Successful deployments of 802.1X (as used in eduroam) mean that large numbers of clients will be using RADIUS authentication methods to get online. Whilst eduroam is just the proxying of RADIUS packets, the system fails if the local authentication service cannot handle the requests sent to it in time (e.g. slow backend authenticator). So this article is a place where RADIUS admins can post tweaks and performance enhancement tips for their chosen platforms. If any sections are blank then that is due to no feedback from the community (crowd sourced document)
Jisc provides Home and Visited eduroam service types at Lumen House.
Information for Visitors
Wi-Fi network name: eduroam
Security type: WPA2
Encryption: AES
Coverage: eduroam is available throughout the building. eduroam is also available at other locations on the Oxford Harwell campus provided through STFC.
Scope
It is intended that this document acts as a shared area for reporting experiences during the broadening of the proof of concept trial following Networkshop 42 (March 31 2014). It is editable by all members of the group. Feedback will be used by Scott and Alan to further develop the system ready for the intended integration into the national service.
Current Status of Probe Development
The status of development work is:
Introduction
The SP Assurance Tool is the latest test/monitoring module to be added to the eduroam(UK) Support System. The key benefit of the tool for the sys admin at the participating organisation is the facility to test compliance with the Technical Specification of the Wi-Fi and eduroam Visitor network served by the nearest AP to the device.
A few years experience has led to certain wireless options being set on our Cisco Wireless Controllers due to different reasons. Here is a summary of what we have set at the University of Leicester, and why we set them. They are generally valid for other wireless systems as well. Of course, there are likely things we've got wrong or missed out, so feedback is welcome.
Dr Alan Buxey's 2012 FreeRADIUS Demystified seminar presentation
Contents:
I've spent a fair bit of time over the past month trying to improve the reliability of our RADIUS service for eduroam. Previously it was entirely based on Microsoft NPS which has the tendency to silently discard authentication packets which it should really be rejecting. This creates a problem because if the authentication request originated from outside of your network (i.e.
Please click on link to download pdf
We are delighted to announce new dates for the eduroam training course.
eduroam Fundamentals - 2 May 2013
This course provides delegates with an understanding of how eduroamUK operates at both basic technical and support levels. This includes an overview of how to configure user equipment and solve some of the issues those users might face. The course also covers the configuration of wireless and wired clients for use on the eduroamUK Service, details of the logfile examination and methods of fault finding and reporting.
