AdminMinutes | REG_DWORD | 15 | 30 | Number of minutes the user is administrator. This can also be set in your cloud settings. |
AppInstructions | REG_SZ | | | Body text for instructions (Code of Conduct) screen for app elevation ("Run As Administrator"). |
AppInstructionHeader | REG_SZ | | | Header line for instructions (Code of Conduct) screen for app elevation ("Run As Administrator"). |
AppInstructionsShowInterval | REG_DWORD | | | Interval in days to show the instructions (Code of Conduct). |
AllowBlacklistPIN | REG_SZ | 1 | 1 | Allow unlocking with a PIN code when an application is blocked. |
AutoApprove | REG_DWORD | 1 | 0 | Enables automatic session approval, if this setting is 1. If not configured or value is 0, cloud settings are used. |
AutoApproveApps | REG_DWORD | 1 | 0 | Enables automatic app elevation approval, if this setting is 1. If not configured or value is 0, cloud settings are used. |
CleanAdminsGroup | REG_DWORD | 1 | 0 | This setting removes users from the administrator's group at login time, unless the user is administrator based on a domain group membership or is logging on using the built in administrator account. Refer to the FAQ for more information. |
CompanyName | REG_SZ | | | Overrules the company name that appears on user interfaces, which is by default the licensed company name. |
ComputerGroups | REG_SZ | | | If defined, the computer must be member of at least one of these groups. |
ComputerOUs | REG_SZ | | | If defined, the computer must be located in one of these organizational units, or an OU under it. |
DenySessionSystemFileElevation | REG_DWORD | 0 | 1 | Prevents the user from elevating any file in the system folder during an administrator session. |
DenySystemFileElevation | REG_DWORD | 0 | 1 | Prevents the user from elevating any file in the system folder. |
EnableSessions | REG_DWORD | 1 | 1 | Allow requesting admin sessions. |
EnableAppElevations | REG_DWORD | 1 | 1 | Allow app elevation. |
EmailFieldBehavior | REG_SZ | 1 | 1 | Sets mode for the email request form field. Value values are "Mandatory", "Optional" or "Hidden". |
DesktopIcon | REG_DWORD | 1 | 0 | Create desktop icon to elevate. |
EnableUAC | REG_DWORD | 1 | 1 | Enables UAC, if it is not enabled. |
ExcludeUsers | REG_SZ | | | Comma separated list of users to not revoke admin rights from. Domain users must be prefixed with domain and backslash. |
IconName | REG_SZ | | | Overrules the default name of the desktop and programs icon. Note that the default icon name is localized. |
Instructions | REG_SZ | | | Body text for instructions (Code of Conduct) screen for Admin Sessions. |
InstructionHeader | REG_SZ | | | Header line for instructions (Code of Conduct) screen for Admin Sessions. |
InstructionsShowInterval | REG_DWORD | | | Interval in days to show the instructions (Code of Conduct). |
InternetUpdate | REG_DWORD | 0 | 0 | Allow automatic updating of the software over the internet. |
KillProcessesAtEnd | REG_SZ | 0 | 1 | Kill UAC elevated processes, when session ends. |
MaxMalwareScanFileSize | REG_SZ | 250 | 250 | Maximum file size allowed to upload to malware scanning (MB). |
LANUpdatePath | REG_SZ | | | Automatically update the software from this UNC path. |
Language | REG_SZ | Auto | Auto | User interface language. Default is to use the Windows user preference language. Forced language codes are English (EN), German (DE), Spanish (ES), French (FR), Danish (DA), Swedish (SV) or Norwegian (NN). |
LogFile | REG_SZ | | | Optional log file. Every time a user elevates, it will be logged to this file. |
PhoneNoFieldBehavior | REG_SZ | 1 | 1 | Sets mode for the phone no request form field. Value values are "Mandatory", "Optional" or "Hidden". |
RemoveUsersFromMMC | REG_DWORD | 1 | 1 | Remove the ability to modify users and groups in Computer Management. |
ShowAppInstructions | REG_DWORD | 0 | 0 | Show instructions (Code of Conduct) message when starting an app elevation ("Run As Administrator"). |
ShowInstructions | REG_DWORD | 0 | 0 | Show instructions (Code of Conduct) message when starting an administrator session. |
ShowRunAsGfx | REG_DWORD | 0 | 0 | Show the "Run As Administrator" graphics on the instructions (Code of Conduct) screen. |
RequireReason | REG_DWORD | 1 | 1 | Enables requiring reason for admin sessions. If AutoApprove is 1, the reason is always required and this setting has no effect. |
RequireAppReason | REG_DWORD | 1 | 1 | Enables requiring reason app elevations. If AutoApprove is 1, the reason is always required and this setting has no effect. |
UploadInventory | REG_DWORD | 1 | 1 | Allow collection of inventory. |
UserGroups | REG_SZ | | | If defined, the user must be member of at least one of these groups. Multiple groups are split by | (see notes below). This setting and the next three, can also be set in your cloud settings on this web site. Policies overrule cloud settings. |
UserOUs | REG_SZ | | | If defined, the user must be located in one of these organizational units, or an OU under it. Multiple OUs are split by | (see next section). |