Dashboard
Live overview of your hotspot business.
Get started
Overview
Recent sales
Finance
Sales by package
Top devices by usage
| Device (MAC) | Package | Download | Upload | Total |
|---|
Support Hub
Mobile money purchase health — who paid but didn't receive their access.
Overview
Vouchers
Generate and manage prepaid access codes.
Generate vouchers
Voucher design
QR code supports {code} and {password} placeholders (e.g. a login URL).
All vouchers
| Code | Password | Batch | Package | Status | Created |
|---|
My POS
Sell access codes to walk-in customers - quick and printable on the spot.
New sale
Recent sales
| Code | Password | Package | Price | Phone | Status | Sold |
|---|
Sessions
Active and past customer connections.
| Device (MAC) | IP | Package | Method | Started | Expires | Status |
|---|
Routers
Manage MikroTik routers and view live hotspot users.
Router health
Add router
Router
Active hotspot users
| User | MAC | IP | Uptime | Time left |
|---|
Hotspot users (vouchers)
| Username | Password | Limit | Profile | Comment |
|---|
PPPoE connections (active)
| Username | Service | IP | MAC | Uptime |
|---|
PPPoE users (secrets)
| Username | Password | Profile | Limit | Comment |
|---|
VPN hub
Where your routers dial in when they are not on your own network: publish the endpoint here, paste the generated hub config on the hub itself (a VPS, or a MikroTik with a public IP), then hand each router its installation command. Routers need no open ports.
Hub config
RouterOS installation tickets
Every router installation uses a one-time ticket: the command created here (or in Remote Access) fetches that router's configuration once, then expires. The router's own credentials keep it in step afterwards, so a ticket is never a standing password. Applies to every router.
Remote Access
On-demand secure access to your router's management port.
Connection Status
…Setup status
Not installed yetAutomatic installation
This command downloads this router's remote-access configuration from Optimum (encrypted tunnel + API access) and installs it. The ticket in it is unique to this router, works once and expires — it is not an API password, and it is never what the router uses later.
Installation instructions
- Log in to your MikroTik router - Winbox or the web interface.
- Open a Terminal window - New Terminal in Winbox or the web UI.
- Paste and run the command above - then press Enter and wait a few seconds.
- Verify the interface - under Interfaces look for
optimum-vpn(an SSTP client, or WireGuard) showing connected / running. - Come back here - press Check connection; the setup badge should read Configured.
What the script configures
- - Names the router
-so Optimum can verify it is yours - - Brings up the encrypted tunnel (
-) to Optimum, so no management port is exposed to the internet - - Creates the API user Optimum authenticates with, and opens the API to your own subnet only
-Connection Details
Winbox Desktop Connection
- Open the Winbox application on your computer.
- Copy the remote address above and paste it in the Connect To: field.
- Click Connect and enter your existing router credentials.
Mobile App Connection
- Download the official MikroTik Pro app from your app store.
- Add a new connection and paste the remote address in the Address field.
- Enter your existing router credentials and tap Connect.
PPPoE subscribers
Create and manage PPPoE accounts; they sync to the router's /ppp/secret.
| Account # | Subscriber | Plan | Status | Expiry | Note | Created |
|---|
New subscriber
IP Binding
Bind a device's MAC address to its IP on the hotspot — stops IP stealing and session hijacking.
Add binding
Bindings on this router
● LivePackages
Packages your customers can buy.
Add package
Wallet
Money collected from mobile money, and withdrawals to your bank or mobile money.
Withdraw to bank / mobile money
Withdrawal history
| Reference | Method | Account | Amount | Status | Requested |
|---|
Subscriber withdrawals
Money your subscribers withdrew from their own wallet (their clients' mobile money sales, minus your platform fee). Mark paid only after sending the money — rejecting returns it to their wallet.
| Reference | Subscriber | Method | Account | Amount | Status | Requested |
|---|
Payment provider
Connect MTN Mobile Money and Airtel Money. Use Flutterwave (one key for both networks) or the direct APIs. Leave on "mock" to simulate.
Transactions
Every mobile-money payment captured by the system.
| Reference | Phone | Provider | Package | Amount | Status | Date |
|---|
Users
Manage who can access this dashboard and what they can do.
Add user
All users
| Username | Name | Role | Status | Created |
|---|
Roles & permissions
Each user gets one role. Its permissions decide what they can see and do — not everyone can perform the same activities.
Agent POS
Give agents voucher stock (float) and track what they sell. Agents can also pay up front by mobile money — a deposit buys stock worth deposit × (1 + commission %), so nothing is owed on prepaid batches.
📦 Allocate stock to an agent ?
Allocation is blocked while the agent still owes float — record the float payment first.
💰 Record a float payment ?
Agents
| Agent | Stock (unsold) | Sold | Commission earned | Outstanding float | Status |
|---|
📨 Stock requests
| # | Agent | Package | Qty / Deposit | Note | When | Status |
|---|
Subscriptions
Give people paid access to your system as their own. Subscribers sign into this same console and only see their own data.
New subscription
Platform revenue (your fee on subscriber sales)
Subscriber tools
Top up a subscriber's mobile wallet, and assign them their own router.
Subscribers
| User | Plan | Fee | Status | Expires | Services |
|---|
Public self-signup
Let people apply at /signup.php. Applications appear below as PENDING — nothing is active (nobody can sign in) until you approve a request and confirm their payment. The day-count starts on approval.
Signup requests
Subscriber Approvals
Applications waiting for your decision. Approving activates the account for its full period and emails the applicant their login link.
My Account
Your profile, password and subscription.
Subscription
Profile
My business settings
Shown on your vouchers and on the hotspot login page. Requires the business settings service.
-Change password
Settings
Branding and network enforcement.
Branding
Shown as a “Buy a package” link on the router-hosted captive portal. Leave blank to hide it.
Remote Access (Winbox)
Where a router owner connects to reach a router's management port. Subscribers can open and close their own router's port from the Remote Access page, and a port closes itself after the window below.
Agent commission
Default commission percent suggested when you allocate voucher batches to agents. You can still type a different percent for each allocation; approved stock requests use this default.
Platform fee
Percent the platform keeps from every mobile-money sale of a subscriber-owned package. Example: at 4%, a 1,000 UGX code keeps 40 UGX here and credits 960 UGX to the subscriber's wallet.
RADIUS enforcement ?
Controls whether access is enforced on the router via RADIUS CoA/Disconnect.
PPPoE server
Rate-limit profiles are auto-created from each plan's speed. These fields configure the PPPoE server pushed to your MikroTik router (RouterOS 7+ REST).
Email & two-factor login
When enabled, every sign-in also asks for a one-time code emailed to the user's address. Configure an SMTP account so codes can be delivered. For Gmail: host smtp.gmail.com, port 587, username = your Gmail address, and an App Password (Google Account → Security → 2-Step Verification → App passwords - your normal Gmail password will not work). If the email cannot be sent, the code is shown on the login screen as a recovery fallback.
SMS
Client notifications by SMS and the messaging account that pays for them.
Event notifications
Choose which platform events automatically send an SMS to your clients. Changes save instantly.
Send customers their code as soon as a sale is made at a point of sale (agent or reseller).
Send the access code the moment a mobile money payment clears.
If a client paid but hasn't logged in within this many minutes, resend their code automatically. 0 = disabled.
SMS billing
Track what the platform spends on client messages. The rate is deducted from your SMS credit for every message the provider accepts (the balance may go negative — messages are never stopped for billing).
SMS delivery
Sends the access code by SMS when a customer pays by mobile money — so a closed portal never leaves them without their code. Requires an SMS API subscription (provider + API key).
Hotspot Settings
Configure your hotspot's public-facing and operational details. Each card saves independently.
🌐 Hotspot name
The name shown as the title on your captive portal login page.
🌐 DNS Configuration
Set the DNS name for your hotspot network — customers can reach the login page at http://<name>. Pushed to your router automatically.
📞 Customer Support Phones
Shown on the login page so customers can reach you.
📄 Footer Note
Text displayed at the bottom of the login page (200 characters max).
🛠 Router Identity
Internal identifiers for your registered routers.