Local Administrative Account Management

medium

Description

Local Administrator Password Solution (LAPS) is a password management tool for privileged local accounts that requires proper deployment and configuration to ensure that no unauthorized users can gain elevated privileges.

Solution

Use Microsoft Local Administrator Password Solution (LAPS) to manage local privileged accounts.

See Also

Local Admin Password Solution (LAPS)

Local Administrator Password Solution (LAPS) Implementation Hints and Security Nerd Commentary (including mini threat model)

Local Administrator Password Solution

Microsoft LAPS Security & Active Directory LAPS Configuration Recon

Microsoft Security Advisory 3062591: Local Administrator Password Solution (LAPS) Now Available

Indicator Details

Name: Local Administrative Account Management

Codename: C-LAPS-UNSECURE-CONFIG

Severity: Medium

MITRE ATT&CK Information:

Tactics: TA0003, TA0008

Techniques: T1021