Difference between revisions of "Overleg gebruiker:Gmulder"

From Cncz
Jump to: navigation, search
(wpa_supplicant.conf)
Line 1: Line 1:
== Eduroam on N95-8GB ==
+
__TOC__
 +
 
 +
== wpa_supplicant.conf ==
 +
<pre>
 +
network={
 +
ssid="ru-wlan"
 +
key_mgmt=WPA-EAP
 +
eap=TTLS
 +
phase2="auth=MSCHAPV2"
 +
ca_cert="/etc/ssl/certs/AddTrust_External_Root.pem"
 +
identity="sXXXXXXX"
 +
scan_ssid=1
 +
password="<kisspassword>"
 +
}
 +
 
 +
network={
 +
ssid="Science"
 +
key_mgmt=WPA-EAP
 +
eap=TTLS
 +
phase2="auth=MSCHAPV2"
 +
ca_cert="/etc/ssl/certs/AddTrust_External_Root.pem"
 +
identity="<sciencelogin>"
 +
scan_ssid=1
 +
password="<sciencepassword>"
 +
}
 +
 
 +
### NOTE: This only works on the RU campus
 +
###      Others not tested, perhaps it needs @ru.nl
 +
###      or @student.ru.nl on other networks
 +
network={
 +
ssid="eduroam"
 +
key_mgmt=WPA-EAP
 +
eap=TTLS
 +
phase2="auth=MSCHAPV2"
 +
ca_cert="/etc/ssl/certs/AddTrust_External_Root.pem"
 +
identity="sXXXXXXX"
 +
scan_ssid=1
 +
password="<kisspassword>"
 +
}
 +
</pre>
 +
 
 +
== NetworkManager ==
 +
There are 2 methods (perhaps more) to configure wireless networks on the campus
 +
* Left-click on the networkmanager applet and select {ru-wlan,eduroam,Science}
 +
** 99% of the time, the correct settings are already filled in, the only things you have to fill in are
 +
** Username (for {ru-wlan,eduroam} sXXXXXXX or your science login for the Science network)
 +
** Password (corresponding password, either the KISS password or the science login password)
 +
** You may ignore the certificate setting (and warning afterwards), or set it to point to the "AddTrust External CA Root" certificate
 +
*Right-click on the networkmanager applet -> Edit connections -> Wireless
 +
** Select the desired network and click on Edit.
 +
** See the settings for each network below
 +
 
 +
=== ru-wlan ===
 +
* Wireless
 +
** SSID: ru-wlan
 +
** Mode: Infrastructure
 +
** BSSID: <empty>
 +
** MAC address: <empty>
 +
** MTU: automatic
 +
* Wireless Security
 +
** Security: WPA & WPA2 Enterprise
 +
** Authentication: Tunneled TLS
 +
** Anonymous identity: <empty>
 +
** CA certificate: <either empty or pointing to the AddTrust External Root CA.pem>
 +
** Inner authentication: MSCHAPv2
 +
** Username: sXXXXXXX
 +
** Password: <kiss password>
 +
* IPv4 Settings
 +
** Method: Automatic (DHCP)
 +
** (optional) Require IPv4 addressing for this connection to complete
 +
* IPv6 Settings
 +
** Method: Ignore
 +
 
 +
=== Eduroam ===
 +
''Note: these settings probably only work on the RU campus''
 +
* Wireless
 +
** SSID: eduroam
 +
** Mode: Infrastructure
 +
** BSSID: <empty>
 +
** MAC address: <empty>
 +
** MTU: automatic
 +
* Wireless Security
 +
** Security: WPA & WPA2 Enterprise
 +
** Authentication: Tunneled TLS
 +
** Anonymous identity: <empty>
 +
** CA certificate: <either empty or pointing to the AddTrust External Root CA.pem>
 +
** Inner authentication: MSCHAPv2
 +
** Username: sXXXXXXX
 +
** Password: <kiss password>
 +
* IPv4 Settings
 +
** Method: Automatic (DHCP)
 +
** (optional) Require IPv4 addressing for this connection to complete
 +
* IPv6 Settings
 +
** Method: Ignore
 +
 
 +
=== Science ===
 +
* Wireless
 +
** SSID: Science
 +
** Mode: Infrastructure
 +
** BSSID: <empty>
 +
** MAC address: <empty>
 +
** MTU: automatic
 +
* Wireless Security
 +
** Security: WPA & WPA2 Enterprise
 +
** Authentication: Tunneled TLS
 +
** Anonymous identity: <empty>
 +
** CA certificate: <either empty or pointing to the AddTrust External Root CA.pem>
 +
** Inner authentication: MSCHAPv2
 +
** Username: <science login name>
 +
** Password: <science login password>
 +
* IPv4 Settings
 +
** Method: Automatic (DHCP)
 +
** (optional) Require IPv4 addressing for this connection to complete
 +
* IPv6 Settings
 +
** Method: Ignore
 +
 
 +
== N95-8GB ==
 +
=== Eduroam ===
 
'''When on RU campus, not tested on another campus'''
 
'''When on RU campus, not tested on another campus'''
 
*WLAN networkname: eduroam
 
*WLAN networkname: eduroam
Line 22: Line 139:
 
***** Password:KISS password
 
***** Password:KISS password
  
== ru-wlan on N95-8GB ==
+
=== ru-wlan ===
 
*WLAN networkname: ru-wlan
 
*WLAN networkname: ru-wlan
 
*WLAN network mode: Infrastructure
 
*WLAN network mode: Infrastructure
Line 43: Line 160:
 
***** Prompt password:No (if desired: yes)
 
***** Prompt password:No (if desired: yes)
 
***** Password:KISS password
 
***** Password:KISS password
 
== wpa_supplicant.conf ==
 
<pre>
 
network={
 
ssid="ru-wlan"
 
key_mgmt=WPA-EAP
 
eap=TTLS
 
phase2="auth=MSCHAPV2"
 
ca_cert="/etc/ssl/certs/AddTrust_External_Root.pem"
 
identity="sXXXXXXX"
 
scan_ssid=1
 
password="<kisspassword>"
 
}
 
 
network={
 
ssid="Science"
 
key_mgmt=WPA-EAP
 
eap=TTLS
 
phase2="auth=MSCHAPV2"
 
ca_cert="/etc/ssl/certs/AddTrust_External_Root.pem"
 
identity="<sciencelogin>"
 
scan_ssid=1
 
password="<sciencepassword>"
 
}
 
 
### NOTE: This only works on the RU campus
 
###      Others not tested, perhaps it needs @ru.nl
 
###      or @student.ru.nl on other networks
 
network={
 
ssid="eduroam"
 
key_mgmt=WPA-EAP
 
eap=TTLS
 
phase2="auth=MSCHAPV2"
 
ca_cert="/etc/ssl/certs/AddTrust_External_Root.pem"
 
identity="sXXXXXXX"
 
scan_ssid=1
 
password="<kisspassword>"
 
}
 
</pre>
 

Revision as of 13:26, 24 September 2010

wpa_supplicant.conf

network={
	ssid="ru-wlan"
	key_mgmt=WPA-EAP
	eap=TTLS
	phase2="auth=MSCHAPV2"
	ca_cert="/etc/ssl/certs/AddTrust_External_Root.pem"
	identity="sXXXXXXX"
	scan_ssid=1
	password="<kisspassword>"
}

network={
	ssid="Science"
	key_mgmt=WPA-EAP
	eap=TTLS
	phase2="auth=MSCHAPV2"
	ca_cert="/etc/ssl/certs/AddTrust_External_Root.pem"
	identity="<sciencelogin>"
	scan_ssid=1
	password="<sciencepassword>"
}

### NOTE: This only works on the RU campus
###       Others not tested, perhaps it needs @ru.nl
###       or @student.ru.nl on other networks
network={
	ssid="eduroam"
	key_mgmt=WPA-EAP
	eap=TTLS
	phase2="auth=MSCHAPV2"
	ca_cert="/etc/ssl/certs/AddTrust_External_Root.pem"
	identity="sXXXXXXX"
	scan_ssid=1
	password="<kisspassword>"
}

NetworkManager

There are 2 methods (perhaps more) to configure wireless networks on the campus

  • Left-click on the networkmanager applet and select {ru-wlan,eduroam,Science}
    • 99% of the time, the correct settings are already filled in, the only things you have to fill in are
    • Username (for {ru-wlan,eduroam} sXXXXXXX or your science login for the Science network)
    • Password (corresponding password, either the KISS password or the science login password)
    • You may ignore the certificate setting (and warning afterwards), or set it to point to the "AddTrust External CA Root" certificate
  • Right-click on the networkmanager applet -> Edit connections -> Wireless
    • Select the desired network and click on Edit.
    • See the settings for each network below

ru-wlan

  • Wireless
    • SSID: ru-wlan
    • Mode: Infrastructure
    • BSSID: <empty>
    • MAC address: <empty>
    • MTU: automatic
  • Wireless Security
    • Security: WPA & WPA2 Enterprise
    • Authentication: Tunneled TLS
    • Anonymous identity: <empty>
    • CA certificate: <either empty or pointing to the AddTrust External Root CA.pem>
    • Inner authentication: MSCHAPv2
    • Username: sXXXXXXX
    • Password: <kiss password>
  • IPv4 Settings
    • Method: Automatic (DHCP)
    • (optional) Require IPv4 addressing for this connection to complete
  • IPv6 Settings
    • Method: Ignore

Eduroam

Note: these settings probably only work on the RU campus

  • Wireless
    • SSID: eduroam
    • Mode: Infrastructure
    • BSSID: <empty>
    • MAC address: <empty>
    • MTU: automatic
  • Wireless Security
    • Security: WPA & WPA2 Enterprise
    • Authentication: Tunneled TLS
    • Anonymous identity: <empty>
    • CA certificate: <either empty or pointing to the AddTrust External Root CA.pem>
    • Inner authentication: MSCHAPv2
    • Username: sXXXXXXX
    • Password: <kiss password>
  • IPv4 Settings
    • Method: Automatic (DHCP)
    • (optional) Require IPv4 addressing for this connection to complete
  • IPv6 Settings
    • Method: Ignore

Science

  • Wireless
    • SSID: Science
    • Mode: Infrastructure
    • BSSID: <empty>
    • MAC address: <empty>
    • MTU: automatic
  • Wireless Security
    • Security: WPA & WPA2 Enterprise
    • Authentication: Tunneled TLS
    • Anonymous identity: <empty>
    • CA certificate: <either empty or pointing to the AddTrust External Root CA.pem>
    • Inner authentication: MSCHAPv2
    • Username: <science login name>
    • Password: <science login password>
  • IPv4 Settings
    • Method: Automatic (DHCP)
    • (optional) Require IPv4 addressing for this connection to complete
  • IPv6 Settings
    • Method: Ignore

N95-8GB

Eduroam

When on RU campus, not tested on another campus

  • WLAN networkname: eduroam
  • WLAN network mode: Infrastructure
  • WLAN security mode: 802.1x
  • WLAN security settings
    • WPA/WPA2: EAP
    • EAP plug-in settings
      • 1 EAP-TTLS (others disabled, and lower priority)
      • EAP-TTLS/Settings
        • Personal certificate: None defined
        • Authority certificate: AddTrust External CA Root (Overleg_gebruiker:Gmulder/AddTrustCert)
        • User name in use:User defined
        • User name: sXXXXXXX
        • Realm in use:User defined
        • Realm: <empty>
      • EAP-TTLS/EAPs
        • 1 EAP-MSCHAPv2 (others disabled and lower priority)
          • EAP-MSCHAPv2
          • User name:sXXXXXXX
          • Prompt password:No (if desired: yes)
          • Password:KISS password

ru-wlan

  • WLAN networkname: ru-wlan
  • WLAN network mode: Infrastructure
  • WLAN security mode: 802.1x
  • WLAN security settings
    • WPA/WPA2: EAP
    • EAP plug-in settings
      • 1 EAP-TTLS (others disabled, and lower priority)
      • EAP-TTLS/Settings
        • Personal certificate: None defined
        • Authority certificate: AddTrust External CA Root (Overleg_gebruiker:Gmulder/AddTrustCert)
        • User name in use:User defined
        • User name: sXXXXXXX
        • Realm in use:User defined
        • Realm: <empty>
      • EAP-TTLS/EAPs
        • 1 EAP-MSCHAPv2 (others disabled and lower priority)
          • EAP-MSCHAPv2
          • User name:sXXXXXXX
          • Prompt password:No (if desired: yes)
          • Password:KISS password