Enabling Microsoft “Cloud enabled LAPS” (Local Admin Password Solution)
LAPS – Local Admin Password Solution, has for a long time been one of those great tools to have in the toolbox when it comes to securing your devices from lateral movement from a potential attacker. And Microsoft LAPS have been around for quite some time already.
This tool was orginally available for deployment to server/desktop devices connected to a traditional domain (on-prem) setup.
This changed as of April 2023, and Microsoft have now introduced Microsoft LAPS (Preview) with support for configuration with Intune, and saving the passwords to Azure AD, giving us – once again – a native LAPS solution to handle the local admin account.