When you try to start a Microsoft Store app in Windows 8 or in Windows Server 2012, the operation fails. Additionally, you receive the following error message:

This app has been blocked by your system administrator.


This issue occurs because an administrator has deployed an application control policy (AppLocker) on the computer. By design, all Microsoft Store apps are blocked if an AppLocker policy is applied.


To allow the Microsoft Store app to run, a domain administrator can use AppLocker to edit application control policies by using one of the following methods (whichever is most appropriate to their situation):

  1. Create a default rule that allows all Microsoft Store apps.

  2. Create rules that allow individual Microsoft Store apps.

Note The rules must be edited from a Windows Server 2012-based domain controller or from a Windows 8-based computer that has the Remote Server Administration Tools installed.

More Information

For more information about AppLocker, go to the following Microsoft TechNet websites:

AppLocker overview

Create a rule for packaged apps

Need more help?

Expand your skills
Explore Training
Get new features first
Join Microsoft Insiders

Was this information helpful?

What affected your experience?

Thank you for your feedback!