
To run powershell script on multiple computers reliably, you need to know which method breaks on offline machines, workgroups, and Mac endpoints.
Learn how to enable system protection in Windows 10 using Command Prompt. This guide covers step-by-step instructions and best practices.
System protection is a crucial feature in Windows 10, allowing users to create restore points that safeguard their system configurations and files against potential issues caused by software installations, updates, or malware. While the graphical user interface (GUI) offers a straightforward way to enable system protection, using the Command Prompt provides a more versatile and efficient approach, especially for IT professionals managing multiple machines or troubleshooting remotely. This blog will guide you through the process of enabling system protection on Windows 10 via Command Prompt, along with explaining the importance of system protection and how it fits into a comprehensive backup and recovery strategy.
System protection is a Windows feature that automatically creates and saves restore points, which include information about system files, registry settings, and installed applications. These restore points can be invaluable when troubleshooting system errors or recovering from unintended changes.
While the GUI provides user-friendly access, the Command Prompt offers advanced users and IT professionals a more flexible and powerful way to manage system settings. Benefits include:
Follow these steps to turn on system protection on Windows 10 using Command Prompt. Ensure you have administrative privileges before proceeding.
To view the current protection settings for all drives:
bash
Copy code
vssadmin list shadowstorage
This command displays the allocated storage for system protection on each drive.
To enable system protection on a specific drive, use the following command:
bash
Copy code
wmic.exe /Namespace:\\root\default Path SystemRestore Call Enable "%SystemDrive%"
System protection requires disk space to store restore points. Allocate space using:
bash
Copy code
vssadmin resize shadowstorage /For=C: /On=C: /MaxSize=10%
To create a restore point immediately after enabling system protection: bash Copy code wmic.exe /Namespace:\\root\default Path SystemRestore Call CreateRestorePoint "Initial Restore Point", 100, 7
To confirm that system protection is enabled and operational:
bash
Copy code
vssadmin list volumes
This command displays the current status of volumes and their respective protection settings.
This error occurs when protection isn’t enabled for the selected drive. Re-run the wmic command with the correct drive letter to enable protection.
In some cases, group policy settings may prevent enabling system protection. Use the following steps to resolve:
If space allocation is too low, use the vssadmin resize shadowstorage command to increase storage limits.
Using Command Prompt for system protection offers several benefits:
Turning on system protection in Windows 11 is similar to the process in Windows 10. System protection helps create restore points, allowing you to revert your system to a previous state in case of issues. Here's a step-by-step guide:
Press Win + X, select Terminal (Admin), or search for Command Prompt, right-click, and choose Run as Administrator.
Type the following command to enable system protection on the drive of your choice (e.g., C:):
cmd Copy code vssadmin add shadowstorage /for=C: /on=C: /maxsize=10GB
This sets up shadow storage for restore points, with a maximum size of 10GB. You can adjust the size as needed.
cmd Copy code wmic.exe /Namespace:\\root\default Path SystemRestore Call CreateRestorePoint "Initial Restore Point", 100, 7
cmd Copy code vssadmin list shadowstorage
System protection is an essential safeguard for maintaining the stability and integrity of your Windows 10 system. While the GUI provides an accessible option for casual users, the Command Prompt offers IT professionals and advanced users the flexibility, speed, and precision needed for efficient management. By enabling system protection, allocating disk space, and creating restore points through the Command Prompt, you can ensure a robust recovery strategy tailored to your needs. For organizations managing multiple systems, automating these processes using scripts and group policies can further streamline IT operations and enhance security. Whether you’re an individual looking to protect your system or an IT admin ensuring enterprise-level resilience, mastering system protection via Command Prompt is a valuable skill. Protecting your organization's devices and ensuring smooth recovery from system issues has never been easier. With Trio's robust Mobile Device Management software, you can remotely enable system protection, monitor device health, and automate restore point creation across all Windows devices. Simplify your IT management while prioritizing security and compliance with the best windows MDM solution, Trio. Start your free trial with Trio today and experience seamless device management and protection!
Every organization today needs a solution to automate time-consuming tasks and strengthen security. Without the right tools, manual processes drain resources and leave gaps in protection. Trio MDM is designed to solve this problem, automating key tasks, boosting security, and ensuring compliance with ease.
Every organization today needs a solution to automate time-consuming tasks and strengthen security. Without the right tools, manual processes drain resources and leave gaps in protection. Trio MDM is designed to solve this problem, automating key tasks, boosting security, and ensuring compliance with ease.





Have questions? We've got answers. This section covers some of the most commonly asked questions related to this topic.
Related
The related industry news, interviews, technologies, and resources.

To run powershell script on multiple computers reliably, you need to know which method breaks on offline machines, workgroups, and Mac endpoints.

You can stop employees from installing software on Windows using GPO, AppLocker, or MDM. Here's how each method works and which fits your setup.

If you want to know how to block websites on iPhone, this guide covers Screen Time, DNS filtering, and MDM — including where each method breaks down.

If you're learning how to block an app on iPhone for a managed fleet, start here: supervised enrollment is the gate to real MDM enforcement.

Learn how to choose the right MDM solution with 9 essential criteria. Complete guide for evaluating features, security, and vendor capabilities.

Learn how to execute scripts remotely with security in mind. Methods, best practices, and scaling strategies for IT operations.

Complete guide to pushing Android remote updates with MDM. Learn methods for app, system, and policy updates across managed devices.

Explore all methods to remotely lock Windows PCs - from built-in Windows features to MDM solutions and enterprise management tools.