Hello,
Since UDP 1812 is used for RADIUS authentication, the first step is to verify whether the VPN gateway is actually sending Access-Request packets and whether they reach the RADIUS server. Enable RADIUS debugging on the VPN device and capture traffic on both the VPN gateway and RADIUS server.
If the requests leave the VPN appliance but never appear on the RADIUS server, the firewall or network path is blocking UDP/1812. Review firewall policies, NAT rules, and session logs for both UDP/1812 and UDP/1813 if RADIUS accounting is enabled.
If you are using Microsoft NPS, check Event Viewer under Applications and Services Logs\Microsoft\Windows\NetworkPolicyandAccessServices and the Security log. If no authentication events are recorded during a login attempt, the requests are not reaching NPS.
If NPS receives the request but rejects it, verify the RADIUS client definition, source IP address, and shared secret configuration. An incorrect shared secret or unregistered client will generate NPS authentication errors.
A packet capture is usually the fastest way to identify the exact failure point. Trace the packet path and determine whether the Access-Request reaches the RADIUS server and whether the Access-Accept or Access-Reject response returns successfully to the VPN gateway.
I hope you've found something useful here. If it helps you get more insight into the issue, it's appreciated to accept the answer. Should you have more questions, feel free to leave a message. Have a nice day!
Domic Vo.