User Tools

Site Tools


en:eduroam

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revisionPrevious revision
Next revision
Previous revision
en:eduroam [2023/05/02 10:10] – [Windows 10] vfcapdevilaen:eduroam [2024/11/20 15:07] (current) – [Windows] Username = Full email address gcwilkins
Line 1: Line 1:
 ====== eduroam (Wi-Fi) ====== ====== eduroam (Wi-Fi) ======
  
-To connect to Wi-Fi at the HfG Karlsruheyou need to configure the ''eduroam'' or ''eduroam-hfg'' networks.+The HfG Karlsruhe is part of the [[https://www.eduroam.org/|eduroam federation]], which is used to connect to Wi-Fi. Once set upHfG members can connect to Wi-Fi at [[https://monitor.eduroam.org/map_service_loc.php|other institutions which are part of eduroam]]. Conversely, HfG'eduroam Wi-Fi is open to members of other participating institutions. 
 +===== Configuration ===== 
 +==== Apple (Mac, iPhone, iPad) ==== 
 +On Apple devices, a [[https://cloud.hfg-karlsruhe.de/s/MjBBApxoFsQemk9|confguration profile]] with the necessary settings must be installed. After downloading and installing it, you will be prompted for your username and password, please remember to use your HfG username (without "@hfg-karlsruhe.de").
  
-HfG Karlsruhe is part of the [[https://www.eduroam.org/|eduroam]] initiative, which allows you to connect to the building’s WiFi network using your HfG account or, if you are a guest student and your institution is also part of eduroam, using your institution’s account. 
  
-**Which one should I use?** 
  
-Please set up the ''eduroam'' network.+:!: Clicking the link, a file should start downloading. If that is not the case, and you see some code, you can save it using ''Cmd + S'' and then save the file.
  
-The ''eduroam-hfg'' network is intended to serve as backup for users located near the neighbouring ZKM who want to ensure that they are connected to the HfG network. They do not otherwise differ in terms of speed, security or any other features, as they are provided via identical hardware. +Thereafter, you may go to System Configuration and search for profile if it'not installed automatically
- +==== Android ==== 
-The following are brief descriptions of how to connect different devices. +On Android devicesselect the Wi-Fi network as usual and configure it manually, with the following settings:
- +
----- +
- +
- +
-===== Apple (Mac, iPhone, iPad) ===== +
-Download the following [[https://cloud.hfg-karlsruhe.de/s/k7QerSboGPdBDdM|configuration profile]]which has all the necessary settings pre-configured. You will be required to enter your ID and password. +
- +
-===== Android ===== +
-You will have to set the network manually, using the following configuration.+
  
 ^ Setting ^ Value ^ ^ Setting ^ Value ^
-| Security | 802.1x EAP | 
 | EAP-Method | TTLS | | EAP-Method | TTLS |
 | Phase 2 Authentication | PAP | | Phase 2 Authentication | PAP |
 | CA Certificate | Use system certificates <sup>1</sup> | | CA Certificate | Use system certificates <sup>1</sup> |
-Certificate status | Do not verify |+Online certificate status | Do not verify |
 | Domain | radius.hfg-karlsruhe.de | | Domain | radius.hfg-karlsruhe.de |
-| Identity | Your HfG username (your email address **without** @hfg-karlsruhe.de) |+| Identity | Your HfG email address |
 | Anonymous identity | anonymous@hfg-karlsruhe.de | | Anonymous identity | anonymous@hfg-karlsruhe.de |
 | Password | Your HfG password | | Password | Your HfG password |
  
-<sup>1</sup> Very old Android devices (up to v8.0) need a different certificate configuration. If this is your case, please send an email to [[support@hfg-karlsruhe.de]].  +<sup>1</sup> Very old Android devices (up to v8.0 Oreo) need a different certificate configuration. If this is your case, please send an email to [[support@hfg-karlsruhe.de]]. 
- +
-===== Linux ===== +
-Use the same configuration described for Android devices. +
- +
-===== Windows ===== +
-:!: If you are using Windows 11, follow the next steps. For Windows 10, you [[en:eduroam#windows-10|can skip the first two steps]] +
- +
-Connecting to eduroam on Windows is slightly more tedious. Begin by installing [[https://www.pki.dfn.de/fileadmin/PKI/zertifikate/T-TeleSec_GlobalRoot_Class_2.crt|this certificate]]. Then, you can follow allong with this video, or the step-by-step instructions below. +
- +
-{{ :en:eduroam:windows:vid.1_eduroam_on_windows.mp4 | Vid.1: eduroam on Windows, step by step}} +
- +
-==== Step-by-step ====+
  
-===== Windows 10 =====+==== Linux ==== 
 +Follow the same configuration listed above for Android devices. An effective check of the TLS certificate of the RADIUS server (radius.hfg-karlsruhe.de) is important.
  
-To open the Network and Sharing Centre, press the Start button and type 'Control Panel'Once there click ‘Network and Internet’ (skip this step if your ‘view by’ isn’t set to ‘category’) and then click ‘Network and Sharing Center’.+For the CA Cert you can use the file ''ca-bundle.crt'' which in Fedora Systems is under ''/etc/ssl/certs''Let the checkbox near ''No CA certificate is required'' empty!
  
-Find and click 'Set up a new connection or network'.+For the username, use your email **without** @hfg-karlsruhe.de
  
-{{ :en:eduroam:fig.1_network_and_sharing_centre.png?direct Fig.1: Network and sharing centre}}+{{ :en:screenshot_from_2023-07-03_16-39-36.png?nolink&600 |}} 
 +==== Windows ==== 
 +Open the System Settings and navigate to 'Networks and Internet'
  
-In the new window, click 'Manually connect to a wireless network'+{{ :en:eduroam-windows-settings-01.png?nolink&400 | eduroam on Windows 11Networks and Internet }}
-You will be prompted to fill in the network settings: +
-  * Network name: eduroam +
-  * Security type: WPA2-Enterprise +
-  * Encryption type: AES (by default) +
-  * Security key: (left blank) +
-  * Start this connection automatically: check +
-  * Connect even if network is not broadcastinguncheck+
  
-{{ :en:eduroam:fig.2_network_settings.png?direct | Fig.2: Network settings}}+Then navigate to 'WLAN' and select 'Manage known networks'.
  
-After clicking 'Next', make sure to 'Modify network settings' again. You will be prompted with the TTLS Properties. Fill in the information as described below: +{{ :en:eduroam-windows-wifisettings.png?nolink&400 | eduroam on Windows 11Mnage known networks}}
-  * Enable identity privacycheck +
-  * Identity: anonymous@hfg-karlsruhe.de +
-  * Connect to these servers: radius.hfg-karlsruhe.de +
-  * Trusted Root Certification AuthoritiesFind and select 'T-Teselec GlobalRoot Class 2' (installed in the first step). +
-  * Don’t prompt user if unable to authorise server: check +
-  * Client authentication: Select a non-EAP method for authentication (Unencrypted password PAP)+
  
-{{ :en:eduroam:fig.3_ttls_properties.png?direct | Fig.3: TTLS Properties}}+A list of all your saved Wi-Fi networks will appearFind any eduroam-related entries and remove them, using the 'Do not save button'If you skip this step, the 'Save' button in the next dialogue will not work.
  
-Once the TTLS settings are configured, it is time to go to 'Advanced Settings' and for 'Specify authentication mode' select 'User authentication'.+Click the 'Add new networkbutton. Enter eduroam as the network name and select WPA2-Enterprise AES as the security type. The configuration dialogue will expand with several new fieldsPlease fill them in as follows:
  
-{{ :en:eduroam:fig.4_advanced_settings.png?direct | Fig.4Advanced settings}}+  * EAP methodEAP-TTLS 
 +  * Authentication methodUnencrypted password (PAP) 
 +  * Private identifieranonymous@hfg-karlsruhe.de 
 +  * Trusted servers: radius.hfg-karlsruhe.de 
 +  * Automatically connect
  
-When you click on 'Save credentialsa new dialogue will appear, asking for your username and password. Use your HfG username (you email address **without** @hfg-karlsruhe.de) and your normal HfG password.+After pressing 'Save', you will be prompted for your username and password. Use your HfG email address as the username, and regular HfG password.
en/eduroam.1683022226.txt.gz · Last modified: 2023/05/02 10:10 by vfcapdevila

Donate Powered by PHP Valid HTML5 Valid CSS Driven by DokuWiki