Skip to content

Notify Direct Disk Access

NotifyDirectDiskAccess is a sandbox setting in Sandboxie Ini. It defaults to n.

[DefaultBox]
NotifyDirectDiskAccess=y

When enabled, Sandboxie issues SBIE1313 for certain denied attempts to open a disk device directly. It does not report every denied disk-access request or access to files and folders below the device.

The message is not generated when the effective file-access rule blocks host access entirely, such as ClosedFilePath or WriteFilePath. A ReadFilePath rule does not always suppress the message: a denied write request can still generate it.

This setting controls the notification only. It does not grant direct disk access or alter the policy that denied the request. Access-related settings such as Allow Raw Disk Read, Open File Path, and Open Pipe Path are separate.

In Sandboxie Plus, open Sandbox Options > General Options > File Options, find Disk/File access, and select Warn when an application opens a harddrive handle. Sandboxie Control Classic has no equivalent dedicated current control.

The value is cached when the sandboxed process initializes. Restart affected sandboxed processes after changing it for predictable behavior.

See Notification Settings for the distinction between access policy, message generation, and presentation.