Skip to content

Security_DenyServiceAccess

Denies a Trustee (user or group) access to a Service.

Security_DenyServiceAccess(sService, sTrustee) As Boolean

Name of the service (the service name, not the display name)

A trustee is a user or group. The trustee can be a name in the format Domain\User or a well-known SID (security identifier). Some built-in group names, such as Power Users, are localized, so use the SID for those.

The function returns False if SubInACL.exe can’t be found, or if SubInACL reports an error. See Security functions for where the library looks for SubInACL.exe.

If bStatus Then bStatus = Security_DenyServiceAccess("Service", "S-1-5-4")

Scripting Guidelines

Security functions Security_SetServicePermissions Security_RevokeServicePermissions Constants Package Property Variables