question

yannara avatar image
1 Vote"
yannara asked yannara commented

Windows 11 terminal admin elevation does not work

I have Win10 and Win11 managed devices via Intune and for admin tasks, I use additional accounts which has AzureAD role assigned like Device Local Administrators. In Win10, elevating admin rights and executing run as admin works fine, in Win11 it doesn't. In Windows 11, after couple of tries entering admin credits via UAC, I get:

"The application cannot be started for the target user. Please login as the user and explicitly install this package."

So that terminal command line must be installed seperetly or something? Is this a bug?

windows-11mem-intune-general
· 3
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

Are you using local account or Azure account?
Are you following the same procedure as the one for the Windows 10 in the Windows 11?

0 Votes 0 ·
  • Azure account

  • exact same process in Win10 and Win11 yes

It turns out, this problem is only about the Terminal Command line. Other UAC features work in Win11.

0 Votes 0 ·

I am also unable to launch Windows Terminal (Admin) with a user account which is capable of elevating to perform other administrative actions on the device.

0 Votes 0 ·
yannara avatar image
0 Votes"
yannara answered

It is only the Terminal which elevation does not work and it asks then for ""The application cannot be started for the target user. Please login as the user and explicitly install this package.""

5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

yannara avatar image
0 Votes"
yannara answered

157267-image.png



So this is the situation, I can't use Windows Terminal with admin previleges. I ensured, that no speicial security features was applied on the Win11 machine, excluded security baseline and everything. I also tried the same thing with local admin account (no Azure), same behavior! But my collegue has a Win11 home computer where he can launch it like that.


image.png (42.4 KiB)
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

yannara avatar image
0 Votes"
yannara answered

I installed manual Win11 computer without Intune & Azure AD management and I get the same error!

5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

yannara avatar image
0 Votes"
yannara answered yannara commented

Contacted MS support, they find out this is known issue.

· 2
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

|Did you get an answer from microsoft support when this issue get fixed?

0 Votes 0 ·
yannara avatar image yannara ChristophPilgersdorfer-3069 ·

No :(

0 Votes 0 ·
yannara avatar image
0 Votes"
yannara answered ChristophPilgersdorfer-3069 commented

I have tested this again, "home" computer installed via MS account and added secondary local account, the Windws Terminal UAC works. But if the computer is imported to Intune and managed with MDM, it doesn't.

· 1
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

I have the same behavior.
Can remember, there a many issues open in the windows terminal github page.
Sorry but why is Microsoft releasing Windows 11 and set Windows Terminal as standard shortcut in the context menü and it is NOT WORKING for Enterprise costumers!!!
It is so annoying ...

1 Vote 1 ·
ChristophPilgersdorfer-3069 avatar image
0 Votes"
ChristophPilgersdorfer-3069 answered yannara commented

In the last Insider Preview Microsoft has changed back to Windows Powershell in WinX menu (Thank you!)
186069-grafik.png



grafik.png (302.2 KiB)
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

MikeCrawford-5998 avatar image
0 Votes"
MikeCrawford-5998 answered yannara commented

On an AAD joined machine, if you sign in as the elevated user account (admin) and run Terminal once, then sign out, then you should be able to now run Terminal elevated back in a standard user account.

I think there are others apps in Win11 where you also have to do this to be able to subsequently run elevated.

Regards

· 1
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

Still sounds like a bug for me

0 Votes 0 ·