Forum Discussion

somedude1020's avatar
somedude1020
Copper Contributor
Dec 28, 2023

Tamper Protection Disabled - This settings is managed by your administrator

After changing Antivirus (SentinelOne has been uninstalled) to using only Microsoft Defender with Huntress half of my devices have tamper protection disabled.  I cannot enable it via the Security app due to "This settings is managed by your administrator".  The regkey TamperProtection has a value of 0 which I am not able to change due to access rights error.  I cannot take owership of the same key, I get the same access denied error.  There is no other AV on the devices.  I have reset\repaired the Secuity app with zero luck.  I do not have Intune or SCCM, I have Endpoint Manager.  How do I enable Tamper Protection on these devices?

  • rahuljindal-MVP's avatar
    rahuljindal-MVP
    Bronze Contributor
    If it is still showing administratively managed then there must be a policy enforced to manage it. How are you managing the devices?
    • somedude1020's avatar
      somedude1020
      Copper Contributor
      There is no policy managing it. I use Endpoint Central
      • rahuljindal-MVP's avatar
        rahuljindal-MVP
        Bronze Contributor
        That doesn’t sound right to me. By the look of things you clearly have some sort of security policies applied. Have you tried running rsop to capture the report on enforced policies?

Resources