我很难将 LDIF 文件导入 ADAM/AD LDS,错误如下(实例类型无效)。
我已经测试过并恢复了与以下相关的错误
- 导入文件为 ASCII、UTF8、ANSI
- 导入文件中的无效属性(用于复制的 MS 内部对象)
- 在 AD 中,用户容器的名称是
CN
,在 ADAM 中则是“OU” contact
将user
maker.ldf 中的测试对象类从 更改为- 杂项错误..
我的总体目标是将证书数据从 ADDS 移动到 AD LDS,并向全世界公开该只读 LDS 副本。
我现在遇到了麻烦,无法将证书导入实例。为了确保我做的事情符合逻辑,我进行了导出和导入,如下所示。
问题
- 如何导入如导入示例中所示的数据?
出口样品
命令行
PS C:\test> ldifde -f .\test.ldf -v -s 127.0.0.1 -d "DC= FreeSMIME, DC=COM"
Connecting to "127.0.0.1"
Logging in as current user using SSPI
Exporting directory to file .\maker.ldf
Searching for entries...
Writing out entries
.... SNIP ...
Exporting entry: CN=test12,OU=Users,DC=FreeSMIME,DC=com
9 entries exported
test.ldf 的内容
dn: CN=test12,OU=Users,DC=FreeSMIME,DC=com
changetype: add
objectClass: top
objectClass: person
objectClass: organizationalPerson
objectClass: user
cn: test12
distinguishedName: CN=test12,OU=Users,DC=FreeSMIME,DC=com
instanceType: 4
whenCreated: 20140706175425.0Z
whenChanged: 20140706175425.0Z
uSNCreated: 13981
uSNChanged: 13981
name: test12
objectGUID:: FGuCH4ep+0yvXyXIGZnw6Q==
badPwdCount: 0
badPasswordTime: 0
pwdLastSet: 130491428650358040
objectSid:: AQUAAB/DvlvT9kQDKv5c3yyu4EqPUic3jHkmDg==
objectCategory:
CN=Person,CN=Schema,CN=Configuration,CN={EBB3EB07-5375-4D67-B774-42E7D82935A8}
dSCorePropagationData: 16010101000000.0Z
msDS-UserAccountDisabled: TRUE
进口样品
命令行
PS C:\test> ldifde -i -k -f .\maker.ldf -v -s 127.0.0.1 连接到“127.0.0.1” 使用 SSPI 以当前用户身份登录 从文件“.\maker.ldf”导入目录 加载条目 1:DC=FreeSMIME,DC=com
从第 1 行开始的条目中添加错误:不愿意执行服务器端错误为:0x2079 指定的实例类型无效。扩展服务器错误为:00002079:SvcErr:DSID-033309B0,问题 5003 (WILL_NOT_PERFORM),数据 0
已成功修改 0 个条目。程序中发生错误。未写入日志文件。要生成日志文件,请通过 -j 选项指定日志文件路径。
maker.ldf 的内容
dn: [email protected],OU=Users,DC=FreeSMIME,DC=com
changetype: add
objectClass: top
objectClass: person
objectClass: organizationalPerson
objectClass: user
cn: [email protected]
userCertificate::
MIIFUTCCBDmgAwIBAgITHwAAADzW+zggKBd9dQABAAAAPDANBgkqhkiG9w0BAQUFADB0MQswCQYDVQ
QGEwJ1czEVMBMGA1UEChMMQml0Y2xlYXIgTExDMRYwFAYDVQQLEw1FbWFpbCBQcml2YWN5MRYwFAYD
VQQDEw1GcmVlU01JTUUuY29tMR4wHAYDVQQDExVTZWN1cmUgSXNzdWVyIDAxYS0wMDEwHhcNMTQwNz
A2MDQyNDQyWhcNMTUwMTAyMDQyNDQyWjCBgzELMAkGA1UEBhMCVVMxCzAJBgNVBAgTAk5ZMQwwCgYD
VQQHEwNOWUMxEzARBgNVBAsTClRlY2hub2xvZ3kxHjAcBgNVBAMMFW1ha2Vyb2Z0aGluZ3M3QG1lLm
NvbTEkMCIGCSqGSIb3DQEJARYVbWFrZXJvZnRoaW5nczdAbWUuY29tMIIBIjANBgkqhkiG9w0BAQEF
AAOCAQ8AMIIBCgKCAQEAymz3YPRVAE2i1X7XmmrBk+SmsH1FAyYEhNkKpDn6R+1Za8n5OC4UseQwCs
HoM/PtZ50JYViPW1+qBykehkH4LylCkp5OIjZbodedcIL+ucDHh1PITNChp8C5fQWYmfiUofWF8ztA
yGJNriy9VO30JFq9xexnif7i04kxdd151/BjOW5FEGOrpZJajoLkQycfbtdexxrKvGbSNsZZ4dwKVy
uxRcXXwgT9p8wa51uMGMBdpFsKTRkmFl8nvx1zRdcGfl7CkKLCRmZkoCPP+vgyqGUtO+bYxSP6vc0t
hZ7efXOkoDQWMfj/EHcKGWJgGm4B+l4SG9Pfkujr+Miw1CxHvwIDAQABo4IByjCCAcYwPQYJKwYBBA
GCNxUHBDAwLgYmKwYBBAGCNxUIgq30IYfppWqGlZ8EhYL3L4GCyxkhhZLlIIb5vHACAWQCAQ4wEwYD
VR0lBAwwCgYIKwYBBQUHAwQwDgYDVR0PAQH/BAQDAgUgMBsGCSsGAQQBgjcVCgQOMAwwCgYIKwYBBQ
UHAwQwRAYJKoZIhvcNAQkPBDcwNTAOBggqhkiG9w0DAgICAIAwDgYIKoZIhvcNAwQCAgCAMAcGBSsO
AwIHMAoGCCqGSIb3DQMHMB0GA1UdDgQWBBSruXcob9eIxbsorVGMF6m+w7LACTAfBgNVHSMEGDAWgB
TaxAaP6+QX4fmgA8d0h36ZY/fwRjBNBgNVHR8ERjBEMEKgQKA+hjxodHRwOi8vcGtpLmJpdGNsZWFy
LnVzL2kwMWEvU2VjdXJlJTIwSXNzdWVyJTIwMDFhLTAwMSgxKS5jcmwwbgYIKwYBBQUHAQEEYjBgMF
4GCCsGAQUFBzAChlJodHRwOi8vcGtpLmJpdGNsZWFyLnVzL2kwMWEvYS5Jc3N1ZTAxLmJpdGNsZWFy
LnVzX1NlY3VyZSUyMElzc3VlciUyMDAxYS0wMDEoMSkuY3J0MA0GCSqGSIb3DQEBBQUAA4IBAQA/6K
tRc0Nq5hdJouyTMNMUju+DW2Px2gVfAx6h7UWdG76FVJ14CuTCuS0zLngmO102eeTo9//ZOKE5UcdP
JmlegIam0ne8uNELInIY8HancU5fW34O+Jxa/ZqOMzXiHyKwTC4dwBsgP0TjHQsnYzSIAM/pB7fpBw
FYUeqcz3XmsjbasQazCotCuAXIIPaqW2hC7KbEXDCaCdLAWWQ8erd+CeNmmclP5GXi2ZvxVDOW8l/F
nGRQSrMTkZz4Rc2jS9w6VlGBMR+GXPQ9rJmxSl89WLATsejYFbDwbM5nKGJfpTZVf1SYnKGb9ficVu
eHeuwv1fGAV4s9zHSCsk33EElS
distinguishedName:
[email protected],CN=Users,DC=FreeSMIME,DC=com
instanceType: 4
name: [email protected]
objectCategory:
CN=Person,CN=Schema,CN=Configuration,DC=FreeSMIME,DC=com
mail: [email protected]
答案1
我可以通过删除以下行来修复导入文件:
objectCategory:
CN=Person,CN=Schema,CN=Configuration,DC=FreeSMIME,DC=com