The win10 box I have started for testing is honoring our existing settings for 
the service, but we don’t deploy the service change via prefs.  We use 
\Computer configuration\Windows Settings\Security Settings\System Services and 
set Application Identity to automatic.

Haven’t actually started testing applocker & new apps, but the service is 
running and set correctly.

-Bonnie

From: [email protected] [mailto:[email protected]] On 
Behalf Of Kennedy, Jim
Sent: Tuesday, December 22, 2015 8:00 AM
To: '[email protected]' <[email protected]>
Subject: [NTSysADM] Win 10 applocker


If you are pushing it via GPO there is a chance it is not working.

Setting the startup type to Automatic does not work in Pref’s, you will see the 
GPO denied in your event log.  You have to regedit it to Automatic, and also 
delete the TriggerInfo key to remove the trigger restriction.

At this point, I am not getting any message when it blocks something.  No pop 
up telling the user what happened as it did in Win 7.

Reply via email to