I have a Server 2008 R2 NPS configured as the RADIUS server for some wireless access point clients. It's set use Machine Groups to allow access to the wireless network based on the client computer's security group. That works perfectly with Windows 8, Windows 7, and Windows XP (after some registry editing) clients.
I exported the configuration and imported on a Server 2012 NPS box. That successfully allows Windows 8 clients to connect, but Windows 7 computers are prompted for a username and password. The connection request and network policies all look correct and the client PC does seem to be passing the correct information through, but the server does not allow the connection. Is there something that changed between 2008 R2 and 2012 with respect to Machine Groups and wireless security?