Content Hotkeys
University Computing Centre

Eduroam at the Chemnitz University of Technology

Eduroam (Education Roaming) provides Internet access at all participating institutions worldwide with one secure WLAN configuration.

Eduroam Configuration

We provide configuration instructions for your operating system here.

For the configuration you already need network connectivity to access your user account details (IdM Portal). Use either a mobile data connection or one of the further wireless networks [de], e.g. when you are on the Chemnitz campus.

  1. Download the tool for X86 systems.
  2. Run the program and, if appropriate, confirm the security warnings.
    (Windows 10 with Windows Defender SmartScreen: More infoRun anyway)
  3. In your web browser the password dialog of your user account (IdM-Portal) will be opened.
  4. Choose an existing device entry or create a new one.
  5. Enter the PIN that is shown to you in the dialog box of the configuration program.
  6. If appropriate, confirm the certificate installation (necessary only once).
  7. The connection to the eduroam wireless network will be established. You may close your web browser.

You can find illustrated instructions in our blog [de].


  • Windows service “WLAN AutoConfig” running
  • Web browser installed
  1. Download the Python script archive.
  2. Decompress the archive.
    (In console: tar -xf eduroam_TUC.tar)
  3. Run the script/configuration tool “”.
    (In console: TUC-eduroam-config/
  4. In your web browser the password dialog of your user account (IdM-Portal) will be opened.
  5. Choose an existing device entry or create a new one.
  6. Enter the PIN that is shown to you in the dialog box of the configuration tool.
  7. The configuration will be written. The connection to the eduroam wireless network may be established now.

You can find illustrated instructions in our blog [de].

Requirements to run the tool successfully:

  • WLAN controlled by NetworkManager (standard for most of the Linux distributions)
  • Python with Module python-dbus installed
  • Web browser installed

Alternative: Usage of a generated wpa_supplicant.conf

  1. Open in a web browser and go to the management of app and device passwords page.
  2. Choose an existing device entry or create a new one.
  3. The WPA supplicant configuration will be available as download option (Download configuration file for Linux (advanced)).

For Android devices the app “TUC-WLAN” cares for a correct and secure configuration of the access:

  1. Download the app from Play Store (use QR code), from F-Droid (search for “TUC-WLAN”) or directly from our website.
  2. Run the app.
  3. As long as the app recognizes errors within your device configuration, solve them please. You will get support for a lot of common errors.
  4. When all recognized errors are solved, you can start the configuration.
  5. Choose a name for your device. This name will be allocated for the device specific password which gets created by the app within the IdM Portal.
  6. Log in to the Web Trust Center with your user name and password. Subsequently, eduroam is configured automatically.
  7. The configuration details are shown on the status display.
You can find illustrated instructions in our blog [de].

for iOS from version 7 and OS X from version 10.10

  1. Open web browser (Safari, e.g.).
  2. Choose or create an app and device password of the type “WLAN” in the IdM Portal.
    • Enter
    • Click User menu
    • Click Change password
    • Click Manage app and device passwords
    A download button for the configuration profile is shown as a result (Download configuration data for iOS 7+ and MacOSX).
  3. Download this configuration profile from the IdM-Portal to your device.
  4. Install the profile.
  5. Eduroam ist configured now.
You can find illustrated instructions in our blog: for iOS [de] and for MacOS (OS X) [de].

Common Information

eduroam-Logo Like the TU Chemnitz institutions worldwide participate in eduroam. This means: If you visit another university that also supports eduroam, you can use the wireless network access there with your TU Chemnitz configuration. And likewise, guests of the TU Chemnitz can connect to our wireless network with their “home institution configuration”. Depending on the institution-specific policies extended or reduced ressources may be provided to the users.

Eduroam is an international RADIUS-based infrastructure that uses 802.1X security technology to roam users between all participating institutions.

The authentication of eduroam is secured by SSL certificates. The root certificate of the previous server certificate (“Deutsche Telekom Root CA 2”) expires on 9th July 2019. Differing from web and mail servers it is technically impossible to change the root certificate without having to re-configure all devices. (The descriptions on this web page only mention the new configuration.)

For the changeover the following schedule is relevant:

  • Beginning of December 2018: Information about the changeover to all users
  • Until end of winter term 2018/19: Step-by-step information to all users who have not yet re-configured, followed by the deactivation of the old configuration

The TU Chemnitz configuration uses app and device passwords [de] and a specific certificate chain [de] for the RADIUS server exclusively from October 2018 on. For security reasons a connection using your user acount and your URZ password is not possible. The manual configuration of a secure eduroam access is complex or even not fully possible on some devices. Therefore we provide tool support. The configuration made with our tools ensures that the initial connection will be with our RADIUS server, and only to our RADIUS server your credentials will be sent.

I own a device that is not supported by the tools provided. How can I configure eduroam access?
In Windows the WLAN configuration program aborts with the notice: “Eine sichere Verbindung zum TU-Chemnitz-IdM-Portal konnte nicht aufgebaut werden. Bitte öffnen Sie das IdM-Portal einmalig im Internet Explorer oder Edge, um die TLS-Verbindung zu prüfen!” What does it mean?
  • The secure connection to our IdM service ist not possible because Windows cannot check the Extended Validation Certificate of the IdM server yet.
  • Please open the IdM portal in the Edge or the Internet Explorer browser. Check that the address bar states “Technische Universitaet Chemnitz K.d.oe.R.”. (The root certificate gets imported into Windows' master certificate store.)
  • Then the configuration program should start without a warning!

Legal Notice: Eduroam and the eduroam logo are trademarks or registered trademarks of GÉANT.