There are a bunch of parts and pieces need to put together...
RADIUS protocol ... RADIUS service on a server to auth.
http://en.wikipedia.org/wiki/RADIUS
http://www.petenetlive.com/KB/Article/0000685.htm
Note that is you use an EAP solution that incorporates a vulnerable version of SSL you will probably be subject to HeartBleed attack.