术语 | netgroupsetusers |
释义 | NetGroupSetUsers 语法: C++ NET_API_STATUS NetGroupSetUsers( __in LPCWSTR servername, __in LPCWSTR groupname, __in DWORD level, __in LPBYTE buf, __in DWORD totalentries ); NetGroupSetUsers功能 该NetGroupSetUsers函数设置指定的全局组成员身份。每个用户指定的登记作为全局组的成员。用户如果不指定,但谁是目前全球集团的成员,其成员将被撤销。 参数 服务器名 [in] 一个常量字符串,它指定的DNS或NetBIOS的远程服务器上的功能是执行名称的指针。如果该参数为NULL,则使用本地计算机。 群组名称 [in] 一个字符串常量,指定感兴趣的全局组名称的指针。有关详细信息,请参见备注部分。 Level [in] 数据的信息化Level。此参数可以是下列值之一。 ValueMeaning 0The buf参数指向一个GROUP_USERS_INFO_0结构的数组指定的用户名。 1The buf参数指向一个指定用户名和小组的属性GROUP_USERS_INFO_1结构的数组。 缓冲带 [in] 一个缓冲区,它包含的数据的指针。有关更多信息,请参阅网络管理功能的缓冲器。 totalentries [in] 该项目在缓冲区中指出,由buf参数。 返回值 如果函数成功,返回值是NERR_Success。 如果函数失败,返回值可以是下面的错误代码之一。 返回codeDescription ERROR_ACCESS_DENIEDThe用户没有获得所需的信息。 ERROR_INVALID_LEVELThe系统调用级别不正确。此错误,则返回参数的Level,如果是作为一个价值1比0或其他指定。 ERROR_INVALID_PARAMETERA参数传递是无效的。返回此错误,如果totalentries参数是无效的。 ERROR_NOT_ENOUGH_MEMORYInsufficient记忆来完成操作。 NERR_InvalidComputerThe计算机名无效。 NERR_NotPrimaryThe操作只允许在该域的主域控制器。 NERR_GroupNotFoundThe全局组名称找不到。 NERR_InternalErrorAn发生内部错误。 NERR_SpeGroupOpThe操作是不允许的某些特殊群体。这些群体包括用户组,管理员组,本地组和嘉宾组。 NERR_UserNotFoundThe用户名找不到。 备注 如果您调用域控制器上运行Active Directory的这一功能,允许访问或拒绝的访问控制列表的安全对象(ACL)的基础。默认的ACL只允许域管理员和Account Operators调用此函数。在成员服务器或工作站,只有Administrators和Power Users可以调用这个函数。有关更多信息,请参阅的网络管理功能的安全要求。欲了解更多有关的ACL,ACE的,和访问令牌信息,请访问控制模型。 该小组的对象的安全描述符用于执行此函数访问检查。 您可以用一种完全新的成员名单调用NetGroupSetUsers全局组成员身份的功能。典型的步骤顺序执行此如下。 若要替换全局组成员身份 调用NetGroupGetUsers函数来检索成员名单。 修改返回的成员名单,以反映新的成员。 调用NetGroupSetUsers函数替换为新老成员名单成员名单。 若要授予在现有用户的全局组的成员之一,您可以调用NetGroupAddUser功能。要从全局组的用户,调用NetGroupDelUser功能。 用户帐户名称被限制为20个字符和组名称被限制为256个字符。此外,帐户名称不能终止的期间,他们不能包含逗号或以下打印字符:“,/,\\,[,]:,|,”,“+,=,,,?, *.名称也不能包括在1-31范围内,这些非打印字符。 如果您是Active Directory的程序,您可以调用某些Active Directory服务接口(ADSI)的方法来达到同样的功能,您可以通过调用实现网络管理小组的职能。有关更多信息,请参阅IADsGroup。 要求: 最低支持:client-Windows 2000专业版 最低支持server-Windows 2000服务器 HeaderLmaccess.h(包括Lm.h) LibraryNetapi32.lib DLLNetapi32.dll 参见 集团职能 GROUP_USERS_INFO_0 GROUP_USERS_INFO_1 NetGroupGetUsers NetUserGetGroups NetUserSetGroups NetGroupAddUser NetGroupDelUser 网络管理概述 网络管理功能 如果有任何问题和意见,请发送给微软(wsddocfb@microsoft.com) 生成日期:2009年8月13日 ==英文原文==NetGroupSetUsers Function The NetGroupSetUsers function sets the membership for the specified global group. Each user you specify is enrolled as a member of the global group. Users you do not specify, but who are currently members of the global group, will have their membership revoked. Syntax C++ NET_API_STATUS NetGroupSetUsers( __in LPCWSTR servername, __in LPCWSTR groupname, __in DWORD level, __in LPBYTE buf, __in DWORD totalentries ); Parameters servername [in] A pointer to a constant string that specifies the DNS or NetBIOS name of the remote server on which the function is to execute. If this parameter is NULL, the local computer is used. groupname [in] A pointer to a constant string that specifies the name of the global group of interest. For more information, see the Remarks section. level [in] The information level of the data. This parameter can be one of the following values. ValueMeaning 0The buf parameter points to an array of GROUP_USERS_INFO_0 structures that specify user names. 1The buf parameter points to an array of GROUP_USERS_INFO_1 structures that specifies user names and the attributes of the group. buf [in] A pointer to the buffer that contains the data. For more information, see Network Management Function Buffers . totalentries [in] The number of entries in the buffer pointed to by the buf parameter. Return Value If the function succeeds, the return value is NERR_Success. If the function fails, the return value can be one of the following error codes. Return codeDescription ERROR_ACCESS_DENIEDThe user does not have access to the requested information. ERROR_INVALID_LEVELThe system call level is not correct. This error is returned if the level parameter was specified as a value other than 0 or 1. ERROR_INVALID_PARAMETERA parameter passed was not valid. This error is returned if the totalentries parameter was not valid. ERROR_NOT_ENOUGH_MEMORYInsufficient memory was available to complete the operation. NERR_InvalidComputerThe computer name is invalid. NERR_NotPrimaryThe operation is allowed only on the primary domain controller of the domain. NERR_GroupNotFoundThe global group name could not be found. NERR_InternalErrorAn internal error occurred. NERR_SpeGroupOpThe operation is not allowed on certain special groups. These groups include user groups, admin groups, local groups, and guest groups. NERR_UserNotFoundThe user name could not be found. Remarks If you call this function on a domain controller that is running Active Directory, access is allowed or denied based on the access control list (ACL) for the securable object . The default ACL permits only Domain Admins and Account Operators to call this function. On a member server or workstation, only Administrators and Power Users can call this function. For more information, see Security Requirements for the Network Management Functions . For more information on ACLs, ACEs, and access tokens, see Access Control Model . The security descriptor of the Group object is used to perform the access check for this function. You can replace the global group membership with an entirely new list of members by calling the NetGroupSetUsers function. The typical sequence of steps to perform this follows. To replace the global group membership Call the NetGroupGetUsers function to retrieve the current membership list. Modify the returned membership list to reflect the new membership. Call the NetGroupSetUsers function to replace the old membership list with the new membership list. To grant one user membership in an existing global group, you can call the NetGroupAddUser function. To remove a user from a global group, call the NetGroupDelUser function. User account names are limited to 20 characters and group names are limited to 256 characters. In addition, account names cannot be terminated by a period and they cannot include commas or any of the following printable characters: ", /, \\, [, ], :, |, <, >, +, =, ;, ?, *. Names also cannot include characters in the range 1-31, which are nonprintable. If you are programming for Active Directory, you may be able to call certain Active Directory Service Interface (ADSI) methods to achieve the same functionality you can achieve by calling the network management group functions. For more information, see IADsGroup . Requirements Minimum supported clientWindows 2000 Professional Minimum supported serverWindows 2000 Server HeaderLmaccess.h (include Lm.h) LibraryNetapi32.lib DLLNetapi32.dll See Also Group Functions GROUP_USERS_INFO_0 GROUP_USERS_INFO_1 NetGroupGetUsers NetUserGetGroups NetUserSetGroups NetGroupAddUser NetGroupDelUser Network Management Overview Network Management Functions Send comments about this topic to Microsoft Build date: 8/13/2009 ==原始网址==http://msdn.microsoft.com/en-us/library/aa370432(VS.85).aspx\n |
随便看 |
windows api函数参考手册包含2258条windows api函数文档,详细介绍nodejs、java、rust调用windows api的方法技巧,是学习windows api编程的入门中文文档。