-
Notifications
You must be signed in to change notification settings - Fork 3
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Skip SID translation for capability SIDs #48
Conversation
Signed-off-by: Hiroshi Hatake <[email protected]>
Thanks! I will see this tomorrow. |
Thanks for this fix!
|
All of the capability SIDs will cause In the screenshot, they have A part of the performance perspectives, all of the capability SIDs should be skipped for SID translations. Plus, Active Directory does not resolve the actual usernames with those SIDs. |
Thanks!
On my local Windows 10 Home, I can confirm some simple capability SIDs can be translated. $ PsGetsid S-1-15-3-1
PsGetSid v1.45 - Translates SIDs to names and vice versa
Copyright (C) 1999-2016 Mark Russinovich
Sysinternals - www.sysinternals.com
Account for XXX:
Well Known Group: APPLICATION PACKAGE AUTHORITY\インターネット接続 I'm not sure, but it looks like Sorry, I'm not familiar with it. |
Signed-off-by: Hiroshi Hatake <[email protected]>
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
LGTM. Thanks for this enhancement!
Should we release v0.11.1 with this fix?
Yes. Let's release a point release if y'all have a cycle. It's not urgent but we need to release at the some point of future. |
I'll release it. |
Thanks! |
S-1-15-3- prefixed SIDs are used for indicating capabilities and not mapped for the actual users.
We need to skip SID translation to eliminate the needless trying to translate SIDs.
ref: https://learn.microsoft.com/en-us/windows-server/identity/ad-ds/manage/understand-security-identifiers#capability-sids