many thanks! this works for me and just save me from endless frustration
Fixed with 27766 Workaround for “Your organization used App Control for Business to block this app” dialog in the Canary Channel
After updating to Build 27764 in the Canary Channel, some Windows Insiders are reporting hitting the issue that previously impacted the Dev Channel where an “Your organization used App Control for Business to block this app” dialog is shown when attempting to use or install certain third-party apps on your PC due to an incorrect policy being enforced. The following steps should mitigate the issue:
- Open Command Prompt with administrator privileges.
- Type and hit enter: mountvol s: /s
- Type and hit enter: del S:\EFI\Microsoft\Boot\cipolicies\active{8E8A94F0-6EB9-42C7-A189-E018C8CF3D10}.cip
- Type and hit enter: del S:\EFI\Microsoft\Boot\cipolicies\active{36D62F7C-AB85-4F61-8724-744294F24023}.cip
- Type and hit enter: del S:\EFI\Microsoft\Boot\cipolicies\active{66D7D265-7EDD-47DD-86E4-F7C42CD55A8F}.cip
- Then reboot your PC.
If you are dual-booting between the Canary Channel and the Dev Channel or another version of Windows, you will need to do this workaround BEFORE booting to the other OS.
If the above steps do not work, you may need to disable Secure Boot first and follow these steps:
- Disable Secure Boot on your PC.
- You will be asked to enter your BitLocker recovery key.
- Log in to your PC and open Command Prompt with administrator privileges.
- Type and hit enter: mountvol s: /s
- Type and hit enter: del S:\EFI\Microsoft\Boot\cipolicies\active{8E8A94F0-6EB9-42C7-A189-E018C8CF3D10}.cip
- Type and hit enter: del S:\EFI\Microsoft\Boot\cipolicies\active{36D62F7C-AB85-4F61-8724-744294F24023}.cip
- Type and hit enter: del S:\EFI\Microsoft\Boot\cipolicies\active{66D7D265-7EDD-47DD-86E4-F7C42CD55A8F}.cip
- Reboot your PC once with Secure Boot still disabled.
- Then reboot again and enable Secure Boot.
In small cases, your PC may not boot into Windows. To get out of this state, you can follow these steps:
- Disable Secure Boot on your PC.
- Then get into Windows Recovery, choose advanced boot options and disable driver signature enforcement.
- Then do the above-mentioned workaround for deleting the policies after logging in.
- Alternatively, you can also delete the above-mentioned policies directly from the Windows Recovery console.
Windows Insider program | Windows Insider preview | Install, activate, and Windows update
Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question.
91 answers
Sort by: Oldest
-
Anonymous
2024-12-20T10:13:54+00:00 -
Deleted
This answer has been deleted due to a violation of our Code of Conduct. The answer was manually reported or identified through automated detection before action was taken. Please refer to our Code of Conduct for more information.
Comments have been turned off. Learn more
-
Anonymous
2024-12-21T04:43:59+00:00 Wont allow me to mount the efi partition on my drive. Disabled secure boot but still no luck any other ideas?
-
Anonymous
2024-12-21T09:04:40+00:00 Since my install didn't exhibit any of the mentioned problems, the above commands weren't used.
Booted into my other system (RP) on the dual boot and was greeted with a basic display. Of course, as soon as I tried to do something, I was greeted with the above message.
Decided to boot back into the Canary and just got a GSD. Back to the RP to run the lines if command, where all but line 7 were executed.
Back to Canary, which started after a short delay, luckily normally.
The RP is also fixed.
Thank you for the helpful workaround
-
Anonymous
2024-12-21T14:28:12+00:00 Canary builds can break or have all kind of issues... This is the purpose of releasing such unstable versions. This is where it should break, not once it shipped... And they are not supported anyway.
And a crime... you do no get the idea of Canary builds...