Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...


Service Provider settings

OpenRoaming VNPs

eduroam IdPs will often (but not necessarily) configure their user devices to react to the OpenRoaming baseline RCOI:

5A-03-BA-00-00 (a.k.a. "OpenRoaming for All Identities, settlement-free, no personal data requested, baseline QoS) - usage of the hotspot is governed by the OpenRoaming End-User Terms and Conditions

OpenRoaming Visited Network Providers who want to signal that they specifically welcome eduroam visitors (which is configured by eduroam IdPs more often) should add the following RCOIs:

5A-03-BA-80-00 (a.k.a. "OpenRoaming for Educational or Research Identities, settlement-free, no personal data requested, baseline QoS) - usage of the hotspot is governed by the OpenRoaming End-User Terms and Conditions

00-1B-C5-04-60 (eduroam's own RCOI) - usage of the hotspot is governed by the eduroam Terms and Conditions

Third-party SPs

Third parties should use the eduroam Roaming Consortium Organisation Identifier (RCOI)

001bc5046000-1B-C5-04-60 [configured in end-user device to be displayed as: "eduroam® Hitchhiker" (name provisional)]

...

b) get a roaming certificate for usage with RADIUS/TLS and Dynamic Server Discovery (e.g. from OpenRoaming or from eduroam Operations directly) and look up DNS NAPTR records for the realm in question; the NAPTR labels being "x-eduroam:radius.tls" (if you have a RADIUS/TLS server certificate from eduroam) or "aaa+auth:radius.tls" (if you have any other server certificate, e.g. an OpenRoaming one). Connections should be attempted to all servers resulting from the respective DNS responses.

...

There are currently no plans to move away from using the SSID "eduroam" as the single user-facing identifier for hotspots operated directly by an eduroam participating organisation. If this ever changes, the Roaming Consortium Organisation Identifier

001bc5046f00-1B-C5-04-6F [configured in end-user device to be displayed as: "eduroam®"]

...

In general, the Passpoint configuration configures two eduroam RCOIs:

001bc5046000-1B-C5-04-60 [Display Name "eduroam® Hitchhiker" (name provisional)]
001bc5046f00-1B-C5-04-6F [Display Name "eduroam®"]

The latter one is reserved for a distance-future use, in case eduroam would go fully Passpoint and give up on SSID-based configurations throughout all SPs world-wide. The RCOI would then signify eduroam self-operated hotspots with this "home" display name.

To allow your users to connect also to OpenRoaming hotspots (under the OpenRoaming End-User Terms and Conditions), firstly make sure that your users acknowledge the OpenRoaming End-User Terms and Conditions. Then configure the following two RCOIs additionally:

5A-03-BA-00-00 (a.k.a. "OpenRoaming for All Identities, settlement-free, no personal data requested, baseline QoS) - usage of the hotspot is governed by the OpenRoaming End-User Terms and Conditions

5A-03-BA-80-00 (a.k.a. "OpenRoaming for Educational or Research Identities, settlement-free, no personal data requested, baseline QoS) - usage of the hotspot is governed by the OpenRoaming End-User Terms and Conditions


Windows before 10

These platforms are not configured for Passpoint.

...