Kaspersky Security Center

Revoking local administrator rights

1 July 2024

ID 275021

Expand all | Collapse all

You can revoke local administrator rights from accounts. This provides you with an extra layer of control of user accounts. For example, you can revoke local administrator rights after a one-time assignment is complete.

When this task is run, the specified local account is checked to see whether it belongs to local administrator groups.These groups are defined in the Network Agent policy settings. You may customize the list of local administrator groups in the Network Agent policy settings. You can also check the list of privileged user accounts using the Report on privileged device users (Linux only).

This task may be performed only on Linux devices.

To revoke local administrator rights on specific devices:

  1. In the main menu, go to Assets (Devices)Tasks.
  2. Click Add.

    The New task wizard starts.

  3. In the Task type field, select Revoke local administrator rights (Linux only).
  4. Select one of the following options:
    • Assign task to an administration group
    • Specify device addresses manually or import addresses from a list
    • Assign task to a device selection

    The Revoke local administrator rights(Linux only) task is created for the specified devices. If you selected the Assign task to an administration group option, the task is a group one.

  5. At the Task scope step, specify an administration group, devices with specific addresses, or a device selection.

    The available settings depend on the option selected at the previous step.

  6. At this step of the wizard, specify the following settings:
    • In the Operating mode settings group, select the operating mode:
    • Specify the local accounts:
      • Click Add.
      • In the window that opens, do the following:
        • In the Account name field, specify the name of the local account.
        • In the Account action settings group (available only if the Revoke local administrator rights from listed accounts option is selected), select the action.
        • Keep account
        • Delete account
  7. At the Finish task creation step, click the Finish button to create the task and close the wizard.

    If you enabled the Open task details when creation is complete option, the task settings window opens. In this window, you can check the task parameters, modify them, or configure a task start schedule, if necessary.

  8. In the task list, select the task you created, and then click Start.

    Alternatively, wait for the task to launch according to the schedule that you specified in the task settings.

When the revoke local administrator rights task is completed, the local administrator rights are revoked from the specified local accounts on the specified devices.

Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.