Version 25.6 by Xiaoling on 2022/05/31 15:35

Show last authors
1 **Contents:**
2
3 {{toc/}}
4
5
6
7 = **1. Monitor Gateway** =
8
9 == **1.1 Introduction** ==
10
11 This introduction shows how to use a script to monitor the gateway. The video link for this instruction is: [[https:~~/~~/youtu.be/8PieIwfSF_g>>url:https://youtu.be/8PieIwfSF_g]]
12
13 [[image:image-20220531144606-1.png]]
14
15
16 == **1.2 Steps** ==
17
18 * Create account in ThingsSpeak and creat channel.
19 * Download script from dragino site and move it to properly directory
20
21 (% class="box infomessage" %)
22 (((
23 root@dragino-1baf44:~~# wget [[http:~~/~~/www.dragino.com/downloads/downloads/LoRa_Gateway/LPS8/Firmware/customized_script/monitor_gateway.sh>>url:http://www.dragino.com/downloads/downloads/LoRa_Gateway/LPS8/Firmware/customized_script/monitor_gateway.sh]]
24 Downloading '[[http:~~/~~/www.dragino.com/downloads/downloads/LoRa_Gateway/LPS8/Firmware/customized_script/monitor_gateway.sh'>>url:http://www.dragino.com/downloads/downloads/LoRa_Gateway/LPS8/Firmware/customized_script/monitor_gateway.sh']]
25 Connecting to 162.241.22.11:80
26 Writing to 'monitor_gateway.sh'
27 monitor_gateway.sh   100% |~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~**|  1860   0:00:00 ETA
28 Download completed (1860 bytes)
29 root@dragino-1baf44:~~# chmod +x monitor_gateway.sh;mv monitor_gateway.sh /usr/bin/
30 root@dragino-1baf44:~~#
31 root@dragino-1baf44:~~#
32 )))
33
34 * change the script monitor_gateway.sh with properly users setting:
35
36 (% class="box infomessage" %)
37 (((
38 USER='xxxxx'             # user name in your thinkspeak ~-~-> Profile
39 PASS='xxxxx'     #MQTT_API_KEY in your thinkspeak ~-~-> Profile
40 CHAN_ID='xxxx'    #Channel ID   of the channel for this gateway
41 CHAN_KEY='xxxxx'   #Channel Write API  of the channel for this gateway
42 )))
43
44 * run **/usr/bin/monitor_gateway.sh** to test if upload is good.
45
46 * Add monitor_gateway.sh to cron work **/etc/crontabs/root** to make this script runs perdiocally, below is an example to update every 20 minutes
47
48 (% class="box infomessage" %)
49 (((
50 # For details see man 4 crontabs
51 # Example of job definition:
52 # .~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~- minute (0 - 59)
53 # | .~-~-~-~-~-~-~-~-~-~-~-~-- hour (0 - 23)
54 # | | .~-~-~-~-~-~-~-~-~-~- day of month (1 - 31)
55 # | | | .~-~-~-~-~-~-- month (1 - 12) OR jan,feb,mar,apr ...
56 # | | | | .~-~-~-~- day of week (0 - 6) (Sunday=0 or 7) OR sun,mon,tue,wed,thu,fri,sat
57 # | | | | |
58 # * * * * * user-name command to be executed
59 #*/10 * * * *  checklog
60 ~* 23 * * *  /etc/init.d/auto_update start
61 */20 * * * *  /usr/bin/monitor_gateway.sh     
62 )))
63
64 * Reboot device.
65
66
67
68 == **1.3 Monitor Public IP** ==
69
70 The monitor_gateway.sh has been updated to upload the public ip of the device as well.
71
72 User can find the public ip in field7, the chart is not able to show the complete public ip, user can check that in the export.
73
74 [[image:image-20220531145559-2.png]]
75
76 Find Public IP
77
78
79
80 = **2. Remote Access** =
81
82 == **2.1 Remote Access via Remote.it.** ==
83
84 Remote.it for remote access is available in the latest Dragino firmware for gateway. For security concern, the remote.it only available base on end user demand.
85
86 Important Notice:
87
88 * Remote.it access will give full control of your device to remote support.
89 * The Remote.it allow Dragino Support to remote access to the device, If user want to access himself, it need to sign up for an remote.it account.
90
91 For how to use remoteit, please see : [[Remoteit user instruction for Dragino Gateway>>url:https://www.dragino.com/downloads/index.php?dir=LoRa_Gateway/&file=Dragino-Remoteit_User_Manual.pdf]].
92
93
94 == **2.2 RSSH Introduction** ==
95
96 Reverse SSH for remote access is available in the latest Dragino firmware for gateway. For security concern, the RSSH only available base on end user demand.
97
98 Important Notice:
99
100 (% class="box warningmessage" %)
101 (((
102 RSSH access will give full control of your device to remote support. Please remove sensitivity info before perform this
103 This RSSH allow Dragino Support to remote access to the device, If user want to access himself, he need to set up the RSSH server himself.
104 )))
105
106 Below gateway support reverse SSH access:
107
108 * Firmware Version > lgw~-~-build-v5.4.1618196981-20210412-1111 [[Firmware Download>>url:http://www.dragino.com/downloads/index.php?dir=LoRa_Gateway/LPS8/Firmware/Release/]]
109 * LG01N, OLG01N (Note: LG01-P LG01-S doesn't support)
110 * LG02, OLG02
111 * LG308, DLOS8
112 * LPS8
113 * LIG16
114 * MS14 series if installed with the same firmware.
115
116
117
118 === **2.2.1 End User Guide to use SSH access** ===
119
120 Go to this the Reverse SSH page as below:
121
122 [[image:image-20220531150151-3.png]]
123
124 Get the RSSH configure page
125
126
127
128 [[image:image-20220531150338-4.png]]
129
130 Connection OK.
131
132
133 * (% style="color:#037691" %)**Login ID**(%%): Input sshuser
134 * (% style="color:#037691" %)**Host Address**(%%): Input support.dragino.com
135 * (% style="color:#037691" %)**Host Port** (%%): Please email to support @ dragino.com to get a valid host port.
136 * (% style="color:#037691" %)**Connect at Startup**(%%) : Choose to enable connect once the device is powered.
137 * (% style="color:#037691" %)**Network Keys**(%%): Click the Generate keys to generate the keys and download / mail it to Dragino support so Dragino can prepare the remote access to
138
139 After doing above, please download and mail the public keys to Dragino support and wait for our mail for the valid host port. Input the valid host port got from our support and click connect so we can remote access to your gateway.
140
141
142 === **2.2.2 Set Up RSSH Server** ===
143
144 Advance administrator can config a SSH server to provide support their end user themselves., Steps as below
145
146
147 ==== **2.2.2.1 Step 1:Download the SSH service code** ====
148
149 1).git clone [[https:~~/~~/github.com/dragino/rssh-server.git>>url:https://github.com/dragino/rssh-server.git]] rssh-server
150
151 [[image:image-20220531150750-5.png]]
152
153 2).cd rssh-server; sudo make ~-~--> to Generate the execute file:rssh_serv
154
155 [[image:image-20220531150811-6.png]]
156
157
158 **Debug** :
159
160 (((
161 (% class="box" %)
162 (((
163 if you git fail.  ~-~->  (% style="color:#037691" %)**sudo: git: command not found**(%%).
164 please install git.  ~-~->    (% style="color:#037691" %)**yum install git -y  or  apt-get install git -y**(%%).
165 if you make error 127,it** (% style="color:#037691" %)lack of gcc(%%)**.
166 please install gcc.  ~-~->  (% style="color:#037691" %)**yum install gcc**(%%).
167 )))
168 )))
169
170 [[image:image-20220531151516-7.png]]
171
172
173 (((
174 (% class="box" %)
175 (((
176 if you make a fatal error : sqlite3.h,it (% style="color:#037691" %)**lack of sqlite3**(%%).
177 please insatell sqlite3.
178 )))
179 )))
180
181 [[image:image-20220531151628-8.png]]
182
183
184 **How to install Sqlit3**
185
186 (% class="box infomessage" %)
187 (((
188 Step1:Download the SQLit3 installation package
189 sudo wget **[[https:~~/~~/www.sqlite.org/2021/sqlite-autoconf-3350400.tar.gz>>url:https://www.sqlite.org/2021/sqlite-autoconf-3350400.tar.gz]]**
190
191 Step2:tar the SQLit3 installation package
192 sudo tar -zxvf sqlite-autoconf-3350300.tar.gz
193 Step3:Generate the makefile
194 cd sqlite-autoconf-3350300/;./configure
195 Step4:Compile makefile
196 sudo make
197 Step5:Install makefile
198 sudo make install
199 Check:
200 cd /usr/local/bin;ls -al                             ~-~->    Check to see if there is a file for sqlite3
201 cd sqlite-autoconf-3350300/;./sqlite3 test.db        ~-~->    Test whether the sqlite3 was installed successfully
202 debug:
203 If you get the imformation that is SQLite header and source version mismatch, when you execute./sqlite3 test.db.
204 Please execute the command /sbin/ldconfig.
205 After that execute the command ./sqlite3 test.db again.
206 )))
207
208 ===== =====
209
210 ==== **2.2.2.2 Step 2 :Install and run the RSS service** ====
211
212 1):install database for /var/rsshdb.sqlite3 and Server development port for 3721(The default is 3721)
213
214 user must enter the root account and run the following commands
215
216 (% class="box infomessage" %)
217 (((
218 $ ./create_sqlite3_db.sh
219 $ ./rssh_serv -p  3721 2>&1 &
220 $ ps -ef | grep rssh_serv check 3721 port
221 )))
222
223 [[image:image-20220531151958-10.png]]
224
225
226 **Debug:**
227
228 {{{ Check /var/rsshdb.sqlite3 --> ls /var/rsshdb.sqlite3
229 Check ls /var/rsshdb.sqlite3 --> sudo chmod 777 rssh_serv
230 }}}
231
232 {{{ if fail to open dpvlry or to bind to it
233 please kill rssh_serv,and run ./rssh_serv -p 3721 2>&1 & again
234 }}}
235
236 ===== =====
237
238 ===== =====
239
240 ==== **2.2.2.3 Step 3 :Create a minimal SSH user (reverse SSH proxy for the gateway)** ====
241
242 (% class="box infomessage" %)
243 (((
244 1):sudo useradd XXXXX (custom user name)
245 2):sudo passwd xxxxxx
246 3):cp /bin/bash /bin/rbash
247 4):sudo nano /etc/passwd ~-~-> Change /bin/bash to /bin/rbash
248 5):sudo nano /home/xxxxx/.bashrc **empty it,and input export PATH=$HOME/bin**
249 6):sudo nano /home/xxxxx/.bash_profile **empty it,and input export PATH=$HOME/bin**
250 )))
251
252 **Now user "XXXXX" is the user with limited permissions of the current system**
253
254
255
256 ==== **2.2.2.4 Step4:Create an authorization key file** ====
257
258 1):sudo mkdir /home/xxxxx/.ssh; sudo touch /home/xxxxx/.ssh/authorizedkey
259
260 **Debug:**
261
262 {{{ check: sudo ls /home/xxxxx/.ssh/authorizedkey}}}
263
264
265
266 === **2.3 How does user get the gateway to connect to a user's private server** ===
267
268
269 ==== **2.3.1 Step1: Come back the gateway web UI to get the gateway Public key** ====
270
271 1)in the system ~-~-> (% style="color:#037691" %)**Remote Mgmt/span**
272
273 [[image:image-20220531152419-11.png]]
274
275
276 ==== **2.3.2 Step2: Authorization server** ====
277
278 Input the Gateway Publickey into user's private server "/home/XXXXX/.ssh/authorized_keys" file.
279
280 [[image:image-20220531152549-12.png]]
281
282
283 ===== **2.3.3 Step3: Connect private server** =====
284
285 This is same as connect Dragino Support Server but just change the server address to customize server address.
286
287 [[image:image-20220531152633-13.png]]
288
289
290
291 ===== **2.3.4 Step 4 :Check Connection** =====
292
293 Rssh Host connection Ok
294
295 [[image:image-20220531152815-14.png]]
296
297
298 User can use common ps | grep ssh to check it in the gateway.
299
300 [[image:image-20220531152840-15.png]]
301
302
303 ==== **2.3.5 Step5:Access the gateway from customized server** ====
304
305 Check what gateways link to server.
306
307 (% class="box infomessage" %)
308 (((
309 $ ./connect-gw.sh -l
310 )))
311
312 [[image:image-20220531153016-16.png]]
313
314
315
316 Access the gateway
317
318 (% class="box infomessage" %)
319 (((
320 $ ./connect-gw.sh <GWID>
321 )))
322
323 [[image:image-20220531153219-17.png]]