If this per-machine system policy is set to "1", the installer prevents non-administrators from using User Account Control (UAC) Patching for any application installed on the computer. When the per-machine system policy is not set or set to 0, non-administrators can apply least-privilege user patches to applications that are enabled for least-privilege user account patching.

Use the MSIDISABLELUAPATCHING property to prevent the least-privilege patching of an application.

The DisableLUAPatching policy is available beginning with Windows Installer version 3.0.

Registry Key


Data Type


Not Supported in Windows Installer 2.0 and earlier