Mikrotik Setup

Mikrotik Setup for WiZone

This guide explains how to configure Mikrotik with WireGuard and RADIUS to connect with the WiZone platform.

Mikrotik Configuration Guide for WiZone

This guide provides step-by-step instructions for configuring Mikrotik RouterOS to connect your local Wi-Fi network with the WiZone Cloud Platform using WireGuard VPN and RADIUS authentication.


Step 1 – Create WireGuard Interface

  1. Go to Interfaces → Add → WireGuard
  2. Configure as follows:
FieldValue
Namewizone
TypeWireGuard
Listen Port13231
Private KeyEDIDrUa54c4iwMrWXJ0ZqwYHKjgu6FdOuzpKcap97XY=
  1. Click Apply → OK to save.

After creation, the WireGuard interface will be used to establish a secure VPN tunnel between Mikrotik and the WiZone Gateway.

Step 3 – Add WireGuard Peer (WiZone Gateway)

Once the WireGuard interface is created, the next step is to add a Peer that connects your Mikrotik router to the WiZone Gateway.

  1. Go to Interfaces → WireGuard → Peers → Add (+)
  2. Configure the following fields:
FieldValue
Namewzpeer
Interfacewizone
Public Key3K3w7vtHSnGvk7lWHNSMf63v2sWYxiElZXstud5eUlg=
Endpoint Addresswg2.wizone.io
Endpoint Port51821
Allowed Address10.1.10.0/24, 10.255.0.1/32
Persistent Keepalive25s
Responder(leave unchecked)

Click Apply → OK to save the configuration.

This setup defines the WiZone Gateway as the remote peer and allows your Mikrotik device to maintain a continuous, secure VPN tunnel using periodic Keepalive packets every 25 seconds.
It ensures stable communication between your local deployment and the WiZone platform.

Step 3 – Assign IP Address and Configure DHCP

After creating the WireGuard interface and peer, assign IP addresses for both the VPN tunnel (WireGuard) and the local Hotspot interface.
This ensures proper routing between your internal network and the WiZone Gateway.


3.1 Assign IP to WireGuard Interface

  1. Go to IP → Addresses → Add (+)
  2. Set the following values:
FieldValue
Address10.255.0.16/24
Network10.255.0.0
Interfacewizone
  1. Click Apply → OK

This IP represents the local endpoint of your WireGuard VPN tunnel. It enables secure communication with the WiZone gateway.


3.2 Create IP Pool and DHCP Server

  1. Go to IP → DHCP Server → Add (+)
  2. Configure:
    • Name: wifi_dhcp
    • Interface: ether5
    • Address Pool: wifi_pool
  3. Click Apply → OK

This ensures that connected Wi-Fi clients receive automatic IP addresses within the correct subnet managed by the Mikrotik router.

3.3 Create IP Pool for DHCP Server

The IP Pool defines the range of IP addresses that your DHCP server will assign automatically to connected Wi-Fi clients.
This ensures that each device receives a valid IP address within the same subnet.

  1. Go to IP → Pool → Add (+)
  2. Enter the following details:
FieldValue
Namewifi-pool
Addresses10.10.252.10–10.10.255.254
Next Poolnone
  1. Click Apply → OK to save.

This pool will be linked to your DHCP Server configuration in the next step, enabling automatic IP assignment for all users connected through the WiZone Hotspot.

Tip:
Keep the IP range slightly below the broadcast address (e.g., .254) and exclude the gateway (10.10.252.1) from the pool to prevent conflicts.