> For the complete documentation index, see [llms.txt](https://hacking-notes.jord4n.pro/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://hacking-notes.jord4n.pro/es/active-directory/credentials/access-token.md).

# Token de acceso

#### Definición

Un **token de acceso** es un objeto de Windows que describe el contexto de seguridad de un proceso o hilo.

Cuando un usuario inicia sesión, Windows verifica sus credenciales.

Si la autenticación tiene éxito, el sistema genera un token de acceso.

Cada proceso iniciado en nombre de este usuario recibe una copia de este token.

#### Contenido de un token

Un token puede contener:

* el SID del usuario;
* SID de grupo;
* privilegios;
* el nivel de integridad;
* el tipo de token;
* el inicio de sesión asociado;
* Información relacionada con la elevación de UAC.

#### Utilidad del token

Windows usa el token para determinar si un proceso o hilo puede acceder a un objeto seguro.

Ejemplos de objetos seguros:

* archivo ;
* carpeta;
* clave del registro;
* servicio ;
* proceso ;
* compartición de red;
* objeto de Active Directory.

Cuando un proceso intenta acceder a un recurso, Windows compara:

```bash
Token del usuario
        ↓
Permisos del objeto
        ↓
Acceso permitido o denegado
```

{% embed url="<https://learn.microsoft.com/en-us/sysinternals/downloads/process-explorer>" %}


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://hacking-notes.jord4n.pro/es/active-directory/credentials/access-token.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
