NPS Radius authenticated wifi SSID device with no issue getting to DNS and AD sysvol. GPupdate /force runs with NO errors. It applies policies and results in success event 8005 but the security group change is not reflected in gpresult on device or in the RSOP on DC. Not a slow link and have already set the policy that forces GPs to wait until network is ready. baffled