Enumerate administrator accounts on elevation

This policy setting controls whether administrator accounts are displayed when a user attempts to elevate a running application. By default, administrator accounts are not displayed when the user attempts to elevate a running application.

If you enable this policy setting, all local administrator accounts on the PC will be displayed so the user can choose one and enter the correct password.

If you disable this policy setting, users will always be required to type a user name and password to elevate.

Supported on: At least Windows Vista

Registry HiveHKEY_LOCAL_MACHINE
Registry PathSoftware\Microsoft\Windows\CurrentVersion\Policies\CredUI
Value NameEnumerateAdministrators
Value TypeREG_DWORD
Enabled Value1
Disabled Value0

credui.admx

Administrative Templates (Computers)

Administrative Templates (Users)