I understand with NAP I can assign a user to one of two VLAN - trusted or not. My question is can I use NAP to assign a user to a specific VLAN based on a AD group membership. For example, Carol belongs on the Finance trusted VLAN, she is a member of the Finance_vlan AD group. The idea is wherever Carols connects in our campus she gets validated by NAP and assigned to the Finance VLAN. Is this possible with NAP?