WPA Enterprise (EAP?) with User Manager, is it possible?

I am trying to set up my test access point to have wireless users authenticated with the so called “WPA Enterprise”, using the internal User Manager as radius server. I have been unable to set up something that works.

The wireless client asks for username and password on connection, then tries to connect and it always fails.

I have tried setting up the security profile with radius as “pass trough” and I get an error in the radius log that says “unknown authentication algorithm”.

If I set up wireless auth as “EAP/TLS” (without any certificate) it seems that the auth request is not even sent to the radius server (I see no radius logs at all)

What I am I doing wrong?

Can someone please show me the right configuration (an export compact, maybe) to make WPA auth work with internal User Manager?

Thanks a lot.