WPA2-Enterprise Connection Issue on GL-AXT1800 (Repeater Mode) – Internet Not Working

Hello,

I'm experiencing an issue with my GL.iNet GL-AXT1800 router when trying to connect to a WPA2-Enterprise Wi-Fi network in Repeater Mode.

The router successfully connects to the Wi-Fi network and receives an IP address from the main router, but the internet does not work. The web interface displays the message:

"The interface is connected, but the Internet can't be accessed."

Occasionally, the internet becomes available for a few seconds after connecting, but then it drops again.

I suspect the problem is related to certificate validation during the WPA2-Enterprise (802.1X, likely EAP-TLS) authentication process. On other devices, I get a prompt to manually trust the server certificate, but on the GL.iNet router, no such prompt appears. As a result, I believe the router may silently fail to fully establish the connection if it doesn’t trust the certificate.

The certificate uses SHA-512 with RSA, a 2048-bit key, and appears as "Not Trusted" when viewed on an iPhone.

What I need help with:

  1. How can I manually import and trust the server certificate on the GL.iNet router?
  2. Is there a way to debug WPA2-Enterprise authentication issues (e.g. logs or advanced options)?
  3. How can I ensure the router remembers the certificate and trusts it automatically in the future?

Thanks a lot in advance!

P.S :

I managed to connect the GL.iNet router to the main WPA2 Enterprise network and get internet access, but I had to use a little trick. First, I connected to the Wi-Fi using my iPhone, accepted the certificate, and noted down the MAC address of the phone. Then, I disconnected the iPhone and connected the GL.iNet router instead, spoofing the iPhone’s MAC address — and like magic, it worked, and the internet is now available.

However, this is only a temporary workaround. I still need to understand what’s causing the issue and how to fix it properly

Hello,

The GL router repeater only supports EAP connections with username + password, and does not support importing certificates or accepting trust certificates.

When the router repeater EAP establishes connection, will it prompt "trust the certificate" on the client which connected the router and when it open the browser to access some web page like google.com?
If so, will it be normal after clicking on Trust?

If no luck, you can only connect to EAP through repeater in this way: