Download des Zertifikates nach /home/pi/:
wget https://itsz.htwk-leipzig.de/fileadmin/portal/m_itsz/Zertificate_CA/T-TeleSec_GlobalRoot_Class_2.crt
In /etc/wpa_supplicant/wpa_supplicant.conf einfügen:
ctrl_interface=DIR=/var/run/wpa_supplicant GROUP=netdev
update_config=1
country=DE
ap_scan=1
network={
ssid="eduroam"
proto=RSN
key_mgmt=WPA-EAP
eap=PEAP
identity="LOGIN@htwk-leipzig.de"
anonymous_identity="eduroam@htwk-leipzig.de"
password="PASSWORD"
ca_cert="/home/pi/T-TeleSec_GlobalRoot_Class_2.crt"
phase1="peaplabel=0"
phase2="auth=MSCHAPV2"
}
# wlan1 => externer WLAN-USB-Stick
# wlan0 => internes WLAN-Interface
sudo wpa_supplicant -i wlan1 -c /etc/wpa_supplicant/wpa_supplicant.conf
In /etc/network/interfaces einfügen:
allow-hotplug wlan1
iface wlan1 inet dhcp
wpa-conf /etc/wpa_supplicant/wpa_supplicant.conf
In rc.local einfügen:
iptables -t nat -A POSTROUTING -o wlan1 -j MASQUERADE
iptables -A FORWARD -i wlan0 -o wlan1 -m state --state RELATED,ESTABLISHED -j ACCEPT