Changes for page Monitor & Remote Access Gateway
Last modified by Kilight Cao on 2025/01/14 10:25
Change comment:
There is no comment for this version
Summary
-
Page properties (1 modified, 0 added, 0 removed)
Details
- Page properties
-
- Content
-
... ... @@ -145,22 +145,20 @@ 145 145 After doing above, please download and mail the public keys to Dragino support and wait for our mail for the valid host port. Input the valid host port got from our support and click connect so we can remote access to your gateway. 146 146 147 147 148 -Set Up RSSH Server 148 +=== Set Up RSSH Server === 149 149 150 +Advance administrator can config a SSH server to provide support their end user themselves., Steps as below 150 150 151 -==== =Step 1:Download the SSH service code =====152 +==== Step 1:Download the SSH service code ==== 152 152 153 153 1).git clone [[https:~~/~~/github.com/dragino/rssh-server.git>>url:https://github.com/dragino/rssh-server.git]] rssh-server 154 154 155 -[[~[~[image:https://wiki.dragino.com/images/thumb/d/d0/Git_clone.png/500px-Git_clone.png~|~|height="8 0" width="500"~]~]>>url:https://wiki.dragino.com/index.php/File:Git_clone.png]]156 +[[~[~[image:https://wiki.dragino.com/images/thumb/d/d0/Git_clone.png/500px-Git_clone.png~|~|height="89" width="555"~]~]>>url:https://wiki.dragino.com/index.php/File:Git_clone.png]] 156 156 157 -git clone rssh-server 158 - 159 159 2).cd rssh-server; sudo make ~-~--> to Generate the execute file:rssh_serv 160 160 161 -[[~[~[image:https://wiki.dragino.com/images/thumb/e/e3/Generate_the_execute_file.png/500px-Generate_the_execute_file.png~|~|height="1 03" width="500"~]~]>>url:https://wiki.dragino.com/index.php/File:Generate_the_execute_file.png]]160 +[[~[~[image:https://wiki.dragino.com/images/thumb/e/e3/Generate_the_execute_file.png/500px-Generate_the_execute_file.png~|~|height="114" width="554"~]~]>>url:https://wiki.dragino.com/index.php/File:Generate_the_execute_file.png]] 162 162 163 -Generate the execute file 164 164 165 165 **Debug** : 166 166 ... ... @@ -174,7 +174,6 @@ 174 174 175 175 [[~[~[image:https://wiki.dragino.com/images/d/d7/Lack_of_gcc.png~|~|height="174" width="434"~]~]>>url:https://wiki.dragino.com/index.php/File:Lack_of_gcc.png]] 176 176 177 -lack of gcc 178 178 179 179 {{{ if you make a fatal error : sqlite3.h,it lack of sqlite3. 180 180 please insatell sqlite3. ... ... @@ -182,28 +182,160 @@ 182 182 183 183 [[~[~[image:https://wiki.dragino.com/images/thumb/9/93/Lack_of_sqlite3.png/500px-Lack_of_sqlite3.png~|~|height="137" width="500"~]~]>>url:https://wiki.dragino.com/index.php/File:Lack_of_sqlite3.png]] 184 184 185 -lack of sqlite3 186 186 187 -How to install Sqlit3 183 +**How to install Sqlit3** 188 188 189 -{{{ Step1:Download the SQLit3 installation package 190 - sudo wget 191 - Step2:tar the SQLit3 installation package 185 +(% class="box infomessage" %) 186 +((( 187 + Step1:Download the SQLit3 installation package 188 + sudo wget 189 +Step2:tar the SQLit3 installation package 192 192 sudo tar -zxvf sqlite-autoconf-3350300.tar.gz 193 - 191 +Step3:Generate the makefile 194 194 cd sqlite-autoconf-3350300/;./configure 195 - 193 +Step4:Compile makefile 196 196 sudo make 197 - 195 +Step5:Install makefile 198 198 sudo make install 199 - 200 - cd /usr/local/bin;ls -al 201 - cd sqlite-autoconf-3350300/;./sqlite3 test.db 202 - 197 +Check: 198 + cd /usr/local/bin;ls -al ~-~-> Check to see if there is a file for sqlite3 199 + cd sqlite-autoconf-3350300/;./sqlite3 test.db ~-~-> Test whether the sqlite3 was installed successfully 200 +debug: 203 203 If you get the imformation that is SQLite header and source version mismatch, when you execute./sqlite3 test.db. 204 204 Please execute the command /sbin/ldconfig. 205 205 After that execute the command ./sqlite3 test.db again. 204 +))) 205 + 206 +===== ===== 207 + 208 +==== Step 2 :Install and run the RSS service ==== 209 + 210 +1):install database for /var/rsshdb.sqlite3 and Server development port for 3721(The default is 3721) 211 + 212 +user must enter the root account and run the following commands 213 + 214 +(% class="box infomessage" %) 215 +((( 216 + $ ./create_sqlite3_db.sh 217 +$ ./rssh_serv -p 3721 2>&1 & 218 +$ ps -ef | grep rssh_serv check 3721 port 219 +))) 220 + 221 +[[~[~[image:https://wiki.dragino.com/images/thumb/c/cb/Intall_database_and_server_development_port.png/500px-Intall_database_and_server_development_port.png~|~|height="70" width="500"~]~]>>url:https://wiki.dragino.com/index.php/File:Intall_database_and_server_development_port.png]] 222 + 223 + 224 +**Debug:** 225 + 226 +{{{ Check /var/rsshdb.sqlite3 --> ls /var/rsshdb.sqlite3 227 + Check ls /var/rsshdb.sqlite3 --> sudo chmod 777 rssh_serv 206 206 }}} 207 207 230 +{{{ if fail to open dpvlry or to bind to it 231 + please kill rssh_serv,and run ./rssh_serv -p 3721 2>&1 & again 232 +}}} 208 208 234 +===== ===== 235 + 236 +===== ===== 237 + 238 +==== Step 3 :Create a minimal SSH user (reverse SSH proxy for the gateway) ==== 239 + 240 +(% class="box infomessage" %) 241 +((( 242 +1):sudo useradd XXXXX (custom user name) 243 +2):sudo passwd xxxxxx 244 +3):cp /bin/bash /bin/rbash 245 +4):sudo nano /etc/passwd ~-~-> Change /bin/bash to /bin/rbash 246 +5):sudo nano /home/xxxxx/.bashrc **empty it,and input export PATH=$HOME/bin** 247 +6):sudo nano /home/xxxxx/.bash_profile **empty it,and input export PATH=$HOME/bin** 248 +))) 249 + 250 +**Now user "XXXXX" is the user with limited permissions of the current system** 251 + 252 +=== How does user get the gateway to connect to a user's private server === 253 + 254 +===== Step1: Come bace the gateway web UI for get the gateway Public key ===== 255 + 256 +1)in the system ~-~-> Remote Mgmt/span> 257 + 258 +[[~[~[image:https://wiki.dragino.com/images/thumb/8/8f/Remote_Mgmt.png/500px-Remote_Mgmt.png~|~|height="367" width="500"~]~]>>url:https://wiki.dragino.com/index.php/File:Remote_Mgmt.png]] 259 + 260 +Remote Mgmt 261 + 262 +===== Step2: Authorization server ===== 263 + 264 +copy the Gateway Publickey into user's private server "/home/XXXXX/.ssh/authorized_keys" file. 265 + 266 +[[~[~[image:https://wiki.dragino.com/images/thumb/4/49/Publickey.png/500px-Publickey.png~|~|height="81" width="500"~]~]>>url:https://wiki.dragino.com/index.php/File:Publickey.png]] 267 + 268 +Publickey 269 + 270 +===== Step3: connecte private server ===== 271 + 272 +in the gateway web UI 273 + 274 +[[~[~[image:https://wiki.dragino.com/images/thumb/0/04/Gateway_web_UI.png/500px-Gateway_web_UI.png~|~|height="389" width="500"~]~]>>url:https://wiki.dragino.com/index.php/File:Gateway_web_UI.png]] 275 + 276 +gateway web UI 277 + 278 +{{{Connection Type : If user's least privileged user with private server uses a password, select Public Key 279 +Note:if user's least privileged user no uses a password,choose from both is fine 280 +Login ID : Input user name "eg : "XXXXX" 281 +Host Address : Input user's private server address 282 +Connect at Startupt: : Choose to enable connect once device is powered. 283 +Click Save and then Connect 284 +}}} 285 + 286 +===== Step 4 :Cheak is fine ===== 287 + 288 +Rssh Host connection Ok 289 + 290 +[[~[~[image:https://wiki.dragino.com/images/thumb/6/6f/Rssh_Host_connection_Ok.png/500px-Rssh_Host_connection_Ok.png~|~|height="225" width="500"~]~]>>url:https://wiki.dragino.com/index.php/File:Rssh_Host_connection_Ok.png]] 291 + 292 +Rssh Host connection Ok 293 + 294 +user can use common ps | grep ssh to check it in the gateway. 295 + 296 +[[~[~[image:https://wiki.dragino.com/images/thumb/a/ad/Check_the_gateway.png/500px-Check_the_gateway.png~|~|height="47" width="500"~]~]>>url:https://wiki.dragino.com/index.php/File:Check_the_gateway.png]] 297 + 298 +Check the gateway 299 + 300 +~= 301 + 302 +==== Step4:Create an authorization key file~= ==== 303 + 304 +1):sudo mkdir /home/xxxxx/.ssh; sudo touch /home/xxxxx/.ssh/authorizedkey 305 + 306 +**Debug:** 307 + 308 +{{{ check: sudo ls /home/xxxxx/.ssh/authorizedkey 309 +}}} 310 + 311 +=== How to Ser up a Reverse SSH access === 312 + 313 +==== Step1: Log into the server system ==== 314 + 315 +[[~[~[image:https://wiki.dragino.com/images/thumb/2/26/Loging_server.png/500px-Loging_server.png~|~|height="69" width="500"~]~]>>url:https://wiki.dragino.com/index.php/File:Loging_server.png]] 316 + 317 +Loging server 318 + 319 +==== Step2:access the gateway ==== 320 + 321 +$ cd rssh-server/ 322 + 323 + 324 +Check the gateway linking to the server $ ./connect-gw.sh -l 325 + 326 +[[~[~[image:https://wiki.dragino.com/images/thumb/e/ee/Check_gateway_link_server.png/500px-Check_gateway_link_server.png~|~|height="157" width="500"~]~]>>url:https://wiki.dragino.com/index.php/File:Check_gateway_link_server.png]] 327 + 328 +Check the gateway linking to the server 329 + 330 + 331 +access the gateway $ ./connect-gw.sh <GWID> 332 + 333 +[[~[~[image:https://wiki.dragino.com/images/thumb/b/b7/Reverse_ssh_access_the_gateway1.png/500px-Reverse_ssh_access_the_gateway1.png~|~|height="230" width="500"~]~]>>url:https://wiki.dragino.com/index.php/File:Reverse_ssh_access_the_gateway1.png]] 334 + 335 +reverse ssh access the gateway 336 + 337 + 209 209