User Account Control: Run all administrators in Admin Approval Mode

Information

User Account Control: Run all users, including administrators, as standard users.

This security setting determines the behavior of all UAC policies for the entire system.

The options are:

Enabled: Admin Approval Mode and all other UAC policies are dependent on this option being enabled. Changing this setting requires a system reboot.

Disabled: Admin Approval Mode user type and all related UAC policies will be disabled. Note: the Security Center will notify that the overall security of the operating system has been reduced.

Default: Enabled

Solution

Policy Path: Security Options
Policy Setting Name: User Account Control: Run all administrators in Admin Approval Mode

See Also

https://techcommunity.microsoft.com/t5/microsoft-security-baselines/windows-server-2022-security-baseline/ba-p/2724685

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-6(1)

Plugin: Windows

Control ID: 0e65747e747b2ee2144ee1c159ff7c83d4e3ddb5e8cc7380013228140b9faf62