Microsoft's updated Windows Local Administrator Password Solution (Windows LAPS) is now a native part of the Windows operating system that automatically manages and rotates local administrator passwords on Windows devices, helping organizations reduce security risks associated with static credentials. The enhanced version, which has replaced the legacy LAPS feature as of Windows 11 23H2, offers significant improvements including automatic account management, passphrase generation, OS image rollback detection, and support for both Active Directory and Microsoft Entra ID (formerly Azure AD) password storage. Windows LAPS provides additional security benefits such as protection against pass-the-hash attacks, support for Azure's Role Based Access Control, password encryption capabilities, password history tracking, and automated management of Directory Services Restore Mode account passwords on domain controllers.
See the full Windows LAPS tutorial at this link:
https://www.techtarget.com/searchwindowsserver/tip/How-to-work-with-the-new-Windows-LAPS-feature