Windows LAPS

preview_player
Показать описание
How to Manage Local Admin Passwords and DSRM Passwords with Windows LAPS
Рекомендации по теме
Комментарии
Автор

Very helpful! Thanks for explaining this clearly. This is way easier than setting up Legacy LAPS.

kyleduncan
Автор

This was awesome, thank you for posting this! Helped me out.

ninjaowl
Автор

the local Admin username is still "Administrator"?
can LAPS rename/randomized this account as well?

fbifido
Автор

I ran through these steps exactly, but LAPS doesn't appear for me under Group Policy Management Editor. Any idea why this might be?

JoshuaWilson-tk
Автор

The Computers folder in the GP editor is not an OU; cannot add a GPO on it. It also has the computers attributes missing even though schema update was successful.
Update: the attributes are empty and the LAPS tab still does not have a password set other than the manual local admin added

NevaranUniverse
Автор

Definitely much better from Microsoft. The old LAPS was good but couldn't do DSRM and everything was plain text which was a pain. Is the GUI tool for LAPS still there? You could add it previously via control panel..

Spoonuk
Автор

Could you please recommend PS script, which would create laps.admin local user account on all domain computers?

What about DC, should there also be created same user laps.admin, or need to skip this step? Need to use only Administrator on a DC?

How to provide access for help desk unit to see that LAPS password? Their AD rights are very limited, ofcourse.

Thanks for video.

buugedy
Автор

Its very helpful. But how would i manage system domain rejoin operations with Laps password.

mohitkaushik
Автор

while this is good. It does not go over setting Laps-adread and adset permissions

grapeape
Автор

what if you don't have an AD?
what if you only have AAD?

fbifido
welcome to shbcf.ru