This privilege determines which user accounts can modify the integrity label of objects, such as files, registry keys, or processes owned by other users. Processes running under a user account can modify the label of an object owned by that user to a lower level without this privilege.
Policy path:
Computer Configuration\Windows Settings\Local Policies\User Rights Assignment
Supported on:
At least Windows Vista, Windows Server 2008
Registry settings:
User Rights security settings are not registry keys
Reboot required: