aclui.h 11 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282
  1. /**
  2. * This file is part of the mingw-w64 runtime package.
  3. * No warranty is given; refer to the file DISCLAIMER within this package.
  4. */
  5. #ifndef _ACLUI_H_
  6. #define _ACLUI_H_
  7. #include <winapifamily.h>
  8. #if WINAPI_FAMILY_PARTITION (WINAPI_PARTITION_DESKTOP)
  9. #include <objbase.h>
  10. #include <commctrl.h>
  11. #include <accctrl.h>
  12. #include <authz.h>
  13. #ifndef _ACLUI_
  14. #define ACLUIAPI DECLSPEC_IMPORT WINAPI
  15. #else
  16. #define ACLUIAPI WINAPI
  17. #endif
  18. #ifdef __cplusplus
  19. extern "C" {
  20. #endif
  21. typedef struct _SI_OBJECT_INFO {
  22. DWORD dwFlags;
  23. HINSTANCE hInstance;
  24. LPWSTR pszServerName;
  25. LPWSTR pszObjectName;
  26. LPWSTR pszPageTitle;
  27. GUID guidObjectType;
  28. } SI_OBJECT_INFO,*PSI_OBJECT_INFO;
  29. #define SI_EDIT_PERMS __MSABI_LONG(0x00000000)
  30. #define SI_EDIT_OWNER __MSABI_LONG(0x00000001)
  31. #define SI_EDIT_AUDITS __MSABI_LONG(0x00000002)
  32. #define SI_CONTAINER __MSABI_LONG(0x00000004)
  33. #define SI_READONLY __MSABI_LONG(0x00000008)
  34. #define SI_ADVANCED __MSABI_LONG(0x00000010)
  35. #define SI_RESET __MSABI_LONG(0x00000020)
  36. #define SI_OWNER_READONLY __MSABI_LONG(0x00000040)
  37. #define SI_EDIT_PROPERTIES __MSABI_LONG(0x00000080)
  38. #define SI_OWNER_RECURSE __MSABI_LONG(0x00000100)
  39. #define SI_NO_ACL_PROTECT __MSABI_LONG(0x00000200)
  40. #define SI_NO_TREE_APPLY __MSABI_LONG(0x00000400)
  41. #define SI_PAGE_TITLE __MSABI_LONG(0x00000800)
  42. #define SI_SERVER_IS_DC __MSABI_LONG(0x00001000)
  43. #define SI_RESET_DACL_TREE __MSABI_LONG(0x00004000)
  44. #define SI_RESET_SACL_TREE __MSABI_LONG(0x00008000)
  45. #define SI_OBJECT_GUID __MSABI_LONG(0x00010000)
  46. #define SI_EDIT_EFFECTIVE __MSABI_LONG(0x00020000)
  47. #define SI_RESET_DACL __MSABI_LONG(0x00040000)
  48. #define SI_RESET_SACL __MSABI_LONG(0x00080000)
  49. #define SI_RESET_OWNER __MSABI_LONG(0x00100000)
  50. #define SI_NO_ADDITIONAL_PERMISSION __MSABI_LONG(0x00200000)
  51. #if NTDDI_VERSION >= 0x06000000
  52. #define SI_VIEW_ONLY __MSABI_LONG(0x00400000)
  53. #define SI_PERMS_ELEVATION_REQUIRED __MSABI_LONG(0x01000000)
  54. #define SI_AUDITS_ELEVATION_REQUIRED __MSABI_LONG(0x02000000)
  55. #define SI_OWNER_ELEVATION_REQUIRED __MSABI_LONG(0x04000000)
  56. #endif
  57. #if NTDDI_VERSION >= 0x06020000
  58. #define SI_SCOPE_ELEVATION_REQUIRED __MSABI_LONG(0x08000000)
  59. #endif
  60. #define SI_MAY_WRITE __MSABI_LONG(0x10000000)
  61. #if NTDDI_VERSION >= 0x06020000
  62. #define SI_ENABLE_EDIT_ATTRIBUTE_CONDITION __MSABI_LONG(0x20000000)
  63. #define SI_ENABLE_CENTRAL_POLICY __MSABI_LONG(0x40000000)
  64. #define SI_DISABLE_DENY_ACE __MSABI_LONG(0x80000000)
  65. #endif
  66. #define SI_EDIT_ALL (SI_EDIT_PERMS | SI_EDIT_OWNER | SI_EDIT_AUDITS)
  67. typedef struct _SI_ACCESS {
  68. const GUID *pguid;
  69. ACCESS_MASK mask;
  70. LPCWSTR pszName;
  71. DWORD dwFlags;
  72. } SI_ACCESS, *PSI_ACCESS;
  73. #define SI_ACCESS_SPECIFIC __MSABI_LONG(0x00010000)
  74. #define SI_ACCESS_GENERAL __MSABI_LONG(0x00020000)
  75. #define SI_ACCESS_CONTAINER __MSABI_LONG(0x00040000)
  76. #define SI_ACCESS_PROPERTY __MSABI_LONG(0x00080000)
  77. typedef struct _SI_INHERIT_TYPE {
  78. const GUID *pguid;
  79. ULONG dwFlags;
  80. LPCWSTR pszName;
  81. } SI_INHERIT_TYPE, *PSI_INHERIT_TYPE;
  82. typedef enum _SI_PAGE_TYPE {
  83. SI_PAGE_PERM=0,
  84. SI_PAGE_ADVPERM,
  85. SI_PAGE_AUDIT,
  86. SI_PAGE_OWNER,
  87. SI_PAGE_EFFECTIVE
  88. #if NTDDI_VERSION >= 0x06000000
  89. , SI_PAGE_TAKEOWNERSHIP
  90. #endif
  91. #if NTDDI_VERSION >= 0x06020000
  92. , SI_PAGE_SHARE
  93. #endif
  94. } SI_PAGE_TYPE;
  95. typedef enum _SI_PAGE_ACTIVATED {
  96. SI_SHOW_DEFAULT=0,
  97. SI_SHOW_PERM_ACTIVATED,
  98. SI_SHOW_AUDIT_ACTIVATED,
  99. SI_SHOW_OWNER_ACTIVATED,
  100. SI_SHOW_EFFECTIVE_ACTIVATED,
  101. SI_SHOW_SHARE_ACTIVATED,
  102. SI_SHOW_CENTRAL_POLICY_ACTIVATED,
  103. } SI_PAGE_ACTIVATED;
  104. #define GET_PAGE_TYPE(X) (UINT) ((X) &0x0000ffff)
  105. #define GET_ACTIVATION_TYPE(Y) (UINT) (((Y) >> 16) &0x0000ffff)
  106. #define COMBINE_PAGE_ACTIVATION(X, Y) (UINT) (((Y) << 16) | X)
  107. #define DOBJ_RES_CONT __MSABI_LONG(0x00000001)
  108. #define DOBJ_RES_ROOT __MSABI_LONG(0x00000002)
  109. #define DOBJ_VOL_NTACLS __MSABI_LONG(0x00000004)
  110. #define DOBJ_COND_NTACLS __MSABI_LONG(0x00000008)
  111. #define DOBJ_RIBBON_LAUNCH __MSABI_LONG(0x00000010)
  112. #define PSPCB_SI_INITDIALOG (WM_USER + 1)
  113. #undef INTERFACE
  114. #define INTERFACE ISecurityInformation
  115. DECLARE_INTERFACE_IID_ (ISecurityInformation, IUnknown, "965FC360-16FF-11d0-91CB-00AA00BBB723") {
  116. STDMETHOD (QueryInterface) (THIS_ REFIID riid, void **ppvObj) PURE;
  117. STDMETHOD_ (ULONG, AddRef) (THIS) PURE;
  118. STDMETHOD_ (ULONG, Release) (THIS) PURE;
  119. STDMETHOD (GetObjectInformation) (THIS_ PSI_OBJECT_INFO pObjectInfo) PURE;
  120. STDMETHOD (GetSecurity) (THIS_ SECURITY_INFORMATION RequestedInformation, PSECURITY_DESCRIPTOR *ppSecurityDescriptor, WINBOOL fDefault) PURE;
  121. STDMETHOD (SetSecurity) (THIS_ SECURITY_INFORMATION SecurityInformation, PSECURITY_DESCRIPTOR pSecurityDescriptor) PURE;
  122. STDMETHOD (GetAccessRights) (THIS_ const GUID *pguidObjectType, DWORD dwFlags, PSI_ACCESS *ppAccess, ULONG *pcAccesses, ULONG *piDefaultAccess) PURE;
  123. STDMETHOD (MapGeneric) (THIS_ const GUID *pguidObjectType, UCHAR *pAceFlags, ACCESS_MASK *pMask) PURE;
  124. STDMETHOD (GetInheritTypes) (THIS_ PSI_INHERIT_TYPE *ppInheritTypes, ULONG *pcInheritTypes) PURE;
  125. STDMETHOD (PropertySheetPageCallback) (THIS_ HWND hwnd, UINT uMsg, SI_PAGE_TYPE uPage) PURE;
  126. };
  127. typedef ISecurityInformation *LPSECURITYINFO;
  128. #undef INTERFACE
  129. #define INTERFACE ISecurityInformation2
  130. DECLARE_INTERFACE_IID_ (ISecurityInformation2, IUnknown, "c3ccfdb4-6f88-11d2-a3ce-00c04fb1782a") {
  131. STDMETHOD (QueryInterface) (THIS_ REFIID riid, void **ppvObj) PURE;
  132. STDMETHOD_ (ULONG, AddRef) (THIS) PURE;
  133. STDMETHOD_ (ULONG, Release) (THIS) PURE;
  134. STDMETHOD_ (WINBOOL, IsDaclCanonical) (THIS_ PACL pDacl) PURE;
  135. STDMETHOD (LookupSids) (THIS_ ULONG cSids, PSID *rgpSids, LPDATAOBJECT *ppdo) PURE;
  136. };
  137. typedef ISecurityInformation2 *LPSECURITYINFO2;
  138. #define CFSTR_ACLUI_SID_INFO_LIST TEXT ("CFSTR_ACLUI_SID_INFO_LIST")
  139. typedef struct _SID_INFO {
  140. PSID pSid;
  141. PWSTR pwzCommonName;
  142. PWSTR pwzClass;
  143. PWSTR pwzUPN;
  144. } SID_INFO, *PSID_INFO;
  145. typedef struct _SID_INFO_LIST {
  146. ULONG cItems;
  147. SID_INFO aSidInfo[ANYSIZE_ARRAY];
  148. } SID_INFO_LIST, *PSID_INFO_LIST;
  149. #undef INTERFACE
  150. #define INTERFACE IEffectivePermission
  151. DECLARE_INTERFACE_IID_ (IEffectivePermission, IUnknown, "3853DC76-9F35-407c-88A1-D19344365FBC") {
  152. STDMETHOD (QueryInterface) (THIS_ REFIID riid, void **ppvObj) PURE;
  153. STDMETHOD_ (ULONG, AddRef) (THIS) PURE;
  154. STDMETHOD_ (ULONG, Release) (THIS) PURE;
  155. STDMETHOD (GetEffectivePermission) (THIS_ const GUID *pguidObjectType, PSID pUserSid, LPCWSTR pszServerName, PSECURITY_DESCRIPTOR pSD, POBJECT_TYPE_LIST *ppObjectTypeList, ULONG *pcObjectTypeListLength, PACCESS_MASK *ppGrantedAccessList, ULONG *pcGrantedAccessListLength) PURE;
  156. };
  157. typedef IEffectivePermission *LPEFFECTIVEPERMISSION;
  158. #undef INTERFACE
  159. #define INTERFACE ISecurityObjectTypeInfo
  160. DECLARE_INTERFACE_IID_ (ISecurityObjectTypeInfo, IUnknown, "FC3066EB-79EF-444b-9111-D18A75EBF2FA") {
  161. STDMETHOD (QueryInterface) (THIS_ REFIID riid, void **ppvObj) PURE;
  162. STDMETHOD_ (ULONG, AddRef) (THIS) PURE;
  163. STDMETHOD_ (ULONG, Release) (THIS) PURE;
  164. STDMETHOD (GetInheritSource) (SECURITY_INFORMATION si, PACL pACL, PINHERITED_FROM *ppInheritArray) PURE;
  165. };
  166. typedef ISecurityObjectTypeInfo *LPSecurityObjectTypeInfo;
  167. #if NTDDI_VERSION >= 0x06000000
  168. #undef INTERFACE
  169. #define INTERFACE ISecurityInformation3
  170. DECLARE_INTERFACE_IID_ (ISecurityInformation3, IUnknown, "E2CDC9CC-31BD-4f8f-8C8B-B641AF516A1A") {
  171. STDMETHOD (QueryInterface) (THIS_ REFIID riid, void **ppvObj) PURE;
  172. STDMETHOD_ (ULONG, AddRef) (THIS) PURE;
  173. STDMETHOD_ (ULONG, Release) (THIS) PURE;
  174. STDMETHOD (GetFullResourceName) (THIS_ LPWSTR *ppszResourceName) PURE;
  175. STDMETHOD (OpenElevatedEditor) (THIS_ HWND hWnd, SI_PAGE_TYPE uPage) PURE;
  176. };
  177. typedef ISecurityInformation3 *LPSECURITYINFO3;
  178. #endif
  179. #if NTDDI_VERSION >= 0x06020000
  180. typedef struct _SECURITY_OBJECT {
  181. PWSTR pwszName;
  182. PVOID pData;
  183. DWORD cbData;
  184. PVOID pData2;
  185. DWORD cbData2;
  186. DWORD Id;
  187. BOOLEAN fWellKnown;
  188. } SECURITY_OBJECT, *PSECURITY_OBJECT;
  189. #define SECURITY_OBJECT_ID_OBJECT_SD 1
  190. #define SECURITY_OBJECT_ID_SHARE 2
  191. #define SECURITY_OBJECT_ID_CENTRAL_POLICY 3
  192. #define SECURITY_OBJECT_ID_CENTRAL_ACCESS_RULE 4
  193. typedef struct _EFFPERM_RESULT_LIST {
  194. BOOLEAN fEvaluated;
  195. ULONG cObjectTypeListLength;
  196. OBJECT_TYPE_LIST *pObjectTypeList;
  197. ACCESS_MASK *pGrantedAccessList;
  198. } EFFPERM_RESULT_LIST, *PEFFPERM_RESULT_LIST;
  199. #undef INTERFACE
  200. #define INTERFACE ISecurityInformation4
  201. DECLARE_INTERFACE_IID_ (ISecurityInformation4, IUnknown, "EA961070-CD14-4621-ACE4-F63C03E583E4") {
  202. STDMETHOD (QueryInterface) (THIS_ REFIID riid, void **ppvObj) PURE;
  203. STDMETHOD_ (ULONG, AddRef) (THIS) PURE;
  204. STDMETHOD_ (ULONG, Release) (THIS) PURE;
  205. STDMETHOD (GetSecondarySecurity) (THIS_ PSECURITY_OBJECT *pSecurityObjects, PULONG pSecurityObjectCount) PURE;
  206. };
  207. typedef ISecurityInformation4 *LPSECURITYINFO4;
  208. #undef INTERFACE
  209. #define INTERFACE IEffectivePermission
  210. DECLARE_INTERFACE_IID_ (IEffectivePermission2, IUnknown, "941FABCA-DD47-4FCA-90BB-B0E10255F20D") {
  211. STDMETHOD (QueryInterface) (THIS_ REFIID riid, void **ppvObj) PURE;
  212. STDMETHOD_ (ULONG, AddRef) (THIS) PURE;
  213. STDMETHOD_ (ULONG, Release) (THIS) PURE;
  214. STDMETHOD (ComputeEffectivePermissionWithSecondarySecurity) (THIS_ PSID pSid, PSID pDeviceSid, PCWSTR pszServerName, PSECURITY_OBJECT pSecurityObjects, DWORD dwSecurityObjectCount, PTOKEN_GROUPS pUserGroups, PAUTHZ_SID_OPERATION pAuthzUserGroupsOperations, PTOKEN_GROUPS pDeviceGroups, PAUTHZ_SID_OPERATION pAuthzDeviceGroupsOperations, PAUTHZ_SECURITY_ATTRIBUTES_INFORMATION pAuthzUserClaims, PAUTHZ_SECURITY_ATTRIBUTE_OPERATION pAuthzUserClaimsOperations, PAUTHZ_SECURITY_ATTRIBUTES_INFORMATION pAuthzDeviceClaims, PAUTHZ_SECURITY_ATTRIBUTE_OPERATION pAuthzDeviceClaimsOperations, PEFFPERM_RESULT_LIST pEffpermResultLists);
  215. };
  216. typedef IEffectivePermission2 *LPEFFECTIVEPERMISSION2;
  217. #endif
  218. EXTERN_GUID (IID_ISecurityInformation, 0x965fc360, 0x16ff, 0x11d0, 0x91, 0xcb, 0x0, 0xaa, 0x0, 0xbb, 0xb7, 0x23);
  219. EXTERN_GUID (IID_ISecurityInformation2, 0xc3ccfdb4, 0x6f88, 0x11d2, 0xa3, 0xce, 0x0, 0xc0, 0x4f, 0xb1, 0x78, 0x2a);
  220. EXTERN_GUID (IID_IEffectivePermission, 0x3853dc76, 0x9f35, 0x407c, 0x88, 0xa1, 0xd1, 0x93, 0x44, 0x36, 0x5f, 0xbc);
  221. EXTERN_GUID (IID_ISecurityObjectTypeInfo, 0xfc3066eb, 0x79ef, 0x444b, 0x91, 0x11, 0xd1, 0x8a, 0x75, 0xeb, 0xf2, 0xfa);
  222. #if NTDDI_VERSION >= 0x06000000
  223. EXTERN_GUID (IID_ISecurityInformation3, 0xe2cdc9cc, 0x31bd, 0x4f8f, 0x8c, 0x8b, 0xb6, 0x41, 0xaf, 0x51, 0x6a, 0x1a);
  224. #endif
  225. #if NTDDI_VERSION >= 0x06020000
  226. EXTERN_GUID (IID_ISecurityInformation4, 0xea961070, 0xcd14, 0x4621, 0xac, 0xe4, 0xf6, 0x3c, 0x3, 0xe5, 0x83, 0xe4);
  227. EXTERN_GUID (IID_IEffectivePermission2, 0x941fabca, 0xdd47, 0x4fca, 0x90, 0xbb, 0xb0, 0xe1, 0x2, 0x55, 0xf2, 0xd);
  228. #endif
  229. HPROPSHEETPAGE ACLUIAPI CreateSecurityPage (LPSECURITYINFO psi);
  230. WINBOOL ACLUIAPI EditSecurity (HWND hwndOwner, LPSECURITYINFO psi);
  231. #if NTDDI_VERSION >= 0x06000000
  232. HRESULT ACLUIAPI EditSecurityAdvanced (HWND hwndOwner, LPSECURITYINFO psi, SI_PAGE_TYPE uSIPage);
  233. #endif
  234. #ifdef __cplusplus
  235. }
  236. #endif
  237. #endif
  238. #endif