---
title: UserRightsAssignmentPolicy type | Wartiva GraphQL API
description: User Rights Assignment settings on a Windows Endpoint. Wartiva GraphQL API reference with arguments, fields, and examples.
url: https://wartiva.com/api-docs/types/user-rights-assignment-policy.html
updated: 2026-10-07
---

Endpoint configuration · GraphQL type

# `UserRightsAssignmentPolicy` type

User Rights Assignment settings on a Windows Endpoint.

## Fields

| Field Name | Description |
|---|---|
| `seTrustedCredManAccessPrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Access Credential Manager as a trusted caller. |
| `seNetworkLogonRight` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Access this computer from the network. |
| `seTcbPrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Act as part of the operating system. |
| `seMachineAccountPrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Add workstations to domain. |
| `seIncreaseQuotaPrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Adjust memory quotas for a process. |
| `seInteractiveLogonRight` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Allow log on locally. |
| `seRemoteInteractiveLogonRight` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Allow log on through Remote Desktop Services. |
| `seBackupPrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Back up files and directories. |
| `seChangeNotifyPrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Bypass traverse checking. |
| `seSystemtimePrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Change the system time. |
| `seTimeZonePrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Change the time zone. |
| `seCreatePagefilePrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Create a pagefile. |
| `seCreateTokenPrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Create a token object. |
| `seCreateGlobalPrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Create global objects. |
| `seCreatePermanentPrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Create permanent shared objects. |
| `seCreateSymbolicLinkPrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Create symbolic links. |
| `seDebugPrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Debug programs. |
| `seDenyNetworkLogonRight` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Deny access to this computer from the network. |
| `seDenyBatchLogonRight` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Deny log on as a batch job. |
| `seDenyServiceLogonRight` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Deny log on as a service. |
| `seDenyInteractiveLogonRight` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Deny log on locally. |
| `seDenyRemoteInteractiveLogonRight` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Deny log on through Remote Desktop Services. |
| `seEnableDelegationPrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Enable computer and user accounts to be trusted for delegation. |
| `seRemoteShutdownPrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Force shutdown from a remote system. |
| `seAuditPrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Generate security audits. |
| `seImpersonatePrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Impersonate a client after authentication. |
| `seIncreaseWorkingSetPrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Increase a process working set. |
| `seIncreaseBasePriorityPrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Increase scheduling priority. |
| `seLoadDriverPrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Load and unload device drivers. |
| `seLockMemoryPrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Lock pages in memory. |
| `seBatchLogonRight` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Log on as a batch job. |
| `seServiceLogonRight` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Log on as a service. |
| `seSecurityPrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Manage auditing and security log. |
| `seRelabelPrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Modify an object label. |
| `seSystemEnvironmentPrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Modify firmware environment values. |
| `seDelegateSessionUserImpersonatePrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Obtain an impersonation token for another user in the same session. |
| `seManageVolumePrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Perform volume maintenance tasks. |
| `seProfileSingleProcessPrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Profile single process. |
| `seSystemProfilePrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Profile system performance. |
| `seUndockPrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Remove computer from docking station. |
| `seAssignPrimaryTokenPrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Replace a process level token. |
| `seRestorePrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Restore files and directories. |
| `seShutdownPrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Shut down the system. |
| `seSyncAgentPrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Synchronize directory service data. |
| `seTakeOwnershipPrivilege` - [`[String!]`](https://wartiva.com/api-docs/types/string.html) | Take ownership of files or other objects. |

## Used by

- [`LocalPoliciesWindows`](https://wartiva.com/api-docs/types/local-policies-windows.html) type: Windows-specific local security and system policies.

## Example

### Example

```json
{
  "seTrustedCredManAccessPrivilege": [
    "xyz789"
  ],
  "seNetworkLogonRight": ["xyz789"],
  "seTcbPrivilege": ["abc123"],
  "seMachineAccountPrivilege": ["abc123"],
  "seIncreaseQuotaPrivilege": ["abc123"],
  "seInteractiveLogonRight": ["abc123"],
  "seRemoteInteractiveLogonRight": [
    "abc123"
  ],
  "seBackupPrivilege": ["xyz789"],
  "seChangeNotifyPrivilege": ["xyz789"],
  "seSystemtimePrivilege": ["xyz789"],
  "seTimeZonePrivilege": ["abc123"],
  "seCreatePagefilePrivilege": ["xyz789"],
  "seCreateTokenPrivilege": ["xyz789"],
  "seCreateGlobalPrivilege": ["xyz789"],
  "seCreatePermanentPrivilege": ["xyz789"],
  "seCreateSymbolicLinkPrivilege": [
    "xyz789"
  ],
  "seDebugPrivilege": ["xyz789"],
  "seDenyNetworkLogonRight": ["xyz789"],
  "seDenyBatchLogonRight": ["xyz789"],
  "seDenyServiceLogonRight": ["abc123"],
  "seDenyInteractiveLogonRight": ["abc123"],
  "seDenyRemoteInteractiveLogonRight": [
    "xyz789"
  ],
  "seEnableDelegationPrivilege": ["xyz789"],
  "seRemoteShutdownPrivilege": ["xyz789"],
  "seAuditPrivilege": ["xyz789"],
  "seImpersonatePrivilege": ["xyz789"],
  "seIncreaseWorkingSetPrivilege": [
    "xyz789"
  ],
  "seIncreaseBasePriorityPrivilege": [
    "abc123"
  ],
  "seLoadDriverPrivilege": ["xyz789"],
  "seLockMemoryPrivilege": ["abc123"],
  "seBatchLogonRight": ["abc123"],
  "seServiceLogonRight": ["abc123"],
  "seSecurityPrivilege": ["xyz789"],
  "seRelabelPrivilege": ["xyz789"],
  "seSystemEnvironmentPrivilege": [
    "xyz789"
  ],
  "seDelegateSessionUserImpersonatePrivilege": [
    "abc123"
  ],
  "seManageVolumePrivilege": ["xyz789"],
  "seProfileSingleProcessPrivilege": [
    "abc123"
  ],
  "seSystemProfilePrivilege": ["xyz789"],
  "seUndockPrivilege": ["abc123"],
  "seAssignPrimaryTokenPrivilege": [
    "abc123"
  ],
  "seRestorePrivilege": ["abc123"],
  "seShutdownPrivilege": ["abc123"],
  "seSyncAgentPrivilege": ["abc123"],
  "seTakeOwnershipPrivilege": ["xyz789"]
}

```

---

Wartiva is in early access. Request access: https://wartiva.com/early-access.html  
All pages: https://wartiva.com/llms.txt
