Version 36.1 by Kilight Cao on 2022/07/25 11:57

Hide last authors
Xiaoling 30.2 1 **Table of Contents:**
Xiaoling 25.6 2
Edwin Chen 1.1 3 {{toc/}}
4
Xiaoling 25.6 5
6
Xiaoling 25.7 7
Xiaoling 30.2 8 = **1.  Monitor Gateway** =
Edwin Chen 1.1 9
Xiaoling 30.2 10 == **1.1  Introduction** ==
Edwin Chen 1.1 11
Xiaoling 30.2 12
Edwin Chen 1.1 13 This introduction shows how to use a script to monitor the gateway. The video link for this instruction is: [[https:~~/~~/youtu.be/8PieIwfSF_g>>url:https://youtu.be/8PieIwfSF_g]]
14
Xiaoling 29.2 15 [[image:image-20220531155018-18.png]]
Edwin Chen 1.1 16
Xiaoling 8.3 17
Edwin Chen 1.1 18
Xiaoling 30.2 19 == **1.2  Steps** ==
20
21
Edwin Chen 1.1 22 * Create account in ThingsSpeak and creat channel.
23 * Download script from dragino site and move it to properly directory
24
25 (% class="box infomessage" %)
26 (((
27 root@dragino-1baf44:~~# wget [[http:~~/~~/www.dragino.com/downloads/downloads/LoRa_Gateway/LPS8/Firmware/customized_script/monitor_gateway.sh>>url:http://www.dragino.com/downloads/downloads/LoRa_Gateway/LPS8/Firmware/customized_script/monitor_gateway.sh]]
28 Downloading '[[http:~~/~~/www.dragino.com/downloads/downloads/LoRa_Gateway/LPS8/Firmware/customized_script/monitor_gateway.sh'>>url:http://www.dragino.com/downloads/downloads/LoRa_Gateway/LPS8/Firmware/customized_script/monitor_gateway.sh']]
29 Connecting to 162.241.22.11:80
30 Writing to 'monitor_gateway.sh'
31 monitor_gateway.sh   100% |~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~**|  1860   0:00:00 ETA
32 Download completed (1860 bytes)
33 root@dragino-1baf44:~~# chmod +x monitor_gateway.sh;mv monitor_gateway.sh /usr/bin/
34 root@dragino-1baf44:~~#
35 root@dragino-1baf44:~~#
36 )))
37
38 * change the script monitor_gateway.sh with properly users setting:
39
40 (% class="box infomessage" %)
41 (((
42 USER='xxxxx'             # user name in your thinkspeak ~-~-> Profile
43 PASS='xxxxx'     #MQTT_API_KEY in your thinkspeak ~-~-> Profile
44 CHAN_ID='xxxx'    #Channel ID   of the channel for this gateway
45 CHAN_KEY='xxxxx'   #Channel Write API  of the channel for this gateway
46 )))
47
48 * run **/usr/bin/monitor_gateway.sh** to test if upload is good.
49
50 * Add monitor_gateway.sh to cron work **/etc/crontabs/root** to make this script runs perdiocally, below is an example to update every 20 minutes
51
52 (% class="box infomessage" %)
53 (((
Edwin Chen 7.1 54 # For details see man 4 crontabs
Edwin Chen 1.1 55 # Example of job definition:
56 # .~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~- minute (0 - 59)
57 # | .~-~-~-~-~-~-~-~-~-~-~-~-- hour (0 - 23)
58 # | | .~-~-~-~-~-~-~-~-~-~- day of month (1 - 31)
59 # | | | .~-~-~-~-~-~-- month (1 - 12) OR jan,feb,mar,apr ...
60 # | | | | .~-~-~-~- day of week (0 - 6) (Sunday=0 or 7) OR sun,mon,tue,wed,thu,fri,sat
61 # | | | | |
62 # * * * * * user-name command to be executed
63 #*/10 * * * *  checklog
64 ~* 23 * * *  /etc/init.d/auto_update start
Edwin Chen 2.1 65 */20 * * * *  /usr/bin/monitor_gateway.sh     
Edwin Chen 1.1 66 )))
67
68 * Reboot device.
69
Xiaoling 31.2 70
Xiaoling 30.2 71 == **1.3  Monitor Public IP** ==
Xiaoling 8.2 72
Xiaoling 30.2 73
Edwin Chen 1.1 74 The monitor_gateway.sh has been updated to upload the public ip of the device as well.
75
76 User can find the public ip in field7, the chart is not able to show the complete public ip, user can check that in the export.
77
Xiaoling 10.2 78 [[image:image-20220531145559-2.png]]
Edwin Chen 1.1 79
80 Find Public IP
81
82
83
Xiaoling 30.2 84 = **2.  Remote Access** =
Edwin Chen 1.1 85
Xiaoling 30.2 86 == **2.1  Remote Access via Remote.it.** ==
Edwin Chen 1.1 87
Xiaoling 30.2 88
Edwin Chen 1.1 89 Remote.it for remote access is available in the latest Dragino firmware for gateway. For security concern, the remote.it only available base on end user demand.
90
91
Xiaoling 30.2 92 (% style="color:red" %)**Important Notice:**
93
Edwin Chen 1.1 94 * Remote.it access will give full control of your device to remote support.
95 * The Remote.it allow Dragino Support to remote access to the device, If user want to access himself, it need to sign up for an remote.it account.
96
97
Edwin Chen 34.1 98 * For how to use remoteit for **general remote control**, please see :  [[Remoteit user instruction for Dragino Gateway>>url:https://www.dragino.com/downloads/index.php?dir=LoRa_Gateway/&file=Dragino-Remoteit_User_Manual.pdf]].
99 * For Quick add remoteit to **Dragino for remote debug**, please see below:
Edwin Chen 1.1 100
Edwin Chen 33.1 101
Edwin Chen 34.1 102
Xiaoling 30.2 103 == **2.2  RSSH Introduction** ==
Edwin Chen 1.1 104
Xiaoling 31.3 105
Edwin Chen 2.1 106 Reverse SSH for remote access is available in the latest Dragino firmware for gateway. For security concern, the RSSH only available base on end user demand.
Edwin Chen 1.1 107
Edwin Chen 2.1 108 Important Notice:
Edwin Chen 1.1 109
Edwin Chen 2.2 110 (% class="box warningmessage" %)
Edwin Chen 2.1 111 (((
112 RSSH access will give full control of your device to remote support. Please remove sensitivity info before perform this
113 This RSSH allow Dragino Support to remote access to the device, If user want to access himself, he need to set up the RSSH server himself.
114 )))
115
116 Below gateway support reverse SSH access:
117
Edwin Chen 4.1 118 * Firmware Version > lgw~-~-build-v5.4.1618196981-20210412-1111 [[Firmware Download>>url:http://www.dragino.com/downloads/index.php?dir=LoRa_Gateway/LPS8/Firmware/Release/]]
Edwin Chen 2.1 119 * LG01N, OLG01N (Note: LG01-P LG01-S doesn't support)
120 * LG02, OLG02
121 * LG308, DLOS8
122 * LPS8
123 * LIG16
124 * MS14 series if installed with the same firmware.
125
Xiaoling 31.3 126
Xiaoling 30.4 127 === **2.2.1  End User Guide to use SSH access** ===
Xiaoling 9.5 128
Xiaoling 30.4 129
Edwin Chen 4.1 130 Go to this the Reverse SSH page as below:
Edwin Chen 1.1 131
Xiaoling 11.2 132 [[image:image-20220531150151-3.png]]
Edwin Chen 1.1 133
Edwin Chen 4.1 134 Get the RSSH configure page
Edwin Chen 1.1 135
Xiaoling 11.3 136
137
Xiaoling 12.2 138 [[image:image-20220531150338-4.png]]
Edwin Chen 1.1 139
Edwin Chen 4.1 140 Connection OK.
141
Xiaoling 12.2 142
Xiaoling 30.4 143 * (% style="color:#037691" %)**Login ID**(%%):  Input sshuser
144 * (% style="color:#037691" %)**Host Address**(%%):  Input support.dragino.com
145 * (% style="color:#037691" %)**Host Port** (%%):  Please email to support @ dragino.com to get a valid host port.
Xiaoling 12.3 146 * (% style="color:#037691" %)**Connect at Startup**(%%) : Choose to enable connect once the device is powered.
Xiaoling 30.4 147 * (% style="color:#037691" %)**Network Keys**(%%):  Click the Generate keys to generate the keys and download / mail it to Dragino support so Dragino can prepare the remote access to
Edwin Chen 4.1 148
149 After doing above, please download and mail the public keys to Dragino support and wait for our mail for the valid host port. Input the valid host port got from our support and click connect so we can remote access to your gateway.
150
Edwin Chen 5.1 151
152
Xiaoling 30.5 153 === **2.2.2  Set Up RSSH Server** ===
154
Edwin Chen 5.2 155 Advance administrator can config a SSH server to provide support their end user themselves., Steps as below
Edwin Chen 5.1 156
157
Xiaoling 9.7 158
Xiaoling 30.5 159 ==== **2.2.2.1  Step 1 : Download the SSH service code** ====
Edwin Chen 5.1 160
Xiaoling 30.5 161
162 **1).**  git clone [[https:~~/~~/github.com/dragino/rssh-server.git>>url:https://github.com/dragino/rssh-server.git]] rssh-server
163
Xiaoling 13.2 164 [[image:image-20220531150750-5.png]]
Edwin Chen 5.1 165
166
Xiaoling 30.5 167 **2).**  cd rssh-server; sudo make ~-~--> to Generate the execute file:rssh_serv
168
Xiaoling 14.2 169 [[image:image-20220531150811-6.png]]
Edwin Chen 5.1 170
171
172 **Debug** :
173
Xiaoling 14.3 174 (((
175 (% class="box" %)
176 (((
177 if you git fail.  ~-~->  (% style="color:#037691" %)**sudo: git: command not found**(%%).
178 please install git.  ~-~->    (% style="color:#037691" %)**yum install git -y  or  apt-get install git -y**(%%).
179 if you make error 127,it** (% style="color:#037691" %)lack of gcc(%%)**.
180 please install gcc.  ~-~->  (% style="color:#037691" %)**yum install gcc**(%%).
181 )))
182 )))
Edwin Chen 5.1 183
Xiaoling 15.2 184 [[image:image-20220531151516-7.png]]
Edwin Chen 5.1 185
186
Xiaoling 15.2 187 (((
188 (% class="box" %)
189 (((
190 if you make a fatal error : sqlite3.h,it (% style="color:#037691" %)**lack of sqlite3**(%%).
191 please insatell sqlite3.
192 )))
193 )))
Edwin Chen 5.1 194
Xiaoling 16.2 195 [[image:image-20220531151628-8.png]]
Edwin Chen 5.1 196
197
Xiaoling 30.5 198 (% style="color:blue" %)**How to install Sqlit3**
Edwin Chen 5.1 199
Edwin Chen 5.2 200 (% class="box infomessage" %)
201 (((
Xiaoling 30.5 202 **~ Step1:** Download the SQLit3 installation package
203 sudo wget **[[https:~~/~~/www.sqlite.org/2021/sqlite-autoconf-3350400.tar.gz>>url:https://www.sqlite.org/2021/sqlite-autoconf-3350400.tar.gz]]**
Xiaoling 16.4 204
Xiaoling 30.5 205
206 **Step2: **tar the SQLit3 installation package
Edwin Chen 5.1 207 sudo tar -zxvf sqlite-autoconf-3350300.tar.gz
Xiaoling 30.5 208
209 **Step3:** Generate the makefile
Edwin Chen 5.1 210 cd sqlite-autoconf-3350300/;./configure
Xiaoling 30.5 211
212 **Step4:** Compile makefile
Edwin Chen 5.1 213 sudo make
Xiaoling 30.5 214
215 **Step5:** Install makefile
Edwin Chen 5.1 216 sudo make install
Xiaoling 30.5 217
218 **Check:**
Edwin Chen 5.2 219 cd /usr/local/bin;ls -al                             ~-~->    Check to see if there is a file for sqlite3
220 cd sqlite-autoconf-3350300/;./sqlite3 test.db        ~-~->    Test whether the sqlite3 was installed successfully
Xiaoling 30.5 221
222 **debug:**
Edwin Chen 5.1 223 If you get the imformation that is SQLite header and source version mismatch, when you execute./sqlite3 test.db.
224 Please execute the command /sbin/ldconfig.
225 After that execute the command ./sqlite3 test.db again.
Edwin Chen 5.2 226 )))
227
228
229
Xiaoling 30.5 230 ==== **2.2.2.2  Step 2 : Install and run the RSS service** ====
Edwin Chen 5.2 231
Xiaoling 30.5 232
233 **1). ** install database for /var/rsshdb.sqlite3 and Server development port for 3721(The default is 3721)
234
Edwin Chen 5.2 235 user must enter the root account and run the following commands
236
237 (% class="box infomessage" %)
238 (((
Xiaoling 16.3 239 $ ./create_sqlite3_db.sh
Edwin Chen 5.2 240 $ ./rssh_serv -p  3721 2>&1 &
241 $ ps -ef | grep rssh_serv check 3721 port
242 )))
243
Xiaoling 18.2 244 [[image:image-20220531151958-10.png]]
Edwin Chen 5.2 245
246
247 **Debug:**
248
249 {{{ Check /var/rsshdb.sqlite3 --> ls /var/rsshdb.sqlite3
250 Check ls /var/rsshdb.sqlite3 --> sudo chmod 777 rssh_serv
Edwin Chen 5.1 251 }}}
252
Edwin Chen 5.2 253 {{{ if fail to open dpvlry or to bind to it
254 please kill rssh_serv,and run ./rssh_serv -p 3721 2>&1 & again
255 }}}
Edwin Chen 5.1 256
Edwin Chen 5.2 257
258
Xiaoling 30.5 259 ==== **2.2.2.3  Step 3 : Create a minimal SSH user (reverse SSH proxy for the gateway)** ====
Edwin Chen 5.2 260
Xiaoling 30.5 261
Edwin Chen 5.2 262 (% class="box infomessage" %)
263 (((
Xiaoling 30.5 264 **1):**  sudo useradd XXXXX (custom user name)
265 **2):**  sudo passwd xxxxxx
266 **3):**  cp /bin/bash /bin/rbash
267 **4):**  sudo nano /etc/passwd ~-~-> Change /bin/bash to /bin/rbash
268 **5):**  sudo nano /home/xxxxx/.bashrc **empty it,and input export PATH=$HOME/bin**
269 **6):**  sudo nano /home/xxxxx/.bash_profile **empty it,and input export PATH=$HOME/bin**
Edwin Chen 5.2 270 )))
271
Xiaoling 30.5 272 (% style="color:red" %)**Now user "XXXXX" is the user with limited permissions of the current system**
Edwin Chen 5.2 273
Edwin Chen 7.1 274
Xiaoling 18.3 275
Xiaoling 30.5 276 ==== **2.2.2.4  Step 4 : Create an authorization key file** ====
Edwin Chen 7.1 277
278
Xiaoling 30.5 279 **1):**  sudo mkdir /home/xxxxx/.ssh; sudo touch /home/xxxxx/.ssh/authorizedkey
280
Edwin Chen 7.1 281 **Debug:**
282
283 {{{ check: sudo ls /home/xxxxx/.ssh/authorizedkey}}}
284
285
286
Xiaoling 30.5 287 === **2.2.3  How does user get the gateway to connect to a user's private server** ===
Edwin Chen 5.2 288
289
Xiaoling 30.5 290 ==== **2.2.3.1  Step 1 : Come back the gateway web UI to get the gateway Public key** ====
Xiaoling 9.9 291
Edwin Chen 5.2 292
Xiaoling 30.5 293 **1)**  in the system ~-~-> (% style="color:#037691" %)**Remote Mgmt/span**
294
Xiaoling 19.2 295 [[image:image-20220531152419-11.png]]
Edwin Chen 5.2 296
297
298
Xiaoling 30.5 299 ==== **2.2.3.2  Step 2 : Authorization server** ====
300
301
Edwin Chen 7.1 302 Input the Gateway Publickey into user's private server "/home/XXXXX/.ssh/authorized_keys" file.
Edwin Chen 5.2 303
Xiaoling 20.2 304 [[image:image-20220531152549-12.png]]
Edwin Chen 5.2 305
306
307
Xiaoling 30.5 308 ==== **2.2.3.3  Step 3 : Connect private server** ====
309
310
Edwin Chen 7.1 311 This is same as connect Dragino Support Server but just change the server address to customize server address.
Edwin Chen 5.2 312
Xiaoling 21.2 313 [[image:image-20220531152633-13.png]]
Edwin Chen 5.2 314
315
316
Xiaoling 30.5 317 ==== **2.2.3.4  Step 4 : Check Connection** ====
Edwin Chen 5.2 318
Xiaoling 30.5 319
Edwin Chen 5.2 320 Rssh Host connection Ok
321
Xiaoling 22.2 322 [[image:image-20220531152815-14.png]]
Edwin Chen 5.2 323
324
Edwin Chen 7.1 325 User can use common ps | grep ssh to check it in the gateway.
Edwin Chen 5.2 326
Xiaoling 23.2 327 [[image:image-20220531152840-15.png]]
Edwin Chen 5.2 328
329
330
Xiaoling 30.5 331 ==== **2.2.3.5  Step 5 : Access the gateway from customized server** ====
332
333
Edwin Chen 7.1 334 Check what gateways link to server.
Edwin Chen 5.2 335
Xiaoling 24.2 336 (% class="box infomessage" %)
337 (((
Edwin Chen 7.1 338 $ ./connect-gw.sh -l
Xiaoling 24.2 339 )))
Edwin Chen 5.2 340
Xiaoling 24.2 341 [[image:image-20220531153016-16.png]]
Edwin Chen 5.2 342
343
344
Edwin Chen 7.1 345 Access the gateway
Edwin Chen 5.2 346
Xiaoling 25.2 347 (% class="box infomessage" %)
348 (((
Edwin Chen 7.1 349 $ ./connect-gw.sh <GWID>
Xiaoling 25.2 350 )))
Edwin Chen 5.2 351
Xiaoling 25.2 352 [[image:image-20220531153219-17.png]]
Xiaoling 30.5 353
354