Granting Administrator Rights to Additional Users
Windows device administrators can grant additional users administrative access to individual computers. This allows them to install and update programs for departmental use, as well as enable other functions that may be disabled for standard accounts. By default, all accounts except for the primary user will be granted standard access.
Granting access
This process must be completed while signed in as the administrator.
This process is for new computers managed by Microsoft Intune. If your computer is older and is co-managed, you will add the additional user via their NetID instead of their UConn email address.
Open Windows Settings.
Navigate to Accounts → Other Users.
Under Work or school users, select Add account.
Enter the additional user’s UConn email address and change the account type to Administrator.
Click Add to grant the user administrator privileges.
Â
This process can be completed as a terminal command when running an elevated (Run as Administrator) terminal session or by using the BeyondTrust jump client as an admin (IT professionals only).
net localgroup administrators /add AzureAD\USEREMAIL@uconn.edu
Important things to note
Most workflows on a Windows computer do not require administrator privileges. Only grant access if necessary.
On shared-use computers, Administrator privileges are automatically granted to the first user to sign in. This user is also listed as the primary user of the computer.
Administrator privileges are revoked after erasing a device and will need to be granted again by the new primary user.
Administrator privileges can only be delegated to an individual user who has an active UConn email. Shared/kiosk/generic accounts are not supported on university computers.