Introducing the New and Improved Windows LAPS: Local Administrator Password Solution

Introduction

Microsoft continues its commitment to enhancing IT security with the evolution of the Microsoft LAPS, now presented as the new and improved Windows LAPS (Local Administrator Password Solution). This revamped solution is designed to fortify the security of local administrator accounts across a range of Windows devices. With its native integration into Windows, there’s no longer a need for external installations. Furthermore, its compatibility with Entra ID (formerly known as Azure Active Directory) offers benefits such as password retrieval via Microsoft Graph, Entra ID RBAC policies, and Intune management. Enhanced features for on-premises Active Directory scenarios further elevate its capabilities.

Windows LAPS is now available for the following Windows editions:

  • Windows 11 Pro, EDU, and Enterprise
  • Windows 10 Pro, EDU, and Enterprise
  • Windows Server 2022 and Windows Server Core 2022
  • Windows Server 2019

So, what’s new with Windows LAPS? Here are some of the key updates:

  1. Natively Integrated into Windows: No more need to install an external MSI package. Future fixes or feature updates will be delivered via the standard Windows patching process.
  2. Microsoft Entra ID Support: Windows LAPS now works in conjunction with Entra ID, offering benefits such as password retrieval via Microsoft Graph, Azure RBAC policies, and Intune management.
  3. New Capabilities for On-Premises Active Directory Scenarios: With features like password encryption, password history, and Directory Services Restore Mode (DSRM) password backups, on-premises AD users get a significant security boost.
  4. Rich Policy Management for Entra ID and On-Premises AD: Enjoy advanced policy management through Group Policy and Configuration Service Provider (CSP).
  5. Additional Features: Windows LAPS now comes with a dedicated event log, an improved PowerShell module, and support for hybrid-joined devices.

With these updates, Windows LAPS offers a comprehensive solution for securing your local administrator accounts, whether you’re using Entra ID or on-premises Active Directory. We highly recommend adopting these new features to benefit from the enhanced security measures.

Start using Windows LAPS in your existing deployment today and strengthen your security posture.

Error message after the April Patch Tuesday

Recommended Reading

Leave a Comment

Contact me

If you’re interested in learning about Introducing the New and Improved Windows LAPS: Local Administrator Password Solution. I can help you understand how this solution can benefit your organization and provide a customized solution tailored to your specific needs.

Table of Contents