Hi @nikmagashi Indeed you figured it out: Shared secret field: it the shared secret to be configured on Windows VPN Client as well Secret field in Radius section: it the PSK/Secret to configure with Radius client on NPS server Regarding the IP Address to associate with the Radius Client on NPS Side, this meraki KB is really helpful and explains the different cases https://documentation.meraki.com/MX/Client_VPN/Configuring_RADIUS_Authentication_with_Client_VPN#Add_MX_Security_Appliance_as_RADIUS_clients_on_the_NPS_server On an intranet, If your MX uses a static route to reach out the NPS Server, you will have to use MX IP of network segment used by this route. If your MX relies on VPN tunnel to reach out NPS, use the MX IP of the highest-numbered VLAN Interface set "in VPN" I hope it helps
... View more