Important: Back up the router first. If it is already serving customers, arrange a maintenance window or ask a MikroTik technician to help.

What you need before you start

  • A MikroTik router running a supported RouterOS release.
  • An internet connection from Starlink, fibre, fixed wireless, or another ISP.
  • An access point, or a MikroTik model with wireless built in.
  • A laptop with WinBox or access to WebFig.
  • A plan for package times, speeds, data allowances, and prices in GHS.

Update RouterOS, replace the default administrator credentials, and export a configuration backup before changing the network.

Choose a simple network layout

Internet sourceMikroTik WANHotspot bridgeAccess points and guests

Keep the internet-facing port outside the guest bridge. Put the LAN ports and access points used by guests inside one dedicated bridge. MikroTik’s documentation recommends running the HotSpot server on the bridge interface itself, not on an individual bridge port.

Set up the HotSpot in RouterOS

  1. Connect the WAN. Give the internet-facing interface a DHCP client or the static details provided by the ISP. Confirm that the router can reach the internet.
  2. Create the guest bridge. Add the LAN and wireless interfaces that should carry guest traffic. Do not add the public WAN interface.
  3. Add the guest IP and DHCP server. Choose a private subnet, create an address pool that excludes the router’s own address, and run DHCP Setup on the guest bridge.
  4. Run HotSpot Setup. In WinBox or WebFig, open IP → Hotspot, choose Hotspot Setup, and select the guest bridge. RouterOS creates the required HotSpot settings for you.
  5. Set the DNS name carefully. A proper hotspot DNS name and valid certificate improve captive-portal detection on modern phones. Avoid using a name that points somewhere else on the public internet.
  6. Create one test user. Under IP → Hotspot → Users, add a temporary username and password, then test before connecting billing.

The official MikroTik HotSpot documentation recommends the setup wizard because it adds the required settings and explains how the captive portal works.

Create packages with sensible limits

Use HotSpot user profiles for reusable speed rules, then attach each sold user to the correct profile. Apply time or data limits to the user that Corbin Point creates.

PackageSuggested controlGood for
1 hourLimit uptime and moderate speedVisitors and quick access
1 day24-hour access with a fair speed capShort-stay guests
1 weekSpeed tier plus optional data allowanceHostel residents
1 monthDefined profile and clear fair-use policyLong-term customers

RouterOS supports limit-uptime, total byte limits, and user profiles. Start conservatively, observe peak-hour performance, and adjust packages using real usage rather than guesswork.

Test the customer journey

  1. Forget the Wi-Fi network on a phone, reconnect, and wait for the sign-in prompt.
  2. If no prompt appears, open a plain HTTP page to trigger redirection.
  3. Log in with the test user and confirm browsing works.
  4. Check the active user in RouterOS and confirm time and data counters move.
  5. Confirm the user disconnects when the purchased limit is reached.

Test Android and iPhone devices separately. Modern captive-portal detection works best when the HotSpot DNS name and certificate are correctly configured.

Connect the router to Corbin Point

Once the manual test user works, add the router from the Corbin Point admin dashboard. Use the secure connector rather than exposing RouterOS management ports directly to the public internet. Then match each Corbin Point package to the correct MikroTik profile.

Before accepting a real payment ✓ The router shows online in Corbin Point ✓ A test package creates a MikroTik HotSpot user ✓ The username and password arrive by the selected message channel ✓ The purchased time, speed, and data limits are correct ✓ A failed or cancelled payment does not create access

Common mistakes to avoid

  • Putting the WAN port inside the hotspot bridge.
  • Using the same subnet on both sides of the router.
  • Publishing WinBox or RouterOS API ports openly on the internet.
  • Creating “unlimited” plans without a speed policy or capacity check.
  • Skipping an end-to-end test after changing a profile.

Ready to manage the hotspot?

Connect packages, vouchers, and payments in Corbin Point.

Create an admin account