Windows Admin Center 1910.2 and before insists on using Built In Administrators as Gateway Admins. This is horrible in a domain situation. The group will likely include Domain Admins at a minimum. Many, if not all of these don't need to be gateway admins. I get that its a great starting posture but fails shortly later.
- Is there a method that is not advertised for this?
- Can this be disabled if anther security group is in place?
- Can Registry be leveraged to turn this off?
I love WAC but this issue leaves me in a tough place