In troubleshooting an issue with a third party application which uses AD authentication, I needed to check the MaxConnections in the LDAP policies. I found that MaxConnections was set to the default of 5000, so that was exactly as expected.
However, in checking these policies using ntdsutil, I noticed some settings which are not at default on our DCs:
MaxDatagramRecv = 1024 (default 4096)
MinResultSets = 0 (default 3)
MaxResultSetsPerConn = 0 (default 10)
MaxValRange = 0 (default 1500)
MinResultSets = 0 (default 3)
MaxBatchReturnMessages = 0 (default 1100)
We have a Windows 2012 R2 domain/forest functional level. It began long ago as a Windows 2000 domain, then to 2003, 2008 R2, 2012 R2.
I'm hoping someone can answer as to whether these values can be expected in our scenario.