The Great UAC Debate!


UAC  

1412 members have voted

  1. 1. Do You Use UAC?

    • Yes
      477
    • Yes, On "Silent Mode"
      91
    • No (I use an Admin Account)
      496
    • No (I use a Standard Account)
      39
    • I don't use Windows Vista
      118
  2. 2. Have You Ever Been Saved By UAC?

    • Yes
      226
    • No
      932
    • I don't use Windows Vista
      106


Recommended Posts

Wow look at the votes.

But seriously, if you are THAT scared that something bad will happen then you shouldn't even be using a computer.

It's not so much that we're 'scared' that something bad will happen, it's simply good security practice and a great preventative measure for a lot of potential exploits and problems.

um allan from another thread told me to post here. i'm pretty sure I understand how UAC works but he seems to think there is a reason to disable it entirely rather than just disable the promts via TweakUAC. he wouldn't tell me what his reason is (from my perspective that appears to be because there isn't one, certainly no one has explained it in this thread) but if there is a reason i would like to know? so could someone explain?

i mean someone on the previous page asked the same question and didn't get a response

WOW I cannot believe so many people would prefer risking security by using an an Admin Account instead of UAC Enabled but in Silent Mode. How is UAC annoying when in Silent mode? It's the prompts that are annoying, everything else about UAC is anything but annoying.

so any help? thanks

It's not that I wouldn't tell you, it's that I chose not to hijack someone's thread to have the discussion.

In my opinion, disabling UAC is purely a personal preference. I happen to have a proprietary application that is incompatible with UAC, so in my case it's easier to keep UAC disabled at all times than to toggle it on and off, that's all. But regardless of why, it's up to the user to decide what he does and does not want running on his system. As long as he has all of the relevant information in front of him to make an informed decision, it's really nobody else's business.

And by the way, regarding that other thread - saying something is "dumb" is really a poor way of getting your point across in my opinion.

It's not that I wouldn't tell you, it's that I chose not to hijack someone's thread to have the discussion.

In my opinion, disabling UAC is purely a personal preference. I happen to have a proprietary application that is incompatible with UAC, so in my case it's easier to keep UAC disabled at all times than to toggle it on and off, that's all. But regardless of why, it's up to the user to decide what he does and does not want running on his system. As long as he has all of the relevant information in front of him to make an informed decision, it's really nobody else's business.

And by the way, regarding that other thread - saying something is "dumb" is really a poor way of getting your point across in my opinion.

ah ok thanks, yeah i just didn't realise that UAC caused those kinds of issues. so it's a very small minority that would want to disable UAC for that reason. also, in regard to the other thread the guy didn't have all the facts, he hadn't been made aware of the TweakUAC option, that's why i posted. obviously for someone in his situation (someone who just doesn't want to click through the dialog) my solution is superior to simply disabling UAC entirely.

It's not that I wouldn't tell you, it's that I chose not to hijack someone's thread to have the discussion.

In my opinion, disabling UAC is purely a personal preference. I happen to have a proprietary application that is incompatible with UAC, so in my case it's easier to keep UAC disabled at all times than to toggle it on and off, that's all. But regardless of why, it's up to the user to decide what he does and does not want running on his system. As long as he has all of the relevant information in front of him to make an informed decision, it's really nobody else's business.

And by the way, regarding that other thread - saying something is "dumb" is really a poor way of getting your point across in my opinion.

How can an application be "incompatible" with UAC? Other than requiring you to elevate unnecessary, which I wouldn't count as "incompatible."

How can an application be "incompatible" with UAC? Other than requiring you to elevate unnecessary, which I wouldn't count as "incompatible."

:) i was hoping you would post that because it sounded weird to me but i don't really know enough to disagree with him. maybe he can explain.......................... ;)

Here is my 2 cents worth, I NEVER use UAC. I?m running Vista 64bit and it took my some time to find compatible anti-virus software. I went with Trend Micro Internet Security 2008. Anyway, that was my latest purchase. I?ve run Trend Micro for over a year. Bottom line is that you can NOT scan for viruses with this UAC turned on. It MUST be off in order to scan your PC for viruses. Therefore, I keep the UAC turned off at ALL times. I NEVER had a problem because I let Trend Micro handle any arising situations and/or problems.

Here is my 2 cents worth, I NEVER use UAC. I?m running Vista 64bit and it took my some time to find compatible anti-virus software. I went with Trend Micro Internet Security 2008. Anyway, that was my latest purchase. I?ve run Trend Micro for over a year. Bottom line is that you can NOT scan for viruses with this UAC turned on. It MUST be off in order to scan your PC for viruses. Therefore, I keep the UAC turned off at ALL times. I NEVER had a problem because I let Trend Micro handle any arising situations and/or problems.

You can scan for viruses with uac on...

You shouldn't be running AV software that's going to risk security in another area just to do a scan. I'm running Kaspersky, and it scans no problem with UAC fully enabled. You should get some better software rather than turn off an important security component.

Here is my 2 cents worth, I NEVER use UAC. I’m running Vista 64bit and it took my some time to find compatible anti-virus software. I went with Trend Micro Internet Security 2008. Anyway, that was my latest purchase. I’ve run Trend Micro for over a year. Bottom line is that you can NOT scan for viruses with this UAC turned on. It MUST be off in order to scan your PC for viruses. Therefore, I keep the UAC turned off at ALL times. I NEVER had a problem because I let Trend Micro handle any arising situations and/or problems.

Wrong. You can scan for viruses with UAC enabled just fine.

I believe any software that is incompatible with UAC are having problems with UAC's file and registry virtualization, which is one of the main benefits UAC provides.

The real problem comes when someone disables UAC and finds their applications acting weird because certain files and settings were stored in the virtualized folder that is no longer being used. There's no problem if one disables UAC right away after Windows is installed and before applications are being setup.

I have never used trend micro, but it obviously just isn't fully compatible with UAC if it can't do a scan. What happens with UAC on when you try and scan? I have never heard of any vista av's having a problem like this.

Tell you what. when I get back later this morning I will start a Topic on this very subject and go through step by step what happens when I try a full PC "Scan for Viruses" using TrendMicro Internet Security 2008 with the UAC "ON" with a Vista 64bit OS.....

It was also impossible to run that app as an Admin, under your account profile, which I think is one of the greatest things about UAC.

Isn't that what MakeMeAdmin does?

It's about keeping processes running with as few privileges as they need to perform their function, so as to prevent them from potentially doing harm, mostly by exploits (But it certainly helps prevent by accident.)

PWN2OWNed

Then when the application (IE, Firefox, AIM, Outlook, Thunderbird, whatever) gets attacked through a vulnerability in its code, it is prevented from doing significant damage and in many cases will fail altogether.

UAC isn't about preventing untrustworthy applications from being installed. It is about preventing trusted everyday applications from being hijacked via remote code execution exploits.

PWN2OWNed

Now what was UAC's role in preventing exploits?

I'm sorry Brandon, but if you guys at Microsoft really think that way, I think a lot of users are going to heed your advice... because, from my experience with OS X and Linux, they have nothing as insanely annoying as UAC. :)

Mac OSX has been around long enough to where developers have made apps that install and run without admin rights (sometimes it asks you for the password during install).

Once Vista and its successors hit maturity developers better learn. Install google talk for instance http://talk.google.com , UAC will not prompt you to even install, because the developers understood how to install it without provoking admin rights. No one needs admin rights 100% of the time, that is why no OS defaults to that.

If you still hate it, you do have a choice, you do not have to use windows.

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Can we not have paperless office, like we was promised in the 80's
    • I actually laughed out loud in real life at the heading on this—whatever Microsoft is drinking, I want some of it.
    • Euro-Office must default to ODF to be considered "genuinely European", LibreOffice argues by David Uzondu Euro-Office is a web-based collaborative office suite that positions itself as a "European sovereign alternative" to American tech companies, backed by a coalition of developers including Nextcloud, IONOS, Abilian, BTactic, OpenProject, and, more recently, Tuta. The project officially went live a couple of days ago, but not before drawing heavy fire from LibreOffice developers, who called the marketing claim that Euro-Office represents the "first open-source office suite developed in Europe" a deceptive historical inaccuracy because projects like OpenOffice and LibreOffice existed decades earlier. Now that the project has launched, LibreOffice is back with another complaint, arguing that Euro-Office cannot consider itself "genuinely European" while it pushes proprietary Microsoft defaults on users. Euro-Office had promised to improve the OpenDocument Format (ODF) back in April, but the current release still plagues users with several technical failures. For instance, the suite lacks an admin setting to enforce ODF, and mobile editors completely block ODF saves, forcing files into Microsoft's OOXML formats. Some configurations force files into read-only mode, while editing frequently corrupts document formatting or erases data. LibreOffice thinks that merely supporting a format as an afterthought does not make you a sovereign alternative, as file formats are the battleground where" digital sovereignty is won or lost." The road to the first stable release of Euro-Office has been quite bumpy due to an aggressive public fallout with OnlyOffice, from which the coalition originally forked the project. OnlyOffice struck back by accusing the coalition of violating copyright terms under its AGPLv3 branding requirements by stripping the original branding anyway and forking the code. Getting Euro-Office up and running is a bit wonky (at least for non-technical users), as there is no direct installer to grab off the web. The easiest way we learnt is by using Docker. First, pull the official Euro-Office image from the GitHub Container Registry: docker pull ghcr.io/euro-office/documentserver:latest Then, run the container with active ports and a secure JWT token, enabling the test environment: docker run -i -t -d -p 8080:80 --restart=always -e EXAMPLE_ENABLED=true -e JWT_SECRET=my_secure_jwt_secret ghcr.io/euro-office/documentserver:latest And finally, open a web browser and go to the following address: http://localhost:8080 If you are running this on a remote server, replace localhost with your server's IP address. You will see the Euro-Office test page, where you can create new text documents, spreadsheets, or presentations directly in the browser. Image via Euro-Office Nextcloud promises that proper standalone desktop versions and mobile apps will arrive in a future release.
    • It’s any of their products not just windows.
  • Recent Achievements

    • Week One Done
      FBSPL earned a badge
      Week One Done
    • One Year In
      Jim Dugan earned a badge
      One Year In
    • One Month Later
      Tommi118 earned a badge
      One Month Later
    • One Month Later
      sjbousquet earned a badge
      One Month Later
    • Week One Done
      sjbousquet earned a badge
      Week One Done
  • Popular Contributors

    1. 1
      +primortal
      486
    2. 2
      PsYcHoKiLLa
      197
    3. 3
      +Edouard
      155
    4. 4
      Steven P.
      83
    5. 5
      ATLien_0
      69
  • Tell a friend

    Love Neowin? Tell a friend!