TLS-based VPN supported by MikroTik

Choose SSTP for a remote MikroTik connection

SSTP carries the tunnel inside a TLS session and can be useful on restrictive networks. It is a familiar RouterOS option for connecting a remote router to a centralized administration environment.

Certificates and reliability

Correct certificate validation protects against interception. An accurate RouterOS clock and a valid certificate chain prevent most connection failures.

Recommended use

SSTP is relevant when a network permits HTTPS but filters other protocols. Measure latency before selecting it for intensive administration.

What you get

TLS transport suited to filtered networks

Built-in RouterOS support

Centralized authentication options

Private access to router services

How it works

  1. 1

    Verify the router clock and certificates.

  2. 2

    Create the SSTP client with dedicated credentials.

  3. 3

    Restrict WinBox and Webfig to the tunnel address.

Frequently asked questions

Which port does SSTP normally use?

SSTP commonly uses TCP 443, depending on the server configuration.

Should certificate verification be disabled?

No in production. Install the appropriate certificate authority instead.

Does SSTP provide WinBox access?

Yes, when routes and firewall rules permit WinBox traffic inside the tunnel.

Ready to manage your MikroTik remotely?

Create your SunVPN account and configure your first connection in a few steps.

Démarrer maintenant