Wireless LAN (WLAN/WiFi) with eduroam and HZB-Guest at HZB

Wireless LAN (WLAN or WiFi) is available at every location of the HZB.  There are two options:

eduroam - WLAN/WiFi for all persons with IDs of the federation

Connection in three steps:


  1. Connect your device to the WLAN named eduroam.
    In case you need it:
    eduroam uses WPA2 encryption mode Enterprise/802.1x.
  2. If required (IOS, Windows 7), accept the certificate of our server radius.hmi.de  which is trusted with the root certificate Deutsche Telekom Root CA 2.
    The key fingerprint is 15:3 D: 3C :...: B0: 59: CF and it has been issued on 22/03/2011. The corresponding root certificate of Deutsche Telekom Root CA 2 may be installed or assigned, too. You´ll find it here. For iOS please use Safari to import it as an additional profile.
  3. Enter at your login screen your HZB ID (here called xyz) combined with the so-called realm in the form

    or xyz@h14n.de

    your internal HZB password (which is used for e-mail).

    Both forms
    are valid, the brief one makes the input more convenient for you.



  • Once set up - always used: Please try eduroam WLAN at the HZB first. At HZB it is much easier to get help for it.
  • Windows Mobile 7/8, Android and Apple iOS: Use the built-in wireless setup and once you accept the certificate of our radius server.
  • Windows 7/8: Try it with this manual. Do not use the predefined login method with the domain name, it does not work.
  • Linux: Use the Network Manager in KDE or Gnome.
  • MacOS X: use Control Panel / Network.
  • Symbian 3: Try it with these instructions instructions, it comes from heise mobile.
  • Please always use your HZB ID with the attached realm. With the three letters alone it won´t work outside of the HZB.
  • Good instructions for different operating systems (please replace the ID in each case by your HZB ID, ​​do not use the FU profile files) is available on the eduroam pages of the ZEDAT at FU Berlin.

Guests from members of the eduroam federation have to provide the identification of their home institution fully with its associated realm (eg albert.einstein@hu-berlin.de).

All usable Wi-Fi access points are named eduroam. Many types of your equipment will remember your credentials and try to connect automatically, if they find another wireless eduroam access point everywhere.


Why 802.1X? Why it is better than other network access control systems

WLAN with SSID HZB-Guest for short-term guests without HZB ID

At the locations with Wi-Fi network eduroam (see above), there is also an unencrypted network with the SSID HZB-Guest available. It offers WLAN for guests without an eduroam ID, e.g. for access during events. To register please use a web browser with the address

On devices with iOS or Windows Phone and many other devices a login window will open automatically. If your system does not open a login window, please invoke a web browser with this address.

Identifiers for HZB Guest may be created by any HZB employee with his web password online using the wireless ID application form. The output is logged. These IDs  are valid for three days max. and can be used simultaneously by multiple users. The producer of the ID is responsible for all actions with these identifiers.