Practical, step-by-step answers for everyday MikroTik tasks.
Stop hardcoding IPs into individual firewall rules — use address lists so one update covers every rule that references them.
Build a basic input filter chain that blocks unwanted WAN traffic on a MikroTik router, in the rule order that keeps you from locking yourself out.
The difference between a MikroTik binary backup and a text export, why you want both, and how to restore each one.
Set up VLANs on a MikroTik bridge the way that keeps switch-chip hardware offload working, without locking yourself out mid-configuration.
Residential satellite internet, 4G/5G uplinks, and CGNAT connections never hand out a public IP. Here is how to reach a MikroTik router behind one anyway.
Configure a road-warrior WireGuard VPN on a MikroTik router running RouterOS 7, from the CLI, with a working client config at the end.