LAPS PASSWORD NOT WORKING IN NEW JOINED SYSTEM

This is Parya 401 Reputation points
2021-08-10T06:59:41.167+00:00

Hello there,
We have a policy for LAPS installation in clients' systems, I have two question that I don't know the reason.

  1. In many cases, it has been observed that when we join a system after replacing Windows, the password displayed in LAPS can not be used to login to the client. (LAPS is installed there but not the pass is not the same of admin)
  2. In some cases it takes too long that LAPS being installed in their system! (We had put the file in the nearest DC), and the network is OK!

would u plz guide me about the reasons?

Windows for business Windows Client for IT Pros Directory services Active Directory
Windows for business Windows Client for IT Pros User experience Other
0 comments No comments
{count} votes

Accepted answer
  1. This is Parya 401 Reputation points
    2021-09-09T08:08:47.907+00:00

    After All, I figured out that if LAPS being installed in a system and the expiration time for example be " 40 days", during this period if someone who has access to reset local admin, reset the local admin, LAPS wouldn't update it until the expiration time passes.
    Best Regards.

    0 comments No comments

2 additional answers

Sort by: Most helpful
  1. Pavel yannara Mirochnitchenko 13,331 Reputation points MVP
    2021-08-10T07:15:10.15+00:00

    Please be informed, that LAPS client logs its events like this. By going them through, you should understand the problems.

    121895-image.png

    0 comments No comments

  2. This is Parya 401 Reputation points
    2021-08-23T08:43:36.49+00:00

    Hi,
    I found that it's normal, because the LAPS policy updates every 40days for each client by using GPO and if a helpdesk admin reset the password manually, it won't be update until the 40 days. Is it possible to keep the 40 days and force clients that by using the gpupdate the LAPS password again be set to admin?


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.