Soru

Zorluk: OrtaWindows Security Settings and User Account Control

A systems administrator needs to prevent standard users from attempting privilege elevation on a standalone Windows 11 workstation by suppressing elevation prompts entirely. Arrange the steps required to configure this security restriction using the Local Security Policy management console in the correct administrative sequence.

  1. 1Open the Run dialog or an elevated Command Prompt and execute secpol.msc to open the Local Security Policy console.
  2. 2In the left navigation tree, expand the Local Policies folder and click on Security Options.
  3. 3Locate and open the policy entry titled 'User Account Control: Behavior of the elevation prompt for standard users'.
  4. 4Select 'Automatically deny elevation requests' from the dropdown menu and click OK to apply.

Cevap

The correct order begins with launching the console using secpol.msc, navigating to Security Options under Local Policies, selecting the policy 'User Account Control: Behavior of the elevation prompt for standard users', and setting its value to 'Automatically deny elevation requests'.
To modify UAC elevation behavior for standard users, an administrator must first open the Local Security Policy console using secpol.msc, navigate to Local Policies > Security Options, locate 'User Account Control: Behavior of the elevation prompt for standard users', and change its setting to 'Automatically deny elevation requests'.

Adım Adım Çözüm

1
Launch the management snap-in
The Local Security Policy snap-in (secpol.msc) opens.
Administrative security settings for UAC are configured inside the Local Security Policy console.
2
Navigate to the Security Options container
The list of local security policies and UAC policies is displayed in the right pane.
Local Policies > Security Options contains the granular User Account Control settings.
3
Open the standard user UAC behavior policy
The policy properties window opens.
This specific policy governs the elevation prompt behavior for accounts without administrative privileges.
4
Configure the security setting to automatically deny elevation
The policy setting is applied, blocking privilege elevation attempts for standard users without displaying credential prompts.
Setting the behavior to automatically deny elevation prevents standard users from attempting administrative actions.

Anahtar Kavram

Configuring UAC Standard User Elevation Behavior via Local Security Policy (secpol.msc)
Bu soruyu puanla