Event banner
Uplevel security with Endpoint Privilege Management + Windows LAPS
Event Ended
Tuesday, Nov 28, 2023, 07:00 AM PSTEvent details
It's simple. Running devices as standard user can help lower your attack surface. Let's talk about the threats we face today, the keys to implementing "just enough" access for your users with Microso...
Char_Cheesman
Updated Dec 27, 2024
LauraArrizza
Microsoft
Nov 28, 2023Thanks Glenda for the question! I would suggest confirming that the LAPS policy configurations are set up correctly to match the backup storage location with the type of device you are targeting. i.e. either AAD or AD only. If the storage location is configured correctly, I would confirm that the policy reports back the device has the settings applied Successfully (via the policy report or the device report) or complete a policy sync/refresh the page until it appears. There is also a prerequisite to toggle LAPS "on" in Entra portal. Hope that helps! Check out docs for more info: https://learn.microsoft.com/en-us/windows-server/identity/laps/laps-management-policy-settings
UserID144294
Nov 28, 2023Copper Contributor
Thanks for the reply. The Backup Directory is set to Azure AD only but I can't read the LAPS info for the device in the case of a hybrid domain joined device. Do I need any different configuration for the hybrid domain joined?