Skip to content

Security_DenyFileAccess

Denies a Trustee (user or group) access to a file.

Security_DenyFileAccess(sFile, sTrustee) As Boolean

Full path of the file

A trustee is a user or group. The trustee can be a name in the format Domain\User or a well-known SID (security identifier). Some built-in group names, such as Power Users, are localized, so use the SID for those.

The function returns False if SubInACL.exe can’t be found, or if SubInACL reports an error. See Security functions for where the library looks for SubInACL.exe.

If bStatus Then bStatus = Security_DenyFileAccess(gsProgramFiles & "\CapaInstaller\CapaInstaller.bat", "S-1-5-4")

Scripting Guidelines

Security functions Security_SetFilePermissions Security_RevokeFilePermissions Constants Package Property Variables