RMM for MikroTik
One cloud pane to monitor and manage your MikroTik fleet
mikroHUB is hosted RMM built for MikroTik. Monitor every RouterOS device and its LTE link in real time, automate config backups, and reach routers behind CGNAT — from a single multi-tenant dashboard for MSPs, WISPs and operators.
Monitor every RouterOS device
Live fleet status and deep metrics, with LTE intelligence purpose-built for cellular routers — so you see degradation before your customers do.
Live status & metrics
Real-time online/offline state, CPU, memory, uptime and interface traffic across the whole fleet, with historical charts to spot trends.
LTE signal depth
RSRP, RSRQ, SINR and CINR with full signal history, serving-cell and tower geolocation on a map, data usage, multi-SIM and roaming status.
Alerts & notifications
Get notified when a device drops, a threshold is crossed or LTE signal degrades, with email digests so nothing slips through the cracks.
Anomaly detection
Automatic detection of unusual behaviour across your fleet surfaces problems early, before they turn into outages or angry tickets.
Manage your fleet remotely
Backups, secure remote access and tenant-level control — the management half of RMM, without logging into each router by hand.
Automated backups & restore
Scheduled config backups pulled over the device's own SSH/SFTP, with version history and one-click restore when a change goes wrong.
Reach devices behind CGNAT
WireGuard tunnels let you reach routers stuck behind CGNAT or dynamic IPs, with no public address or port forwarding on the customer side.
Multi-tenant org & roles
Every resource is scoped to an organization with owner, admin and viewer roles, enforced by Postgres row-level security and protected by MFA.
Audit log & API keys
A full audit log records who did what and when, while scoped API keys let you wire mikroHUB into your own tooling and automation.
Secure by design
Device passwords never sit in plaintext on our servers. Choose zero-trust agent mode, where a lightweight agent runs on the router and credentials never reach us at all, or store them in an encrypted vault sealed with AES-256-GCM.
Tenant isolation is enforced in the database with Postgres row-level security, every privileged action is captured in an audit log, and MFA protects elevated operations — so RMM access does not become your weakest link.
MikroTik RMM — frequently asked questions
What is MikroTik RMM?
RMM (remote monitoring and management) for MikroTik means watching and operating many RouterOS devices from one place. mikroHUB is a hosted RMM that combines real-time monitoring, LTE intelligence, automated backups and secure remote access for whole fleets.
How do I reach devices behind CGNAT?
mikroHUB sets up WireGuard tunnels so you can reach routers that sit behind CGNAT or dynamic IP addresses. No public IP, port forwarding or inbound firewall holes are needed on the customer side.
Is it agentless or does it use an agent?
Both. You can connect over the RouterOS API with credentials kept in an encrypted vault, or run zero-trust agent mode where a lightweight agent on the device sends data and your passwords never reach our servers.
How many devices can I manage?
The free plan covers up to 3 devices with no credit card required, which is enough to evaluate the platform on real routers. Larger fleets are supported on paid plans as you grow.
Is mikroHUB secure?
Device credentials are never stored in plaintext — they live in an AES-256-GCM encrypted vault, or never leave the router at all in agent mode. Tenant data is isolated with Postgres row-level security, and audit logging plus MFA protect every account.
Related
Put your MikroTik fleet on one pane of glass
Add your first RouterOS device in minutes and see live monitoring, LTE depth and backups working. Free for up to 3 devices, no credit card.