
After that, import those files into the Mikrotik’s certificate storage: import file-name= Upload your certificate, key, and CA certificate (if applicable) to the Mikrotik. In my case, I have a simple CA already and I signed a certificate for myself. You could also create a certificate signing request (CSR) on the Mikrotik and have that signed by a trusted CA. Import certificates #Ĭreating a CA and signing a certificate and key is outside the scope of this post and there are plenty of sites that cover the basics of creating a self-signed certificate. I’ll walk you through the process from importing certificates through testing it out with a client.

Creating an OpenVPN server on the device can allow you to connect into your local network when you’re on the road or protect your traffic when you’re using untrusted networks.Īlthough Miktrotik’s implementation isn’t terribly robust (TCP only, client cert auth is wonky), it works quite well for most users. Mikrotik firewalls have been good to me over the years and they work well for multiple purposes.
