USER_INFO_1 structure (lmaccess.h)
The USER_INFO_1 structure contains information about a user account, including account name, password data, privilege level, and the path to the user's home directory.
Syntax
typedef struct _USER_INFO_1 {
LPWSTR usri1_name;
LPWSTR usri1_password;
DWORD usri1_password_age;
DWORD usri1_priv;
LPWSTR usri1_home_dir;
LPWSTR usri1_comment;
DWORD usri1_flags;
LPWSTR usri1_script_path;
} USER_INFO_1, *PUSER_INFO_1, *LPUSER_INFO_1;
Members
usri1_name
Type: LPWSTR
A pointer to a Unicode string that specifies the name of the user account. For the NetUserSetInfo function, this member is ignored. For more information, see the following Remarks section.
usri1_password
Type: LPWSTR
A pointer to a Unicode string that specifies the password of the user indicated by the usri1_name member. The length cannot exceed PWLEN bytes. The NetUserEnum and NetUserGetInfo functions return a NULL pointer to maintain password security.
By convention, the length of passwords is limited to LM20_PWLEN characters.
usri1_password_age
Type: DWORD
The number of seconds that have elapsed since the usri1_password member was last changed. The NetUserAdd and NetUserSetInfo functions ignore this member.
usri1_priv
Type: DWORD
The level of privilege assigned to the usri1_name member. When you call the NetUserAdd function, this member must be USER_PRIV_USER. When you call the NetUserSetInfo function, this member must be the value returned by the NetUserGetInfo function or the NetUserEnum function. This member can be one of the following values. For more information about user and group account rights, see Privileges.
Value | Meaning |
---|---|
|
Guest |
|
User |
|
Administrator |
usri1_home_dir
Type: LPWSTR
A pointer to a Unicode string specifying the path of the home directory for the user specified in the usri1_name member. The string can be NULL.
usri1_comment
Type: LPWSTR
A pointer to a Unicode string that contains a comment to associate with the user account. This string can be a NULL string, or it can have any number of characters before the terminating null character.
usri1_flags
Type: DWORD
This member can be one or more of the following values.
Note that setting user account control flags may require certain privileges and control access rights. For more information, see the Remarks section of the NetUserSetInfo function.
Value | Meaning |
---|---|
|
The logon script executed. This value must be set. |
|
The user's account is disabled. |
|
The home directory is required. This value is ignored. |
|
No password is required. |
|
The user cannot change the password. |
|
The account is currently locked out. You can call the NetUserSetInfo function and clear this value to unlock a previously locked account. You cannot use this value to lock a previously unlocked account. |
|
The password should never expire on the account. |
|
The user's password is stored under reversible encryption in the Active Directory. |
|
Marks the account as "sensitive"; other users cannot act as delegates of this user account. |
|
Requires the user to log on to the user account with a smart card. |
|
Restrict this principal to use only Data Encryption Standard (DES) encryption types for keys. |
|
This account does not require Kerberos preauthentication for logon. |
|
The account is enabled for delegation. This is a security-sensitive setting; accounts with this option enabled should be tightly controlled. This setting allows a service running under the account to assume a client's identity and authenticate as that user to other remote servers on the network. |
|
The user's password has expired.
Windows 2000: This value is not supported. |
|
The account is trusted to authenticate a user outside of the Kerberos security package and delegate that user through constrained delegation. This is a security-sensitive setting; accounts with this option enabled should be tightly controlled. This setting allows a service running under the account to assert a client's identity and authenticate as that user to specifically configured services on the network.
Windows 2000: This value is not supported. |
The following values describe the account type. Only one value can be set. You cannot change the account type using the NetUserSetInfo function.
usri1_script_path
Type: LPWSTR
A pointer to a Unicode string specifying the path for the user's logon script file. The script file can be a .CMD file, an .EXE file, or a .BAT file. The string can also be NULL.
Remarks
User account names are limited to 20 characters and group names are limited to 256 characters. In addition, account names cannot be terminated by a period and they cannot include commas or any of the following printable characters: ", /, , [, ], :, |, <, >, +, =, ;, ?, *. Names also cannot include characters in the range 1-31, which are nonprintable.
Requirements
Requirement | Value |
---|---|
Minimum supported client | Windows 2000 Professional [desktop apps only] |
Minimum supported server | Windows 2000 Server [desktop apps only] |
Header | lmaccess.h (include Lm.h) |