CaTS | Networking Services
The University of Texas at Dallas
 

Before you Begin

Enabling 802.1x authentication in Windows XP for the AirUTD Wireless Network is a straightforward process. Windows XP ships with a built in 802.1x client that is accessible from the Network Properties dialogs. Before beginning this setup, please visit Windows Update and make sure your machine is fully up-to-date with all service packs and patches.


If you need help with any part of this setup at any time, please contact the UTD Computing Help Desk by either calling them at 972-883-2911 or emailing them at assist@utdallas.edu.



Step by Step Instructions

The first step in setting up your wireless card for 802.1x is to open up your Network Connections window. You can find this by going to the Start menu, selecting the "Connect To" item, then selecting "Show all connections" from the submenu. Once you have selected "Show all connections", you should see a window similar to the following one appear:


Wireless Network Connection Properties Box, General Tab
(Click for Full Size)


From here, click on the "Wireless Networks" tab to continue. If, for some reason, you do not have a "Wireless Networks" tab in your Properties box, it is possible that the setup software for your wireless card has disabled the Wireless Zero Config service. To re-enable this service, follow the instructions here.


Wireless Network Connection Properties Box, Wireless Networks Tab


In this window, make sure the "Use Windows to configure my wireless network settings" option is checked. This allows Windows to choose the wireless network to connect to as well as perform the 802.1x authentication.

In the Waterview Park Apartments, you should see the "WATERVIEW" network in the "Available networks" box, as seen above. You will likely see other networks in the "Preferred networks" box, such as the wlan01 legacy AirUTD network. Click on the "WATERVIEW" network in the "Available networks" box, then click the "Configure" button to continue setup. If you do not see "WATERVIEW" in the "Available networks" box, click on the "Add..." button below the "Preferred networks" to continue setup.


Wireless Network Properties Box, WATERVIEW Network


In the General tab of the Properties box, most items can be left at default, or the same as they were set with the previous AirUTD system. One caveat, make sure the "Show icon in notification area when connected" box is checked. At times the AirUTD system (or your computer) will need to communicate with you. It can only do this if the icon is showing in the notification area.

From here, click on the "Wireless Networks" tab to continue. If, for some reason, you do not have a "Wireless Networks" tab in your Properties box, it is possible that the setup software for your wireless card has disabled the Wireless Zero Config service. To re-enable this service, follow the instructions here.


Wireless Network Connection Properties Box, Wireless Networks Tab


In this window, make sure the "Use Windows to configure my wireless network settings" option is checked. This allows Windows to choose the wireless network to connect to as well as perform the 802.1x authentication.

In the Waterview Park Apartments, you should see the "WATERVIEW" network in the "Available networks" box, as seen above. You will likely see other networks in the "Preferred networks" box, such as the wlan01 legacy AirUTD network. Click on the "WATERVIEW" network in the "Available networks" box, then click the "Configure" button to continue setup. If you do not see "WATERVIEW" in the "Available networks" box, click on the "Add..." button below the "Preferred networks" to continue setup.


Wireless Network Properties Box, WATERVIEW Network


If you clicked "Configure" on the previous screen to get here, then everything in this box should be correct with the defaults. SSID should be "WATERVIEW", Network Authentication should be "Open", "Data encryption" should be "WEP", and "The key is provided for me automatically" should be checked.

If you clicked "Add..." on the previous screen to get here, simply put "WATERVIEW" in the "Network name (SSID)" box. Make sure that WATERVIEW is in all capital letters. Everything else should be set as shown above.

Once you have the Network Name and other options set correctly, click on the "Authentication" tab to continue.


Wireless Network Properties Box, Authentication Tab, WATERVIEW Network


Now that the wireless network connection information has been set, the 802.1x authentication can now be configured. In this tab, you will need to change a couple of options. First of all, make sure the "Enable IEEE 802.1x authentication for this network" option is checked. Next, change the "EAP type" selection to "Protected EAP (PEAP)". PEAP allows users to authenticate securely with their NetIDs and passwords. Next, for Waterview users, uncheck the "Authenticate as computer when computer information is available". When you have selected the appropriate options, your screen should look just like the one above. Click on the "Properties" button to continue setup.


Protected EAP Properties Windows


This window allows you to make sure your authentication is as secure as possible. In this window, make sure the "Validate server certificate" is checked, then check the "Connect to these servers" option. In the box below that, enter "8021x.utdallas.edu" as shown above. Next, in the "Trusted Root Certification Authorities, scroll down until you see the "Secure Server Certification Authority", and check the box next to that entry. Finally, make sure that the Authentication Method is set to "Secured password (EAP-MSCHAP v2)" and that "Enable Fast Reconnect" is unchecked. Next, click on the "Configure..." button next to the Authentication Method box to finish configuring your connection.


EAP MSCHAPv2 Properties Window


In this window, simply uncheck the "Automatically use my Windows logon name and password (and domain if any)" option, then click "OK". This tells windows to ask you which user name and password to use when authenticating so that you may enter your UTD NetID and password.

Finally, click on "OK" in each of the open windows until you come back to your "Network Connections" window. Windows will then attempt to connect to the new network. Windows will be unable to connect to the new network until it is enabled on August 8.

When the new network comes online, Windows will attempt to connect to it for the first time. When Windows XP attempts to connect for the first time, you should see a balloon pop up in your taskbar area like the one shown below:


Credentials Balloon
(Click for Full Size)


When this balloon appears, simply click on the balloon, and you will be presented with a login box like the one below:


802.1x Login Box


Enter your UTD NetID in the "User name" field, your UTD password in the "Password" field, and leave the "Logon domain" field blank. Click on "OK", and Windows will log you into the new AirUTD network. Once you have logged in successfully, your "Wireless Network Connection" entry in your "Network Connections" window should say "Authentication succeeded", as in the picture below:


Authentication succeeded
(Click for Full Size)


You are now ready to use the new AirUTD network from your Windows XP machine. Once you have entered your NetID and password into the login box, Windows will remember your credentials and automatically log you on to the network without your having to type them in. The only time Windows should ask for your NetID and password again is if you change your password through the NetID website.