ActiveDirectoryRights Enumeration

ActiveDirectoryRights Enumeration

 

The ActiveDirectoryRights enumeration specifies the access rights that are assigned to an Active Directory Domain Services object.

This enumeration has a FlagsAttribute attribute that allows a bitwise combination of its member values.

Namespace:   System.DirectoryServices
Assembly:  System.DirectoryServices (in System.DirectoryServices.dll)

[FlagsAttribute]
public enum ActiveDirectoryRights

Member nameDescription
AccessSystemSecurity

The right to get or set the SACL in the object security descriptor.

CreateChild

The right to create children of the object.

Delete

The right to delete the object.

DeleteChild

The right to delete children of the object.

DeleteTree

The right to delete all children of this object, regardless of the permissions of the children.

ExtendedRight

A customized control access right. For a list of possible extended rights, see the topic "Extended Rights" in the MSDN Library at http://msdn.microsoft.com. For more information about extended rights, see the topic "Control Access Rights" in the MSDN Library at http://msdn.microsoft.com.

GenericAll

The right to create or delete children, delete a subtree, read and write properties, examine children and the object itself, add and remove the object from the directory, and read or write with an extended right.

GenericExecute

The right to read permissions on, and list the contents of, a container object.

GenericRead

The right to read permissions on this object, read all the properties on this object, list this object name when the parent container is listed, and list the contents of this object if it is a container.

GenericWrite

The right to read permissions on this object, write all the properties on this object, and perform all validated writes to this object.

ListChildren

The right to list children of this object. For more information about this right, see the topic "Controlling Object Visibility" in the MSDN Library http://msdn.microsoft.com/library.

ListObject

The right to list a particular object. For more information about this right, see the topic "Controlling Object Visibility" in the MSDN Library at http://msdn.microsoft.com/library.

ReadControl

The right to read data from the security descriptor of the object, not including the data in the SACL.

ReadProperty

The right to read properties of the object.

Self

The right to perform an operation that is controlled by a validated write access right.

Synchronize

The right to use the object for synchronization. This right enables a thread to wait until that object is in the signaled state.

WriteDacl

The right to modify the DACL in the object security descriptor.

WriteOwner

The right to assume ownership of the object. The user must be an object trustee. The user cannot transfer the ownership to other users.

WriteProperty

The right to write properties of the object.

.NET Framework
Available since 2.0
Return to top
Show:
© 2016 Microsoft