PluginBench
MCP Server
Active
MIT

io.github.jeff-nasseri/mikrotik-mcp MCP Server

io.github.jeff-nasseri/mikrotik-mcp

Manage MikroTik routers via AI: firewall, NAT, routing, DHCP, DNS, WireGuard, and more through natural language.

What is the io.github.jeff-nasseri/mikrotik-mcp MCP server?

The MikroTik MCP server is a bridge between AI assistants and MikroTik RouterOS devices, enabling natural language control of router configuration and management. It allows AI to interact with MikroTik routers to execute commands like managing VLANs, configuring firewall rules, handling DNS settings, and more.

MikroTik MCP connects Claude and other AI assistants to MikroTik routers over SSH, letting you manage network infrastructure through conversation. Configure firewall rules, NAT, routing, DHCP, DNS, WireGuard, and other router functions without manual CLI access. Supports managing multiple devices in a fleet.

How to install io.github.jeff-nasseri/mikrotik-mcp

Copy-paste configuration for popular MCP clients.

transport: stdio
Config generated by PluginBench — verify against the source before use.
Environment / auth
  • MIKROTIK_HOST

    IP address or hostname of the MikroTik router (single-device mode; default: 127.0.0.1). Not needed when an inventory is configured.

  • MIKROTIK_USERNAME

    SSH username for the MikroTik router (single-device mode; default: admin)

  • MIKROTIK_PASSWORD
    secret

    SSH password for the MikroTik router (single-device mode)

  • MIKROTIK_PORT

    SSH port of the MikroTik router (single-device mode; default: 22)

  • MIKROTIK_KEY_FILENAME

    Path to SSH private key file for key-based authentication (single-device mode)

  • MIKROTIK_READ_ONLY

    When true, expose only tools that do not modify RouterOS or its file store. Use a read-only RouterOS account as defence in depth.

  • MIKROTIK_SENSITIVE_HIDING

    When true, redact recognized credentials and private key material from tool results, MCP notifications, and logs, and omit tools that return opaque sensitive payloads.

  • MIKROTIK_INVENTORY_FILE

    Path to a YAML file listing multiple MikroTik devices (title, host, port, username, password, key_filename, tags, region). See docs/reference/inventory.

  • MIKROTIK_INVENTORY
    secret

    Inline multi-device inventory as a YAML (or JSON) list; takes precedence over MIKROTIK_INVENTORY_FILE and the single-device variables. Holds credentials.

~/Library/Application Support/Claude/claude_desktop_config.json
{
  "mcpServers": {
    "mikrotik-mcp": {
      "command": "uvx",
      "args": [
        "mcp-server-mikrotik"
      ],
      "env": {
        "MIKROTIK_HOST": "<YOUR_MIKROTIK_HOST>",
        "MIKROTIK_USERNAME": "<YOUR_MIKROTIK_USERNAME>",
        "MIKROTIK_PASSWORD": "<YOUR_MIKROTIK_PASSWORD>",
        "MIKROTIK_PORT": "<YOUR_MIKROTIK_PORT>",
        "MIKROTIK_KEY_FILENAME": "<YOUR_MIKROTIK_KEY_FILENAME>",
        "MIKROTIK_READ_ONLY": "<YOUR_MIKROTIK_READ_ONLY>",
        "MIKROTIK_SENSITIVE_HIDING": "<YOUR_MIKROTIK_SENSITIVE_HIDING>",
        "MIKROTIK_INVENTORY_FILE": "<YOUR_MIKROTIK_INVENTORY_FILE>",
        "MIKROTIK_INVENTORY": "<YOUR_MIKROTIK_INVENTORY>"
      }
    }
  }
}

Tools & capabilities

Tools this server exposes to the agent.

  • Firewall Management — Configure and manage firewall rules on MikroTik routers
  • NAT Configuration — Set up and manage Network Address Translation
  • Routing — Configure routing policies and routes
  • DHCP — Manage DHCP server settings and leases
  • DNS — Configure DNS settings and resolution
  • WireGuard — Set up and manage WireGuard VPN
  • VLAN Management — Create and manage virtual LANs
  • Multi-Device Inventory — Manage multiple MikroTik devices in a fleet

Use cases

  • Configure firewall rules and security policies on MikroTik routers using natural language requests
  • Set up and manage VPN connections with WireGuard through conversational commands
  • Manage DHCP and DNS settings across multiple routers in your network
  • Create and configure VLANs and routing policies without direct CLI access
  • Monitor and control NAT rules and network address translation settings

io.github.jeff-nasseri/mikrotik-mcp MCP server FAQ

What is the MikroTik MCP server?

It's an MCP server that bridges AI assistants like Claude with MikroTik RouterOS devices, allowing you to manage routers through natural language commands via SSH connection.

Is it free?

Yes, MikroTik MCP is licensed under the MIT License and is free to use, modify, and distribute.

How do I install it in Claude Desktop?

Install via PyPI (`pip install mcp-server-mikrotik`) and configure it in Claude Desktop using the integration guide at docs/integrations/claude-desktop.md.

What authentication is required?

You need SSH credentials (username and password or key-based auth) for your MikroTik router(s) to establish a connection.

Can I manage multiple routers?

Yes, since version 0.14.0, MikroTik MCP supports managing multiple MikroTik devices within a fleet structure through an inventory system.

What router features can I control?

You can manage firewall rules, NAT, routing, DHCP, DNS, WireGuard VPN, VLANs, and other RouterOS features through the MCP interface.

README (reference)

Source of truth, from the repository.

MikroTik MCP

MCP Toplist

<!-- mcp-name: io.github.jeff-nasseri/mikrotik-mcp -->

MseeP.ai Security Assessment Badge

Website Build Status Tests MIT License

Overview

MikroTik MCP provides a bridge between AI assistants and MikroTik RouterOS devices. It allows AI assistants to interact with MikroTik routers through natural language requests, executing commands like managing VLANs, configuring firewall rules, handling DNS settings, and more.

Demo Videos

Claude Desktop

https://github.com/user-attachments/assets/24fadcdc-c6a8-48ed-90ac-74baf8f94b59

Inspector

https://github.com/user-attachments/assets/e0301ff2-8144-4503-83d0-48589d95027d

Inventory

[!NOTE] Since MikroTik MCP version 0.14.0, the MikroTik MCP will allow you to manage multiple MikroTik devices within your fleet structure. The following video simply shows how to use the inventory of MikroTik devices to let LLMs talk with your MikroTik devices.

https://github.com/user-attachments/assets/185b2c39-8f55-4f26-a74c-2ac459ad38f5

Documentation

📚 Full Documentation - Complete guides, API reference, and examples

🌐 Prefer to read online? The same documentation is also published at www.mikrotik-mcp.com (docs) — an optional, web-friendly way to explore the project while reviewing the repo.

Quick Links

License

This MCP server is licensed under the MIT License. This means you are free to use, modify, and distribute the software, subject to the terms and conditions of the MIT License. For more details, please see the LICENSE file in the project repository.

Related MCP servers

AI-powered Revolut Business API access: accounts, transactions, payments, FX, and counterparty management.

31
TypeScript
MIT
View repository →

Read published house pizza facts and calculate dough and ingredient balance.

HEhealth4ai logo

health4ai

Active

Query your Apple Health data from your own Supabase/Postgres via local MCP.

0
Swift
MIT
View repository →

Tamper-evident audit trail MCP server for EU AI Act & GDPR compliance.

0
Python
Apache-2.0
View repository →

Search, query, and update budgets, transactions, contacts, and purchase orders in Saturation.

Remote MCP for 1,500+ APIs. Vault-managed credentials; OAuth or API key. Search, load, and execute.