- From: Paul Dekkers <paul.dekkers AT surf.nl>
- To: Yannis Naumann <naumann AT hrz.uni-marburg.de>
- Cc: geteduroam AT lists.geant.org
- Subject: Re: Win11 installer issue WPA3-Enterprise
- Date: Fri, 19 Jun 2026 18:59:20 +0200
Hi Yannis,
On 12/06/2026 09:12, "Yannis Naumann" (via geteduroam Mailing List) wrote:
Hello everyone,
We are currently experiencing some issues with the geteduroam app on Windows
11 devices. Our eduroam Wi-Fi uses WPA3-Enterprise (CCMP128). When setting up
eduroam via geteduroam.exe, the profile is added, but a connection cannot be
made because the installer chooses WPA2-Enterprise as the security type. Some
devices don't mind and still use WPA3, but more and more devices require WPA3
to be chosen specifically.
Would it make sense to set WPA3 as the default in the installer, given that
it is backwards compatible?
Thank you for your help!
That sounds odd and something we've not encountered. Funny thing is that
we do this for compatibility with both encryption standards, both in
geteduroam and CAT.
If you're setting it WPA2-Enterprise it's my belief this works with both
WPA2 and WPA3. If you configure WPA3-Enterprise, it will no longer
accept WPA2 networks (not even with PMF optional/enabled).
Other vendors behave similar; WPA2 would work for both but WPA3 would
not "downgrade".
So that backwards compatiblity thing from WPA3 is not true as far as I'm
aware.
Your issue could be driver specific?
We have a large userbase, and tested this way of configuring ourselves,
but did so far not have issues, but let's keep our eyes open. If you can
be more specific about the drivers/platform/Windows update version, we
can try to reproduce perhaps. It's also helpful if you find that other
clients with the same Windows version but different hardware do work,
for instance.
Paul
Archive powered by MHonArc 2.6.24.