User Account Control
User Account Control (UAC) enables users to perform common tasks as nonadministrators, called standard users, and as administrators without having to switch users, log off, or use Run As. The behavior of UAC for the "Never notify" setting no longer disables UAC. The "Never notify" setting gives you a split token and always automatically elevates the privilege required. This subtlety may cause your app to have compatibility problems. You can still disable UAC by using Group Policies or manually setting the registry key.
Windows Server 2008 R2, Windows 7, Windows Server 2008, and Windows Vista: The "Never notify" setting disables UAC.
For example, if you perform the following steps to change the "Never notify" setting, you get different outcomes when you attempt to create a file in a folder that requires elevated privileges. The Windows 8 behavior is to deny access. The Windows 7 behavior allows you to create the File.txt file.
- Click or tap Start. In the search box, type "Change User Account Control settings".
- Click or tap Change User Account Control settings to open it.
- Move the slider to Never notify.
- Click or tap OK.
- Restart your computer.
- Click or tap Start and then Run. In the Open box, type "Cmd.exe". Note that the title of the window doesn't contain the string "Administrator".
- Type "echo > %windir%\system32\File.txt".
UAC was added in Windows Server 2008 and Windows Vista. A standard user account is synonymous with a user account in Windows XP. User accounts that are members of the local Administrators group will run most applications as a standard user.
For information about UAC, see the following topics.
General information about UAC.
Models for developing applications that perform operations that require administrative privilege, but that run as a standard user.
Detailed information about authorization functions, interfaces, structures, and other programming elements.