NetExec daclread Module

Read the DACL of an arbitrary AD object via LDAP and resolve every ACE to a human-readable principal/right pair. Faster than spinning up BloodHound when you only need to confirm one path.

Tool
nxc
Category
Enumeration / LDAP
Platform
linux
Requires
password
Protocols
LDAP

Open in Command Manager

Syntax

Angle-bracket tokens are placeholders — replace them with your target's values, or open this command in the app to fill them in and copy the result.

nxc ldap <target> -u '<user>' -p '<password>' -M daclread -o TARGET='<object>' ACTION=read

Examples

nxc ldap dc.corp.local -u jdoe -p 'Password123!' -M daclread -o TARGET=Administrator ACTION=read

Tags

netexec nxc daclread acl enumeration

References