Forum Discussion

SebCerazy's avatar
SebCerazy
Iron Contributor
Feb 03, 2026

LAPS Intune policies

So it seems that there are legacy LAPS policies (via  Configuration/Policies/New/Windows 10/Settings catalog Search for LAPS = Administrative templates/LAPS

 

Well, I did configure them & added my device group.

Then I realize that it is NOT this LAPS I need (by then quite few devices got the policy)

I unlinked the group, deleted this policy & created NEW LAPS policy via Endpoint Security/Account Protection/Create policy/Windows/Windows LAPS

 

Here I can setup new settings (especially Password Complexity = Passphrase)

 

While lots of my devices get the local admin password reset to correct Passphrase, there are quite a few that have complex password (leftover from previous attempt?) 

No matter what I do, I cannot get this local admin password changed to Passphrase

 

Any idea how to get ALL the local admin passwords to be in same format?

 

Thanks

 

Seb

1 Reply

  • Ninten's avatar
    Ninten
    Occasional Reader

    Hello there,

    Have you tried rotating the local admin password via intune?

    https://learn.microsoft.com/en-us/intune/intune-service/remote-actions/device-rotate-local-admin-password?pivots=windows

Resources