Win32 API 日本語リファレンス
ホームSecurity › PrivilegedServiceAuditAlarmW

PrivilegedServiceAuditAlarmW

関数
特権サービスの呼び出しに関する監査アラームを生成する。
DLLADVAPI32.dll文字セットUnicode (-W)呼出規約winapi

シグネチャ

// ADVAPI32.dll  (Unicode / -W)
#include <windows.h>

BOOL PrivilegedServiceAuditAlarmW(
    LPCWSTR SubsystemName,
    LPCWSTR ServiceName,
    HANDLE ClientToken,
    PRIVILEGE_SET* Privileges,
    BOOL AccessGranted
);

パラメーター

名前方向
SubsystemNameLPCWSTRin
ServiceNameLPCWSTRin
ClientTokenHANDLEin
PrivilegesPRIVILEGE_SET*in
AccessGrantedBOOLin

戻り値の型: BOOL

各言語での呼び出し定義

// ADVAPI32.dll  (Unicode / -W)
#include <windows.h>

BOOL PrivilegedServiceAuditAlarmW(
    LPCWSTR SubsystemName,
    LPCWSTR ServiceName,
    HANDLE ClientToken,
    PRIVILEGE_SET* Privileges,
    BOOL AccessGranted
);
[return: MarshalAs(UnmanagedType.Bool)]
[DllImport("ADVAPI32.dll", CharSet = CharSet.Unicode, ExactSpelling = true)]
static extern bool PrivilegedServiceAuditAlarmW(
    [MarshalAs(UnmanagedType.LPWStr)] string SubsystemName,   // LPCWSTR
    [MarshalAs(UnmanagedType.LPWStr)] string ServiceName,   // LPCWSTR
    IntPtr ClientToken,   // HANDLE
    IntPtr Privileges,   // PRIVILEGE_SET*
    bool AccessGranted   // BOOL
);
<DllImport("ADVAPI32.dll", CharSet:=CharSet.Unicode, ExactSpelling:=True)>
Public Shared Function PrivilegedServiceAuditAlarmW(
    <MarshalAs(UnmanagedType.LPWStr)> SubsystemName As String,   ' LPCWSTR
    <MarshalAs(UnmanagedType.LPWStr)> ServiceName As String,   ' LPCWSTR
    ClientToken As IntPtr,   ' HANDLE
    Privileges As IntPtr,   ' PRIVILEGE_SET*
    AccessGranted As Boolean   ' BOOL
) As Boolean
End Function
' SubsystemName : LPCWSTR
' ServiceName : LPCWSTR
' ClientToken : HANDLE
' Privileges : PRIVILEGE_SET*
' AccessGranted : BOOL
Declare PtrSafe Function PrivilegedServiceAuditAlarmW Lib "advapi32" ( _
    ByVal SubsystemName As LongPtr, _
    ByVal ServiceName As LongPtr, _
    ByVal ClientToken As LongPtr, _
    ByVal Privileges As LongPtr, _
    ByVal AccessGranted As Long) As Long
' Unicode(W): 文字列は ByVal As LongPtr とし StrPtr(unicodeStr) を渡す
' VBA7前提(PtrSafe)。32bit Office では LongPtr→Long。Integer=16bit / Long=32bit / LongLong=64bit。
import ctypes
from ctypes import wintypes

PrivilegedServiceAuditAlarmW = ctypes.windll.advapi32.PrivilegedServiceAuditAlarmW
PrivilegedServiceAuditAlarmW.restype = wintypes.BOOL
PrivilegedServiceAuditAlarmW.argtypes = [
    wintypes.LPCWSTR,  # SubsystemName : LPCWSTR
    wintypes.LPCWSTR,  # ServiceName : LPCWSTR
    wintypes.HANDLE,  # ClientToken : HANDLE
    ctypes.c_void_p,  # Privileges : PRIVILEGE_SET*
    wintypes.BOOL,  # AccessGranted : BOOL
]
require 'fiddle'
require 'fiddle/import'

lib = Fiddle.dlopen('ADVAPI32.dll')
PrivilegedServiceAuditAlarmW = Fiddle::Function.new(
  lib['PrivilegedServiceAuditAlarmW'],
  [
    Fiddle::TYPE_VOIDP,  # SubsystemName : LPCWSTR
    Fiddle::TYPE_VOIDP,  # ServiceName : LPCWSTR
    Fiddle::TYPE_VOIDP,  # ClientToken : HANDLE
    Fiddle::TYPE_VOIDP,  # Privileges : PRIVILEGE_SET*
    Fiddle::TYPE_INT,  # AccessGranted : BOOL
  ],
  Fiddle::TYPE_INT)
# Wide strings: pass str.encode("UTF-16LE") + "\x00\x00"
#[link(name = "advapi32")]
extern "system" {
    fn PrivilegedServiceAuditAlarmW(
        SubsystemName: *const u16,  // LPCWSTR
        ServiceName: *const u16,  // LPCWSTR
        ClientToken: *mut core::ffi::c_void,  // HANDLE
        Privileges: *mut PRIVILEGE_SET,  // PRIVILEGE_SET*
        AccessGranted: i32  // BOOL
    ) -> i32;
}
// crates: windows-sys provides ready-made bindings for this API.
$sig = @"
[return: MarshalAs(UnmanagedType.Bool)]
[DllImport("ADVAPI32.dll", CharSet = CharSet.Unicode)]
public static extern bool PrivilegedServiceAuditAlarmW([MarshalAs(UnmanagedType.LPWStr)] string SubsystemName, [MarshalAs(UnmanagedType.LPWStr)] string ServiceName, IntPtr ClientToken, IntPtr Privileges, bool AccessGranted);
"@
$api = Add-Type -MemberDefinition $sig -Name 'ADVAPI32_PrivilegedServiceAuditAlarmW' -Namespace Win32 -PassThru
# $api::PrivilegedServiceAuditAlarmW(SubsystemName, ServiceName, ClientToken, Privileges, AccessGranted)
#uselib "ADVAPI32.dll"
#func global PrivilegedServiceAuditAlarmW "PrivilegedServiceAuditAlarmW" wptr, wptr, wptr, wptr, wptr
; PrivilegedServiceAuditAlarmW SubsystemName, ServiceName, ClientToken, varptr(Privileges), AccessGranted   ; 戻り値は stat
; SubsystemName : LPCWSTR -> "wptr"
; ServiceName : LPCWSTR -> "wptr"
; ClientToken : HANDLE -> "wptr"
; Privileges : PRIVILEGE_SET* -> "wptr"
; AccessGranted : BOOL -> "wptr"
; ※HSP3.7は #func のため戻り値はシステム変数 stat に格納されます。
出力引数:
#uselib "ADVAPI32.dll"
#cfunc global PrivilegedServiceAuditAlarmW "PrivilegedServiceAuditAlarmW" wstr, wstr, sptr, var, int
; res = PrivilegedServiceAuditAlarmW(SubsystemName, ServiceName, ClientToken, Privileges, AccessGranted)
; SubsystemName : LPCWSTR -> "wstr"
; ServiceName : LPCWSTR -> "wstr"
; ClientToken : HANDLE -> "sptr"
; Privileges : PRIVILEGE_SET* -> "var"
; AccessGranted : BOOL -> "int"
; ※出力/バッファ引数は var 方式(変数を直接渡す)。varptr 方式にも切替可。
出力引数:
; BOOL PrivilegedServiceAuditAlarmW(LPCWSTR SubsystemName, LPCWSTR ServiceName, HANDLE ClientToken, PRIVILEGE_SET* Privileges, BOOL AccessGranted)
#uselib "ADVAPI32.dll"
#cfunc global PrivilegedServiceAuditAlarmW "PrivilegedServiceAuditAlarmW" wstr, wstr, intptr, var, int
; res = PrivilegedServiceAuditAlarmW(SubsystemName, ServiceName, ClientToken, Privileges, AccessGranted)
; SubsystemName : LPCWSTR -> "wstr"
; ServiceName : LPCWSTR -> "wstr"
; ClientToken : HANDLE -> "intptr"
; Privileges : PRIVILEGE_SET* -> "var"
; AccessGranted : BOOL -> "int"
; ※出力/バッファ引数は var 方式(変数を直接渡す)。varptr 方式にも切替可。
import (
	"golang.org/x/sys/windows"
	"unsafe"
)

var (
	advapi32 = windows.NewLazySystemDLL("ADVAPI32.dll")
	procPrivilegedServiceAuditAlarmW = advapi32.NewProc("PrivilegedServiceAuditAlarmW")
)

// SubsystemName (LPCWSTR), ServiceName (LPCWSTR), ClientToken (HANDLE), Privileges (PRIVILEGE_SET*), AccessGranted (BOOL)
r1, _, err := procPrivilegedServiceAuditAlarmW.Call(
	uintptr(unsafe.Pointer(windows.StringToUTF16Ptr(SubsystemName))),
	uintptr(unsafe.Pointer(windows.StringToUTF16Ptr(ServiceName))),
	uintptr(ClientToken),
	uintptr(Privileges),
	uintptr(AccessGranted),
)
_ = err  // syscall.Errno (valid when the call sets last-error)
_ = r1   // BOOL
function PrivilegedServiceAuditAlarmW(
  SubsystemName: PWideChar;   // LPCWSTR
  ServiceName: PWideChar;   // LPCWSTR
  ClientToken: THandle;   // HANDLE
  Privileges: Pointer;   // PRIVILEGE_SET*
  AccessGranted: BOOL   // BOOL
): BOOL; stdcall;
  external 'ADVAPI32.dll' name 'PrivilegedServiceAuditAlarmW';
result := DllCall("ADVAPI32\PrivilegedServiceAuditAlarmW"
    , "WStr", SubsystemName   ; LPCWSTR
    , "WStr", ServiceName   ; LPCWSTR
    , "Ptr", ClientToken   ; HANDLE
    , "Ptr", Privileges   ; PRIVILEGE_SET*
    , "Int", AccessGranted   ; BOOL
    , "Int")   ; return: BOOL
●PrivilegedServiceAuditAlarmW(SubsystemName, ServiceName, ClientToken, Privileges, AccessGranted) = DLL("ADVAPI32.dll", "bool PrivilegedServiceAuditAlarmW(char*, char*, void*, void*, bool)")
# 呼び出し: PrivilegedServiceAuditAlarmW(SubsystemName, ServiceName, ClientToken, Privileges, AccessGranted)
# SubsystemName : LPCWSTR -> "char*"
# ServiceName : LPCWSTR -> "char*"
# ClientToken : HANDLE -> "void*"
# Privileges : PRIVILEGE_SET* -> "void*"
# AccessGranted : BOOL -> "bool"
# なでしこ1は32bit・ANSI(Shift_JIS)。文字列=char*(ANSI)、ポインタ/ハンドル=void*(4byte)。
# ※-W(Unicode)関数。なでしこ1はANSIのため -A 版の利用を推奨。