Version 27.1 by Xiaoling on 2022/05/31 15:44

Hide last authors
Xiaoling 25.6 1 **Contents:**
2
Edwin Chen 1.1 3 {{toc/}}
4
Xiaoling 25.6 5
6
Xiaoling 25.7 7
Xiaoling 11.2 8 = **1. Monitor Gateway** =
Edwin Chen 1.1 9
Xiaoling 11.2 10 == **1.1 Introduction** ==
Edwin Chen 1.1 11
12 This introduction shows how to use a script to monitor the gateway. The video link for this instruction is: [[https:~~/~~/youtu.be/8PieIwfSF_g>>url:https://youtu.be/8PieIwfSF_g]]
13
Xiaoling 9.2 14 [[image:image-20220531144606-1.png]]
Edwin Chen 1.1 15
Xiaoling 8.3 16
Xiaoling 11.2 17 == **1.2 Steps** ==
Edwin Chen 1.1 18
19 * Create account in ThingsSpeak and creat channel.
20 * Download script from dragino site and move it to properly directory
21
22 (% class="box infomessage" %)
23 (((
24 root@dragino-1baf44:~~# wget [[http:~~/~~/www.dragino.com/downloads/downloads/LoRa_Gateway/LPS8/Firmware/customized_script/monitor_gateway.sh>>url:http://www.dragino.com/downloads/downloads/LoRa_Gateway/LPS8/Firmware/customized_script/monitor_gateway.sh]]
25 Downloading '[[http:~~/~~/www.dragino.com/downloads/downloads/LoRa_Gateway/LPS8/Firmware/customized_script/monitor_gateway.sh'>>url:http://www.dragino.com/downloads/downloads/LoRa_Gateway/LPS8/Firmware/customized_script/monitor_gateway.sh']]
26 Connecting to 162.241.22.11:80
27 Writing to 'monitor_gateway.sh'
28 monitor_gateway.sh   100% |~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~**|  1860   0:00:00 ETA
29 Download completed (1860 bytes)
30 root@dragino-1baf44:~~# chmod +x monitor_gateway.sh;mv monitor_gateway.sh /usr/bin/
31 root@dragino-1baf44:~~#
32 root@dragino-1baf44:~~#
33 )))
34
35 * change the script monitor_gateway.sh with properly users setting:
36
37 (% class="box infomessage" %)
38 (((
39 USER='xxxxx'             # user name in your thinkspeak ~-~-> Profile
40 PASS='xxxxx'     #MQTT_API_KEY in your thinkspeak ~-~-> Profile
41 CHAN_ID='xxxx'    #Channel ID   of the channel for this gateway
42 CHAN_KEY='xxxxx'   #Channel Write API  of the channel for this gateway
43 )))
44
45 * run **/usr/bin/monitor_gateway.sh** to test if upload is good.
46
47 * Add monitor_gateway.sh to cron work **/etc/crontabs/root** to make this script runs perdiocally, below is an example to update every 20 minutes
48
49 (% class="box infomessage" %)
50 (((
Edwin Chen 7.1 51 # For details see man 4 crontabs
Edwin Chen 1.1 52 # Example of job definition:
53 # .~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~- minute (0 - 59)
54 # | .~-~-~-~-~-~-~-~-~-~-~-~-- hour (0 - 23)
55 # | | .~-~-~-~-~-~-~-~-~-~- day of month (1 - 31)
56 # | | | .~-~-~-~-~-~-- month (1 - 12) OR jan,feb,mar,apr ...
57 # | | | | .~-~-~-~- day of week (0 - 6) (Sunday=0 or 7) OR sun,mon,tue,wed,thu,fri,sat
58 # | | | | |
59 # * * * * * user-name command to be executed
60 #*/10 * * * *  checklog
61 ~* 23 * * *  /etc/init.d/auto_update start
Edwin Chen 2.1 62 */20 * * * *  /usr/bin/monitor_gateway.sh     
Edwin Chen 1.1 63 )))
64
65 * Reboot device.
66
Xiaoling 25.5 67
Xiaoling 11.2 68 == **1.3 Monitor Public IP** ==
Xiaoling 8.2 69
Edwin Chen 1.1 70 The monitor_gateway.sh has been updated to upload the public ip of the device as well.
71
72 User can find the public ip in field7, the chart is not able to show the complete public ip, user can check that in the export.
73
Xiaoling 10.2 74 [[image:image-20220531145559-2.png]]
Edwin Chen 1.1 75
76 Find Public IP
77
78
79
Xiaoling 11.2 80 = **2. Remote Access** =
Edwin Chen 1.1 81
Xiaoling 11.2 82 == **2.1 Remote Access via Remote.it.** ==
Edwin Chen 1.1 83
84 Remote.it for remote access is available in the latest Dragino firmware for gateway. For security concern, the remote.it only available base on end user demand.
85
86 Important Notice:
87
88 * Remote.it access will give full control of your device to remote support.
89 * The Remote.it allow Dragino Support to remote access to the device, If user want to access himself, it need to sign up for an remote.it account.
90
91 For how to use remoteit, please see : [[Remoteit user instruction for Dragino Gateway>>url:https://www.dragino.com/downloads/index.php?dir=LoRa_Gateway/&file=Dragino-Remoteit_User_Manual.pdf]].
92
93
Xiaoling 11.2 94 == **2.2 RSSH Introduction** ==
Edwin Chen 1.1 95
Edwin Chen 2.1 96 Reverse SSH for remote access is available in the latest Dragino firmware for gateway. For security concern, the RSSH only available base on end user demand.
Edwin Chen 1.1 97
Edwin Chen 2.1 98 Important Notice:
Edwin Chen 1.1 99
Edwin Chen 2.2 100 (% class="box warningmessage" %)
Edwin Chen 2.1 101 (((
102 RSSH access will give full control of your device to remote support. Please remove sensitivity info before perform this
103 This RSSH allow Dragino Support to remote access to the device, If user want to access himself, he need to set up the RSSH server himself.
104 )))
105
106 Below gateway support reverse SSH access:
107
Edwin Chen 4.1 108 * Firmware Version > lgw~-~-build-v5.4.1618196981-20210412-1111 [[Firmware Download>>url:http://www.dragino.com/downloads/index.php?dir=LoRa_Gateway/LPS8/Firmware/Release/]]
Edwin Chen 2.1 109 * LG01N, OLG01N (Note: LG01-P LG01-S doesn't support)
110 * LG02, OLG02
111 * LG308, DLOS8
112 * LPS8
113 * LIG16
114 * MS14 series if installed with the same firmware.
115
Xiaoling 25.4 116
Xiaoling 11.2 117 === **2.2.1 End User Guide to use SSH access** ===
Xiaoling 9.5 118
Edwin Chen 4.1 119 Go to this the Reverse SSH page as below:
Edwin Chen 1.1 120
Xiaoling 11.2 121 [[image:image-20220531150151-3.png]]
Edwin Chen 1.1 122
Edwin Chen 4.1 123 Get the RSSH configure page
Edwin Chen 1.1 124
Xiaoling 11.3 125
126
Xiaoling 12.2 127 [[image:image-20220531150338-4.png]]
Edwin Chen 1.1 128
Edwin Chen 4.1 129 Connection OK.
130
Xiaoling 12.2 131
Xiaoling 12.3 132 * (% style="color:#037691" %)**Login ID**(%%): Input sshuser
133 * (% style="color:#037691" %)**Host Address**(%%): Input support.dragino.com
134 * (% style="color:#037691" %)**Host Port** (%%): Please email to support @ dragino.com to get a valid host port.
135 * (% style="color:#037691" %)**Connect at Startup**(%%) : Choose to enable connect once the device is powered.
136 * (% style="color:#037691" %)**Network Keys**(%%): Click the Generate keys to generate the keys and download / mail it to Dragino support so Dragino can prepare the remote access to
Edwin Chen 4.1 137
138 After doing above, please download and mail the public keys to Dragino support and wait for our mail for the valid host port. Input the valid host port got from our support and click connect so we can remote access to your gateway.
139
Edwin Chen 5.1 140
Xiaoling 9.8 141 === **2.2.2 Set Up RSSH Server** ===
Edwin Chen 5.1 142
Edwin Chen 5.2 143 Advance administrator can config a SSH server to provide support their end user themselves., Steps as below
Edwin Chen 5.1 144
145
Xiaoling 9.8 146 ==== **2.2.2.1 Step 1:Download the SSH service code** ====
Xiaoling 9.7 147
Edwin Chen 5.1 148 1).git clone [[https:~~/~~/github.com/dragino/rssh-server.git>>url:https://github.com/dragino/rssh-server.git]] rssh-server
149
Xiaoling 13.2 150 [[image:image-20220531150750-5.png]]
Edwin Chen 5.1 151
152 2).cd rssh-server; sudo make ~-~--> to Generate the execute file:rssh_serv
153
Xiaoling 14.2 154 [[image:image-20220531150811-6.png]]
Edwin Chen 5.1 155
156
157 **Debug** :
158
Xiaoling 14.3 159 (((
160 (% class="box" %)
161 (((
162 if you git fail.  ~-~->  (% style="color:#037691" %)**sudo: git: command not found**(%%).
163 please install git.  ~-~->    (% style="color:#037691" %)**yum install git -y  or  apt-get install git -y**(%%).
164 if you make error 127,it** (% style="color:#037691" %)lack of gcc(%%)**.
165 please install gcc.  ~-~->  (% style="color:#037691" %)**yum install gcc**(%%).
166 )))
167 )))
Edwin Chen 5.1 168
Xiaoling 15.2 169 [[image:image-20220531151516-7.png]]
Edwin Chen 5.1 170
171
Xiaoling 15.2 172 (((
173 (% class="box" %)
174 (((
175 if you make a fatal error : sqlite3.h,it (% style="color:#037691" %)**lack of sqlite3**(%%).
176 please insatell sqlite3.
177 )))
178 )))
Edwin Chen 5.1 179
Xiaoling 16.2 180 [[image:image-20220531151628-8.png]]
Edwin Chen 5.1 181
182
Edwin Chen 5.2 183 **How to install Sqlit3**
Edwin Chen 5.1 184
Edwin Chen 5.2 185 (% class="box infomessage" %)
186 (((
187 Step1:Download the SQLit3 installation package
Xiaoling 16.4 188 sudo wget **[[https:~~/~~/www.sqlite.org/2021/sqlite-autoconf-3350400.tar.gz>>url:https://www.sqlite.org/2021/sqlite-autoconf-3350400.tar.gz]]**
189
Edwin Chen 5.2 190 Step2:tar the SQLit3 installation package
Edwin Chen 5.1 191 sudo tar -zxvf sqlite-autoconf-3350300.tar.gz
Edwin Chen 5.2 192 Step3:Generate the makefile
Edwin Chen 5.1 193 cd sqlite-autoconf-3350300/;./configure
Edwin Chen 5.2 194 Step4:Compile makefile
Edwin Chen 5.1 195 sudo make
Edwin Chen 5.2 196 Step5:Install makefile
Edwin Chen 5.1 197 sudo make install
Edwin Chen 5.2 198 Check:
199 cd /usr/local/bin;ls -al                             ~-~->    Check to see if there is a file for sqlite3
200 cd sqlite-autoconf-3350300/;./sqlite3 test.db        ~-~->    Test whether the sqlite3 was installed successfully
201 debug:
Edwin Chen 5.1 202 If you get the imformation that is SQLite header and source version mismatch, when you execute./sqlite3 test.db.
203 Please execute the command /sbin/ldconfig.
204 After that execute the command ./sqlite3 test.db again.
Edwin Chen 5.2 205 )))
206
207
Xiaoling 9.9 208 ==== **2.2.2.2 Step 2 :Install and run the RSS service** ====
Edwin Chen 5.2 209
210 1):install database for /var/rsshdb.sqlite3 and Server development port for 3721(The default is 3721)
211
212 user must enter the root account and run the following commands
213
214 (% class="box infomessage" %)
215 (((
Xiaoling 16.3 216 $ ./create_sqlite3_db.sh
Edwin Chen 5.2 217 $ ./rssh_serv -p  3721 2>&1 &
218 $ ps -ef | grep rssh_serv check 3721 port
219 )))
220
Xiaoling 18.2 221 [[image:image-20220531151958-10.png]]
Edwin Chen 5.2 222
223
224 **Debug:**
225
226 {{{ Check /var/rsshdb.sqlite3 --> ls /var/rsshdb.sqlite3
227 Check ls /var/rsshdb.sqlite3 --> sudo chmod 777 rssh_serv
Edwin Chen 5.1 228 }}}
229
Edwin Chen 5.2 230 {{{ if fail to open dpvlry or to bind to it
231 please kill rssh_serv,and run ./rssh_serv -p 3721 2>&1 & again
232 }}}
Edwin Chen 5.1 233
Edwin Chen 5.2 234
235
Xiaoling 9.9 236 ==== **2.2.2.3 Step 3 :Create a minimal SSH user (reverse SSH proxy for the gateway)** ====
Edwin Chen 5.2 237
238 (% class="box infomessage" %)
239 (((
240 1):sudo useradd XXXXX (custom user name)
241 2):sudo passwd xxxxxx
242 3):cp /bin/bash /bin/rbash
243 4):sudo nano /etc/passwd ~-~-> Change /bin/bash to /bin/rbash
244 5):sudo nano /home/xxxxx/.bashrc **empty it,and input export PATH=$HOME/bin**
245 6):sudo nano /home/xxxxx/.bash_profile **empty it,and input export PATH=$HOME/bin**
246 )))
247
248 **Now user "XXXXX" is the user with limited permissions of the current system**
249
Edwin Chen 7.1 250
Xiaoling 18.3 251
Xiaoling 9.9 252 ==== **2.2.2.4 Step4:Create an authorization key file** ====
Edwin Chen 7.1 253
254 1):sudo mkdir /home/xxxxx/.ssh; sudo touch /home/xxxxx/.ssh/authorizedkey
255
256 **Debug:**
257
258 {{{ check: sudo ls /home/xxxxx/.ssh/authorizedkey}}}
259
260
261
Xiaoling 27.1 262 === **2.2.3 How does user get the gateway to connect to a user's private server** ===
Edwin Chen 5.2 263
264
Xiaoling 27.1 265 ==== **2.2.3.1 Step1: Come back the gateway web UI to get the gateway Public key** ====
Xiaoling 9.9 266
Xiaoling 19.3 267 1)in the system ~-~-> (% style="color:#037691" %)**Remote Mgmt/span**
Edwin Chen 5.2 268
Xiaoling 19.2 269 [[image:image-20220531152419-11.png]]
Edwin Chen 5.2 270
271
Xiaoling 27.1 272 ==== **2.2.3.2 Step2: Authorization server** ====
Edwin Chen 5.2 273
Edwin Chen 7.1 274 Input the Gateway Publickey into user's private server "/home/XXXXX/.ssh/authorized_keys" file.
Edwin Chen 5.2 275
Xiaoling 20.2 276 [[image:image-20220531152549-12.png]]
Edwin Chen 5.2 277
278
Xiaoling 27.1 279 ==== **2.2.3.3 Step3: Connect private server** ====
Edwin Chen 5.2 280
Edwin Chen 7.1 281 This is same as connect Dragino Support Server but just change the server address to customize server address.
Edwin Chen 5.2 282
Xiaoling 21.2 283 [[image:image-20220531152633-13.png]]
Edwin Chen 5.2 284
285
286
Xiaoling 27.1 287 ==== **2.2.3.4 Step 4 :Check Connection** ====
Edwin Chen 5.2 288
289 Rssh Host connection Ok
290
Xiaoling 22.2 291 [[image:image-20220531152815-14.png]]
Edwin Chen 5.2 292
293
Edwin Chen 7.1 294 User can use common ps | grep ssh to check it in the gateway.
Edwin Chen 5.2 295
Xiaoling 23.2 296 [[image:image-20220531152840-15.png]]
Edwin Chen 5.2 297
298
Xiaoling 27.1 299 ==== **2.2.3.5 Step5:Access the gateway from customized server** ====
Edwin Chen 5.2 300
Edwin Chen 7.1 301 Check what gateways link to server.
Edwin Chen 5.2 302
Xiaoling 24.2 303 (% class="box infomessage" %)
304 (((
Edwin Chen 7.1 305 $ ./connect-gw.sh -l
Xiaoling 24.2 306 )))
Edwin Chen 5.2 307
Xiaoling 24.2 308 [[image:image-20220531153016-16.png]]
Edwin Chen 5.2 309
310
311
Edwin Chen 7.1 312 Access the gateway
Edwin Chen 5.2 313
Xiaoling 25.2 314 (% class="box infomessage" %)
315 (((
Edwin Chen 7.1 316 $ ./connect-gw.sh <GWID>
Xiaoling 25.2 317 )))
Edwin Chen 5.2 318
Xiaoling 25.2 319 [[image:image-20220531153219-17.png]]