Jump to main content
University Computing Centre

Eduroam at the Chemnitz University of Technology

Eduroam (Education Roaming) provides Internet access at all participating institutions worldwide with one secure WLAN (WiFi) configuration.

Eduroam Configuration

We provide configuration instructions for your operating system here.

For the configuration you already need network connectivity, other than eduroam, to access your user account details (IdM Portal). Use either a mobile data connection or one of the further wireless networks [de], e.g. when you are on the Chemnitz campus.

  1. Download the tool for X86 systems.
  2. Run the program (as normal Windows user) and, if appropriate, confirm the security warnings.
    (Windows 10 with Windows Defender SmartScreen: More infoRun anyway)
  3. In your web browser the password dialog of your user account (IdM-Portal) will be opened.
  4. Choose an existing device entry or create a new one.
  5. Enter the PIN that is shown to you in the dialog box of the configuration program.
  6. If appropriate, confirm the certificate installation (necessary only once).
  7. The connection to the eduroam wireless network will be established. You may close your web browser.

You can find illustrated instructions in our blog [de].


  • Windows service “WLAN AutoConfig” running
  • Web browser installed
  1. Download the Python script archive.
  2. Decompress the archive.
    (In console: tar -xf eduroam_TUC.tar)
  3. Run the script/configuration tool “”.
    (In console: TUC-eduroam-config/
  4. In your web browser the password dialog of your user account (IdM-Portal) will be opened.
  5. Choose an existing device entry or create a new one.
  6. Enter the PIN that is shown to you in the dialog box of the configuration tool.
  7. The configuration will be written. The connection to the eduroam wireless network may be established now.

You can find illustrated instructions in our blog [de].

Requirements to run the tool successfully:

  • WLAN controlled by NetworkManager (standard for most of the Linux distributions)
  • Python with Module python-dbus installed
  • Web browser installed

Alternative: Usage of a generated wpa_supplicant.conf

  1. Open in a web browser and go to the management of app and device passwords page.
  2. Choose an existing device entry or create a new one.
  3. The WPA supplicant configuration will be available as download option (Download configuration file for Linux (advanced)).

For Android devices the app “TUC-WLAN” cares for a correct and secure configuration of the access:

  1. Download the app from Play Store (use QR code), from F-Droid (search for “TUC-WLAN”) or directly from our website.
  2. Run the app.
  3. As long as the app recognizes errors within your device configuration, solve them please. You will get support for a lot of common errors.
  4. When all recognized errors are solved, you can start the configuration.
  5. Choose a name for your device. This name will be allocated for the device specific password which gets created by the app within the IdM Portal.
  6. Log in to the Web Trust Center with your user name and password. Subsequently, eduroam is configured automatically.
  7. The configuration details are shown on the status display.
You can find illustrated instructions in our blog [de].

for iOS from version 7 and OS X from version 10.10

  1. Please, open in web browser Safari on your device.
  2. Choose or create an app and device password of the type “WLAN” in the IdM Portal. Please note, in this step a configuration file is created, which has to be downloaded onto your device.
    • Create password and configuration file or renew existing password and download configuration
    • or:
      • Enter
      • Click User menu
      • Click Change password
      • Click Manage app and device passwords
      • Add App and device password or Generate new Password (Generate new Password)
      • The wifi configuration file is offered for download: Screenshot Konfigurationsdownload
    • Download this configuration profile from the IdM-Portal to your device.
    • Install the profile.
    • Eduroam ist configured now.

You can find illustrated instructions in our blog: for iOS [de] and for MacOS (OS X) [de].

Common Information

eduroam-Logo Like the TU Chemnitz institutions worldwide participate in eduroam. This means: If you visit another university that also supports eduroam, you can use the wireless network access there with your TU Chemnitz configuration. And likewise, guests of the TU Chemnitz can connect to our wireless network with their “home institution configuration”. Depending on the institution-specific policies extended or reduced ressources may be provided to the users.

Eduroam is an international RADIUS-based infrastructure that uses 802.1X security technology to roam users between all participating institutions.

The authentication of eduroam is secured by SSL certificates. The root certificate of the previous server certificate (“Deutsche Telekom Root CA 2”) expires on 9th July 2019. Differing from web and mail servers it is technically impossible to change the root certificate without having to re-configure all devices. (The descriptions on this web page only mention the new configuration.)

For the changeover the following schedule is relevant:

  • Beginning of December 2018: Information about the changeover to all users
  • Until end of winter term 2018/19: Step-by-step information to all users who have not yet re-configured, followed by the deactivation of the old configuration

The TU Chemnitz configuration uses app and device passwords [de] and a specific certificate chain [de] for the RADIUS server exclusively from October 2018 on. For security reasons a connection using your user acount and your URZ password is not possible. The manual configuration of a secure eduroam access is complex or even not fully possible on some devices. Therefore we provide tool support. The configuration made with our tools ensures that the initial connection will be with our RADIUS server, and only to our RADIUS server your credentials will be sent.

I own a device that is not supported by the tools provided. How can I configure eduroam access?
Why do I have to enable a lock screen on Android?

For secure operation of eduroam a certificate has to be installed on the device. Installing a certificate is impossible on Android without a lock screen. If your device has a fingerprint sensor, you use the fingerprint sensor to unlock the screen comfortably.

Should I use my URZ password for the lock screen on Android?

You should use a different password or PIN on your mobile device. Using the same password for different purposes is generally a bad idea.

The app cannot load

To configure your device the app has to access the IdM portal which is password protected for security reasons. You have to enter your URZ password into a web frame which is provided by Android. If the Android browser on your device is outdated, this might not work.

To fix this, please update the app “Android System WebView” and Google Chrome. Open the Play Store, search for “Android System WebView”. This app is provided by Google LLC. Install the provided updates. After that, install updates for Google Chrome.

I cannot modify or delete the existing eduroam configuration in Windows 7…

If the GUI does not allow deleting or overwriting of the WLAN configuration, the command line (cmd.exe) helps:

netsh wlan delete profile name="eduroam"
Afterwards run the eduroam configuration program.

Legal Notice: Eduroam and the eduroam logo are trademarks or registered trademarks of GÉANT.