Enabling and disabling Application Privilege Control

January 10, 2024

ID 65720

By default, Application Privilege Control is enabled, running in a mode that is recommended by Kaspersky experts. You can disable Application Privilege Control, if necessary.

To enable or disable Application Privilege Control in Kaspersky Security Center:

  1. Open Kaspersky Security Center Administration Console.
  2. In the Managed devices folder of the console tree, open the folder with the name of the administration group to which the relevant protected virtual machines belong.
  3. In the workspace, select the Policies tab.
  4. Select a Light Agent for Windows policy in the list of policies and open the Properties: <Policy name> by double-clicking.
  5. In the policy properties window, select the Application Privilege Control section in the list on the left.
  6. In the right part of the window, do one of the following:
    • To enable Application Privilege Control component, select the Application Privilege Control check box.
    • To disable Application Privilege Control component, clear the Application Privilege Control check box.
  7. Click the Apply button.

In the local interface of Light Agent for Windows, you can enable or disable a component in two ways:

To enable or disable Application Privilege Control on the Protection and Control tab of the main application window:

  1. On the protected virtual machine, open the main application window.
  2. Select the Protection and Control tab.
  3. Open the Endpoint control section.
  4. Open the context menu of the Application Privilege Control item and perform one of the following actions:
    • To enable Application Privilege Control, select Enable.

      The component status icon, which is displayed on the left in the Application Privilege Control line, changes to the  icon.

    • To disable the Application Privilege Control component, select Disable.

      The component status icon, which is displayed on the left in the Application Privilege Control line, changes to the  icon.

    If this menu item is unavailable, this means that you cannot enable or disable this component because the policy-defined setting is applied to protected virtual machines within the administration group.

To enable or disable Application Privilege Control from the application settings window:

  1. On the protected virtual machine, open the application settings window.
  2. In the left part of the window, in the Endpoint control section, select Application Privilege Control.

    In the right part of the window, the Application Privilege Control component's settings are displayed.

    If component settings are unavailable, this means that you cannot enable or disable this component because the policy-defined setting is applied to protected virtual machines within the administration group.

  3. Do one of the following:
    • To enable Application Privilege Control component, select the Enable Application Privilege Control check box.
    • To disable Application Privilege Control component, clear the Enable Application Privilege Control check box.
  4. To save changes, click the Save button.

Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.