Schema Object Identifiers OIDs

本文详细介绍了活动目录中对象标识符(OID)的概念及其结构。OID类似于互联网地址,用于定义对象类别和属性,长度不受限制。文章还列举了微软的OID分配情况,并建议组织注册自己的OID以避免对象冲突。

see also:Schema Object Identifiers OIDs

Every object in Active Directory has required and optional attributes. The required attributes includes the Object Identifier ( OID ). The idea is analogous to internet addresses but instead of defining networks and subnets, the OIDs are used to define object classes and attributes. Unlike TCP/IP addresses there is no limitation to the length of the dotted notation. Like IP networks, there are multiple registrars to get your own OID. OIDs are owned by corporations, for example, Microsoft's OID is 1.3.6.1.4.1.311. To make some sense of the OID:

  • 1.3.6.1.4.1 - IANA-registered Private Enterprises
  • 1.3.6.1.4 - Internet Private
  • 1.3.6.1 - OID assignments from 1.3.6.1 - Internet OID root for the Internet
  • 1.3.6 - US Department of Defense
  • 1.3 - ISO Identified Organization
  • 1 - ISO assigned OIDs
If you do a search for Microsoft, part of what you find will be:
  • 1.2.840.113556.1.4.1302 - Microsoft OID used with DEN Attributes
  • 1.2.840.113556.1.4 - Microsoft OID used with DEN
  • 1.2.840.113556.1 - Microsoft OID used with DEN
  • 1.2.840.113556.3.10.1 - Microsoft MAPI TNEF
  • 1.2.840.113556.3.10.2 - Microsoft MAPI Attachment - generic mapi attachment
  • 1.2.840.113556.3.10 - Microsoft MAPI OIDs
  • 1.2.840.113556.3 - Microsoft OIDs (MAPI?)
  • 1.2.840.113556.4.2 - Microsoft Word
  • 1.2.840.113556.4.3 - Microsoft Excel
  • 1.2.840.113556.4.5 - Microsoft PowerPoint
  • 1.2.840.113556.4.6 - Microsoft Works
  • 1.2.840.113556.4 - Microsoft file formats
  • 1.2.840.113556.5.1 - Microsoft Exchange
  • 1.2.840.113556 - Microsoft
  • 1.2.840 - USA
  • 1.3.6.1.4.1.311.10.3.3 - Microsoft Server Gated Crypto (msSGC)
  • 1.3.6.1.4.1.311 - Microsoft
  • 2.23.42.9.33 - id-set-Microsoft
  • 2.23.42.9 - SET Vendors
The top levels are

You can do searches (again analogous to internet domain names). Individuals as well as organizations can get their own registered OID. But getting back to Active Directory, the schema will contain definitions of all object classes including the OID. Expect vendors to start registering their own object classes as OIDs. If your organizations has internal development projects, you should get an OID for your organization (if you do not already have one - many corporations already do) and use it to manage whatever objects you need to define to AD schema. Like domain names, get a reqistered name, that OID, to avoid object clashes. Everything defined under your OID is unique and under your control. You can have as many sublevels as your development environment requires.

If you are not sick of OIDs by now, for more information that you ever wanted to know about OIDs, or if you want to search the OID dbs, see the OID Web page.

评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值