I understand as part of EAP there's an extra GINA in Windows to allow authentication to SecureACS via the Access Point. Radius is used so user name & password must be sent to the SecureACS, then NTLM to Windows DC?Then how does reauthentication take ...