<displayName>enter display name here</displayName>
<description>enter description here</description>
<resources>
<stringTable>
<string id="CredUI">Credential User Interface</string>
<string id="CredUI_Help">Contains settings to control the behavior of credential collection.</string>
<string id="EnumerateAdministrators">Enumerate administrator accounts on elevation</string>
<string id="EnumerateAdministrators_Help">By default administrator accounts are not displayed when attempting to elevate a running application.
If you enable this policy setting, all local administrator accounts on the machine will be displayed so the user can choose one and enter the correct password.
If you disable this policy setting, users will be required to always type in a username and password to elevate.</string>
<string id="EnableSecureCredentialPrompting">Require trusted path for credential entry.</string>
<string id="EnableSecureCredentialPrompting_Help">This policy setting requires the user to enter Microsoft Windows credentials using a trusted path, to prevent a Trojan horse or other types of malicious code from stealing the userΓÇÖs Windows credentials.
Note: This policy affects nonlogon authentication tasks only. As a security best practice, this policy should be enabled.
If you enable this policy setting, users will be required to enter Windows credentials on the Secure Desktop by means of the trusted path mechanism.
If you disable or do not configure this policy setting, users will enter Windows credentials within the userΓÇÖs desktop session, potentially allowing malicious code access to the userΓÇÖs Windows credentials.</string>