Pricing  Get Quote
 
 

Multi-factor authentication

Multi-factor authentication for Windows UAC

What is Windows UAC?

User Account Control (UAC) is a foundational security component in the Windows operating system. It allows users to log on to their computers and perform tasks using the standard user access rights. When certain applications need more than the standard user rights to run, the UAC allows users to run them with their administrator token.

With the built-in UAC elevation component, standard users can easily perform administrative or elevated tasks by entering valid credentials of a local administrator account. However, verification with just a username and password for such privileged actions could make the system vulnerable to exploitation by threat actors.

Enable MFA or 2FA for UAC through ADSelfService Plus

ADSelfService Plus provides MFA for Windows machines to secure standard Windows user accounts. While Windows login MFA secures the initial access, UAC provides critical elevation security in Windows environments. When MFA for UAC is enabled, users will be prompted for additional authentication whenever a UAC credential prompt appears. Only upon successful identity verification can they proceed with administrative tasks. ADSelfService Plus supports a wide range of authenticators to strengthen this protective layer.

screenshot-gina-mac-linux-installation-adselfservice-plus

Supported Windows versions

The Windows UAC MFA feature of ADSelfService Plus is compatible with Windows 7 and above, and Windows Server 2008 and above. It is supported by ADSelfService Plus' Windows login agent version 5.10 and above.

Benefits of enabling MFA for Windows UAC using ADSelfService Plus

  • Security for administrative actions
    With MFA for UAC, ensure that critical system activities are not exploited, even when administrator credentials get compromised.
  • Wide variety of authenticators
    Choose from multiple authentication factors that ADSelfService Plus offers to provide MFA for Windows UAC credential prompts.
  • Different authenticators for different users
    Configure MFA based on users' OUs, groups, and domain memberships. This way, users with different privileges can be authenticated with different authentication factors.

Deploy Windows UAC MFA and safeguard system-critical activities

Get your free trial  

ADSelfService Plus trusted by