Can you share your configuration (snippets of the important parts) here? It is indeed possible that something has changed in the latest releases! Exciting. Where I got stuck last time was I *had* to place the interface on the bridge to pull DHCP due to the VLAN 0 issue. What ISP do you have and do they utilize VLAN 0 like AT&T UVerse?
Okay, I'll be publishing my findings in a new post on this subject very soon. I wanted to run it past you first. I use AT&T Fiber Internet 100 (they have a 1GB service plan too). I don't know what they send over the wire as I did not capture it.
My configuration is extremely simple: 1, import the certs, 2, turn off CRL, 3, set ether1 mac to RG mac, 4, enable Dot1x EAP TLS client supplicant on ether1, 5, set Identity & Anon to the mac, 6, create DHCP client on ether1, 7, standard firewall and LAN side, yadda, yadda.
I actually had trouble getting a Dot1x client to work on an interface what was part of
a bridge. So, I was forced to just use the bare ether1 interface. But I could've made a mistake (I think I did with the CRL option).