Configure EAP-TLS on devices - Admin Guide | RADIUS

Configure EAP-TLS on devices

For Linux

  1. Click  Settings icon on your device.
  2. Go to the Wi-Fi tab, and select the network's settings icon.
  3. Go to the Security tab.
  4. Select TLS under Authentication field.
  5. Upload the server CA public key certificate under CA certificate field.
  6. Upload the device user's certificate under User certificate field.
  7. Upload the device user's private key under Private key field.
  8. Click Apply to save the configuration.

For Windows

Make sure to configure all the additional steps before you proceed to upload user certificates and private keys. Learn more about additional steps required for Windows
  1. Open Control Panel and click Network and Internet.
  2. Go to Network and Sharing Center, and click Set up a new connection or network under Change your network settings.
  3. Select Manually connect to a wireless network, and click Next.
  4. Enter a name for the network and set Security type to WPA2-Enterprise, and click Next.
  5. Once the network is successfully added, click Change connection settings on the pop-up.
  6. Go to the Security tab.
  7. Select Microsoft: Smart Card or other certificates under Choose a network authentication method.
  8. Click Settings next to authentication method and enable the following:
    1. Use a certificate on this computer.
    2. Use simple certificate selection.
  9. Select Verify the server's identity by validating the certificate and choose the installed Server CA certificate.
  10. Click Advanced, and select the installed Client CA certificate as the certificate issuer.
  11. Click OK.

For macOS

Make sure to configure all the additional steps before you proceed to upload user certificates and private keys. Learn more about additional steps required for macOS
  1. Go to Settings icon in your device.
  2. Click Wi-Fi from the left menu.
  3. Hover over the Wi-Fi network and click Connect.
  4. Select the user certificate in the Identity field.
  5. Click OK.