Command Reference · Maintenance

MikroTik RouterOS Backup & Export Commands

RouterOS has two genuinely different ways to save your configuration, and confusing them is a common mistake. Here’s what each one actually preserves, and when to use which.

Binary Backup

Terminal
/system/backup/save name=before-upgrade

This creates a .backup file — a complete, encrypted binary snapshot of the router’s configuration, including users and passwords. It’s restored with /system/backup/load, and it’s device-specific: a binary backup is generally meant to be restored to the same device (or identical hardware) it came from, not used to clone configuration onto a different router model.

Script Export

Terminal
/export file=before-upgrade

This writes a plain-text .rsc file containing the actual RouterOS commands that would recreate your configuration from scratch. Unlike a binary backup, an export is human-readable, editable, and portable — you can review it, strip out parts you don’t want, or apply it to a different device. It’s restored with /import file-name=your-export.rsc.

Which One Should You Use?

  • Use a binary backup when you want a fast, complete, exact-state snapshot to restore to the same device — the standard “before I touch anything” safety net.
  • Use an export when you want to review the configuration as text, move it toward a different device, keep it in version control, or extract just one section (e.g. /ip/firewall/export exports only the firewall configuration).
  • Use both before anything genuinely risky, like a major version upgrade — see our RouterOS v7 Upgrade Guide.

Practical Example: Before Any Risky Change

Terminal
/system/backup/save name=pre-change-backup
/export file=pre-change-export
/file/print

The final /file/print confirms both files were actually created before you proceed — don’t assume a save succeeded without checking, especially if storage is close to full.

⚠ Download backups off the router

Both a .backup and an .rsc file are only useful for recovery if they survive whatever goes wrong with the router itself. Download a copy to your computer (via Winbox’s file manager, FTP, or SFTP) rather than leaving it only on the device’s own storage — a backup that lives only on the router you’re about to reinstall doesn’t help you.

Troubleshooting

  • Backup file has a password prompt on restore — binary backups can be encrypted with a password set at save time; if you set one, you’ll need it to restore. Exports are always plain text with no password.
  • Restored export doesn’t fully match the original — some runtime state (like DHCP leases or connection tracking) isn’t part of either a backup or an export, since both capture configuration, not live session state.
  • Backup won’t restore to a different router model — this is expected; binary backups are tied to matching hardware. Use an export instead when moving configuration to different hardware.

RouterOS v6/v7 Differences

Both commands work the same way across v6 and v7. The one practical interaction with the v6→v7 upgrade specifically: a binary backup taken on v6 is restored on v6, and one taken on v7 restores on v7 — a binary backup does not itself perform version conversion. An export (.rsc) is more version-portable since it’s just a sequence of commands, but commands that changed structurally in v7 (like BGP and OSPF, covered in our v7 Upgrade Guide) won’t apply cleanly to the new syntax without manual editing.

Technical reference

MikroTik RouterOS documentation — Command Line Interface. This page is an independent, original explanation written by our team, not an official MikroTik publication.