All articles

How to Set Up a WiFi Billing System on a MikroTik Router Using AroFi.net

Learn how to connect an MTN, CanalBox, Savanna Fibre, Simba Fibre or another ISP router to MikroTik ether1, complete AroFi onboarding, install remote access and start selling WiFi.

How to Set Up a WiFi Billing System on a MikroTik Router Using AroFi.net

How to Set Up a WiFi Billing System on a MikroTik Router Using AroFi.net

Setting up a professional WiFi billing system does not have to involve complicated manual user creation, handwritten payment records or repeated MikroTik configuration. With AroFi.net, a hotspot operator can create a business account, connect a MikroTik router, configure internet packages, generate vouchers and begin managing customers from one dashboard. The setup can use an upstream internet router supplied by MTN WakaNet, CanalBox, Savanna Fibre, Simba Fibre, Airtel, Roke, Zuku, Liquid Home, FaibaNet or another internet provider.

This guide takes you through the five AroFi onboarding steps and the immediate remote-access setup that should be completed before you leave the router location.

Before you begin: Make sure your MikroTik router has internet access and you can log in through WinBox. Back up the router configuration before making changes, especially when the router is already serving customers.

What You Need

  • A MikroTik router running RouterOS

  • A working internet connection from an ISP router, fibre ONT, 4G router or 5G router

  • One Ethernet cable for connecting the ISP router’s LAN1 / Port 1 to the MikroTik’s ether1 / Port 1

  • WinBox installed on a Windows computer, or WebFig on a phone or browser

  • Access to the router’s administrator username and password

  • An active email address and Ugandan phone number

  • An AroFi account created at AroFi.net

Connect the ISP Router to MikroTik Ether1 Before Onboarding

Before opening the AroFi onboarding wizard, connect the internet source to the MikroTik correctly. For the simplest and most consistent AroFi setup, use this exact cable arrangement:

Internet or fibre line
        ↓
ISP router: LAN1 / Port 1
        ↓  Ethernet cable
MikroTik: ether1 / Port 1
        ↓
AroFi hotspot network and customers

This applies when your internet comes through routers or fibre equipment supplied by MTN WakaNet, CanalBox Uganda, Savanna Fibre Uganda, Simba Fibre Uganda, Airtel, Roke, Zuku, Liquid Home, FaibaNet and similar providers.

Correct ports to use

  • On the MTN, CanalBox, Savanna, Simba or other ISP router, connect the Ethernet cable to LAN1, also marked LAN 1 or Port 1.

  • Connect the other end of that cable to ether1, the physical Port 1 on the MikroTik router.

  • Treat MikroTik ether1 as the internet or WAN input.

  • Connect your computer, access point or local management cable to ether2, ether3, ether4 or ether5, not ether1.

  • Do not connect the MikroTik to the ISP router’s WAN, Internet, fibre or PON input. Those ports receive the provider’s service and are not normal LAN outputs.

Important: Some provider routers may have LAN1 disabled or may have been configured to deliver internet from another LAN port. When the provider has specifically activated a different LAN port, use that active ISP LAN port, but still connect it to MikroTik ether1 / Port 1. The recommended standard for this guide remains ISP LAN1 to MikroTik ether1.

Confirm the MikroTik has internet

Before running the AroFi setup command:

  1. Confirm that the ISP subscription is active.

  2. Check that the Ethernet light for ISP LAN1 and MikroTik ether1 is on or blinking.

  3. Log in to the MikroTik through WinBox using WiFi or one of the remaining Ethernet ports.

  4. Open New Terminal and test the connection:

/ping 8.8.8.8 count=4
/ping arofi.net count=4

Continue with onboarding only after the MikroTik can reach the internet. This prevents failed setup callbacks, missing router heartbeats and remote-access installation errors.

Step 1: Create Your AroFi Business Workspace

Open AroFi.net and click Get Started or Create Workspace.

Enter your business name and choose a short portal slug. The portal slug identifies your customer WiFi portal, so use a simple name related to your business or hotspot location.

Continue and provide:

  • The owner’s first and last name

  • Login email address

  • Phone number

  • A secure password

  • Optional customer-support phone and email

  • Optional business brand colour

After submitting the form, AroFi creates your private business workspace and takes you to the dashboard. New businesses can start on the Free plan and upgrade later when necessary.

Screenshot 1: Create your AroFi business workspace

Create an AroFi business workspace

Step 2: Register Your MikroTik Router

When the dashboard opens for the first time, the guided setup wizard asks you to register a MikroTik router.

Enter:

  • Router Custom Name: A name that helps you identify the router, such as “Main Shop Router” or “Hostel Block A”.

  • SSID / WiFi Site Name: The customer-facing WiFi name, such as “MUTUNGO_HILL_WIFI”.

Next, choose the correct setup mode.

Create Customer WiFi

Choose this for a new or freshly reset MikroTik router. AroFi creates a new open customer WiFi and captive portal on an isolated hotspot bridge.

Existing Hotspot Setup

Choose this when the MikroTik already has a working hotspot configuration. This mode links the existing hotspot to AroFi without deliberately rebuilding the whole router configuration.

Do not choose the fresh setup option on a working production router unless you understand the changes and have a backup.

Click Register Router & Continue. AroFi then creates a unique installation command for that router.

Screenshot 2: Register the MikroTik router and choose the correct setup mode

Register a MikroTik router in AroFi

Step 3: Run the AroFi Command in WinBox

AroFi displays a unique one-run MikroTik command after the router is registered.

Do not copy a command from another router or from this article. Every router receives its own registration key and setup command.

To run your command:

  1. Keep the upstream cable connected from the ISP router’s LAN1 / Port 1 to the MikroTik’s ether1 / Port 1.

  2. Connect the computer to the MikroTik through its WiFi or through ether2–ether5. Do not use ether1 for the computer because ether1 is the internet input.

  3. Open WinBox.

  4. Select the router and log in with the administrator account.

  5. Click New Terminal.

  6. Return to AroFi and click Copy beside the generated command.

  7. Paste the command into the WinBox terminal.

  8. Press Enter and allow approximately 10–15 seconds for the router to apply the configuration.

AroFi automatically checks whether the router has called back. When the connection succeeds, the screen changes from Waiting for Router Heartbeat to Heartbeat Received.

Click Check Now when the status does not update immediately. Confirm that the router itself has internet access and that the command completed without an error.

Screenshot 3: Copy the unique command and run it in WinBox Terminal

Run the AroFi MikroTik command in WinBox

Step 4: Create Your First WiFi Package

After the router connects, create the first package customers will purchase.

Enter:

  • Package Name: For example, “1 Hour Unlimited”, “24 Hours”, or “Weekly Package”.

  • Price: Enter the amount customers will pay in Uganda shillings.

  • Duration: Choose the number of minutes, hours or days the package should remain active.

  • Speed Profile: Choose Fast, Super Fast or Maximum Speed.

A practical starter package could be:

  • Package name: 1 Hour Unlimited

  • Price: UGX 1,000

  • Duration: 1 hour

  • Speed: Maximum Speed

  • Device limit: One device

Create several packages after onboarding so customers can choose between short, daily, weekly and monthly access.

Click Create Package & Continue.

Screenshot 4: Set the WiFi package name, price, duration and speed

Create a WiFi package in AroFi

Step 5: Generate Vouchers, Test the Portal and Go Live

The final onboarding screen allows you to generate the first batch of WiFi vouchers.

Choose:

  • Quantity: 20, 50, 100 or 200 vouchers

  • Code Format: Mixed letters and numbers, or numbers only

  • Batch Note: A description such as “First counter-sales batch”

Numbers-only vouchers can be easier for customers to type, while mixed codes provide more possible combinations.

Click Generate Batch & Finish Onboarding. The vouchers are linked to the package created in the previous step and can be downloaded or printed for cash sales.

Before selling WiFi to the public, perform a complete customer test:

  1. Connect a phone to the customer WiFi SSID.

  2. Wait for the AroFi captive portal to open. Open a browser when it does not appear automatically.

  3. Select a package.

  4. Complete a test Mobile Money payment or enter a voucher code.

  5. Confirm that the device receives internet access.

  6. Open Sessions in the AroFi dashboard and confirm that the customer appears as active.

  7. Confirm that access ends when the purchased package expires.

Screenshot 5: Generate vouchers and complete the final live test

Generate WiFi vouchers and finish AroFi onboarding

Immediate Step After Onboarding: Install the Remote Access Script

Do this immediately after clicking “Generate Batch & Finish Onboarding.” Do not leave it for later. You still have local access to the MikroTik through WinBox, so this is the safest and easiest time to install remote access. If the router is later moved to a rooftop, hostel, shop, trading centre or another distant hotspot location, returning physically just to enable remote management may be difficult.

AroFi Remote Access creates a secure SSTP tunnel from the MikroTik router to AroFi. Because the router connects outward, remote WinBox access can work even when the internet provider uses CGNAT or the hotspot does not have a static public IP.

To install it immediately:

  1. Keep WinBox open and remain connected locally to the MikroTik router.

  2. In the AroFi sidebar, open Remote Access.

  3. Select the router you have just onboarded.

  4. Under Run this command in the WinBox Terminal, click Copy.

  5. Return to WinBox and open New Terminal.

  6. Paste the unique remote-access installation command and press Enter.

  7. Wait a few seconds for the SSTP tunnel status to change to Connected.

  8. Click Open Port in AroFi and use Test Connection to confirm that the remote WinBox address works.

  9. After the test succeeds, click Close Port. Open the port again only when you need to manage the router remotely.

The command displayed below is only an example structure. Never copy it from this article. AroFi generates a different secure token for every registered router:

/tool fetch url="https://arofi.net/api/mikrotik/remote-access/install/YOUR-UNIQUE-ROUTER-TOKEN" check-certificate=no dst-path="vpn.rsc" mode=https; :delay 2s; /import file-name="vpn.rsc"; :delay 1s; /file remove "vpn.rsc"

AroFi’s current remote-access installer supports RouterOS 6 and RouterOS 7. On some RouterOS 7 consumer devices, the router may report that SSTP is blocked by device mode. When this happens, follow the one-time instruction shown in the WinBox terminal, confirm the device-mode change physically on the router when requested, and then run the installation again.

Screenshot 6: Install and test remote access immediately after onboarding

Install the AroFi remote access script

Remote Access Security Rules

  • Use only the script generated inside your own AroFi account for that specific router.

  • Never publish the router token, generated command, remote WinBox address or administrator password.

  • Set a strong MikroTik administrator password before the router goes into production.

  • Keep the remote port closed when you are not actively using WinBox.

  • Opening the port allows the connection only while needed; close it immediately after finishing.

  • Customers connected to the public hotspot should remain isolated from the router’s management services.

Your AroFi WiFi Billing System Is Ready

After completing the five onboarding steps and immediately installing the remote-access script, your MikroTik router is connected to AroFi, your first package and voucher batch are ready, and you can securely reach the router through WinBox whenever support or configuration changes are required.

From the AroFi dashboard, you can manage:

  • MikroTik routers and hotspot locations

  • Customer internet packages

  • Mobile Money WiFi payments

  • Printed and digital vouchers

  • Active and disconnected customer sessions

  • Package expiry and customer access

  • Sales, transactions and reports

  • Wallet balances and withdrawals

  • Multiple routers and business locations

  • Secure remote WinBox access through AroFi

AroFi helps replace manual WiFi selling with a more organised billing process. Customers can select packages, pay through supported Mobile Money options or use vouchers, while operators monitor the business from one dashboard.

Important Setup and Safety Tips

Always back up an existing MikroTik before applying a new configuration. Use Existing Hotspot Setup when the router already serves users. Use the fresh customer WiFi option mainly for a new or reset router.

Keep the router’s administrator password private. Never publish your AroFi registration key or one-run command. Each setup command belongs to one router and business workspace.

The router must maintain internet access so it can communicate with AroFi. When the router remains offline, check its WAN connection, DNS settings and whether the setup command finished successfully. Install and test remote access immediately after onboarding, while you still have local WinBox access.

Start Your WiFi Business With AroFi.net

Whether you operate WiFi in a hostel, rental property, shop, café, school, trading centre or residential neighbourhood, AroFi.net gives you the tools to manage billing professionally.

Create your account at AroFi.net, connect your MikroTik router and start selling WiFi through Mobile Money and vouchers.

AroFi.net — Sell WiFi, receive payments, connect customers and manage your hotspot business from one simple dashboard.