I suppose that you mean NPS instead of NAP as authentication server.
This error means that the client is doing certificate validation but the settings are not correct. Make sure you trust the root ca of the radius server certificate in the SSID profile of the client.
Also enable to option “connect to this servers” and enter there the common name of the certificate. This is very important if your radius server is using a public signed certificate.
Next to that, it’s advisable to enable the option “do not prompt user to authorize new servers or trusted certification authorities”. This will prevent users to connect to a fake network.