I won't be able to post screen shots at this time as I don't have access to lab ( @ home). However, can do it tomorrow morning. If you wish, post your screen shots from the access-policies > authorization rules and I will verify.
So when you say eap-chaning you mean to say user and machine certificate explicitly along with server and root ca certificate. If yes then answer is yes. With Peap, user/machine certificate are optional however with eap-tls, you've to have user/machine certificate installed on the machine.
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...