please dont rip this site Prev Next

GetUserObjectSecurity info  Overview  Group

The GetUserObjectSecurity function retrieves security information for the specified user object.

BOOL GetUserObjectSecurity(

    HANDLE hObj,

// handle of user object

    PSECURITY_INFORMATION pSIRequested,

// address of requested security information

    PSECURITY_DESCRIPTOR pSID,

// address of security descriptor

    DWORD nLength,

// size of buffer for security descriptor

    LPDWORD lpnLengthNeeded 

// address of required size of buffer

   );

Parameters

hObj
Identifies the user object for which to return security information.
pSIRequested
Points to a SECURITY_INFORMATION value specifying the security information being requested.
pSID
Points to a SECURITY_DESCRIPTOR structure in self-relative format that contains the requested information when the function returns.
nLength
Specifies the length, in bytes, of the buffer pointed to by the pSID parameter.
lpnLengthNeeded
Points to a variable receiving the number of bytes required to store the complete security descriptor. If this variable’s value is greater than the value of the nLength parameter when the function returns, the function returns FALSE and none of the security descriptor is copied to the buffer. Otherwise, the entire security descriptor is copied.

Return Values

If the function succeeds, the return value is nonzero.

If the function fails, the return value is zero. To get extended error information, call GetLastError.

Remarks

To read the owner, group, or DACL from the user object’s security descriptor, the calling process must have been granted READ_CONTROL access when the handle was opened. To get READ_CONTROL access, the caller must be the owner of the object or the object's DACL must grant the access.

To read the SACL from the security descriptor, the calling process must have been granted ACCESS_SYSTEM_SECURITY access when the handle was opened. The proper way to get this access is to enable the SE_SECURITY_NAME privilege in the caller's current token, open the handle for ACCESS_SYSTEM_SECURITY access, and then disable the privilege.

See Also

CreatePrivateObjectSecurity, GetKernelObjectSecurity, GetPrivateObjectSecurity, SECURITY_DESCRIPTOR, SECURITY_INFORMATION, SetUserObjectSecurity 


file: /Techref/os/win/api/win32/func/src/f42_6.htm, 4KB, , updated: 2000/4/7 11:19, local time: 2024/11/8 03:50,
TOP NEW HELP FIND: 
3.145.191.75:LOG IN
©2024 PLEASE DON'T RIP! THIS SITE CLOSES OCT 28, 2024 SO LONG AND THANKS FOR ALL THE FISH!

 ©2024 These pages are served without commercial sponsorship. (No popup ads, etc...).Bandwidth abuse increases hosting cost forcing sponsorship or shutdown. This server aggressively defends against automated copying for any reason including offline viewing, duplication, etc... Please respect this requirement and DO NOT RIP THIS SITE. Questions?
Please DO link to this page! Digg it! / MAKE!

<A HREF="http://linistepper.com/techref/os/win/api/win32/func/src/f42_6.htm"> GetUserObjectSecurity</A>

After you find an appropriate page, you are invited to your to this massmind site! (posts will be visible only to you before review) Just type a nice message (short messages are blocked as spam) in the box and press the Post button. (HTML welcomed, but not the <A tag: Instead, use the link box to link to another page. A tutorial is available Members can login to post directly, become page editors, and be credited for their posts.


Link? Put it here: 
if you want a response, please enter your email address: 
Attn spammers: All posts are reviewed before being made visible to anyone other than the poster.
Did you find what you needed?