With the latest April update which adds LAPS to windows 10 22H2 and above I find that to be incredibly helpful. What isn't helpful is that my environment is running with Server 2016. I have installed Legacy LAPS and enabled LAPs on the Windows 10 22H2 machines. The problem I have is that it is constantly:
Event ID 10012 Output
Copy The Active Directory schema has not been updated with the
necessary LAPS attributes
The documentation on this schema is shotty at best because based on this error I should simply run Update-LapsADSchema
but that is for Server 2019 and up. I have also tried the Legacy one as suggested by the Learn page Update-AdmPwdADSchema
but I did that when I installed Legacy LAPS and it tells me the Schema is also updated already.
To make it worse when I open the GPEdit LAP is not where the legacy location should be but the New one is.
Old: Computer Configuration > Administrative Templates > LAPS
New: Computer Configuration > Administrative Templates > System > LAPS
So what am I missing to get this to work. I can set the LAPs Options in GPO and it can see it on the machine but it will not set the password. It just keeps giving me the issue about the schema.