Version 38.1 by Kilight Cao on 2022/07/25 13:34

Show last authors
1 **Table of Contents:**
2
3 {{toc/}}
4
5
6
7
8 = **1.  Monitor Gateway** =
9
10 == **1.1  Introduction** ==
11
12
13 This introduction shows how to use a script to monitor the gateway. The video link for this instruction is: [[https:~~/~~/youtu.be/8PieIwfSF_g>>url:https://youtu.be/8PieIwfSF_g]]
14
15 [[image:image-20220531155018-18.png]]
16
17
18
19 == **1.2  Steps** ==
20
21
22 * Create account in ThingsSpeak and creat channel.
23 * Download script from dragino site and move it to properly directory
24
25 (% class="box infomessage" %)
26 (((
27 root@dragino-1baf44:~~# wget [[http:~~/~~/www.dragino.com/downloads/downloads/LoRa_Gateway/LPS8/Firmware/customized_script/monitor_gateway.sh>>url:http://www.dragino.com/downloads/downloads/LoRa_Gateway/LPS8/Firmware/customized_script/monitor_gateway.sh]]
28 Downloading '[[http:~~/~~/www.dragino.com/downloads/downloads/LoRa_Gateway/LPS8/Firmware/customized_script/monitor_gateway.sh'>>url:http://www.dragino.com/downloads/downloads/LoRa_Gateway/LPS8/Firmware/customized_script/monitor_gateway.sh']]
29 Connecting to 162.241.22.11:80
30 Writing to 'monitor_gateway.sh'
31 monitor_gateway.sh   100% |~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~**|  1860   0:00:00 ETA
32 Download completed (1860 bytes)
33 root@dragino-1baf44:~~# chmod +x monitor_gateway.sh;mv monitor_gateway.sh /usr/bin/
34 root@dragino-1baf44:~~#
35 root@dragino-1baf44:~~#
36 )))
37
38 * change the script monitor_gateway.sh with properly users setting:
39
40 (% class="box infomessage" %)
41 (((
42 USER='xxxxx'             # user name in your thinkspeak ~-~-> Profile
43 PASS='xxxxx'     #MQTT_API_KEY in your thinkspeak ~-~-> Profile
44 CHAN_ID='xxxx'    #Channel ID   of the channel for this gateway
45 CHAN_KEY='xxxxx'   #Channel Write API  of the channel for this gateway
46 )))
47
48 * run **/usr/bin/monitor_gateway.sh** to test if upload is good.
49
50 * Add monitor_gateway.sh to cron work **/etc/crontabs/root** to make this script runs perdiocally, below is an example to update every 20 minutes
51
52 (% class="box infomessage" %)
53 (((
54 # For details see man 4 crontabs
55 # Example of job definition:
56 # .~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~- minute (0 - 59)
57 # | .~-~-~-~-~-~-~-~-~-~-~-~-- hour (0 - 23)
58 # | | .~-~-~-~-~-~-~-~-~-~- day of month (1 - 31)
59 # | | | .~-~-~-~-~-~-- month (1 - 12) OR jan,feb,mar,apr ...
60 # | | | | .~-~-~-~- day of week (0 - 6) (Sunday=0 or 7) OR sun,mon,tue,wed,thu,fri,sat
61 # | | | | |
62 # * * * * * user-name command to be executed
63 #*/10 * * * *  checklog
64 ~* 23 * * *  /etc/init.d/auto_update start
65 */20 * * * *  /usr/bin/monitor_gateway.sh     
66 )))
67
68 * Reboot device.
69
70 == **1.3  Monitor Public IP** ==
71
72
73 The monitor_gateway.sh has been updated to upload the public ip of the device as well.
74
75 User can find the public ip in field7, the chart is not able to show the complete public ip, user can check that in the export.
76
77 [[image:image-20220531145559-2.png]]
78
79 Find Public IP
80
81
82
83 = **2.  Remote Access** =
84
85 == **2.1  Remote Access via Remote.it.** ==
86
87
88 Remote.it for remote access is available in the latest Dragino firmware for gateway. For security concern, the remote.it only available base on end user demand.
89
90
91 (% style="color:red" %)**Important Notice:**
92
93 * Remote.it access will give full control of your device to remote support.
94 * The Remote.it allows Dragino Support to remote access to the device, If user want to access himself, it need to sign up for an remote.it account.
95
96 * For how to use remote.it for **general remote control**, please see :  [[Remoteit user instruction for Dragino Gateway>>url:https://www.dragino.com/downloads/index.php?dir=LoRa_Gateway/&file=Dragino-Remoteit_User_Manual.pdf]].
97 * For Quick add remote.it to **Dragino for remote debug**, please see below:
98
99 **~1. Install the Remote.it CLI **
100
101 Remote.it CLI supports all major operating systems and can be downloaded on this and can be downloaded on this [[Remote.It Download>>url:https://www.remote.it/download?products=cli%7Cmobile]]
102
103
104 **2. Enter the license key**
105
106 Users need to enter the license key in the box under "2. Register" section and click the "Save" button and "Register" button.
107
108 (% class="box infomessage" %)
109 (((
110 57F60715-606F-510D-A3D2-739860EBDB98
111 )))
112
113 [[image:image-20220725113010-1.png||height="455" width="899"]]
114
115
116 **3. Connect and tell us your device ID or Hostname**
117
118 Users can view the device ID or Hostname of the gateway on System ~-~-> System Overview interface.Such as : dragino-1ef9ac
119
120 [[image:image-20220725115720-2.png||height="658" width="900"]]
121
122
123 == **2.2  RSSH Introduction** ==
124
125
126 Reverse SSH for remote access is available in the latest Dragino firmware for gateway. For security concern, the RSSH only available base on end user demand.
127
128 Important Notice:
129
130 (% class="box warningmessage" %)
131 (((
132 RSSH access will give full control of your device to remote support. Please remove sensitivity info before perform this
133 This RSSH allow Dragino Support to remote access to the device, If user want to access himself, he need to set up the RSSH server himself.
134 )))
135
136 Below gateway support reverse SSH access:
137
138 * Firmware Version > lgw~-~-build-v5.4.1618196981-20210412-1111 [[Firmware Download>>url:http://www.dragino.com/downloads/index.php?dir=LoRa_Gateway/LPS8/Firmware/Release/]]
139 * LG01N, OLG01N (Note: LG01-P LG01-S doesn't support)
140 * LG02, OLG02
141 * LG308, DLOS8
142 * LPS8
143 * LIG16
144 * MS14 series if installed with the same firmware.
145
146 === **2.2.1  End User Guide to use SSH access** ===
147
148
149 Go to this the Reverse SSH page as below:
150
151 [[image:image-20220531150151-3.png]]
152
153 Get the RSSH configure page
154
155
156
157 [[image:image-20220531150338-4.png]]
158
159 Connection OK.
160
161
162 * (% style="color:#037691" %)**Login ID**(%%):  Input sshuser
163 * (% style="color:#037691" %)**Host Address**(%%):  Input support.dragino.com
164 * (% style="color:#037691" %)**Host Port** (%%):  Please email to support @ dragino.com to get a valid host port.
165 * (% style="color:#037691" %)**Connect at Startup**(%%) : Choose to enable connect once the device is powered.
166 * (% style="color:#037691" %)**Network Keys**(%%):  Click the Generate keys to generate the keys and download / mail it to Dragino support so Dragino can prepare the remote access to
167
168 After doing above, please download and mail the public keys to Dragino support and wait for our mail for the valid host port. Input the valid host port got from our support and click connect so we can remote access to your gateway.
169
170
171
172 === **2.2.2  Set Up RSSH Server** ===
173
174 Advance administrator can config a SSH server to provide support their end user themselves., Steps as below
175
176
177
178 ==== **2.2.2.1  Step 1 : Download the SSH service code** ====
179
180
181 **1).**  git clone [[https:~~/~~/github.com/dragino/rssh-server.git>>url:https://github.com/dragino/rssh-server.git]] rssh-server
182
183 [[image:image-20220531150750-5.png]]
184
185
186 **2).**  cd rssh-server; sudo make ~-~--> to Generate the execute file:rssh_serv
187
188 [[image:image-20220531150811-6.png]]
189
190
191 **Debug** :
192
193 (((
194 (% class="box" %)
195 (((
196 if you git fail.  ~-~->  (% style="color:#037691" %)**sudo: git: command not found**(%%).
197 please install git.  ~-~->    (% style="color:#037691" %)**yum install git -y  or  apt-get install git -y**(%%).
198 if you make error 127,it** (% style="color:#037691" %)lack of gcc(%%)**.
199 please install gcc.  ~-~->  (% style="color:#037691" %)**yum install gcc**(%%).
200 )))
201 )))
202
203 [[image:image-20220531151516-7.png]]
204
205
206 (((
207 (% class="box" %)
208 (((
209 if you make a fatal error : sqlite3.h,it (% style="color:#037691" %)**lack of sqlite3**(%%).
210 please insatell sqlite3.
211 )))
212 )))
213
214 [[image:image-20220531151628-8.png]]
215
216
217 (% style="color:blue" %)**How to install Sqlit3**
218
219 (% class="box infomessage" %)
220 (((
221 **~ Step1:** Download the SQLit3 installation package
222 sudo wget **[[https:~~/~~/www.sqlite.org/2021/sqlite-autoconf-3350400.tar.gz>>url:https://www.sqlite.org/2021/sqlite-autoconf-3350400.tar.gz]]**
223
224
225 **Step2: **tar the SQLit3 installation package
226 sudo tar -zxvf sqlite-autoconf-3350300.tar.gz
227
228 **Step3:** Generate the makefile
229 cd sqlite-autoconf-3350300/;./configure
230
231 **Step4:** Compile makefile
232 sudo make
233
234 **Step5:** Install makefile
235 sudo make install
236
237 **Check:**
238 cd /usr/local/bin;ls -al                             ~-~->    Check to see if there is a file for sqlite3
239 cd sqlite-autoconf-3350300/;./sqlite3 test.db        ~-~->    Test whether the sqlite3 was installed successfully
240
241 **debug:**
242 If you get the imformation that is SQLite header and source version mismatch, when you execute./sqlite3 test.db.
243 Please execute the command /sbin/ldconfig.
244 After that execute the command ./sqlite3 test.db again.
245 )))
246
247
248
249 ==== **2.2.2.2  Step 2 : Install and run the RSS service** ====
250
251
252 **1). ** install database for /var/rsshdb.sqlite3 and Server development port for 3721(The default is 3721)
253
254 user must enter the root account and run the following commands
255
256 (% class="box infomessage" %)
257 (((
258 $ ./create_sqlite3_db.sh
259 $ ./rssh_serv -p  3721 2>&1 &
260 $ ps -ef | grep rssh_serv check 3721 port
261 )))
262
263 [[image:image-20220531151958-10.png]]
264
265
266 **Debug:**
267
268 {{{ Check /var/rsshdb.sqlite3 --> ls /var/rsshdb.sqlite3
269 Check ls /var/rsshdb.sqlite3 --> sudo chmod 777 rssh_serv
270 }}}
271
272 {{{ if fail to open dpvlry or to bind to it
273 please kill rssh_serv,and run ./rssh_serv -p 3721 2>&1 & again
274 }}}
275
276
277
278 ==== **2.2.2.3  Step 3 : Create a minimal SSH user (reverse SSH proxy for the gateway)** ====
279
280
281 (% class="box infomessage" %)
282 (((
283 **1):**  sudo useradd XXXXX (custom user name)
284 **2):**  sudo passwd xxxxxx
285 **3):**  cp /bin/bash /bin/rbash
286 **4):**  sudo nano /etc/passwd ~-~-> Change /bin/bash to /bin/rbash
287 **5):**  sudo nano /home/xxxxx/.bashrc **empty it,and input export PATH=$HOME/bin**
288 **6):**  sudo nano /home/xxxxx/.bash_profile **empty it,and input export PATH=$HOME/bin**
289 )))
290
291 (% style="color:red" %)**Now user "XXXXX" is the user with limited permissions of the current system**
292
293
294
295 ==== **2.2.2.4  Step 4 : Create an authorization key file** ====
296
297
298 **1):**  sudo mkdir /home/xxxxx/.ssh; sudo touch /home/xxxxx/.ssh/authorizedkey
299
300 **Debug:**
301
302 {{{ check: sudo ls /home/xxxxx/.ssh/authorizedkey}}}
303
304
305
306 === **2.2.3  How does user get the gateway to connect to a user's private server** ===
307
308
309 ==== **2.2.3.1  Step 1 : Come back the gateway web UI to get the gateway Public key** ====
310
311
312 **1)**  in the system ~-~-> (% style="color:#037691" %)**Remote Mgmt/span**
313
314 [[image:image-20220531152419-11.png]]
315
316
317
318 ==== **2.2.3.2  Step 2 : Authorization server** ====
319
320
321 Input the Gateway Publickey into user's private server "/home/XXXXX/.ssh/authorized_keys" file.
322
323 [[image:image-20220531152549-12.png]]
324
325
326
327 ==== **2.2.3.3  Step 3 : Connect private server** ====
328
329
330 This is same as connect Dragino Support Server but just change the server address to customize server address.
331
332 [[image:image-20220531152633-13.png]]
333
334
335
336 ==== **2.2.3.4  Step 4 : Check Connection** ====
337
338
339 Rssh Host connection Ok
340
341 [[image:image-20220531152815-14.png]]
342
343
344 User can use common ps | grep ssh to check it in the gateway.
345
346 [[image:image-20220531152840-15.png]]
347
348
349
350 ==== **2.2.3.5  Step 5 : Access the gateway from customized server** ====
351
352
353 Check what gateways link to server.
354
355 (% class="box infomessage" %)
356 (((
357 $ ./connect-gw.sh -l
358 )))
359
360 [[image:image-20220531153016-16.png]]
361
362
363
364 Access the gateway
365
366 (% class="box infomessage" %)
367 (((
368 $ ./connect-gw.sh <GWID>
369 )))
370
371 [[image:image-20220531153219-17.png]]
372
373