[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

256040

 
 

909

 
 

199103

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

User Account Control: Admin Approval Mode for the Built-in Administrator account

ID: oval:org.secpod.oval:def:80976Date: (C)2022-06-06   (M)2023-12-12
Class: COMPLIANCEFamily: windows




This policy setting controls the behavior of Admin Approval Mode for the built-in Administrator account. The options are: * Enabled: The built-in Administrator account uses Admin Approval Mode. By default, any operation that requires elevation of privilege will prompt the user to approve the operation. * Disabled: (Default) The built-in Administrator account runs all applications with full administrative privilege. Counter Measure: Enable the User Account Control: Admin Approval Mode for the Built-in Administrator account setting if you have the built-in Administrator account enabled. Potential Impact: Users that log on using the local Administrator account will be prompted for consent whenever a program requests an elevation in privilege. Fix: (1) GPO: Computer Configuration\Windows Settings\Security Settings\Local Policies\Security Options\User Account Control: Admin Approval Mode for the Built-in Administrator account (2) REG: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System!FilterAdministratorToken

Platform:
Microsoft Windows Server 2022
Reference:
CCE-97590-4
CPE    1
cpe:/o:microsoft:windows_server_2022:::x64
CCE    1
CCE-97590-4
XCCDF    1
xccdf_org.secpod_benchmark_general_Windows_Server_2022

© SecPod Technologies