Our RAS VPN server has an unrelated internal and external domain names. Example: Our internal domain isdomain.local but our external domain is domain.edu. The VPN server sends Radius Authentication to our NPS Server. The NPS server is setup with the following authentication type:
https://docs.microsoft.com/en-us/windows-server/remote/remote-access/vpn/always-on-vpn/deploy/vpn-deploy-server-infrastructure
Clients cannot connect to the VPN and the NPS server is displaying
Event ID:6274
Authentication failed due to an EAP session timeout; the EAP session with the access client was incomplete.How
Do I need to do anything differently to the Certificate on the VPN server because of the contrastingdomain names?