Executive Summary:
Although UAC does secure workstation OSs, it doesn't necessarily make the information stored on workstations more secure. You can enable the Don’t prompt for client certificate selection when no certificates or only one certificate exists option to stop IE from prompting for a client certificate when there's only one certificate to choose from. AccessEnum, a tool available from Microsoft, shows you only the child objects whose permissions are less restrictive than their parent. There are four workstation security risks that everyone should address.

Every month, Randy Franklin Smith answers your questions about Windows security. Click the links above to see individual Q&As from this month's column. Send your questions to Randy at rsmith@ultimatewindowssecurity.com.