Permissions on Active Directory Objects

As we all know, the ActiveDirectoryAccessRule class is used to represent an access control entry (ACE) in the discretionary access control list (DACL) of an Active Directory Domain Services object.

To set the permissions on Active Directory objects, the relevant classes and their enumerations are listed as below:

System.DirectoryServices.ActiveDirectoryAccessRule class:

http://msdn.microsoft.com/en-us/library/system.directoryservices.activedirectoryaccessrule(v=vs.110).aspx

System.DirectoryServices.ActiveDirectoryRights class:

http://msdn.microsoft.com/en-us/library/system.directoryservices.activedirectoryrights(v=vs.110).aspx

System.Security.AccessControl.AccessControlType class:

http://msdn.microsoft.com/en-us/library/w4ds5h86(v=vs.110).aspx

System.DirectoryServices.ActiveDirectorySecurityInheritance class:

http://msdn.microsoft.com/en-us/library/system.directoryservices.activedirectorysecurityinheritance(v=vs.110).aspx