Академический Документы
Профессиональный Документы
Культура Документы
Applies to
Windows 10
Windows Server
This topic for IT professionals shows how to configure the Application Identity service to start
automatically or manually.
The Application Identity service determines and verifies the identity of an app. Stopping this service
will prevent AppLocker policies from being enforced.
Important: When using Group Policy, you must configure it to start automatically in at least
one Group Policy Object (GPO) that applies AppLocker rules. This is because AppLocker uses
this service to verify the attributes of a file.
Starting with Windows 10, the Application Identity service is now a protected process. Because of
this, you can no longer manually set the service Startup type to Automaticby using the Sevices
snap-in. Try either of these methods instead:
PowerShell Copy
https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-application-control/applocker/configure-the-application-ide… 1/2
4/9/2019 Configure the Application Identity service (Windows 10) | Microsoft Docs
Create a security template that configures appidsvc to be automatic start, and apply it using
secedit.exe or LGPO.exe.
https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-application-control/applocker/configure-the-application-ide… 2/2