Skip to main content

WRITE_MASK

Constant WRITE_MASK 

Source
pub const WRITE_MASK: u32 = _; // 1_343_029_590u32
Expand description

The access mask bits that amount to “may change what is in this directory, or who may”.

Spelled as bits rather than as SDDL abbreviations because the abbreviations are not self-describing: LC and DC are the directory-service names for 0x4 and 0x2, which on a filesystem object are FILE_ADD_SUBDIRECTORY and FILE_ADD_FILE — and those two are exactly how C:\ grants ordinary users the ability to create things. Matching on the letters would have missed them.

BitRight
0x1000_0000GENERIC_ALL
0x4000_0000GENERIC_WRITE
0x0008_0000WRITE_OWNER
0x0004_0000WRITE_DAC
0x0001_0000DELETE
0x0000_0100FILE_WRITE_ATTRIBUTES
0x0000_0040FILE_DELETE_CHILD
0x0000_0010FILE_WRITE_EA
0x0000_0004FILE_APPEND_DATA / FILE_ADD_SUBDIRECTORY
0x0000_0002FILE_WRITE_DATA / FILE_ADD_FILE