1. When NAC is configured to Proxy 802.1x RADIUS traffic, it does not retain the inner-tunnel username that is returned via the "User-Name" attribute / RADIUS Accept packet from the back-end RADIUS server. Due to this, any rules in NAC that match on this username will be effected.
2. Username column in NAC Manager displays outer-tunnel username rather than the inner tunnel username.
*Note that NTLM authentication is not affected by this and the issue only pertains to Proxy RADIUS.