User Manual
Enterprise Access Point
45
Network Authentication Type: The additional steps to acquire access for an unsecure network
- Acceptance of terms and conditions
- Online enrollment supported: may require user accounting
- HTTP/HTTPS redirection: the URL to which the browser is redirected is indicated
- DNS redirection: Note that the Hotspot 2.0 specification forbids network operators from
supporting protocols that are not interoperable with DNSSEC. DNS redirection for captive portals
violates this requirement.
-
Roaming Consortium Organizational Identifier: A roaming consortium is a group of service providers
(SP) with which a user’s credentials can be used for authentication. Roaming consortiums are identified
by an organization identifier (OI) that is assigned by the IEEE—similar to the first half of a MAC address.
An OI is often 24 bits in length, but can also be 36 bits (i.e. OUI-36).
IP Address Type: IPv4 or IPv6
NAI Realm List: An NAI Realm identifies the proper authentication server or domain for the user’s
authentication exchange. By discovering which authentication realms are supported by a network, a
mobile device can selectively authenticate to its preferred networks.
- EAP Type: The NAI Realm list can also optionally indicate the Extensible Authentication Protocol
(EAP) types supported by each realm as well as the authentication parameters for that EAP type.
Domain Name List: Lists one or more domain names for the entity operating the AP. This is a critical for
Hotspot 2.0 network selection policy, as it identifies the operator of the network. It indicates to the
mobile device whether they are at a home or visited Hotspot.
Cellular Network Information List (PLMN): Identifies the 3GPP cellular networks available through the
AP. Specifically, this field identifies the Public Land Mobile Network (PLMN) ID, comprised of the Mobile
Country Code (MCC) and Mobile Network Code (MNC) of the mobile operator.
Hotspot 2.0 R2 (Hotspot 2.0 Release 2): It includes improvements over Hotspot 2.0 Release 1.
- OSU SSID: the SSID name of the OSEN VAP
- OSU Server URI: the URI of the OSU server
- OSU Friendly Name: Name of the OSU provider in human language, which matches the name
drawn from the OSU server certificate exactly. Now only support English
- OSU NAI: to authenticate to the OSU (if configured for OSEN)
- OSU Service Description: the description for the OSU. Now only support English