How to Secure Login of MikroTik RouterOS Users?

The security of our routers and smart switches, which form the backbone of our network, has an important place. For this, how to block certain IP addresses and ports from Firewall, our previous articles have already explained. Now, I will tell you that apart from the firewall, there should also be other settings that we need to make.

First of all, we need to turn off the services we use. If we can change the services we use, let’s change them. For this, we make the necessary settings from the Ip>service tab as seen in the picture below.

ip_service_list
ip_service_list

Making our users safe from now on. Each device comes with a default user name and password at first installation. This is the first method hackers use to gain access to our devices. For this reason, it is necessary to avoid using predictable and easy passwords.

We need to create strong passwords for our Mikrotik routers, especially for writers and fully authorized users. In addition, allowing only the IP addresses of users in our network plays an important role in preventing people from outside accessing it.

After accessing the Mikrotik device with winbox, enter the system>users link from here.

First, we create a strong password in the user section. Then we add only the IP address or IP blocks we want to the settings of this user. Thus, we only allowed the IP addresses we wanted.

admin_user_allowed_address
admin_user_allowed_address

I hope it was a useful article.