I had try add the Windows Computer rule under Windows Group "Domain Computers", but it was failure to authenticate user account. Under Windows RADIUS server (Windows 2008 R2) Event Viewer error message was invalid user account. I also got try add Machine Group and User Group policy with combination of this 3 policy vice versa also can't work. Computer also can't get IP address from DHCP server.
It only can get authenticate was remove above all policy and just only add below policy, then it can work.
If i add Policy under Gateway " NAS Port Type, Wireless - IEEE802.11 or Wireless other" policy, user able to get authenicated.
Initial logon role is "Logon-Control"
Default 802.1x authentication role is "Authenticated"
About the DHCP fingerprinting not suitable for my customer environment because they want to prevent the personal device such as laptop (windows machine), smartphone and tablet connect to the Staff SSID (802.1x authentication).
It is have some setting i miss up? Please advise.