Configure Windows authentication user privilege elevation grace period

You can use this group policy to configure the Windows authentication grace period (in minutes) for user privilege elevation, such as run as role, run with privilege, new desktop, and switch desktop.

This per-session grace period starts when the user performs a successful privilege escalation in the session and the grace period is restarted. If the group policy is set to:

  • Enabled: the grace period for privilege elevation is configured in the group policy.
  • Disabled: the grace period for privilege elevation is disabled.
  • Not Configured: the grace period for privilege elevation is not enabled and a local policy can override the setting.