Version 30.2 by Xiaoling on 2022/07/14 11:08

Hide last authors
Xiaoling 30.2 1 **Table of Contents:**
Xiaoling 25.6 2
Edwin Chen 1.1 3 {{toc/}}
4
Xiaoling 25.6 5
6
Xiaoling 25.7 7
Xiaoling 30.2 8 = **1.  Monitor Gateway** =
Edwin Chen 1.1 9
Xiaoling 30.2 10 == **1.1  Introduction** ==
Edwin Chen 1.1 11
Xiaoling 30.2 12
Edwin Chen 1.1 13 This introduction shows how to use a script to monitor the gateway. The video link for this instruction is: [[https:~~/~~/youtu.be/8PieIwfSF_g>>url:https://youtu.be/8PieIwfSF_g]]
14
Xiaoling 29.2 15 [[image:image-20220531155018-18.png]]
Edwin Chen 1.1 16
Xiaoling 8.3 17
Edwin Chen 1.1 18
Xiaoling 30.2 19 == **1.2  Steps** ==
20
21
Edwin Chen 1.1 22 * Create account in ThingsSpeak and creat channel.
23 * Download script from dragino site and move it to properly directory
24
25 (% class="box infomessage" %)
26 (((
27 root@dragino-1baf44:~~# wget [[http:~~/~~/www.dragino.com/downloads/downloads/LoRa_Gateway/LPS8/Firmware/customized_script/monitor_gateway.sh>>url:http://www.dragino.com/downloads/downloads/LoRa_Gateway/LPS8/Firmware/customized_script/monitor_gateway.sh]]
28 Downloading '[[http:~~/~~/www.dragino.com/downloads/downloads/LoRa_Gateway/LPS8/Firmware/customized_script/monitor_gateway.sh'>>url:http://www.dragino.com/downloads/downloads/LoRa_Gateway/LPS8/Firmware/customized_script/monitor_gateway.sh']]
29 Connecting to 162.241.22.11:80
30 Writing to 'monitor_gateway.sh'
31 monitor_gateway.sh   100% |~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~**|  1860   0:00:00 ETA
32 Download completed (1860 bytes)
33 root@dragino-1baf44:~~# chmod +x monitor_gateway.sh;mv monitor_gateway.sh /usr/bin/
34 root@dragino-1baf44:~~#
35 root@dragino-1baf44:~~#
36 )))
37
38 * change the script monitor_gateway.sh with properly users setting:
39
40 (% class="box infomessage" %)
41 (((
42 USER='xxxxx'             # user name in your thinkspeak ~-~-> Profile
43 PASS='xxxxx'     #MQTT_API_KEY in your thinkspeak ~-~-> Profile
44 CHAN_ID='xxxx'    #Channel ID   of the channel for this gateway
45 CHAN_KEY='xxxxx'   #Channel Write API  of the channel for this gateway
46 )))
47
48 * run **/usr/bin/monitor_gateway.sh** to test if upload is good.
49
50 * Add monitor_gateway.sh to cron work **/etc/crontabs/root** to make this script runs perdiocally, below is an example to update every 20 minutes
51
52 (% class="box infomessage" %)
53 (((
Edwin Chen 7.1 54 # For details see man 4 crontabs
Edwin Chen 1.1 55 # Example of job definition:
56 # .~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~- minute (0 - 59)
57 # | .~-~-~-~-~-~-~-~-~-~-~-~-- hour (0 - 23)
58 # | | .~-~-~-~-~-~-~-~-~-~- day of month (1 - 31)
59 # | | | .~-~-~-~-~-~-- month (1 - 12) OR jan,feb,mar,apr ...
60 # | | | | .~-~-~-~- day of week (0 - 6) (Sunday=0 or 7) OR sun,mon,tue,wed,thu,fri,sat
61 # | | | | |
62 # * * * * * user-name command to be executed
63 #*/10 * * * *  checklog
64 ~* 23 * * *  /etc/init.d/auto_update start
Edwin Chen 2.1 65 */20 * * * *  /usr/bin/monitor_gateway.sh     
Edwin Chen 1.1 66 )))
67
68 * Reboot device.
69
Xiaoling 29.3 70
71
Xiaoling 30.2 72 == **1.3  Monitor Public IP** ==
Xiaoling 8.2 73
Xiaoling 30.2 74
Edwin Chen 1.1 75 The monitor_gateway.sh has been updated to upload the public ip of the device as well.
76
77 User can find the public ip in field7, the chart is not able to show the complete public ip, user can check that in the export.
78
Xiaoling 10.2 79 [[image:image-20220531145559-2.png]]
Edwin Chen 1.1 80
81 Find Public IP
82
83
84
Xiaoling 30.2 85 = **2.  Remote Access** =
Edwin Chen 1.1 86
Xiaoling 30.2 87 == **2.1  Remote Access via Remote.it.** ==
Edwin Chen 1.1 88
Xiaoling 30.2 89
Edwin Chen 1.1 90 Remote.it for remote access is available in the latest Dragino firmware for gateway. For security concern, the remote.it only available base on end user demand.
91
92
Xiaoling 30.2 93 (% style="color:red" %)**Important Notice:**
94
Edwin Chen 1.1 95 * Remote.it access will give full control of your device to remote support.
96 * The Remote.it allow Dragino Support to remote access to the device, If user want to access himself, it need to sign up for an remote.it account.
97
Xiaoling 30.2 98 For how to use remoteit, please see :  [[Remoteit user instruction for Dragino Gateway>>url:https://www.dragino.com/downloads/index.php?dir=LoRa_Gateway/&file=Dragino-Remoteit_User_Manual.pdf]].
Edwin Chen 1.1 99
100
Xiaoling 30.2 101 == **2.2  RSSH Introduction** ==
Edwin Chen 1.1 102
Edwin Chen 2.1 103 Reverse SSH for remote access is available in the latest Dragino firmware for gateway. For security concern, the RSSH only available base on end user demand.
Edwin Chen 1.1 104
Edwin Chen 2.1 105 Important Notice:
Edwin Chen 1.1 106
Edwin Chen 2.2 107 (% class="box warningmessage" %)
Edwin Chen 2.1 108 (((
109 RSSH access will give full control of your device to remote support. Please remove sensitivity info before perform this
110 This RSSH allow Dragino Support to remote access to the device, If user want to access himself, he need to set up the RSSH server himself.
111 )))
112
113 Below gateway support reverse SSH access:
114
Edwin Chen 4.1 115 * Firmware Version > lgw~-~-build-v5.4.1618196981-20210412-1111 [[Firmware Download>>url:http://www.dragino.com/downloads/index.php?dir=LoRa_Gateway/LPS8/Firmware/Release/]]
Edwin Chen 2.1 116 * LG01N, OLG01N (Note: LG01-P LG01-S doesn't support)
117 * LG02, OLG02
118 * LG308, DLOS8
119 * LPS8
120 * LIG16
121 * MS14 series if installed with the same firmware.
122
Xiaoling 11.2 123 === **2.2.1 End User Guide to use SSH access** ===
Xiaoling 9.5 124
Edwin Chen 4.1 125 Go to this the Reverse SSH page as below:
Edwin Chen 1.1 126
Xiaoling 11.2 127 [[image:image-20220531150151-3.png]]
Edwin Chen 1.1 128
Edwin Chen 4.1 129 Get the RSSH configure page
Edwin Chen 1.1 130
Xiaoling 11.3 131
132
Xiaoling 12.2 133 [[image:image-20220531150338-4.png]]
Edwin Chen 1.1 134
Edwin Chen 4.1 135 Connection OK.
136
Xiaoling 12.2 137
Xiaoling 12.3 138 * (% style="color:#037691" %)**Login ID**(%%): Input sshuser
139 * (% style="color:#037691" %)**Host Address**(%%): Input support.dragino.com
140 * (% style="color:#037691" %)**Host Port** (%%): Please email to support @ dragino.com to get a valid host port.
141 * (% style="color:#037691" %)**Connect at Startup**(%%) : Choose to enable connect once the device is powered.
142 * (% style="color:#037691" %)**Network Keys**(%%): Click the Generate keys to generate the keys and download / mail it to Dragino support so Dragino can prepare the remote access to
Edwin Chen 4.1 143
144 After doing above, please download and mail the public keys to Dragino support and wait for our mail for the valid host port. Input the valid host port got from our support and click connect so we can remote access to your gateway.
145
Edwin Chen 5.1 146
Xiaoling 9.8 147 === **2.2.2 Set Up RSSH Server** ===
Edwin Chen 5.1 148
Edwin Chen 5.2 149 Advance administrator can config a SSH server to provide support their end user themselves., Steps as below
Edwin Chen 5.1 150
151
Xiaoling 28.1 152 ==== **2.2.2.1 Step 1 : Download the SSH service code** ====
Xiaoling 9.7 153
Edwin Chen 5.1 154 1).git clone [[https:~~/~~/github.com/dragino/rssh-server.git>>url:https://github.com/dragino/rssh-server.git]] rssh-server
155
Xiaoling 13.2 156 [[image:image-20220531150750-5.png]]
Edwin Chen 5.1 157
158 2).cd rssh-server; sudo make ~-~--> to Generate the execute file:rssh_serv
159
Xiaoling 14.2 160 [[image:image-20220531150811-6.png]]
Edwin Chen 5.1 161
162
163 **Debug** :
164
Xiaoling 14.3 165 (((
166 (% class="box" %)
167 (((
168 if you git fail.  ~-~->  (% style="color:#037691" %)**sudo: git: command not found**(%%).
169 please install git.  ~-~->    (% style="color:#037691" %)**yum install git -y  or  apt-get install git -y**(%%).
170 if you make error 127,it** (% style="color:#037691" %)lack of gcc(%%)**.
171 please install gcc.  ~-~->  (% style="color:#037691" %)**yum install gcc**(%%).
172 )))
173 )))
Edwin Chen 5.1 174
Xiaoling 15.2 175 [[image:image-20220531151516-7.png]]
Edwin Chen 5.1 176
177
Xiaoling 15.2 178 (((
179 (% class="box" %)
180 (((
181 if you make a fatal error : sqlite3.h,it (% style="color:#037691" %)**lack of sqlite3**(%%).
182 please insatell sqlite3.
183 )))
184 )))
Edwin Chen 5.1 185
Xiaoling 16.2 186 [[image:image-20220531151628-8.png]]
Edwin Chen 5.1 187
188
Edwin Chen 5.2 189 **How to install Sqlit3**
Edwin Chen 5.1 190
Edwin Chen 5.2 191 (% class="box infomessage" %)
192 (((
193 Step1:Download the SQLit3 installation package
Xiaoling 16.4 194 sudo wget **[[https:~~/~~/www.sqlite.org/2021/sqlite-autoconf-3350400.tar.gz>>url:https://www.sqlite.org/2021/sqlite-autoconf-3350400.tar.gz]]**
195
Edwin Chen 5.2 196 Step2:tar the SQLit3 installation package
Edwin Chen 5.1 197 sudo tar -zxvf sqlite-autoconf-3350300.tar.gz
Edwin Chen 5.2 198 Step3:Generate the makefile
Edwin Chen 5.1 199 cd sqlite-autoconf-3350300/;./configure
Edwin Chen 5.2 200 Step4:Compile makefile
Edwin Chen 5.1 201 sudo make
Edwin Chen 5.2 202 Step5:Install makefile
Edwin Chen 5.1 203 sudo make install
Edwin Chen 5.2 204 Check:
205 cd /usr/local/bin;ls -al                             ~-~->    Check to see if there is a file for sqlite3
206 cd sqlite-autoconf-3350300/;./sqlite3 test.db        ~-~->    Test whether the sqlite3 was installed successfully
207 debug:
Edwin Chen 5.1 208 If you get the imformation that is SQLite header and source version mismatch, when you execute./sqlite3 test.db.
209 Please execute the command /sbin/ldconfig.
210 After that execute the command ./sqlite3 test.db again.
Edwin Chen 5.2 211 )))
212
213
Xiaoling 28.1 214 ==== **2.2.2.2 Step 2 : Install and run the RSS service** ====
Edwin Chen 5.2 215
216 1):install database for /var/rsshdb.sqlite3 and Server development port for 3721(The default is 3721)
217
218 user must enter the root account and run the following commands
219
220 (% class="box infomessage" %)
221 (((
Xiaoling 16.3 222 $ ./create_sqlite3_db.sh
Edwin Chen 5.2 223 $ ./rssh_serv -p  3721 2>&1 &
224 $ ps -ef | grep rssh_serv check 3721 port
225 )))
226
Xiaoling 18.2 227 [[image:image-20220531151958-10.png]]
Edwin Chen 5.2 228
229
230 **Debug:**
231
232 {{{ Check /var/rsshdb.sqlite3 --> ls /var/rsshdb.sqlite3
233 Check ls /var/rsshdb.sqlite3 --> sudo chmod 777 rssh_serv
Edwin Chen 5.1 234 }}}
235
Edwin Chen 5.2 236 {{{ if fail to open dpvlry or to bind to it
237 please kill rssh_serv,and run ./rssh_serv -p 3721 2>&1 & again
238 }}}
Edwin Chen 5.1 239
Edwin Chen 5.2 240
241
Xiaoling 28.1 242 ==== **2.2.2.3 Step 3 : Create a minimal SSH user (reverse SSH proxy for the gateway)** ====
Edwin Chen 5.2 243
244 (% class="box infomessage" %)
245 (((
246 1):sudo useradd XXXXX (custom user name)
247 2):sudo passwd xxxxxx
248 3):cp /bin/bash /bin/rbash
249 4):sudo nano /etc/passwd ~-~-> Change /bin/bash to /bin/rbash
250 5):sudo nano /home/xxxxx/.bashrc **empty it,and input export PATH=$HOME/bin**
251 6):sudo nano /home/xxxxx/.bash_profile **empty it,and input export PATH=$HOME/bin**
252 )))
253
254 **Now user "XXXXX" is the user with limited permissions of the current system**
255
Edwin Chen 7.1 256
Xiaoling 18.3 257
Xiaoling 28.1 258 ==== **2.2.2.4 Step 4 : Create an authorization key file** ====
Edwin Chen 7.1 259
260 1):sudo mkdir /home/xxxxx/.ssh; sudo touch /home/xxxxx/.ssh/authorizedkey
261
262 **Debug:**
263
264 {{{ check: sudo ls /home/xxxxx/.ssh/authorizedkey}}}
265
266
267
Xiaoling 27.1 268 === **2.2.3 How does user get the gateway to connect to a user's private server** ===
Edwin Chen 5.2 269
270
Xiaoling 28.1 271 ==== **2.2.3.1 Step 1 : Come back the gateway web UI to get the gateway Public key** ====
Xiaoling 9.9 272
Xiaoling 19.3 273 1)in the system ~-~-> (% style="color:#037691" %)**Remote Mgmt/span**
Edwin Chen 5.2 274
Xiaoling 19.2 275 [[image:image-20220531152419-11.png]]
Edwin Chen 5.2 276
277
Xiaoling 28.1 278 ==== **2.2.3.2 Step 2 : Authorization server** ====
Edwin Chen 5.2 279
Edwin Chen 7.1 280 Input the Gateway Publickey into user's private server "/home/XXXXX/.ssh/authorized_keys" file.
Edwin Chen 5.2 281
Xiaoling 20.2 282 [[image:image-20220531152549-12.png]]
Edwin Chen 5.2 283
284
Xiaoling 28.1 285 ==== **2.2.3.3 Step 3 : Connect private server** ====
Edwin Chen 5.2 286
Edwin Chen 7.1 287 This is same as connect Dragino Support Server but just change the server address to customize server address.
Edwin Chen 5.2 288
Xiaoling 21.2 289 [[image:image-20220531152633-13.png]]
Edwin Chen 5.2 290
291
292
Xiaoling 28.1 293 ==== **2.2.3.4 Step 4 : Check Connection** ====
Edwin Chen 5.2 294
295 Rssh Host connection Ok
296
Xiaoling 22.2 297 [[image:image-20220531152815-14.png]]
Edwin Chen 5.2 298
299
Edwin Chen 7.1 300 User can use common ps | grep ssh to check it in the gateway.
Edwin Chen 5.2 301
Xiaoling 23.2 302 [[image:image-20220531152840-15.png]]
Edwin Chen 5.2 303
304
Xiaoling 28.1 305 ==== **2.2.3.5 Step 5 : Access the gateway from customized server** ====
Edwin Chen 5.2 306
Edwin Chen 7.1 307 Check what gateways link to server.
Edwin Chen 5.2 308
Xiaoling 24.2 309 (% class="box infomessage" %)
310 (((
Edwin Chen 7.1 311 $ ./connect-gw.sh -l
Xiaoling 24.2 312 )))
Edwin Chen 5.2 313
Xiaoling 24.2 314 [[image:image-20220531153016-16.png]]
Edwin Chen 5.2 315
316
317
Edwin Chen 7.1 318 Access the gateway
Edwin Chen 5.2 319
Xiaoling 25.2 320 (% class="box infomessage" %)
321 (((
Edwin Chen 7.1 322 $ ./connect-gw.sh <GWID>
Xiaoling 25.2 323 )))
Edwin Chen 5.2 324
Xiaoling 25.2 325 [[image:image-20220531153219-17.png]]