Wireless Configuration for Windows XP Pro
This document describes how to setup and configure the native PEAP Client in Windows XP in order to connect to the SLU secure wireless network. These instructions are specifically designed for a laptop running the Microsoft Windows XP operating system. They also assume that you have administrative privileges to configure the settings.
This document describes connection settings for the new secure wireless infrastructure (slu-secure), this has replaced the secure wireless network (slu-wlan) from last year. The slu-wlan network was phased out over the course of the Spring 2007 semester.
Manual Root certificate installation for Windows 
Windows XP requires the installation of a trusted certificate created on the authentication server to properly encrypt wireless transmissions. Successful completion of the following steps is required to connect to the "slu-secure" wireless network.
- Download the root certificate file from the infotech download site at https://download.stlawu.edu/network/wlan.cer
- At the prompt, login using your network username and password
- Save the file, wlan.cer to your computer desktop
- Go to the desktop and double click the wlan.cer file to open the certificate

- Click Install Certificate... to install the certificate on your computer
- Click Next on Certificate Import Wizard window
- Chose the second option,Place all certificates in the following store and then click Browse...
- Make sure you follow this particular instruction very carefully to put the certificate in the right place!
- Click on Show physical stores and expand Trusted Rood Certification Authorities by clicking the plus (+) on the left, then select Local Compute, click OK
- Click Next then Finish to complete the certificate installation
- Click OK to the Import Successful window
- Click OK to the certificate window
Configure wireless network settings - "slu-secure" 
Windows XP will automatically search for any available wireless connections when you power on your wireless network card. If a wireless connection is been located, Windows XP will inform you that a connection has been made. However, you still need to set up the PEAP client's configuration.
- On your desktop, right click on My Network Places
- Left click on Properties
- The Network Connections box appears
- Right click your wireless connection icon
- Click on Properties

- The resulting window depends on Service Pack level
- Click on the Wireless Networks Tab
- The Wireless Connection Properties box appears
- Make sure that Use Windows to configure my wireless network settings is checked for either XP w/SP2 or XP w/SP1


- Click on the Add button under Preferred Networks
- The Wireless Network Properties appears
- Make sure the following settings are accurate:
- Network Name (SSID): slu-secure
- Network Authentication: WPA
- Data Encryption: TKIP

- Click on the Authentication tab right next to the Association tab to continue
- Under the Authentication tab, make sure that Enable IEEE 802.1x authentication for this network is checked
- The EAP Type is Protected EAP (PEAP)

- Under the EAP Type, click on Properties
- The Protected EAP Properties box pops up
- Make sure the following settings are configured:
- Check Validate server certificate
- Scroll the Trusted Root Certificate Authorities section and check the certificate labeled ias01.stlawu.local (this is the name of the certificate installed by following the directions above)
- Selected Authentication method is Secure password (EAP-MSCHAP v2)
- Click on the Configure button to continue

- The EAP MSCHAP v2 Properties box pops up
- Uncheck Automatically use my Windows logon name and password (and domain if any)

- Click OK to close all the boxes
Log in to the wireless network 
- Within a couple of minutes, you will notice an information balloon in the system tray (at the right bottom corner of the screen)
- The credentials logon box appears
- Enter your your network login name and password
- Click OK to connect to the network
Additional information 
-
If you are experiencing problems, return to configuration instructions and remove any of the preferred networks that show as guest and/or slu-secure
- Login information connecting to the PEAP client is automatically stored by the operating system
on the local drive
- If you successfully connect to the network, Windows XP will try to reconnect you to the secure network via PEAP every time you reboot
- You do not have to enter your login information a second time
- Friends or colleagues will be able to log on to the wireless network as if they are you when using your laptop
- You will need to regenerate a new password if the laptop is stolen or lost to ensure security access on your account to the secure wireless network
- If you cannot browse any web pages after connecting to the secure wireless network, but the wireless network icon indicates that it is connected and the signal strength is good, make sure that your machine is getting a proper IP address
- To get your IP address, you can do the following:
- Double click the wireless network icon in your system tray (i.e. right bottom corner of the screen)
- Click on the Support tab
- This will show you your IP address
- Make sure that the address starts with 010.xx.xxx.xxx
- If it doesn't start with 010.xx.xxx.xxx, then something is wrong with the configuration and you are not connected to the secure wireless network
- If you have problems authenticating on the secure Wireless Network, please contact the IT HelpDesk at 5770.