User Account Control: Detect application installations and prompt for elevation

Information

User Account Control: Detect application installations and prompt for elevation

This security setting determines the behavior of application installation detection for the entire system.

The options are:

- Enabled: Application installation packages that require an elevation of privilege to install will be heuristically detected and trigger the configured elevation prompt UX.

- Disabled: Enterprises running standard users desktops that leverage delegated installation technologies like Group Policy Software Install (GPSI) or SMS will disable this feature. In this case, installer detection is unnecessary and thus not required.

Default: Enabled (home) / Disabled (enterprise)

Solution

Policy Path: Security Options
Policy Setting Name: User Account Control: Detect application installations and prompt for elevation

See Also

https://techcommunity.microsoft.com/t5/microsoft-security-baselines/security-baseline-final-for-windows-10-v1809-and-windows-server/ba-p/701082/

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-6(8), CSCv6|5.1

Plugin: Windows

Control ID: 20ae729e35491a0fc92a6f502d842ceeb2e11f263c532dd54af14d7fff3a8314