Default administrator give back full control
The current setting of the Default admin that can't do primary task is a big pain for test and web environments. I don't want an extra account just to change antimallware or test a website that is running on the server.
Deligation and limiting is fine but give the option to give the build-in administrator full control but not as default.
Sebastian N. commented
But if that'S all he cares about then he can just turn off UAC since that'S responsible for giving admins a standard user token by default.
Rich Siegel commented
the concept of being in the local administrator group on a server, and then having to use runas/administrator to invoke the token (say for powershell) is a confusing implementation within UAC.
I think this concept is confusing.
Hi Robert. I'm not sure I understand your feedback here. Can you give a few examples of what you mean?