Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Code Project
  1. Home
  2. Database & SysAdmin
  3. System Admin
  4. Error when impersonate thread in kenel driver by using different user account logon

Error when impersonate thread in kenel driver by using different user account logon

Scheduled Pinned Locked Moved System Admin
sysadminhelpsecurityquestionlearning
1 Posts 1 Posters 0 Views 1 Watching
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • T Offline
    T Offline
    Tida
    wrote on last edited by
    #1

    Dear All, I met a problem when access network shared files in the kernel driver. I always got a "Access Denied 0xc0000022" error. The senario is: 1. A Win2000 Domain; 2. User account "Acc" in this domain in Domain/Users group. 3. A Shared folder on a Server(win 2000) in this domain.( the Acc has the permission to full control to this shared folder) 4. A Computer(win2000) in this domain The steps are: 1. I logon to that computer using the domain account "Acc" 2. I start a app and send out an IOCTL from this app 3. Create a system thread in the driver after receive this IOCTL. and create a security client context. 4. When needed in the dispacth routine of this driver, impersonate the thread using the saved security client context then access the shared folder on that server in this domain. Always got an 0xC0000022 error. 5. But When I logon that computer using an adminstrator domain account. Then every thing ok. 6. even after logon under adminstrator's account then create the sytem thread and log out and relogon under the "Acc" account, this time I can access that share folder also. So, Is that I miss some configuration on the server or on the domain about privilage or security of that "Acc" account or server? What I should do? Does any one has any suggestion? Or is there any books or articles about those? I search on the web. still can not get whole picture about security and network resource access and user account and logon. Thanks Laura.

    1 Reply Last reply
    0
    Reply
    • Reply as topic
    Log in to reply
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes


    • Login

    • Don't have an account? Register

    • Login or register to search.
    • First post
      Last post
    0
    • Categories
    • Recent
    • Tags
    • Popular
    • World
    • Users
    • Groups