Posts

Local Administrator Password Solution - Deployment Guide

Image
What exactly LAPS is? LAPS is a solution to change the local administrator password on all domain joined computers to something complex and changed after certain days.  LAPS was available only to Microsoft Premier agreements, Local Administrator Password Solution (LAPS) has recently been published for all customers as part of  MSA 3062591 . The "Local Administrator Password Solution" (LAPS) provides a centralized storage of secrets/passwords in Active Directory (AD) - without additional computers. Purpose of LAPS Secure Active Directory environments by ensuring that all computers have different and complex local administrator passwords.  LAPS creating an attribute against the “COMPUTER” class in Active Directory. Permissions to allow users to view this password attribute must be explicitly granted. Applies to:   Windows Server 2012 R2 Datacenter Windows Server 2012 R2 Standard Windows Server 2012 R2 Essentials Windows Server 2012 R2 Foundation Windows 8.1 Enterp