Use to enable the Credential Guard, which uses virtualization-based security to isolate secrets so that only privileged system software can access them when they are stored on disk or in memory. For more information, see Credential Guard.
Important You must first use DISM to add the virtualization-based security features before you apply this Unattend setting. For more information, see Add the virtualization-based security features by using DISM in Credential Guard.
Disables Credential Guard.
This is the default OS value.
Enables Credential Guard.
Enables Credential Guard without making it persist to the UEFI.
Microsoft-Windows-DeviceGuard-Unattend | LsaCfgFlags
Valid Configuration Passes
Windows 10 Enterprise
Windows Server 2016
For a list of the Windows editions and architectures that this component supports, see Microsoft-Windows-DeviceGuard-Unattend.