冒充用户名和密码?

Roy*_*mir 10 c# impersonation console-application

WindowsIdentity identity = new WindowsIdentity(accessToken);
WindowsImpersonationContext context = identity.Impersonate();

 ...
context.Undo();
Run Code Online (Sandbox Code Playgroud)

我在哪里声明一个administraotr UserName和Passowrd?

的accessToken PARAM并不能帮助我太多...

我必须为它导入DLL吗?

Ste*_*fan 22

您需要获取用户的令牌.使用LogonUseradvapi32.dll中的p/invoke :

    [DllImport("advapi32.dll", SetLastError = true)]
    public static extern bool LogonUser(
            string lpszUsername,
            string lpszDomain,
            string lpszPassword,
            int dwLogonType,
            int dwLogonProvider,
            out IntPtr phToken);
Run Code Online (Sandbox Code Playgroud)

例:

IntPtr userToken = IntPtr.Zero;

bool success = External.LogonUser(
  "john.doe", 
  "domain.com", 
  "MyPassword", 
  (int) AdvApi32Utility.LogonType.LOGON32_LOGON_INTERACTIVE, //2
  (int) AdvApi32Utility.LogonProvider.LOGON32_PROVIDER_DEFAULT, //0
  out userToken);

if (!success)
{
  throw new SecurityException("Logon user failed");
}

using (WindowsIdentity.Impersonate(userToken))
{
  // do the stuff with john.doe's credentials
}
Run Code Online (Sandbox Code Playgroud)

  • 我想应该调用`CloseHandle`(如[LogonUser`文档中所述](https://msdn.microsoft.com/en-us/library/windows/desktop/aa378184(v = vs.85). aspx))用于使用块之后的`userToken`.或者这是由'WindowsIdentity`以某种方式调用的? (2认同)

fix*_*gon 5

它正是你必须使用的accessoken.要获得它,您需要调用LogonUser方法:

哎呀没有意识到我只是在这里有VB.net代码.想象一下它在C#中;)在c#中

外部方法声明:

Private Declare Auto Function LogonUser Lib "advapi32.dll" (ByVal lpszUsername As [String], _
ByVal lpszDomain As [String], ByVal lpszPassword As [String], _
ByVal dwLogonType As Integer, ByVal dwLogonProvider As Integer, _
ByRef phToken As IntPtr) As Boolean
Run Code Online (Sandbox Code Playgroud)

和执行:

_Token = New IntPtr(0)

Const LOGON32_PROVIDER_DEFAULT As Integer = 0
'This parameter causes LogonUser to create a primary token.
Const LOGON32_LOGON_INTERACTIVE As Integer = 2
Const LOGON32_LOGON_NEWCREDENTIALS As Integer = 9

_Token = IntPtr.Zero

' Call LogonUser to obtain a handle to an access token.
Dim returnValue As Boolean = LogonUser(_User, _Domain, _Password, LOGON32_LOGON_NEWCREDENTIALS, LOGON32_PROVIDER_DEFAULT, _Token)

If False = returnValue Then
     Dim ret As Integer = Marshal.GetLastWin32Error()
     Console.WriteLine("LogonUser failed with error code : {0}", ret)
     Throw New System.ComponentModel.Win32Exception(ret)
End If

_Identity = New WindowsIdentity(_Token)
_Context = _Identity.Impersonate()
Run Code Online (Sandbox Code Playgroud)