QuestionQ23

Least Privilege Enforcement

If Privilege Management does not work on an endpoint, which most likely cause can be confirmed in the EPM Agent Log Files?

  • A Behavior of the elevation prompt for administrators in Admin Approval Mode is set to “Prompt for Consent for non-Windows binaries”.
  • B Agent version is incompatible.
  • C UAC policy Admin Approval for the Built-in Administrator Account is set to “Disabled”.
  • D UAC policy Run all administrators in Admin Approval Mode is set to “Enabled”.
Explanation

The system-wide UAC setting Run all administrators in Admin Approval Mode can be identified in EPM agent diagnostics as an endpoint configuration affecting Privilege Management behavior. This policy controls whether UAC and its related Admin Approval Mode policies are active across the system.

Community Discussion

No comments yet. Be the first to start the discussion!