Skip to content

WindowsAccessControlSmbShareSecurityDescriptor

raandree edited this page Sep 6, 2026 · 1 revision

Parameters

Parameter Attribute DataType Description Allowed Values
Name Key System.String The name of the local share whose DACL is managed.
Sections Key WindowsSecurityDescriptorSection The security descriptor sections this resource owns. Only the access section is supported for a share. Owner, Group, Access, Audit, All
Sddl Required System.String The desired share DACL in SDDL form. Capture it from Get-SmbShareSecurityDescriptor.
Reasons Read WindowsAccessControlDscReason[] Returns why the resource is not in the desired state. Not configurable.

Description

Compares the share access control list against the desired SDDL and rewrites it. This resource manages the access section only; the file system permissions behind the share are a separate target managed by WindowsAccessControlNtfsSecurityDescriptor.

Home

Commands

DSC resources

Clone this wiki locally