| CZ-PO-WIN-C-802.1X | |
| Data collected on: 2-9-2025 09:32:58 | |
| Domain | emea.tpg.ads |
| Owner | S-1-5-21-513466819-3096973226-347852806-532605 |
| Created | 9-10-2019 23:19:46 |
| Modified | 30-7-2025 16:07:08 |
| User Revisions | 0 (AD), 0 (SYSVOL) |
| Computer Revisions | 43 (AD), 43 (SYSVOL) |
| Unique ID | {a9c779cd-57eb-4e36-b40f-ad04206654d2} |
| GPO Status | Enabled |
| Location | Enforced | Link Status | Path |
|---|---|---|---|
| Clients | No | Enabled | emea.tpg.ads/CZ/Systems/Clients |
| Name |
|---|
| NT AUTHORITY\Authenticated Users |
| Name | Allowed Permissions | Inherited |
|---|---|---|
| EMEA\CZ-G-ORG-OU Admins | Edit settings, delete, modify security | No |
| EMEA\Domain Admins | Edit settings, delete, modify security | No |
| NT AUTHORITY\Authenticated Users | Read (from Security Filtering) | No |
| NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS | Read | No |
| NT AUTHORITY\SYSTEM | Edit settings, delete, modify security | No |
| ROOT\Enterprise Admins | Edit settings, delete, modify security | No |
| S-1-5-21-513466819-3096973226-347852806-1400845 | Custom | No |
| S-1-5-21-513466819-3096973226-347852806-532605 | Edit settings, delete, modify security | No |
| Policy Name | IRPIC_Internal |
| Policy Description | IRPIC_Internal |
| Policy Type | Windows Vista and Later Releases |
| Use Windows wireless LAN network services for clients | Enabled |
| Shared user credentials for network authentication | Enabled |
| Hosted networks | Enabled |
| Allow user to view denied networks | Enabled |
| Allow everyone to create all user profiles | Enabled |
| Only use Group Policy profiles for allowed networks | Disabled |
| Profile Name | IRPIC_Internal |
| Network Type | Infrastructure |
| Automatically connect to this network | Enabled |
| Automatically switch to a more preferred network | Enabled |
| Network Name (SSID) | Network Broadcasts its SSID |
|---|---|
| IRPIC_Internal | False |
| Authentication | WPA2 |
| Encryption | AES |
| Use 802.1X | Enabled |
| Pairwise Master Key (PMK) Caching | Enabled |
| PMK Time-to-Live (minutes) | 720 |
| Number of Entries in PMK Cache | 128 |
| Maximum Pre-authentication Failures | 3 |
| Computer Authentication | User re-authentication |
| Maximum Authentication Failures | 1 |
| Maximum EAPOL-Start Messages Sent | |
| Held Period (seconds) | |
| Start Period (seconds) | |
| Authentication Period (seconds) |
| Authentication method | Protected EAP (PEAP) |
| Validate server certificate | Enabled |
| Connect to these servers | |
| Do not prompt user to authorize new servers or trusted certification authorities | Disabled |
| Enable fast reconnect | Enabled |
| Disconnect if server does not present cryptobinding TLV | Disabled |
| Enforce network access protection | Disabled |
| Authentication method | Secured password (EAP-MSCHAP v2) |
| Automatically use my Windows logon name and password(and domain if any) | Enabled |
| Name | CZ-PO-Wired |
| Description | Sample Description |
| Setting | Value |
|---|---|
| Use Windows wired LAN network services for clients | Enabled |
| Shared user credentials for network authentication | Enabled |
| Enable use of IEEE 802.1X authentication for network access | Enabled |
| Enforce use of IEEE 802.1X authentication for network access | Disabled |
| Computer Authentication | Computer only |
| Maximum Authentication Failures | 1 |
| Maximum EAPOL-Start Messages Sent | |
| Held Period (seconds) | |
| Start Period (seconds) | |
| Authentication Period (seconds) |
| Authentication method | Smart card or certificate |
| Validate server certificate | Disabled |
| Use a certificate on this computer | Enabled |
| Use simple certificate selection | Enabled |
| Use a different username for the connection | Disabled |