Connecting
You connect with the account from your home institution. No guest account is issued at the site you visit.
Check your home institution's page first.
The realm, the certificate values and the covered buildings differ per institution.
Find it in the institution list
Connection settings
| Network name (SSID) | eduroam |
|---|---|
| Security | WPA2/WPA3 Enterprise |
| EAP method | PEAP or TTLS (varies by institution) |
| Username | username@your-institution-domain — e.g. hong@example.ac.kr |
| Password | Your home institution Wi-Fi password |
| Anonymous identity | anonymous@your-institution-domain (only if the field exists) |
Dropping @your-institution-domain breaks the login. That part decides which institution the request is routed to.
- For Korean institutions the domain ends in
.kr. - It may or may not match your campus email address. Do not assume it is your email.
- Check your home institution's eduroam guide page for the exact value.
Install the CA certificate first
Do not connect without installing the CA certificate and checking the fingerprint.
Skipping the check can put you on a rogue access point broadcasting the same eduroam name,
and your username and password would go straight to the attacker.
The certificate file and its fingerprints are published by your home institution — not by the site you are visiting.
Per-OS setup
Windows
- Download your institution's CA certificate and double-click it. Install Certificate → Current User → Place all certificates in the following store → Trusted Root Certification Authorities.
- Pick eduroam from the Wi-Fi list.
- Enter
username@your-institution-domainand your password. - On the certificate prompt choose Show certificate details and confirm the name and fingerprint against the published values. The Windows dialog shows SHA-1.
macOS · iOS · iPadOS
- macOS: double-click the CA certificate to add it to the login keychain in Keychain Access. Open it again, expand Trust and set When using this certificate to Always Trust.
- iOS/iPadOS: download it in Safari, install the profile under Settings → General → VPN & Device Management, then enable it under Settings → General → About → Certificate Trust Settings. Missing this last step leaves it untrusted.
- Pick eduroam from the Wi-Fi list and enter your account.
- On the certificate screen confirm the name and fingerprint, then tap Trust. macOS and iOS show SHA-256.
Android
- Install the CA certificate under Settings → Security → Encryption & credentials → Install a certificate → CA certificate. Menu names differ by vendor and version.
- Pick eduroam from the Wi-Fi list.
- Choose the EAP method and phase-2 as your institution documents, set CA certificate to the one you installed, and put the published server name in the Domain field.
- Enter your account and connect. Never choose Do not validate.
Security policy
- Accounts are for the sole use of the account holder and must not be shared or transferred.
- eduroam records authentication events. Logs are kept by both your home institution and the visited one, and are used only for troubleshooting and security incident response.
- Port blocking and bandwidth limits vary. The policy of the institution you are visiting applies.
- Copyright infringement, unauthorised access, malware distribution and other unlawful activity result in immediate disconnection and notification of your home institution.