Add client to /etc/freeradius/3.0/clients.conf
client someclient.tek { ipaddr=172.22.42.4 secret=xxxxxxxxxxxxxxxxx shortname=internal-network login = !root }
Set daemon to run with group shadow
in /etc/freeradius/3.0/radiusd.conf
Uncomment unix
type in /etc/freeradius/3.0/sites-available/default
to enable reading of passwd/shadow information.