...
Overriding UAC prompts is a two -step process:
- Create an Environment Variable Filter.
- Create an Environment Variable Action. this action is used to prevent the UAC prompt from showing
- Create a Blank Application Control Policy.
To create an Environment Variable Filter, do the following steps:
...
- In the file library in the left pane, navigate to Policies > Arellia Solutions > Application Control > Actions > Environment Variables.
- Right-click Environmental Variables and click New > Set Environment Variable Action.
- Give the action a name, such as Clear UAC dialogIn the Create Item dialog, enter a Name and Description.
- Set the Environmental Variable name to "Name to __APPINFO_RUNADMIN" and empty value
Save the action (this action is used to prevent the UAC prompt from showing). - Leave the Value field empty.
- Click Save.
Next, create a Blank Application Control Policy by doing the following steps:
Navigate to Policies > Arellia Solutions > Application Control > Policies
Right-click Policies and select New > Blank Application Control Policy
Set the application target to the new UAC detected filter from step 2
Optionally you can change this so only certain applications or certain users will have the UAC prompt overridden
Under Exclude conditions add the Administrators filter to stop child processes (which inherit elevation) from triggering this policy
Click on the Application Actions tab and set the action to the Clear UAC dialog action from step 6
Also set the action to include one of the following:
Add Administrator Rights, and Justify Application Elevation Dialog (will behave like [READY] Self-Elevation)
Add Administrator Rights, and Justify Application Elevation (kill process) Dialog (will behave like [READY] Self-Elevation Without Adding Administrator Rights)
Add Administrator Rights, and Approval Request Form Action (will behave like [READY] Request Elevation)
Save the policy and update the policies on an endpoint. Test the policy by right-clicking Command Prompt and selecting Run as administrator
Instead of seeing UAC, you should see the custom message
The recorded response will then be sent to the Arellia Management Server where it can be reviewed by the help desk team.