Reader small image

You're reading from  Microsoft Intune Cookbook

Product typeBook
Published inJan 2024
PublisherPackt
ISBN-139781805126546
Edition1st Edition
Right arrow
Author (1)
Andrew Taylor
Andrew Taylor
author image
Andrew Taylor

Andrew Taylor is an End-User Compute architect with 20 years IT experience across industries and a particular interest in Microsoft Cloud technologies, PowerShell and Microsoft Graph. Andrew graduated with a degree in Business Studies in 2004 from Lancaster University and since then has obtained numerous Microsoft certifications including Microsoft 365 Enterprise Administrator Expert, Azure Solutions Architect Expert and Cybersecurity Architect Expert amongst others. He currently working as an EUC Architect for an IT Company in the United Kingdom, planning and automating the products across the EUC space. Andrew lives on the coast in the North East of England with his wife and two daughters.
Read more about Andrew Taylor

Right arrow

Deploying Windows LAPS

Although it has been around for years for on-premises directories, this is a very new addition for Entra-managed devices, largely due to the inclusion of the LAPS client within Windows itself rather than needing an additional MSI and AD (Active Directory) schema update.

Before looking at deploying LAPS, it is first worth understanding what it does and why you may want to use it. LAPS is a system that rotates the local admin password on a machine to add an extra layer of security as it ensures no two machines have the same password; this helps prevent lateral traversal attacks.

With the introduction of Autopilot, Intune, and Entra ID, this was removed as the admin account was disabled by default. There are options available for managing these devices (such as the Cloud Joined Device Local Admin Role or Local User Group Membership), but they both have disadvantages (the role is for all devices and the membership is one policy per device).

Windows LAPS...

lock icon
The rest of the page is locked
Previous PageNext Page
You have been reading a chapter from
Microsoft Intune Cookbook
Published in: Jan 2024Publisher: PacktISBN-13: 9781805126546

Author (1)

author image
Andrew Taylor

Andrew Taylor is an End-User Compute architect with 20 years IT experience across industries and a particular interest in Microsoft Cloud technologies, PowerShell and Microsoft Graph. Andrew graduated with a degree in Business Studies in 2004 from Lancaster University and since then has obtained numerous Microsoft certifications including Microsoft 365 Enterprise Administrator Expert, Azure Solutions Architect Expert and Cybersecurity Architect Expert amongst others. He currently working as an EUC Architect for an IT Company in the United Kingdom, planning and automating the products across the EUC space. Andrew lives on the coast in the North East of England with his wife and two daughters.
Read more about Andrew Taylor