A single Windows Access Control Entry on a file or directory. The subject is identified by Windows SID.
Fields
| Field Name | Description |
|---|---|
type - AceType!
|
The semantic class of the entry (allow / deny / audit). |
sid - String!
|
The Windows SID of the subject this entry applies to. |
permissions - [AccessMask!]!
|
The set of permissions granted or denied by this entry. |
flags - [AceFlags!]!
|
The inheritance and audit flags on this entry. |
Used by
EndpointPathWindowstype: Windows-specific EndpointPath fields.
Example
Example
{
"type": "ACCESS_ALLOWED",
"sid": "abc123",
"permissions": ["FILE_READ_DATA"],
"flags": ["OBJECT_INHERIT"]
}