You can use this group policy to enable the ability for users to run an application with an alternate account.
You set up alternate accounts in Privileged Access Service. Alternate accounts are a way that you can allow a user to access a privileged account.
There are two settings for this group policy:
- By default, when this policy is Disabled or Not Configured, the user can run an application with only their user role if Centrify Privilege Elevation Service is also enabled.
If only Centrify Identity Platform is enabled, then in order for a user to use an alternate account, they must log in to Privileged Access Service and check out the password directly.
- When this policy is Enabled, the user can run an application using an alternate account by right-clicking the application icon and selecting Run with Alternate Account.