<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
		<id>https://wiki.sha2017.org/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Entropy</id>
		<title>SHA2017 Wiki - User contributions [en]</title>
		<link rel="self" type="application/atom+xml" href="https://wiki.sha2017.org/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Entropy"/>
		<link rel="alternate" type="text/html" href="https://wiki.sha2017.org/w/Special:Contributions/Entropy"/>
		<updated>2026-04-22T12:10:33Z</updated>
		<subtitle>User contributions</subtitle>
		<generator>MediaWiki 1.27.3</generator>

	<entry>
		<id>https://wiki.sha2017.org/index.php?title=Network/802.1X_client_settings&amp;diff=10228</id>
		<title>Network/802.1X client settings</title>
		<link rel="alternate" type="text/html" href="https://wiki.sha2017.org/index.php?title=Network/802.1X_client_settings&amp;diff=10228"/>
				<updated>2017-08-03T19:51:18Z</updated>
		
		<summary type="html">&lt;p&gt;Entropy: /* wpa_supplicant.conf */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== Android ==&lt;br /&gt;
You can use our Android App to configure the correct WiFi settings on your Android device. Download it here:&lt;br /&gt;
&lt;br /&gt;
* TODO&lt;br /&gt;
&amp;lt;!--&lt;br /&gt;
* From Google Playstore: [https://play.google.com/store/apps/details?id=nl.eventinfra.wifisetup]&lt;br /&gt;
!--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Network Manager ==&lt;br /&gt;
&lt;br /&gt;
You can use the following config file:&lt;br /&gt;
&lt;br /&gt;
Please note that some versions of NM are buggy and will only work with&lt;br /&gt;
802.1X using MSCHAPv2, or not at all.&lt;br /&gt;
If that affects you, it may be easiest to use wpa_supplicant.&lt;br /&gt;
&lt;br /&gt;
'''/etc/NetworkManager/system-connections/SHA2017''':&lt;br /&gt;
&lt;br /&gt;
 [connection]&lt;br /&gt;
 id=SHA2017&lt;br /&gt;
 uuid=c80101e2-7b99-4511-846b-2388eb86a5ad&lt;br /&gt;
 type=wifi&lt;br /&gt;
 permissions=&lt;br /&gt;
 secondaries=&lt;br /&gt;
 &lt;br /&gt;
 [wifi]&lt;br /&gt;
 mac-address=42:23:42:23:42:23 &amp;lt;- !! Please change this !!&lt;br /&gt;
 mac-address-blacklist=&lt;br /&gt;
 mode=infrastructure&lt;br /&gt;
 seen-bssids=&lt;br /&gt;
 ssid=SHA2017&lt;br /&gt;
 &lt;br /&gt;
 [wifi-security]&lt;br /&gt;
 auth-alg=open&lt;br /&gt;
 group=&lt;br /&gt;
 key-mgmt=wpa-eap&lt;br /&gt;
 pairwise=&lt;br /&gt;
 proto=&lt;br /&gt;
 &lt;br /&gt;
 [802-1x]&lt;br /&gt;
 altsubject-matches=DNS:radius.sha2017.org&lt;br /&gt;
 ca-cert=/etc/ssl/certs/DST_Root_CA_X3.pem&lt;br /&gt;
 eap=ttls;&lt;br /&gt;
 identity=SHA2017&lt;br /&gt;
 password=SHA2017&lt;br /&gt;
 phase2-altsubject-matches=&lt;br /&gt;
 phase2-auth=pap&lt;br /&gt;
 &lt;br /&gt;
 [ipv4]&lt;br /&gt;
 dns-search=&lt;br /&gt;
 method=auto&lt;br /&gt;
 &lt;br /&gt;
 [ipv6]&lt;br /&gt;
 dns-search=&lt;br /&gt;
 method=auto&lt;br /&gt;
&lt;br /&gt;
== WICD ==&lt;br /&gt;
You need an additional crypto setting for WiCD. Put this file into '''/etc/wicd/encryption/templates/eap-ttls''' (debian systems, might be different with other *nix flavours):&lt;br /&gt;
&lt;br /&gt;
  name = EAP-TTLS SHA2017&lt;br /&gt;
  author = Felicitus&lt;br /&gt;
  require identity *Identity password *password&lt;br /&gt;
  -----&lt;br /&gt;
  ctrl_interface=/var/run/wpa_supplicant&lt;br /&gt;
  network={&lt;br /&gt;
   ssid=&amp;quot;SHA2017&amp;quot;&lt;br /&gt;
   scan_ssid=$_SCAN&lt;br /&gt;
   identity=&amp;quot;edward&amp;quot;&lt;br /&gt;
   password=&amp;quot;snowden&amp;quot;&lt;br /&gt;
   proto=WPA2&lt;br /&gt;
   key_mgmt=WPA-EAP&lt;br /&gt;
   group=CCMP&lt;br /&gt;
   pairwise=CCMP&lt;br /&gt;
   eap=TTLS&lt;br /&gt;
   ca_cert=&amp;quot;/etc/ssl/certs/DST_Root_CA_X3.pem&amp;quot;&lt;br /&gt;
   altsubject_match=&amp;quot;DNS:radius.sha2017.org&amp;quot;&lt;br /&gt;
   anonymous_identity=&amp;quot;$_ANONYMOUS_IDENTITY&amp;quot;&lt;br /&gt;
   phase2=&amp;quot;auth=PAP&amp;quot;&lt;br /&gt;
   #priority=2&lt;br /&gt;
  }&lt;br /&gt;
&lt;br /&gt;
Edit '''/etc/wicd/encryption/templates/active''' to include the '''eap-ttls''' config template. Restart the WiCD daemon, choose the proper encryption (EAP-TTLS SHA2017) and enter a random username/password.&lt;br /&gt;
&lt;br /&gt;
== Jolla/connman ==&lt;br /&gt;
/var/lib/connman/SHA2017wifi.config :&lt;br /&gt;
&lt;br /&gt;
  [service_SHA2017]&lt;br /&gt;
  Type=wifi&lt;br /&gt;
  Name=SHA2017-legacy&lt;br /&gt;
  EAP=ttls&lt;br /&gt;
  Phase2=PAP&lt;br /&gt;
  Identity=edward&lt;br /&gt;
  Passphrase=snowden&lt;br /&gt;
&lt;br /&gt;
== wpa_supplicant.conf ==&lt;br /&gt;
/etc/wpa_supplicant/wpa_supplicant.conf :&lt;br /&gt;
&lt;br /&gt;
  network={&lt;br /&gt;
  	ssid=&amp;quot;SHA2017&amp;quot;&lt;br /&gt;
  	key_mgmt=WPA-EAP&lt;br /&gt;
  	eap=TTLS&lt;br /&gt;
  	identity=&amp;quot;edward&amp;quot;&lt;br /&gt;
  	password=&amp;quot;snowden&amp;quot;&lt;br /&gt;
  	# ca path on debian 7.x, modify accordingly&lt;br /&gt;
  	ca_cert=&amp;quot;/etc/ssl/certs/DST_Root_CA_X3.pem&amp;quot;&lt;br /&gt;
  	# ca path on FreeBSD (install ca_root-nss package)&lt;br /&gt;
  	#/usr/local/share/certs/ca-root-nss.crt&lt;br /&gt;
  	altsubject_match=&amp;quot;DNS:radius.sha2017.org&amp;quot;&lt;br /&gt;
  	phase2=&amp;quot;auth=PAP&amp;quot;&lt;br /&gt;
  }&lt;br /&gt;
&lt;br /&gt;
== interfaces ==&lt;br /&gt;
As an alternative, you can specify the wpa_supplicant config options directly in /etc/network/interfaces:&lt;br /&gt;
&lt;br /&gt;
  iface wlan0 inet dhcp&lt;br /&gt;
  	wpa-ssid SHA2017&lt;br /&gt;
  	wpa-identity edward&lt;br /&gt;
  	wpa-password snowden&lt;br /&gt;
  	wpa-proto WPA2&lt;br /&gt;
  	wpa-key_mgmt WPA-EAP&lt;br /&gt;
  	wpa-group CCMP&lt;br /&gt;
  	wpa-pairwise CCMP&lt;br /&gt;
  	wpa-eap TTLS&lt;br /&gt;
  	wpa-phase2 &amp;quot;auth=PAP&amp;quot;&lt;br /&gt;
  	wpa-ca_cert &amp;quot;/etc/ssl/certs/DST_Root_CA_X3.pem&amp;quot;&lt;br /&gt;
  	wpa-altsubject_match DNS:radius.sha2017.org&lt;br /&gt;
&lt;br /&gt;
== netctl ==&lt;br /&gt;
 Description='SHA2017 secure WPA2 802.1X config'&lt;br /&gt;
 Interface=wls1&lt;br /&gt;
 Connection=wireless&lt;br /&gt;
 Security=wpa-configsection&lt;br /&gt;
 IP=dhcp&lt;br /&gt;
 ESSID=SHA2017&lt;br /&gt;
 WPAConfigSection=(&lt;br /&gt;
     'ssid=&amp;quot;SHA2017&amp;quot;'&lt;br /&gt;
     'proto=RSN WPA'&lt;br /&gt;
     'key_mgmt=WPA-EAP'&lt;br /&gt;
     'eap=TTLS'&lt;br /&gt;
     'identity=&amp;quot;edward&amp;quot;'&lt;br /&gt;
     'password=&amp;quot;snowden&amp;quot;'&lt;br /&gt;
     'ca_cert=&amp;quot;/etc/ssl/certs/DST_Root_CA_X3.pem&amp;quot;'&lt;br /&gt;
     'altsubject_match=&amp;quot;DNS:radius.sha2017.org&amp;quot;'&lt;br /&gt;
     'phase2=&amp;quot;auth=PAP&amp;quot;'&lt;br /&gt;
 )&lt;br /&gt;
&lt;br /&gt;
== Apple MacOS / iOS == &lt;br /&gt;
You can use one of these profiles for the correct WiFi-settings for Apple MacOS / iOS:&lt;br /&gt;
&lt;br /&gt;
* [[https://eventinfra.org/sha2017/sha2017.mobileconfig SHA2017]] (5GHz only)&lt;br /&gt;
* [[https://eventinfra.org/sha2017/sha2017-legacy.mobileconfig SHA2017-legacy]] (2.4GHz only)&lt;br /&gt;
&lt;br /&gt;
== Windows ==&lt;br /&gt;
Import one of these profiles for the correct WiFi-settings for Windows&lt;br /&gt;
&lt;br /&gt;
* [[https://eventinfra.org/sha2017/SHA2017.xml SHA2017]] (5GHz only)&lt;br /&gt;
* [[https://eventinfra.org/sha2017/SHA2017-legacy.xml SHA2017-legacy]] (2.4GHz only)&lt;br /&gt;
&lt;br /&gt;
To import and connect follow these steps:&lt;br /&gt;
&lt;br /&gt;
# Open a command prompt and execute: netsh wlan add profile filename=SHA2017.xml&lt;br /&gt;
# Connect to the SHA2017 or SHA2017-legacy network; use &amp;quot;sha2017/sha2017&amp;quot; as the username/password when prompted.&lt;/div&gt;</summary>
		<author><name>Entropy</name></author>	</entry>

	<entry>
		<id>https://wiki.sha2017.org/index.php?title=Network/802.1X_client_settings&amp;diff=10227</id>
		<title>Network/802.1X client settings</title>
		<link rel="alternate" type="text/html" href="https://wiki.sha2017.org/index.php?title=Network/802.1X_client_settings&amp;diff=10227"/>
				<updated>2017-08-03T19:49:25Z</updated>
		
		<summary type="html">&lt;p&gt;Entropy: /* wpa_supplicant.conf */ Add ca path on FreeBSD&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== Android ==&lt;br /&gt;
You can use our Android App to configure the correct WiFi settings on your Android device. Download it here:&lt;br /&gt;
&lt;br /&gt;
* TODO&lt;br /&gt;
&amp;lt;!--&lt;br /&gt;
* From Google Playstore: [https://play.google.com/store/apps/details?id=nl.eventinfra.wifisetup]&lt;br /&gt;
!--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Network Manager ==&lt;br /&gt;
&lt;br /&gt;
You can use the following config file:&lt;br /&gt;
&lt;br /&gt;
Please note that some versions of NM are buggy and will only work with&lt;br /&gt;
802.1X using MSCHAPv2, or not at all.&lt;br /&gt;
If that affects you, it may be easiest to use wpa_supplicant.&lt;br /&gt;
&lt;br /&gt;
'''/etc/NetworkManager/system-connections/SHA2017''':&lt;br /&gt;
&lt;br /&gt;
 [connection]&lt;br /&gt;
 id=SHA2017&lt;br /&gt;
 uuid=c80101e2-7b99-4511-846b-2388eb86a5ad&lt;br /&gt;
 type=wifi&lt;br /&gt;
 permissions=&lt;br /&gt;
 secondaries=&lt;br /&gt;
 &lt;br /&gt;
 [wifi]&lt;br /&gt;
 mac-address=42:23:42:23:42:23 &amp;lt;- !! Please change this !!&lt;br /&gt;
 mac-address-blacklist=&lt;br /&gt;
 mode=infrastructure&lt;br /&gt;
 seen-bssids=&lt;br /&gt;
 ssid=SHA2017&lt;br /&gt;
 &lt;br /&gt;
 [wifi-security]&lt;br /&gt;
 auth-alg=open&lt;br /&gt;
 group=&lt;br /&gt;
 key-mgmt=wpa-eap&lt;br /&gt;
 pairwise=&lt;br /&gt;
 proto=&lt;br /&gt;
 &lt;br /&gt;
 [802-1x]&lt;br /&gt;
 altsubject-matches=DNS:radius.sha2017.org&lt;br /&gt;
 ca-cert=/etc/ssl/certs/DST_Root_CA_X3.pem&lt;br /&gt;
 eap=ttls;&lt;br /&gt;
 identity=SHA2017&lt;br /&gt;
 password=SHA2017&lt;br /&gt;
 phase2-altsubject-matches=&lt;br /&gt;
 phase2-auth=pap&lt;br /&gt;
 &lt;br /&gt;
 [ipv4]&lt;br /&gt;
 dns-search=&lt;br /&gt;
 method=auto&lt;br /&gt;
 &lt;br /&gt;
 [ipv6]&lt;br /&gt;
 dns-search=&lt;br /&gt;
 method=auto&lt;br /&gt;
&lt;br /&gt;
== WICD ==&lt;br /&gt;
You need an additional crypto setting for WiCD. Put this file into '''/etc/wicd/encryption/templates/eap-ttls''' (debian systems, might be different with other *nix flavours):&lt;br /&gt;
&lt;br /&gt;
  name = EAP-TTLS SHA2017&lt;br /&gt;
  author = Felicitus&lt;br /&gt;
  require identity *Identity password *password&lt;br /&gt;
  -----&lt;br /&gt;
  ctrl_interface=/var/run/wpa_supplicant&lt;br /&gt;
  network={&lt;br /&gt;
   ssid=&amp;quot;SHA2017&amp;quot;&lt;br /&gt;
   scan_ssid=$_SCAN&lt;br /&gt;
   identity=&amp;quot;edward&amp;quot;&lt;br /&gt;
   password=&amp;quot;snowden&amp;quot;&lt;br /&gt;
   proto=WPA2&lt;br /&gt;
   key_mgmt=WPA-EAP&lt;br /&gt;
   group=CCMP&lt;br /&gt;
   pairwise=CCMP&lt;br /&gt;
   eap=TTLS&lt;br /&gt;
   ca_cert=&amp;quot;/etc/ssl/certs/DST_Root_CA_X3.pem&amp;quot;&lt;br /&gt;
   altsubject_match=&amp;quot;DNS:radius.sha2017.org&amp;quot;&lt;br /&gt;
   anonymous_identity=&amp;quot;$_ANONYMOUS_IDENTITY&amp;quot;&lt;br /&gt;
   phase2=&amp;quot;auth=PAP&amp;quot;&lt;br /&gt;
   #priority=2&lt;br /&gt;
  }&lt;br /&gt;
&lt;br /&gt;
Edit '''/etc/wicd/encryption/templates/active''' to include the '''eap-ttls''' config template. Restart the WiCD daemon, choose the proper encryption (EAP-TTLS SHA2017) and enter a random username/password.&lt;br /&gt;
&lt;br /&gt;
== Jolla/connman ==&lt;br /&gt;
/var/lib/connman/SHA2017wifi.config :&lt;br /&gt;
&lt;br /&gt;
  [service_SHA2017]&lt;br /&gt;
  Type=wifi&lt;br /&gt;
  Name=SHA2017-legacy&lt;br /&gt;
  EAP=ttls&lt;br /&gt;
  Phase2=PAP&lt;br /&gt;
  Identity=edward&lt;br /&gt;
  Passphrase=snowden&lt;br /&gt;
&lt;br /&gt;
== wpa_supplicant.conf ==&lt;br /&gt;
/etc/wpa_supplicant/wpa_supplicant.conf :&lt;br /&gt;
&lt;br /&gt;
  network={&lt;br /&gt;
  	ssid=&amp;quot;SHA2017&amp;quot;&lt;br /&gt;
  	key_mgmt=WPA-EAP&lt;br /&gt;
  	eap=TTLS&lt;br /&gt;
  	identity=&amp;quot;edward&amp;quot;&lt;br /&gt;
  	password=&amp;quot;snowden&amp;quot;&lt;br /&gt;
  	# ca path on debian 7.x, modify accordingly&lt;br /&gt;
  	ca_cert=&amp;quot;/etc/ssl/certs/DST_Root_CA_X3.pem&amp;quot;&lt;br /&gt;
        # ca path on FreeBSD (install ca_root-nss package)&lt;br /&gt;
        #/usr/local/share/certs/ca-root-nss.crt&lt;br /&gt;
  	altsubject_match=&amp;quot;DNS:radius.sha2017.org&amp;quot;&lt;br /&gt;
  	phase2=&amp;quot;auth=PAP&amp;quot;&lt;br /&gt;
  }&lt;br /&gt;
&lt;br /&gt;
== interfaces ==&lt;br /&gt;
As an alternative, you can specify the wpa_supplicant config options directly in /etc/network/interfaces:&lt;br /&gt;
&lt;br /&gt;
  iface wlan0 inet dhcp&lt;br /&gt;
  	wpa-ssid SHA2017&lt;br /&gt;
  	wpa-identity edward&lt;br /&gt;
  	wpa-password snowden&lt;br /&gt;
  	wpa-proto WPA2&lt;br /&gt;
  	wpa-key_mgmt WPA-EAP&lt;br /&gt;
  	wpa-group CCMP&lt;br /&gt;
  	wpa-pairwise CCMP&lt;br /&gt;
  	wpa-eap TTLS&lt;br /&gt;
  	wpa-phase2 &amp;quot;auth=PAP&amp;quot;&lt;br /&gt;
  	wpa-ca_cert &amp;quot;/etc/ssl/certs/DST_Root_CA_X3.pem&amp;quot;&lt;br /&gt;
  	wpa-altsubject_match DNS:radius.sha2017.org&lt;br /&gt;
&lt;br /&gt;
== netctl ==&lt;br /&gt;
 Description='SHA2017 secure WPA2 802.1X config'&lt;br /&gt;
 Interface=wls1&lt;br /&gt;
 Connection=wireless&lt;br /&gt;
 Security=wpa-configsection&lt;br /&gt;
 IP=dhcp&lt;br /&gt;
 ESSID=SHA2017&lt;br /&gt;
 WPAConfigSection=(&lt;br /&gt;
     'ssid=&amp;quot;SHA2017&amp;quot;'&lt;br /&gt;
     'proto=RSN WPA'&lt;br /&gt;
     'key_mgmt=WPA-EAP'&lt;br /&gt;
     'eap=TTLS'&lt;br /&gt;
     'identity=&amp;quot;edward&amp;quot;'&lt;br /&gt;
     'password=&amp;quot;snowden&amp;quot;'&lt;br /&gt;
     'ca_cert=&amp;quot;/etc/ssl/certs/DST_Root_CA_X3.pem&amp;quot;'&lt;br /&gt;
     'altsubject_match=&amp;quot;DNS:radius.sha2017.org&amp;quot;'&lt;br /&gt;
     'phase2=&amp;quot;auth=PAP&amp;quot;'&lt;br /&gt;
 )&lt;br /&gt;
&lt;br /&gt;
== Apple MacOS / iOS == &lt;br /&gt;
You can use one of these profiles for the correct WiFi-settings for Apple MacOS / iOS:&lt;br /&gt;
&lt;br /&gt;
* [[https://eventinfra.org/sha2017/sha2017.mobileconfig SHA2017]] (5GHz only)&lt;br /&gt;
* [[https://eventinfra.org/sha2017/sha2017-legacy.mobileconfig SHA2017-legacy]] (2.4GHz only)&lt;br /&gt;
&lt;br /&gt;
== Windows ==&lt;br /&gt;
Import one of these profiles for the correct WiFi-settings for Windows&lt;br /&gt;
&lt;br /&gt;
* [[https://eventinfra.org/sha2017/SHA2017.xml SHA2017]] (5GHz only)&lt;br /&gt;
* [[https://eventinfra.org/sha2017/SHA2017-legacy.xml SHA2017-legacy]] (2.4GHz only)&lt;br /&gt;
&lt;br /&gt;
To import and connect follow these steps:&lt;br /&gt;
&lt;br /&gt;
# Open a command prompt and execute: netsh wlan add profile filename=SHA2017.xml&lt;br /&gt;
# Connect to the SHA2017 or SHA2017-legacy network; use &amp;quot;sha2017/sha2017&amp;quot; as the username/password when prompted.&lt;/div&gt;</summary>
		<author><name>Entropy</name></author>	</entry>

	<entry>
		<id>https://wiki.sha2017.org/index.php?title=User:Entropy&amp;diff=3067</id>
		<title>User:Entropy</title>
		<link rel="alternate" type="text/html" href="https://wiki.sha2017.org/index.php?title=User:Entropy&amp;diff=3067"/>
				<updated>2017-05-30T03:58:42Z</updated>
		
		<summary type="html">&lt;p&gt;Entropy: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{User&lt;br /&gt;
|Name=Entropy&lt;br /&gt;
|DECT=5132 (tbc)&lt;br /&gt;
|Village=Global&lt;br /&gt;
|Arrival=2017/08/03&lt;br /&gt;
|Departure=2017/08/09&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Entropy</name></author>	</entry>

	<entry>
		<id>https://wiki.sha2017.org/index.php?title=User:Entropy&amp;diff=3066</id>
		<title>User:Entropy</title>
		<link rel="alternate" type="text/html" href="https://wiki.sha2017.org/index.php?title=User:Entropy&amp;diff=3066"/>
				<updated>2017-05-30T03:56:48Z</updated>
		
		<summary type="html">&lt;p&gt;Entropy: Created page with &amp;quot;{| class=&amp;quot;wikitable&amp;quot; |- ! Key !! Value |- | Location || East |- | DECT || 5123 (tbc) |- | Arriving || 2017-08-03 |- | Departing || 2017-08-09 |}&amp;quot;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Key !! Value&lt;br /&gt;
|-&lt;br /&gt;
| Location || East&lt;br /&gt;
|-&lt;br /&gt;
| DECT || 5123 (tbc)&lt;br /&gt;
|-&lt;br /&gt;
| Arriving || 2017-08-03&lt;br /&gt;
|-&lt;br /&gt;
| Departing || 2017-08-09&lt;br /&gt;
|}&lt;/div&gt;</summary>
		<author><name>Entropy</name></author>	</entry>

	</feed>