Just to jump on the back of this thread, we have came from a legacy laps solution and are trying to implement the new built in version.
We have removed the laps msi from client machines, removed old policies and ran through the steps in this thread, extending the new schema, new gpos etc:
https://woshub.com/manage-local-administrator-passwords-with-laps/
Client machines are stiil seemingly using legacy laps soluition even though there is no client or gpo applied for this. The laps tab is empty id AD and when i run get-lapsadpassword "this-pc" -asplaintext it reports back the source is legacylapscleartextpassword. I have ran Get-LapsDiagnostics and can see that the client is picking up the correct gpo setting to back up a password to AD, password complexity etc etc however in the pcs AD attributes it still has the legacy ms-Mcs-AdmPwd set.
Im also receiving an event ID on the DC 10024 "LAPS policy is configured as disabled" and i would have expected to see an event ID of 10021 with the specified settings detailed?
Any and all help appreciated.
Thanks