With either scenario, make sure that all connecting users have username/password credentials that can be authenticated through RADIUS.
You can configure username/password authentication to either use Active Directory or not use Active Directory. Each section has steps for Windows, macOS, and Linux (limited steps available at this time). To use the sections in this article, first decide which type of authentication you want to use: username/password, certificate, or other types of authentication. If there are any changes to the point-to-site VPN configuration after you generate the VPN client configuration profile, such as the VPN protocol type or authentication type, you must generate and install a new VPN client configuration on your users' devices.