Skip to main content

GroupPolicy Data Collector

The GroupPolicy Data Collector lets you retrieve the GPO’s list in the domain and where they are linked, return information on configured policies and policy parts from the individual policies you select, return information on selected policy parts from all policies within the domain, and return effective security policies in effect at the individual workstation.

The GroupPolicy Data Collector is a core component of Enterprise Auditor, but it comes preconfigured within the Active Directory Solution and the Windows Solution. While the data collector is available with all Enterprise Auditor license options, the Windows Solution is only available with a special Enterprise Auditor licenses. See the following topics for additional information:

Protocols

  • LDAP
  • RPC

Ports

  • TCP 389
  • TCP 135-139
  • Randomly allocated high TCP ports

Permissions

  • Member of the Domain Administrators group (if targeting domain controllers)
  • Member of the Local Administrators group

GroupPolicy Query Configuration

The GroupPolicy Data Collector is configured through the Group Policy Data Collector Wizard. The available pages change based upon the query category selected. It contains the following wizard pages:

Group Policy Data Collector Wizard Welcome page

To hide the Welcome page, select the Don't display this page the next time checkbox while the wizard is open, then save the configuration settings.