LAPS for computer outisde the domain controller but inside the same network

Lawero 26 Reputation points
2022-12-20T14:31:38.713+00:00

I have 3 servers outside my domain (where LAPS is already and correctly configured) but in the same lan of the DC.
They have no domain at all.
There is a way to let my DC to store/set the password for the local admins for these 3 servers?

Windows for business | Windows Client for IT Pros | Directory services | Active Directory
Windows for business | Windows Client for IT Pros | User experience | Other
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Ali AlEnezi 1,081 Reputation points
    2022-12-20T19:07:59.35+00:00

    Hello @Lawero ,

    It is possible to use Local Administrator Password Solution (LAPS) to manage the local administrator passwords for computers that are outside of the domain, but within the same network as the domain controller. However, you will need to make sure that the LAPS client is installed on the computers that you want to manage, and that the client is configured to communicate with the LAPS infrastructure on the domain controller.

    To install the LAPS client on the computers outside of the domain, you will need to download the LAPS client package from the Microsoft Download Center and follow the instructions in the installation guide to install the client on the computers.

    Once the LAPS client is installed, you will need to configure the client to communicate with the LAPS infrastructure on the domain controller. You can do this by setting the "ms-Mcs-AdmPwd" attribute on the computer object in Active Directory. You can set the attribute using a script or a tool like the LAPS UI, or you can set it manually using the Active Directory Users and Computers snap-in.

    Good luck!


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.