6.1.5 FSMO Roles
References: SID, RID, RID Allocation, RID Master role in interdomain move, PDC Emulator role, Infrastructure role
Functions: RoleObject, GetRoleScope
LDAP attributes: fSMORoleOwner
LDAP classes: nTDSDSA
Each FSMO role is represented by an object in the directory. The function RoleObject (section 188.8.131.52.1.8) specifies the object for a given FSMO role type and NC. This object is an element of the FSMO role and contains the fSMORoleOwner attribute, which references the nTDSDSA object of the DC that owns the role. The function GetRoleScope defined in [MS-DRSR] section 184.108.40.206.16 identifies the set of objects that comprise each FSMO role. These objects must be updated only on the DC that currently owns the FSMO role.