LAPS retrieval blade is keyed on AAD object id, not aadDeviceId / mdmDeviceId. We capture aadDeviceId from dsregcmd; resolving to objectId would require a Graph API call with Device.Read.All which we don't have at WJ. Removed the LAPS button - operator goes to Intune portal manually for LAPS as before. set-category button stays - aadDeviceId works for that blade. Co-Authored-By: Claude Opus 4.7 (1M context) <noreply@anthropic.com>
7.9 KiB
7.9 KiB