CONFIGDN}
 localizationDisplayId: 49
 validAccesses: 256
 
@@ -369,12 +306,9 @@ dn: 
CN=Change-Infrastructure-Master,CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: controlAccessRight
 cn: Change-Infrastructure-Master
-instanceType: 4
 displayName: Change Infrastructure Master
-showInAdvancedViewOnly: TRUE
 rightsGuid: cc17b1fb-33d9-11d2-97d4-00c04fd8d5cd
 appliesTo: 2df90d89-009f-11d2-aa4c-00c04fd7d83a
-objectCategory: CN=Control-Access-Right,CN=Schema,${CONFIGDN}
 localizationDisplayId: 50
 validAccesses: 256
 
@@ -382,12 +316,9 @@ dn: CN=Update-Schema-Cache,CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: controlAccessRight
 cn: Update-Schema-Cache
-instanceType: 4
 displayName: Update Schema Cache
-showInAdvancedViewOnly: TRUE
 rightsGuid: be2bb760-7f46-11d2-b9ad-00c04f79f805
 appliesTo: bf967a8f-0de6-11d0-a285-00aa003049e2
-objectCategory: CN=Control-Access-Right,CN=Schema,${CONFIGDN}
 localizationDisplayId: 51
 validAccesses: 256
 
@@ -395,12 +326,9 @@ dn: 
CN=Recalculate-Security-Inheritance,CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: controlAccessRight
 cn: Recalculate-Security-Inheritance
-instanceType: 4
 displayName: Recalculate Security Inheritance
-showInAdvancedViewOnly: TRUE
 rightsGuid: 62dd28a8-7f46-11d2-b9ad-00c04f79f805
 appliesTo: f0f8ffab-1191-11d0-a060-00aa006c33ed
-objectCategory: CN=Control-Access-Right,CN=Schema,${CONFIGDN}
 localizationDisplayId: 52
 validAccesses: 256
 
@@ -408,12 +336,9 @@ dn: 
CN=DS-Check-Stale-Phantoms,CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: controlAccessRight
 cn: DS-Check-Stale-Phantoms
-instanceType: 4
 displayName: Check Stale Phantoms
-showInAdvancedViewOnly: TRUE
 rightsGuid: 69ae6200-7f46-11d2-b9ad-00c04f79f805
 appliesTo: f0f8ffab-1191-11d0-a060-00aa006c33ed
-objectCategory: CN=Control-Access-Right,CN=Schema,${CONFIGDN}
 localizationDisplayId: 53
 validAccesses: 256
 
@@ -421,12 +346,9 @@ dn: 
CN=Certificate-Enrollment,CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: controlAccessRight
 cn: Certificate-Enrollment
-instanceType: 4
 displayName: Enroll
-showInAdvancedViewOnly: TRUE
 rightsGuid: 0e10c968-78fb-11d2-90d4-00c04f79dc55
 appliesTo: e5209ca2-3bba-11d2-90cc-00c04fd91ab1
-objectCategory: CN=Control-Access-Right,CN=Schema,${CONFIGDN}
 localizationDisplayId: 54
 validAccesses: 256
 
@@ -434,12 +356,9 @@ dn: CN=Self-Membership,CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: controlAccessRight
 cn: Self-Membership
-instanceType: 4
 displayName: Add/Remove self as member
-showInAdvancedViewOnly: TRUE
 rightsGuid: bf9679c0-0de6-11d0-a285-00aa003049e2
 appliesTo: bf967a9c-0de6-11d0-a285-00aa003049e2
-objectCategory: CN=Control-Access-Right,CN=Schema,${CONFIGDN}
 localizationDisplayId: 12
 validAccesses: 8
 
@@ -447,12 +366,9 @@ dn: 
CN=Validated-DNS-Host-Name,CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: controlAccessRight
 cn: Validated-DNS-Host-Name
-instanceType: 4
 displayName: Validated write to DNS host name
-showInAdvancedViewOnly: TRUE
 rightsGuid: 72e39547-7b18-11d1-adef-00c04fd8d5cd
 appliesTo: bf967a86-0de6-11d0-a285-00aa003049e2
-objectCategory: CN=Control-Access-Right,CN=Schema,${CONFIGDN}
 localizationDisplayId: 13
 validAccesses: 8
 
@@ -460,12 +376,9 @@ dn: CN=Validated-SPN,CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: controlAccessRight
 cn: Validated-SPN
-instanceType: 4
 displayName: Validated write to service principal name
-showInAdvancedViewOnly: TRUE
 rightsGuid: f3a64788-5306-11d1-a9c5-0000f80367c1
 appliesTo: bf967a86-0de6-11d0-a285-00aa003049e2
-objectCategory: CN=Control-Access-Right,CN=Schema,${CONFIGDN}
 localizationDisplayId: 14
 validAccesses: 8
 
@@ -473,13 +386,10 @@ dn: 
CN=Generate-RSoP-Planning,CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: controlAccessRight
 cn: Generate-RSoP-Planning
-instanceType: 4
 displayName: Generate Resultant Set of Policy (Planning)
-showInAdvancedViewOnly: TRUE
 rightsGuid: b7b1b3dd-ab09-4242-9e30-9980e5d322f7
 appliesTo: 19195a5b-6da0-11d0-afd3-00c04fd930c9
 appliesTo: bf967aa5-0de6-11d0-a285-00aa003049e2
-objectCategory: CN=Control-Access-Right,CN=Schema,${CONFIGDN}
 localizationDisplayId: 55
 validAccesses: 256
 
@@ -487,12 +397,9 @@ dn: CN=Refresh-Group-Cache,CN=Extended-Rights,${CONFIGDN}
 objectClass: top
 objectClass: controlAccessRight
 cn: Refresh-Group-Cache
-instanceType: 4
 displayName: Refresh Group Cache for Logons
-showInAdvancedViewOnly: TRUE
 rightsGuid: 9432c620-033c-4db7-8b58-14ef6d0bf477
 appliesTo: f0f8ffab-1191-11d0-a060-00aa006c33ed
-objectCategory: CN=Control-Access-Right,CN=Schema,${CONFIGDN}
 localizationDisplayId: 56
 validAccesses: 256
 


-- 
Samba Shared Repository

Reply via email to