Hello Anna,
Settings policy is configured for default operations/apps that are not controlled by rules policy.
Couple of things to check -
- If you are using settings policy (no rule policy for the app), confirm the user is requesting elevation explicitly by clicking - "Run with elevated access"
- If the rule policy is configured for the file, make sure you have configured this with strong file detection values (not just name but stronger mapping like certificate, file hash or other attributes). Refer to: Guidance for creating elevation rules with Endpoint Privilege Management | Microsoft Learn
- Look for policy conflicts if any. Refer to: https://learn.microsoft.com/en-us/intune/intune-service/protect/epm-policies#policy-conflict-handling-for-endpoint-privilege-management
Hope this helps!
If you found the information above helpful, please Click Yes. This will assist others in the community who encounter a similar issue, enabling them to quickly find the solution and benefit from the guidance provided.