Using TLS 1.3 with various EAP methods is not yet fully standardized, so we don't enable it by default yet.