eduroam for Windows
This page describes how to connect your Windows device to eduroam.
Following methods can be used to connect your device to eduroam (or RWTH-institutes):
- Configuration with the eduroam Configuration Assistant Tool (CAT) (strongly recommended for eduroam)
- Manual configuration (only possible method for RWTH-institutes)
Configuration with the eduroam Configuration Assistant Tool (CAT)
Please note
You will need an internet connection for this configuration. If you are currently at RWTH, you can use RWTH-guests.
Step 1
Visit the eduroam Configuration Assistant Tool (CAT) webpage on your device.
Step 2
Click on the button Click here to download your eduroam installer.
Step 3
Under "Select your Organisation", click RWTH Aachen University.
Step 4
Click the eduroam button. The "eduroam-W10-RAU.exe" file will be downloaded to your device.
Step 5
Open the file to start the installer.
Step 6
Click Yes.
Step 7
Click Next.
Step 8
Click OK.
Step 9
Click No.
Step 10
Enter your previously generated eduroam login credentials under "Username" and "Password".
Step 11
Click Install.
Step 12
Click Yes, to confirm that you want to install a root certificate which is not part of your operating system. The Radius Certificate at the RWTH is issued by the DFN-Verein Community PKI.
Step 13
Click Finish.
Your device is now configured. You can log in to eduroam.
Manual Configuration
You can use this method to connect to RWTH-institutes.
We recommend using the CAT app to configure eduroam. If this does not work, you can set up eduroam as described below. In this case, you must select eduroam instead of RWTH-institutes.
Step 1
Switch on your Wi-Fi.
Step 2
Select RWTHinstitutes (or eduroam) from the list of available networks.
Step 3
Tick the box next to "Connect automatically".
Step 4
Click Connect.
Step 5
Enter your previously generated eduroam login credentials.
Step 6
Click OK.
Please note:
If a Windows Security pop-up appears, please delete your Wi-Fi profile before proceeding.
Step 7
When connecting for the first time you need to manually verify that your credentials are sent to the correct radius server (i.e. the one at the RWTH). To do this, click on Show Certificate Details and compare the numbers displayed with the SHA1 fingerprint under Radius Certificate DFN-Verein Community PKI. It is best to establish your first connection within an RWTH building. To ensure that you are connecting to a trusted RWTH network, the data must match.
Step 8
Click Connect.
Step 9
Since the DFN-Verein Community Root Certificate is not included in operating system certificate stores, you must import it manually. This certificate was chosen because of its long validity period.
Open the General Configuration of eduroam page and click the link next to "Certificate Chain in the DFN-Verein Community PKI" in the table.
Step 10
In the table under "Download certificates of the DFN-Verein Community Chain," click on DFN-Verein Community Root CA 2022 in the "CER format" column.
Step 11
Double-click on the file.
Step 12
The "Certificate" window will open. Click Install Certificate.
Step 13
The Certificate Import Wizard opens. Select Current user as the storage location and click Next.
Step 14
Select Place all certificates in the following store and click Browse.
Step 15
Select Trusted Root Certification Authorities and click OK.
Step 16
Click Next.
Step 17
Click Finish.
Step 18
Click Yes.
Step 19
Click OK.
Step 20
Click OK. The certificate is now installed.
Optional
To check if the certificate is installed, search for "Control Panel" or "User Certificates" on the Windows taskbar. In the "Trusted Root Certification Authorities" tab, you will find DFN-Verein Community Root CA 2022.
Step 21
In the Windows taskbar, search for “Control Panel” and click on View network status and tasks under "Network and Internet".
Step 22
Click WLAN (RWTH-institutes).
Step 23
Click Wireless Properties.
Step 24
Click on the Security tab at the top of the page.
Step 25
Ensure that the following settings are displayed:
- Security type: WPA3-Enterprise
- This option is not yet supported by all RWTH-institutes networks. If the connection does not work under WPA3-Enterprise, please use WPA2-Enterprise.
- Encryption type: AES
- Network authentication method: Microsoft EAP-TTLS
Step 26
Click Settings.
Step 27
Set the following configuration settings:
- Tick the checkbox next to Enable identity privacy.
- In the field below, enter: rwth-20250612@rwth.edufi.de
- Under"Connect to these servers", enter: radius.rz.rwth-aachen.de;radius1.rz.rwth-aachen.de;radius2.rz.rwth-aachen.de;radius3.rz.rwth-aachen.de
- Under "Trusted Root Certification Authorities", tick the checkbox for "DFN-Verein Community Root CA 2022"
- Under "Client authentication", select Select an EAP method for authentication.
- From the drop-down menu below it, select Secured password (EAP-MSCHAP v2).
Step 28
Click OK.
Step 29
You are now back on the "Security" tab. Click Advanced Settings.
Step 30
Tick the checkbox next to"Specify authentication mode".
Step 31
Select User Authentication from the drop-down menu underneath.
Step 32
Click Save credentials.
Step 33
Enter your eduroam login credentials again.
Step 34
Click OK.
Step 35
You are now back to the "Security" tab. Click OK.
Step 36
Connect to RWTH-institutes/eduroam again.
Your device is now configured. You can log in to eduroam.
You may have to enter your username and password again.