MikroTik Center
RouterOS CLI basic commands for routing, firewall and wireless at a glance.
View commandsRouting & Interfaces
/ip address add address=192.168.1.1/24 interface=ether1Assign an IP address to an interface
/ip route add dst-address=0.0.0.0/0 gateway=192.168.1.254Set the default route (default gateway)
/interface printShow all interfaces and their status
Firewall & NAT
/ip firewall filter add chain=input protocol=tcp dst-port=22 action=acceptExplicitly allow SSH access (port 22)
/ip firewall nat add chain=srcnat out-interface=ether1 action=masqueradeNAT masquerading for outbound internet traffic
/ip firewall filter printShow all firewall rules in their evaluation order
Wireless
/interface wireless set wlan1 ssid=Firma-WLAN mode=ap-bridgeConfigure the WiFi interface as an access point with an SSID
/interface wireless security-profiles set default authentication-types=wpa2-psk wpa2-pre-shared-key="Passwort123!"Set up a WPA2 security profile with a password
/interface wireless registration-table printShow connected WiFi clients
How it works
Choose a topic
Routing, firewall or wireless.
Copy a command
Paste directly into the RouterOS terminal.
Get the cheat sheet
Download all commands as PDF.
Benefits
Good to know about this tool
Provides a curated collection of frequently used MikroTik RouterOS CLI commands for routing, firewall/NAT and wireless.
Because MikroTik routers are widely used due to their price-performance ratio, but RouterOS syntax has its own learning curve.
Frequently Asked Questions
Do the commands also work in WinBox?
These commands are intended for the RouterOS terminal — in WinBox, the same settings are available via the graphical interface in the corresponding menus.
The information, templates, scripts, calculations and recommendations provided are intended for educational and assistance purposes only. Always review and test any generated result before production use. IT Smart Service accepts no liability for misuse, data loss, outages, security incidents, or legal, financial or technical damages arising from incorrect or improper use. Responsibility for validation, testing and deployment decisions rests with the user.
Related Tools
UniFi Planer
Planning aid for a Ubiquiti UniFi network — site structure, access point placement and segmentation.
TP-Link Omada Planer
Planning aid for a TP-Link Omada network — controller modes, site structure and WiFi rollout.
VLAN Generator
Define VLANs with ID, name and subnet, and generate matching switch configuration commands.
Need personal support? Our team can help with anything beyond this tool.
Need professional IT support?
Our team can help if the free tool is not enough for your project.
