Generic settings for eduroam secure WiFi access

The generic settings below will allow you to configure a WiFi device to connect to eduroam.

Not all the configuration settings will be available on all devices.

eduroam configuration settings

Network name (SSID)

The network name for the secure WiFi network is eduroam. This must be all lowercase.

WiFi authentication and encryption

The WiFi Network Authentication type is WPA2 Enterprise.

The Data Encryption method to use is AES.

If your WiFi device does not support WPA2/AES, select WPA authentication and TKIP encryption.

User authentication

The "EAP Authentication Type" or "Outer Authentication Protocol" is PEAP or PEAPv0.

The "Authentication Method", "Authentication Protocol" or "Inner Authentication Protocol" is MS-CHAPv2.

Your username is your UUN plus @ed.ac.uk, e.g. "s10987654@ed.ac.uk".

Your password should be the password you use to access Office 365. If not, please set eduroam password to Office 365.

If asked for an "Outer Identity", "Anonymous Identity" or "Roaming Identity", leave it blank.

If asked for a realm, leave it blank.

Server authentication

You must choose to Validate the Server Certificate.

The certificate details must match:

  1. Issued by DigiCert
  2. Server/Common name radius01.is.ed.ac.uk
  3. Certificate thumbprints should match:
    1. SHA-256 DF 94 3B F2 A8 A2 50 B8 5A 89 B0 1F C7 86 41 0B F2 D9 1E F3 B5 98 F5 F8 06 48 9D 4F D2 11 FC CB
    2. SHA-1 4A 31 76 B9 08 EC 1A DE 05 5D 01 A5 E1 EA F6 93 6E FF 90 9E

Although you may be able to connect to the eduroam WiFi network without validating the server certificate, your connection will not be secure. You must ensure server certificate validation is enabled.

Troubleshooting connection issues

I can't connect to eduroam

Need any further help?