Overleg gebruiker:Gmulder

From Cncz
Revision as of 13:26, 24 September 2010 by Gmulder (talk | contribs)
Jump to: navigation, search

wpa_supplicant.conf

network={
	ssid="ru-wlan"
	key_mgmt=WPA-EAP
	eap=TTLS
	phase2="auth=MSCHAPV2"
	ca_cert="/etc/ssl/certs/AddTrust_External_Root.pem"
	identity="sXXXXXXX"
	scan_ssid=1
	password="<kisspassword>"
}

network={
	ssid="Science"
	key_mgmt=WPA-EAP
	eap=TTLS
	phase2="auth=MSCHAPV2"
	ca_cert="/etc/ssl/certs/AddTrust_External_Root.pem"
	identity="<sciencelogin>"
	scan_ssid=1
	password="<sciencepassword>"
}

### NOTE: This only works on the RU campus
###       Others not tested, perhaps it needs @ru.nl
###       or @student.ru.nl on other networks
network={
	ssid="eduroam"
	key_mgmt=WPA-EAP
	eap=TTLS
	phase2="auth=MSCHAPV2"
	ca_cert="/etc/ssl/certs/AddTrust_External_Root.pem"
	identity="sXXXXXXX"
	scan_ssid=1
	password="<kisspassword>"
}

NetworkManager

There are 2 methods (perhaps more) to configure wireless networks on the campus

  • Left-click on the networkmanager applet and select {ru-wlan,eduroam,Science}
    • 99% of the time, the correct settings are already filled in, the only things you have to fill in are
    • Username (for {ru-wlan,eduroam} sXXXXXXX or your science login for the Science network)
    • Password (corresponding password, either the KISS password or the science login password)
    • You may ignore the certificate setting (and warning afterwards), or set it to point to the "AddTrust External CA Root" certificate
  • Right-click on the networkmanager applet -> Edit connections -> Wireless
    • Select the desired network and click on Edit.
    • See the settings for each network below

ru-wlan

  • Wireless
    • SSID: ru-wlan
    • Mode: Infrastructure
    • BSSID: <empty>
    • MAC address: <empty>
    • MTU: automatic
  • Wireless Security
    • Security: WPA & WPA2 Enterprise
    • Authentication: Tunneled TLS
    • Anonymous identity: <empty>
    • CA certificate: <either empty or pointing to the AddTrust External Root CA.pem>
    • Inner authentication: MSCHAPv2
    • Username: sXXXXXXX
    • Password: <kiss password>
  • IPv4 Settings
    • Method: Automatic (DHCP)
    • (optional) Require IPv4 addressing for this connection to complete
  • IPv6 Settings
    • Method: Ignore

Eduroam

Note: these settings probably only work on the RU campus

  • Wireless
    • SSID: eduroam
    • Mode: Infrastructure
    • BSSID: <empty>
    • MAC address: <empty>
    • MTU: automatic
  • Wireless Security
    • Security: WPA & WPA2 Enterprise
    • Authentication: Tunneled TLS
    • Anonymous identity: <empty>
    • CA certificate: <either empty or pointing to the AddTrust External Root CA.pem>
    • Inner authentication: MSCHAPv2
    • Username: sXXXXXXX
    • Password: <kiss password>
  • IPv4 Settings
    • Method: Automatic (DHCP)
    • (optional) Require IPv4 addressing for this connection to complete
  • IPv6 Settings
    • Method: Ignore

Science

  • Wireless
    • SSID: Science
    • Mode: Infrastructure
    • BSSID: <empty>
    • MAC address: <empty>
    • MTU: automatic
  • Wireless Security
    • Security: WPA & WPA2 Enterprise
    • Authentication: Tunneled TLS
    • Anonymous identity: <empty>
    • CA certificate: <either empty or pointing to the AddTrust External Root CA.pem>
    • Inner authentication: MSCHAPv2
    • Username: <science login name>
    • Password: <science login password>
  • IPv4 Settings
    • Method: Automatic (DHCP)
    • (optional) Require IPv4 addressing for this connection to complete
  • IPv6 Settings
    • Method: Ignore

N95-8GB

Eduroam

When on RU campus, not tested on another campus

  • WLAN networkname: eduroam
  • WLAN network mode: Infrastructure
  • WLAN security mode: 802.1x
  • WLAN security settings
    • WPA/WPA2: EAP
    • EAP plug-in settings
      • 1 EAP-TTLS (others disabled, and lower priority)
      • EAP-TTLS/Settings
        • Personal certificate: None defined
        • Authority certificate: AddTrust External CA Root (Overleg_gebruiker:Gmulder/AddTrustCert)
        • User name in use:User defined
        • User name: sXXXXXXX
        • Realm in use:User defined
        • Realm: <empty>
      • EAP-TTLS/EAPs
        • 1 EAP-MSCHAPv2 (others disabled and lower priority)
          • EAP-MSCHAPv2
          • User name:sXXXXXXX
          • Prompt password:No (if desired: yes)
          • Password:KISS password

ru-wlan

  • WLAN networkname: ru-wlan
  • WLAN network mode: Infrastructure
  • WLAN security mode: 802.1x
  • WLAN security settings
    • WPA/WPA2: EAP
    • EAP plug-in settings
      • 1 EAP-TTLS (others disabled, and lower priority)
      • EAP-TTLS/Settings
        • Personal certificate: None defined
        • Authority certificate: AddTrust External CA Root (Overleg_gebruiker:Gmulder/AddTrustCert)
        • User name in use:User defined
        • User name: sXXXXXXX
        • Realm in use:User defined
        • Realm: <empty>
      • EAP-TTLS/EAPs
        • 1 EAP-MSCHAPv2 (others disabled and lower priority)
          • EAP-MSCHAPv2
          • User name:sXXXXXXX
          • Prompt password:No (if desired: yes)
          • Password:KISS password