If it is just Windows 10, please check if your RADIUS server supports TLS1.2: https://support.microsoft.com/en-us/kb/3121002
Please be advised that the way you configured your clients might be insecure. You did not mention if you configured the 'Validate Certficate' option in your clients, and if you have not enabled or locked-down the certificate validation your clients may expose their credentials to a malicious access point; and the used MS-CHAPv2 authentication is 100% guaranteed crackable (to the password hash, that can be used to access your network).