eduroam-US user access requirements

Because eduroam is authenticated via 802.1x we encourage participating institutions to allow users access as many services as possible.  For a consistent user experience for travelers, eduroam-US follows the European policies (p. 29) regarding minimum service support for all users joining the eduroam SSID:

  • HTTP/HTTPS [tcp/80, tcp/443]
  • SSH [tcp/22]
  • e-mail:
    • IMAP(2+4,3,S) [tcp/143, tcp/220, tcp/993]
    • POP(3S) [tcp/110, tcp/995]
    • SMTP(S/STARTTLS) [tcp/465, tcp/587]
  • VPN
    • Standard IPSec VPN [IP proto 50 (ESP), IP proto 51 (AH), udp/500 (IKE)]
    • OpenVPN 2.0 [udp/1194]
    • Cisco IPSec VPN over TCP [tcp/10000]
    • PPTP VPN [IP proto 47 (GRE) and tcp/1723]
  • misc
    • IPv6 Tunnel Broker Service [IP proto 41]
    • IPSec NAT-Traversal [udp/4500]
    • Passive (S)FTP [tcp/21]
    • RDP [tcp/3389]