Version 16.3 by Xiaoling on 2022/05/31 15:17

Hide last authors
Edwin Chen 1.1 1 {{box cssClass="floatinginfobox" title="**Contents**"}}
2 {{toc/}}
3 {{/box}}
4
Xiaoling 11.2 5 = **1. Monitor Gateway** =
Edwin Chen 1.1 6
Xiaoling 11.2 7 == **1.1 Introduction** ==
Edwin Chen 1.1 8
9 This introduction shows how to use a script to monitor the gateway. The video link for this instruction is: [[https:~~/~~/youtu.be/8PieIwfSF_g>>url:https://youtu.be/8PieIwfSF_g]]
10
Xiaoling 9.2 11 [[image:image-20220531144606-1.png]]
Edwin Chen 1.1 12
Xiaoling 8.3 13
Xiaoling 11.2 14 == **1.2 Steps** ==
Edwin Chen 1.1 15
16 * Create account in ThingsSpeak and creat channel.
17 * Download script from dragino site and move it to properly directory
18
19 (% class="box infomessage" %)
20 (((
21 root@dragino-1baf44:~~# wget [[http:~~/~~/www.dragino.com/downloads/downloads/LoRa_Gateway/LPS8/Firmware/customized_script/monitor_gateway.sh>>url:http://www.dragino.com/downloads/downloads/LoRa_Gateway/LPS8/Firmware/customized_script/monitor_gateway.sh]]
22 Downloading '[[http:~~/~~/www.dragino.com/downloads/downloads/LoRa_Gateway/LPS8/Firmware/customized_script/monitor_gateway.sh'>>url:http://www.dragino.com/downloads/downloads/LoRa_Gateway/LPS8/Firmware/customized_script/monitor_gateway.sh']]
23 Connecting to 162.241.22.11:80
24 Writing to 'monitor_gateway.sh'
25 monitor_gateway.sh   100% |~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~**|  1860   0:00:00 ETA
26 Download completed (1860 bytes)
27 root@dragino-1baf44:~~# chmod +x monitor_gateway.sh;mv monitor_gateway.sh /usr/bin/
28 root@dragino-1baf44:~~#
29 root@dragino-1baf44:~~#
30 )))
31
32 * change the script monitor_gateway.sh with properly users setting:
33
34 (% class="box infomessage" %)
35 (((
36 USER='xxxxx'             # user name in your thinkspeak ~-~-> Profile
37 PASS='xxxxx'     #MQTT_API_KEY in your thinkspeak ~-~-> Profile
38 CHAN_ID='xxxx'    #Channel ID   of the channel for this gateway
39 CHAN_KEY='xxxxx'   #Channel Write API  of the channel for this gateway
40 )))
41
42 * run **/usr/bin/monitor_gateway.sh** to test if upload is good.
43
44 * Add monitor_gateway.sh to cron work **/etc/crontabs/root** to make this script runs perdiocally, below is an example to update every 20 minutes
45
46 (% class="box infomessage" %)
47 (((
Edwin Chen 7.1 48 # For details see man 4 crontabs
Edwin Chen 1.1 49 # Example of job definition:
50 # .~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~- minute (0 - 59)
51 # | .~-~-~-~-~-~-~-~-~-~-~-~-- hour (0 - 23)
52 # | | .~-~-~-~-~-~-~-~-~-~- day of month (1 - 31)
53 # | | | .~-~-~-~-~-~-- month (1 - 12) OR jan,feb,mar,apr ...
54 # | | | | .~-~-~-~- day of week (0 - 6) (Sunday=0 or 7) OR sun,mon,tue,wed,thu,fri,sat
55 # | | | | |
56 # * * * * * user-name command to be executed
57 #*/10 * * * *  checklog
58 ~* 23 * * *  /etc/init.d/auto_update start
Edwin Chen 2.1 59 */20 * * * *  /usr/bin/monitor_gateway.sh     
Edwin Chen 1.1 60 )))
61
62 * Reboot device.
63
Xiaoling 11.2 64 == **1.3 Monitor Public IP** ==
Xiaoling 8.2 65
Edwin Chen 1.1 66 The monitor_gateway.sh has been updated to upload the public ip of the device as well.
67
68 User can find the public ip in field7, the chart is not able to show the complete public ip, user can check that in the export.
69
Xiaoling 10.2 70 [[image:image-20220531145559-2.png]]
Edwin Chen 1.1 71
72 Find Public IP
73
74
75
Xiaoling 11.2 76 = **2. Remote Access** =
Edwin Chen 1.1 77
Xiaoling 11.2 78 == **2.1 Remote Access via Remote.it.** ==
Edwin Chen 1.1 79
80 Remote.it for remote access is available in the latest Dragino firmware for gateway. For security concern, the remote.it only available base on end user demand.
81
82 Important Notice:
83
84 * Remote.it access will give full control of your device to remote support.
85 * The Remote.it allow Dragino Support to remote access to the device, If user want to access himself, it need to sign up for an remote.it account.
86
87 For how to use remoteit, please see : [[Remoteit user instruction for Dragino Gateway>>url:https://www.dragino.com/downloads/index.php?dir=LoRa_Gateway/&file=Dragino-Remoteit_User_Manual.pdf]].
88
89
Xiaoling 11.2 90 == **2.2 RSSH Introduction** ==
Edwin Chen 1.1 91
Edwin Chen 2.1 92 Reverse SSH for remote access is available in the latest Dragino firmware for gateway. For security concern, the RSSH only available base on end user demand.
Edwin Chen 1.1 93
Edwin Chen 2.1 94 Important Notice:
Edwin Chen 1.1 95
Edwin Chen 2.2 96 (% class="box warningmessage" %)
Edwin Chen 2.1 97 (((
98 RSSH access will give full control of your device to remote support. Please remove sensitivity info before perform this
99 This RSSH allow Dragino Support to remote access to the device, If user want to access himself, he need to set up the RSSH server himself.
100 )))
101
102 Below gateway support reverse SSH access:
103
Edwin Chen 4.1 104 * Firmware Version > lgw~-~-build-v5.4.1618196981-20210412-1111 [[Firmware Download>>url:http://www.dragino.com/downloads/index.php?dir=LoRa_Gateway/LPS8/Firmware/Release/]]
Edwin Chen 2.1 105 * LG01N, OLG01N (Note: LG01-P LG01-S doesn't support)
106 * LG02, OLG02
107 * LG308, DLOS8
108 * LPS8
109 * LIG16
110 * MS14 series if installed with the same firmware.
111
Xiaoling 11.2 112 === **2.2.1 End User Guide to use SSH access** ===
Xiaoling 9.5 113
Edwin Chen 4.1 114 Go to this the Reverse SSH page as below:
Edwin Chen 1.1 115
Xiaoling 11.2 116 [[image:image-20220531150151-3.png]]
Edwin Chen 1.1 117
Edwin Chen 4.1 118 Get the RSSH configure page
Edwin Chen 1.1 119
Xiaoling 11.3 120
121
Xiaoling 12.2 122 [[image:image-20220531150338-4.png]]
Edwin Chen 1.1 123
Edwin Chen 4.1 124 Connection OK.
125
Xiaoling 12.2 126
Xiaoling 12.3 127 * (% style="color:#037691" %)**Login ID**(%%): Input sshuser
128 * (% style="color:#037691" %)**Host Address**(%%): Input support.dragino.com
129 * (% style="color:#037691" %)**Host Port** (%%): Please email to support @ dragino.com to get a valid host port.
130 * (% style="color:#037691" %)**Connect at Startup**(%%) : Choose to enable connect once the device is powered.
131 * (% style="color:#037691" %)**Network Keys**(%%): Click the Generate keys to generate the keys and download / mail it to Dragino support so Dragino can prepare the remote access to
Edwin Chen 4.1 132
133 After doing above, please download and mail the public keys to Dragino support and wait for our mail for the valid host port. Input the valid host port got from our support and click connect so we can remote access to your gateway.
134
Edwin Chen 5.1 135
Xiaoling 9.8 136 === **2.2.2 Set Up RSSH Server** ===
Edwin Chen 5.1 137
Edwin Chen 5.2 138 Advance administrator can config a SSH server to provide support their end user themselves., Steps as below
Edwin Chen 5.1 139
140
Xiaoling 9.8 141 ==== **2.2.2.1 Step 1:Download the SSH service code** ====
Xiaoling 9.7 142
Edwin Chen 5.1 143 1).git clone [[https:~~/~~/github.com/dragino/rssh-server.git>>url:https://github.com/dragino/rssh-server.git]] rssh-server
144
Xiaoling 13.2 145 [[image:image-20220531150750-5.png]]
Edwin Chen 5.1 146
147 2).cd rssh-server; sudo make ~-~--> to Generate the execute file:rssh_serv
148
Xiaoling 14.2 149 [[image:image-20220531150811-6.png]]
Edwin Chen 5.1 150
151
152 **Debug** :
153
Xiaoling 14.3 154 (((
155 (% class="box" %)
156 (((
157 if you git fail.  ~-~->  (% style="color:#037691" %)**sudo: git: command not found**(%%).
158 please install git.  ~-~->    (% style="color:#037691" %)**yum install git -y  or  apt-get install git -y**(%%).
159 if you make error 127,it** (% style="color:#037691" %)lack of gcc(%%)**.
160 please install gcc.  ~-~->  (% style="color:#037691" %)**yum install gcc**(%%).
161 )))
162 )))
Edwin Chen 5.1 163
Xiaoling 15.2 164 [[image:image-20220531151516-7.png]]
Edwin Chen 5.1 165
166
Xiaoling 15.2 167 (((
168 (% class="box" %)
169 (((
170 if you make a fatal error : sqlite3.h,it (% style="color:#037691" %)**lack of sqlite3**(%%).
171 please insatell sqlite3.
172 )))
173 )))
Edwin Chen 5.1 174
Xiaoling 16.2 175 [[image:image-20220531151628-8.png]]
Edwin Chen 5.1 176
177
Edwin Chen 5.2 178 **How to install Sqlit3**
Edwin Chen 5.1 179
Edwin Chen 5.2 180 (% class="box infomessage" %)
181 (((
182 Step1:Download the SQLit3 installation package
183 sudo wget
184 Step2:tar the SQLit3 installation package
Edwin Chen 5.1 185 sudo tar -zxvf sqlite-autoconf-3350300.tar.gz
Edwin Chen 5.2 186 Step3:Generate the makefile
Edwin Chen 5.1 187 cd sqlite-autoconf-3350300/;./configure
Edwin Chen 5.2 188 Step4:Compile makefile
Edwin Chen 5.1 189 sudo make
Edwin Chen 5.2 190 Step5:Install makefile
Edwin Chen 5.1 191 sudo make install
Edwin Chen 5.2 192 Check:
193 cd /usr/local/bin;ls -al                             ~-~->    Check to see if there is a file for sqlite3
194 cd sqlite-autoconf-3350300/;./sqlite3 test.db        ~-~->    Test whether the sqlite3 was installed successfully
195 debug:
Edwin Chen 5.1 196 If you get the imformation that is SQLite header and source version mismatch, when you execute./sqlite3 test.db.
197 Please execute the command /sbin/ldconfig.
198 After that execute the command ./sqlite3 test.db again.
Edwin Chen 5.2 199 )))
200
201 ===== =====
202
Xiaoling 9.9 203 ==== **2.2.2.2 Step 2 :Install and run the RSS service** ====
Edwin Chen 5.2 204
205 1):install database for /var/rsshdb.sqlite3 and Server development port for 3721(The default is 3721)
206
207 user must enter the root account and run the following commands
208
209 (% class="box infomessage" %)
210 (((
Xiaoling 16.3 211 $ ./create_sqlite3_db.sh
Edwin Chen 5.2 212 $ ./rssh_serv -p  3721 2>&1 &
213 $ ps -ef | grep rssh_serv check 3721 port
214 )))
215
216 [[~[~[image:https://wiki.dragino.com/images/thumb/c/cb/Intall_database_and_server_development_port.png/500px-Intall_database_and_server_development_port.png~|~|height="70" width="500"~]~]>>url:https://wiki.dragino.com/index.php/File:Intall_database_and_server_development_port.png]]
217
218
219 **Debug:**
220
221 {{{ Check /var/rsshdb.sqlite3 --> ls /var/rsshdb.sqlite3
222 Check ls /var/rsshdb.sqlite3 --> sudo chmod 777 rssh_serv
Edwin Chen 5.1 223 }}}
224
Edwin Chen 5.2 225 {{{ if fail to open dpvlry or to bind to it
226 please kill rssh_serv,and run ./rssh_serv -p 3721 2>&1 & again
227 }}}
Edwin Chen 5.1 228
Edwin Chen 5.2 229 ===== =====
230
231 ===== =====
232
Xiaoling 9.9 233 ==== **2.2.2.3 Step 3 :Create a minimal SSH user (reverse SSH proxy for the gateway)** ====
Edwin Chen 5.2 234
235 (% class="box infomessage" %)
236 (((
237 1):sudo useradd XXXXX (custom user name)
238 2):sudo passwd xxxxxx
239 3):cp /bin/bash /bin/rbash
240 4):sudo nano /etc/passwd ~-~-> Change /bin/bash to /bin/rbash
241 5):sudo nano /home/xxxxx/.bashrc **empty it,and input export PATH=$HOME/bin**
242 6):sudo nano /home/xxxxx/.bash_profile **empty it,and input export PATH=$HOME/bin**
243 )))
244
245 **Now user "XXXXX" is the user with limited permissions of the current system**
246
Edwin Chen 7.1 247
Xiaoling 9.9 248 ==== **2.2.2.4 Step4:Create an authorization key file** ====
Edwin Chen 7.1 249
250 1):sudo mkdir /home/xxxxx/.ssh; sudo touch /home/xxxxx/.ssh/authorizedkey
251
252 **Debug:**
253
254 {{{ check: sudo ls /home/xxxxx/.ssh/authorizedkey}}}
255
256
257
Xiaoling 9.9 258 === **2.3 How does user get the gateway to connect to a user's private server** ===
Edwin Chen 5.2 259
260
Xiaoling 9.9 261 ==== **2.3.1 Step1: Come back the gateway web UI to get the gateway Public key** ====
262
Edwin Chen 5.2 263 1)in the system ~-~-> Remote Mgmt/span>
264
265 [[~[~[image:https://wiki.dragino.com/images/thumb/8/8f/Remote_Mgmt.png/500px-Remote_Mgmt.png~|~|height="367" width="500"~]~]>>url:https://wiki.dragino.com/index.php/File:Remote_Mgmt.png]]
266
267
Xiaoling 9.9 268 ==== **2.3.2 Step2: Authorization server** ====
Edwin Chen 5.2 269
Edwin Chen 7.1 270 Input the Gateway Publickey into user's private server "/home/XXXXX/.ssh/authorized_keys" file.
Edwin Chen 5.2 271
272 [[~[~[image:https://wiki.dragino.com/images/thumb/4/49/Publickey.png/500px-Publickey.png~|~|height="81" width="500"~]~]>>url:https://wiki.dragino.com/index.php/File:Publickey.png]]
273
274
Xiaoling 9.9 275 ===== **2.3.3 Step3: Connect private server** =====
Edwin Chen 5.2 276
Edwin Chen 7.1 277 This is same as connect Dragino Support Server but just change the server address to customize server address.
Edwin Chen 5.2 278
279 [[~[~[image:https://wiki.dragino.com/images/thumb/0/04/Gateway_web_UI.png/500px-Gateway_web_UI.png~|~|height="389" width="500"~]~]>>url:https://wiki.dragino.com/index.php/File:Gateway_web_UI.png]]
280
281
282
Xiaoling 9.9 283 ===== **2.3.4 Step 4 :Check Connection** =====
Edwin Chen 5.2 284
285 Rssh Host connection Ok
286
287 [[~[~[image:https://wiki.dragino.com/images/thumb/6/6f/Rssh_Host_connection_Ok.png/500px-Rssh_Host_connection_Ok.png~|~|height="225" width="500"~]~]>>url:https://wiki.dragino.com/index.php/File:Rssh_Host_connection_Ok.png]]
288
289
Edwin Chen 7.1 290 User can use common ps | grep ssh to check it in the gateway.
Edwin Chen 5.2 291
292 [[~[~[image:https://wiki.dragino.com/images/thumb/a/ad/Check_the_gateway.png/500px-Check_the_gateway.png~|~|height="47" width="500"~]~]>>url:https://wiki.dragino.com/index.php/File:Check_the_gateway.png]]
293
294
Xiaoling 9.9 295 ==== **2.3.5 Step5:Access the gateway from customized server** ====
Edwin Chen 5.2 296
Edwin Chen 7.1 297 Check what gateways link to server.
Edwin Chen 5.2 298
Edwin Chen 7.1 299 $ ./connect-gw.sh -l
Edwin Chen 5.2 300
Edwin Chen 7.1 301 [[~[~[image:https://wiki.dragino.com/images/thumb/e/ee/Check_gateway_link_server.png/500px-Check_gateway_link_server.png~|~|height="157" width="500"~]~]>>url:https://wiki.dragino.com/index.php/File:Check_gateway_link_server.png]]
Edwin Chen 5.2 302
303
304
Edwin Chen 7.1 305 Access the gateway
Edwin Chen 5.2 306
Edwin Chen 7.1 307 $ ./connect-gw.sh <GWID>
Edwin Chen 5.2 308
309 [[~[~[image:https://wiki.dragino.com/images/thumb/b/b7/Reverse_ssh_access_the_gateway1.png/500px-Reverse_ssh_access_the_gateway1.png~|~|height="230" width="500"~]~]>>url:https://wiki.dragino.com/index.php/File:Reverse_ssh_access_the_gateway1.png]]