Enable Required Services for NAP in Group Policy
Applies To: Windows Server 2008, Windows Server 2008 R2, Windows Server 2012, Windows Server 2012 R2
In addition to enabling NAP client settings such as enforcement clients, you can use a NAP client Group Policy object (GPO) to enable required services for NAP. Use the following procedure to configure the NAP Agent service to start automatically. If you are using NAP with 802.1X enforcement in a wired environment, you can also configure the Wired Autoconfig service to start automatically.
Membership in the Domain Admins group, or equivalent, is the minimum required to complete this procedure. Review details about using the appropriate accounts and group memberships at Local and Domain Default Groups (https://go.microsoft.com/fwlink/?LinkId=83477).
Configure the NAP Agent service to start automatically
Use the following procedure to configure the NAP client service to start automatically on NAP client computers.
To configure the NAP Agent service
On a domain controller or member server with the Group Policy Management feature installed, click Start, click Run, type gpmc.msc, and then press ENTER.
In the Group Policy Management console tree, open Group Policy Objects, right-click the name of the GPO you want to edit, and then click Edit. The Group Policy Management Editor opens.
In the Group Policy Management Editor tree, open Computer Configuration\Policies\Security Settings\System Services.
In the details pane, double-click Network Access Protection Agent.
In the Network Access Protection Agent Properties window, select Define this policy setting, choose Automatic, and then click OK.
To configure the Wired Autoconfig service
In the Group Policy Management Editor tree, open Computer Configuration\Policies\Security Settings\System Services.
In the details pane, double-click Wired AutoConfig.
In the Network Access Protection Agent Properties window, select Define this policy setting, choose Automatic, and then click OK.