Configuration, repair and management of MikroTik RouterOS networks: hotspot and captive portal, RADIUS, dual-ISP failover, WireGuard and firewall hardening - from engineers who run MikroTik networks every day, based in Mohali.
MikroTik routers are capable and inexpensive, which is why so many hotels, hostels and offices already have one. The trouble is rarely the hardware. It is a configuration done once by whoever was available, a hotspot that half the phones cannot log into, a second internet line that never takes over, and a management port open to the internet with the password the installer used everywhere.
Every network iberry manages runs on RouterOS, so this is the work we do every day: we build the configuration, document it, back it up and keep it current. You can have us fix a single problem, or hand the router to our cloud AAA platform and stop thinking about it.
On RouterOS v6 and v7, on hardware you own or hardware we supply.
A branded login page with PIN, QR voucher, SMS OTP or PMS login, per-user speed and data limits, walled-garden rules that do not quietly let unauthenticated devices out, and login that works properly on iPhones and Android phones.
Authentication moved off the router and onto a central RADIUS service, so users, limits and records live in one place across every site instead of in a separate local database on each box.
PCC load balancing across two or more lines, with recursive routing that checks the internet beyond each gateway - so a line that is up but not passing traffic is taken out of service, not just one that is unplugged.
Site-to-site tunnels between branches and remote access for staff on RouterOS v7, including untangling the listen-port and allowed-address clashes that appear when a router already has an older tunnel configured.
Closing the management services that face the internet, locking access to known addresses, separating guest, staff and device networks, and replacing shared admin passwords - the usual route by which routers are taken over.
Scheduled configuration backups stored off the router, planned RouterOS v6 to v7 upgrades, and monitoring that flags loops and packet floods on the LAN before guests start calling reception.
Yes - adopting an existing router is how many of our sites started. We read what is on it before changing anything, keep what works, and import existing users and vouchers rather than making everyone start again.
Usually, yes. With remote access agreed, most hotspot, firewall, VPN and load-balancing work is done over an encrypted tunnel without a visit. Our engineers are in Mohali and cover Chandigarh, Mohali, Panchkula, Zirakpur and Kharar on site when hands are needed.
Yes. PCC spreads traffic across both lines while both are healthy, and recursive routing checks a host beyond each gateway, so a line that stays connected but stops passing traffic is taken out automatically and brought back when it recovers.
No. Hotels are most of our work, but the same RouterOS setup suits offices, hostels, colleges and hospitals - anywhere that needs controlled guest access, more than one internet line or a link between branches.
A one-off configuration job is quoted on the scope. Ongoing managed service follows the published plans, from ₹30,000 one-time plus ₹15,000 yearly maintenance, which include the hotspot, cloud AAA and support.
MikroTik and RouterOS are trademarks of their owner. iberry is an independent service provider and is not affiliated with or endorsed by MikroTik.
Tell us the model, the RouterOS version and what is going wrong. See also UTM and firewall, hotspot billing and VPN services.
Talk to an Engineer