Running as a non-domain admin can be frustrating at times. Typically, when you need to do some moving of files between different systems.
If you use a standard Domain User account but also have a Domain Admin acount, there will be times when you need to launch a Windows Explore window as your Domain Admin account in order to access certain network shares, copy items to from different locations, etc…
This process has worked great for us at my place of work for a few years now.
To get this to work, the below steps have worked for me:
Run as non-domain admin tips – elevating for admin tasks
From an elevated command prompt, run regedit.
Navigate to: HKEY_CLASSES_ROOT\AppID\{CDCBCFCA-3CDC-436f-A4E2-0E02075250C2}
Right click {CDCBCFCA-3CDC-436f-A4E2-0E02075250C2} and select Permissions.
Take ownership with your Domain Admin account.
Give your Domain Admin account Full Control permissions
Add your domain admin account to have full permissions
From your elevated command prompt, run: dcomcnfg.exe
Expand Component Services | Computers | My Computer | DCOM Config
Right click on Elevated-Unelevated Explorer Factory and select Properties.
On the Identity tab, select The launching user. Press OK and close Component Services.
Remove your Domain Admin account from the registry key permissions you set above.
Switch the ownership back to NT Service\TrustedInstaller.
I’m not sure if the next step is needed, but I do it anyways:
Open up Folder Options.
Select the View tab.
Enable Launch folder windows in a separate process.
Subscribe for more videos: http://bit.ly/1La0Chu
Affiliate Links:
My 2023 personal laptop: https://amzn.to/3GG5U4g
My 2023 work laptop: https://amzn.to/46XtDaT
My 2023 sit/stand desk: https://amzn.to/46XtDaT