Use the Enable Active Directory PAM Privilege Escalation Feature group policy to specify if the Microsoft Privileged Access Management (PAM) Privilege Escalation feature is supported or not within the Centrify environment.
If this policy is Enabled, then, when an Active Directory user logs in, the configured privilege that's granted to the user through PAMGroup takes effect until the granted period has elapsed.
The Microsoft PAM Privilege Escalation feature specifies if Centrify DirectControl uses Microsoft PAM Privilege Escalation feature in the computer.
This group policy modifies the
microsoft.pam.privilege.escalation.enabled setting in the agent configuration file.