1.249 WN22-SO-000420

Information

Windows Server 2022 User Account Control (UAC) must be configured to detect application installations and prompt for elevation.

GROUP ID: V-254486
RULE ID: SV-254486r958518

UAC is a security mechanism for limiting the elevation of privileges, including administrative accounts, unless authorized. This setting requires Windows to respond to application installation requests by prompting for credentials.

Solution

Configure the policy value for

Computer Configuration >> Windows Settings >> Security Settings >> Local Policies >> Security Options >> User Account Control: Detect application installations and prompt for elevation to 'Enabled'

See Also

https://workbench.cisecurity.org/benchmarks/22357