---
title: ForceKerberosForRpc enum | Wartiva GraphQL API
description: GPO policy: "Configure RPC listener settings" — Kerberos enforcement sub-option, under Computer Configuration > Administrative Templates > Printers.
url: https://wartiva.com/api-docs/types/force-kerberos-for-rpc.html
updated: 2026-10-07
---

Endpoint configuration · GraphQL enum

# `ForceKerberosForRpc` enum

GPO policy: "Configure RPC listener settings" — Kerberos enforcement sub-option, under Computer Configuration > Administrative Templates > Printers. Controls whether the print spooler enforces Kerberos authentication for incoming RPC connections instead of negotiating the protocol. Registry: HKLM\SOFTWARE\Policies\Microsoft\Windows NT\Printers\RPC:ForceKerberosForRpc (REG_DWORD). Reference: [Policy CSP - Printers (ConfigureRpcListenerSettings)](https://learn.microsoft.com/en-us/windows/client-management/mdm/policy-csp-printers#configurerpcllistenersettings)

## Values

| Enum Value | Description |
|---|---|
| `NEGOTIATE` | Negotiate authentication protocol (registry value 0, default). The authentication protocol for incoming print RPC connections is negotiated between client and server. |
| `KERBEROS` | Force Kerberos authentication (registry value 1). Only Kerberos is accepted for incoming print spooler RPC connections. Requires all connecting clients to be domain-joined. |

## Used by

- [`ComputerAdministrativeTemplates`](https://wartiva.com/api-docs/types/computer-administrative-templates.html) type: Computer-specific Administrative Templates (ADMX) settings on an Endpoint.

## Example

### Example

```json
"NEGOTIATE"

```

---

Wartiva is in early access. Request access: https://wartiva.com/early-access.html  
All pages: https://wartiva.com/llms.txt
