AVD local admin account's password expired and I can't reset with Azure feature

AdamGivens-8296 0 Reputation points
2025-04-04T16:12:29.26+00:00

My org has an AVD that was configured by a MSP before we terminated our relationship with them. Before departing from them, they created a local admin for us on our AVD to access it. Since then we haved accessed the AVD once or twice but now we cannot access the AVD because the local admin account's password is now expired and it states that we need to reset it. We tried to use the "Reset Password" tool that is in Azure web portal but have had no success. How do I get access to my AVD it is important I get access because we have users that are being synced from the DC we have hosted on it.

Azure Virtual Desktop
Azure Virtual Desktop
A Microsoft desktop and app virtualization service that runs on Azure. Previously known as Windows Virtual Desktop.
1,757 questions
{count} votes

1 answer

Sort by: Most helpful
  1. chrischin 915 Reputation points Microsoft Employee
    2025-04-06T03:09:53.21+00:00

    Some ideas:

    Can you still get in using an AVD client? Do you have someone with owner access to the VMs? If yes to both, you can assign the Virtual Machine Admin Login role to a person's Entra identity for the VM's or Resource Group that contains the VM's. Next have that person login using AVD and they should be able to perform admin tasks within that session, to include opening a cmd prompt window as administrator. From there you can run lusrmgr and set the local administrator's password or add a new local admin user.

    User's image

    User's image

    User's image

    If you have privileged access to Microsoft Entra ID (at least Cloud Device Administrator), you can try using LAPS and get the password there.

    1. In the Azure Portal, go to Microsoft Entra ID
      1. User's image
    2. Then go to Devices
      1. User's image
    3. Under My Feed, click on See all devices
      1. User's image
    4. Find the Device by name that is your AVD session host, click on the name
    5. Then click on Local administrator password recovery
      1. User's image
    6. lf you don't see a password there, you will need to enable LAPS - https://learn.microsoft.com/en-us/entra/identity/devices/howto-manage-local-admin-passwords

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.