> For the complete documentation index, see [llms.txt](https://docs.lithnet.io/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.lithnet.io/ams/v3.0/help-and-support/choosing-between-the-microsoft-and-lithnet-laps-agents.md).

# Choosing between the Lithnet and Microsoft agent for LAPS

Managing local admin passwords safely and securely relies on having a mechanism to generate and store the local admin passwords. There are three supported agents you can use with Access Manager to manage your device local admin passwords. This guide will help you choose the right option for your environment.

## Option 1: Lithnet Access Manager agent

Lithnet Access Manager has its own agent that can be used to manage the local admin passwords of your devices. It has full support for encrypted passwords, password history, and is not just supported on Windows, but macOS and Linux as well.

As well as managing LAPS passwords in much the same way as the Microsoft agent, it adds support for backing up BitLocker recovery codes from any Windows device, and enables our new RapidLAPS passwordless LAPS login capability.

Pros

* Supports Windows, macOS, and Linux
* Encrypts all passwords, along with password history support
* Support for "passwordless" elevation and LAPS login with *RapidLAPS* (Windows only)
* Backs up BitLocker recovery keys (Windows only)
* Supports Windows Server 2016 and higher, as well as Windows 10 and higher
* Supports Active Directory joined, Entra ID joined, as well as standalone Windows devices

Cons

* No support for out-of-date operating systems. Only supported on Windows 10 and above and Windows Server 2016 and above

### When should I use the Lithnet Access Manager agent?

* You wish to use the *RapidLAPS* feature on Windows devices.
* You have macOS and Linux devices you want to support
* You have Windows devices not joined to a domain
* You want one LAPS client solution for your entire Windows and non-Windows fleet

{% hint style="info" %}
**Use the&#x20;*****password management*****&#x20;features of the Lithnet Access Manager agent is optional**

For example, if you wish to keep using native Windows LAPS to manage passwords, but want to make use of features such as *RapidLAPS*, the AMS Agent can be configured to not manage passwords.

If the AMS Agent detects that either the *Windows LAPS client* or the *legacy LAPS client* is managing passwords on a device, it will *not* attempt to manage local account passwords (to avoid conflicts).
{% endhint %}

{% hint style="info" %}
**Mix and match!**

It's important to note that you are not restricted to the use of a single LAPS client type in your environment.

For example, you can use the legacy LAPS client on legacy operating systems, Windows LAPS on modern operating systems, and Access Manager Agent on macOS and Linux devices.

Access Manager Server can read LAPS passwords from any client listed on this page.
{% endhint %}

## Option 2: Legacy LAPS client

Microsoft's tried and true legacy LAPS client provides support for managing LAPS passwords for Active Directory joined devices. It supports a wide range of legacy and modern Windows operating systems.

Pros

* Has the broadest support for OS coverage
* Easy to deploy and configure via group policy

Cons

* Windows only
* Supports Active Directory domain-joined machines only
* Passwords are stored in the directory in plain-text
* Does not store a history of previously used local admin passwords
* Deprecated and no longer being updated by Microsoft

### When should I use legacy LAPS?

* You have an existing deployment of legacy LAPS
* You need to support legacy Windows operating system versions

## Option 3: Windows LAPS client

In April 2023, Microsoft released LAPS as a built-in Windows feature. This also brought a range of new support for things like password history, encryption, and support for Microsoft Entra joined devices.

Pros

* Support for both AD and Microsoft Entra joined devices
* Has password history support
* Optionally encrypts passwords stored in Active Directory
* Built into Windows
* Actively supported and developed by Microsoft

Cons

* Windows only
* No support for older operating systems that are still in support. Only supported on Windows 11, Windows Server 2019 and higher, and Windows 10 versions supported as of April 2023.

### When should I use Windows LAPS?

* Your organization has modern Windows operating systems either joined to Microsoft Entra or Active Directory

## Operating system support

The Microsoft agents works only on Windows AD or Microsoft Entra-joined devices. Lithnet Access Manager agent supports a much wider range of operating systems.

| Operating system                       | Microsoft Legacy LAPS Agent                                                                                                                                                                           | Microsoft Windows LAPS Agent                                                                                                                                                                          | Lithnet Access Manager Agent                                                                                                                                                                          |
| -------------------------------------- | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| Windows Vista, Windows 7 and Windows 8 | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   |
| Windows 8.1                            | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   |
| Windows 10                             | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) |
| Windows 11 and higher                  | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) |
| Windows Server 2012 R2                 | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   |
| Windows Server 2016                    | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) |
| Windows Server 2019 and higher         | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) |
| macOS\[1]                              | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) |
| Linux\[1]                              | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) |

*1. See the* [*downloads page*](/ams/v3.0/installation/downloads.md) *for detailed operating system support for macOS and Linux agents.*

## Supported join types

| Join type                             | Microsoft Legacy LAPS Agent                                                                                                                                                                           | Microsoft Windows LAPS Agent                                                                                                                                                                          | Lithnet Access Manager Agent                                                                                                                                                                          |
| ------------------------------------- | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| Active Directory joined devices       | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) |
| Entra ID joined devices               | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) |
| Non-domain joined devices (workgroup) | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) |

## Feature comparison

| Feature                                                | Microsoft Legacy LAPS Agent                                                                                                                                                                           | Microsoft Windows LAPS Agent                                                                                                                                                                          | Lithnet Access Manager Agent                                                                                                                                                                          |
| ------------------------------------------------------ | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| Regularly rotates the local admin password             | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) |
| Stores a history of previous local admin passwords     | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) |
| Stores passwords in plain-text                         | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media) 1 | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   |
| Encrypts passwords                                     | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) |
| Writes passwords to Active Directory                   | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   |
| Write passwords to Entra ID                            | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   |
| Write passwords to the AMS server                      | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) |
| Backups up BitLocker recovery keys to AMS              | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) |
| Enables passwordless login and elevation via RapidLAPS | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) |

*1. Windows LAPS can store passwords in plain text if configured*

## Compatibility with password retrieval solutions

|                                                            | Legacy LAPS thick client                                                                                                                                                                              | Windows LAPS AD property pages                                                                                                                                                                        | Windows LAPS PowerShell                                                                                                                                                                               | Entra Admin Portal                                                                                                                                                                                    | Access Manager Service                                                                                                                                                                                |
| ---------------------------------------------------------- | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| Microsoft Legacy LAPS passwords stored in AD               | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) |
| Microsoft Windows LAPS passwords stored in AD              | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) |
| Microsoft Windows LAPS passwords stored in Microsoft Entra | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) |
| Access Manager Agent passwords                             | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-5ba3c2da449cef9bfbf2b46c4d98bb52d1f979b7%2Fdash.png?alt=media)   | ![](https://1500666603-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FzPrDxVWpXXpSNTpkDVnR%2Fuploads%2Fgit-blob-9b15e7da1ccb109287a26f8075e75c14ad110e1e%2Fcheck3.png?alt=media) |


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://docs.lithnet.io/ams/v3.0/help-and-support/choosing-between-the-microsoft-and-lithnet-laps-agents.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
