WatchGuard SSLVPN with Radius

Error message being displayed - Authentication of SSLVPN user [z@RADIUS] from ip was rejected, user isn’t in the right group msg_id=“1100-0005”

Same issue as WatchGuard Duo Radius

As with this post, I can successfully connect when I have a user setup, but it is not working when using the group. I have followed the documentation available and set the Filter-ID on the NPS to the AD group name.

Any suggestions on why it is being rejected, I know I’m so close.