Version 50.1 by Kilight Cao on 2022/08/15 18:01

Hide last authors
Xiaoling 30.2 1 **Table of Contents:**
Xiaoling 25.6 2
Edwin Chen 1.1 3 {{toc/}}
4
Xiaoling 25.6 5
6
Xiaoling 25.7 7
Xiaoling 30.2 8 = **1.  Monitor Gateway** =
Edwin Chen 1.1 9
Xiaoling 30.2 10 == **1.1  Introduction** ==
Edwin Chen 1.1 11
Xiaoling 30.2 12
Edwin Chen 1.1 13 This introduction shows how to use a script to monitor the gateway. The video link for this instruction is: [[https:~~/~~/youtu.be/8PieIwfSF_g>>url:https://youtu.be/8PieIwfSF_g]]
14
Xiaoling 29.2 15 [[image:image-20220531155018-18.png]]
Edwin Chen 1.1 16
Xiaoling 8.3 17
Edwin Chen 1.1 18
Xiaoling 30.2 19 == **1.2  Steps** ==
20
21
Edwin Chen 1.1 22 * Create account in ThingsSpeak and creat channel.
23 * Download script from dragino site and move it to properly directory
24
25 (% class="box infomessage" %)
26 (((
27 root@dragino-1baf44:~~# wget [[http:~~/~~/www.dragino.com/downloads/downloads/LoRa_Gateway/LPS8/Firmware/customized_script/monitor_gateway.sh>>url:http://www.dragino.com/downloads/downloads/LoRa_Gateway/LPS8/Firmware/customized_script/monitor_gateway.sh]]
28 Downloading '[[http:~~/~~/www.dragino.com/downloads/downloads/LoRa_Gateway/LPS8/Firmware/customized_script/monitor_gateway.sh'>>url:http://www.dragino.com/downloads/downloads/LoRa_Gateway/LPS8/Firmware/customized_script/monitor_gateway.sh']]
29 Connecting to 162.241.22.11:80
30 Writing to 'monitor_gateway.sh'
31 monitor_gateway.sh   100% |~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~*~**|  1860   0:00:00 ETA
32 Download completed (1860 bytes)
33 root@dragino-1baf44:~~# chmod +x monitor_gateway.sh;mv monitor_gateway.sh /usr/bin/
34 root@dragino-1baf44:~~#
35 root@dragino-1baf44:~~#
36 )))
37
Xiaoling 44.2 38
Edwin Chen 1.1 39 * change the script monitor_gateway.sh with properly users setting:
40
41 (% class="box infomessage" %)
42 (((
43 USER='xxxxx'             # user name in your thinkspeak ~-~-> Profile
44 PASS='xxxxx'     #MQTT_API_KEY in your thinkspeak ~-~-> Profile
45 CHAN_ID='xxxx'    #Channel ID   of the channel for this gateway
46 CHAN_KEY='xxxxx'   #Channel Write API  of the channel for this gateway
47 )))
48
49
Xiaoling 44.2 50 * run (% style="color:blue" %)**/usr/bin/monitor_gateway.sh**(%%) to test if upload is good.
Edwin Chen 1.1 51
Xiaoling 44.2 52 * Add monitor_gateway.sh to cron work (% style="color:blue" %)**/etc/crontabs/root**(%%) to make this script runs perdiocally, below is an example to update every 20 minutes
53
Edwin Chen 1.1 54 (% class="box infomessage" %)
55 (((
Edwin Chen 7.1 56 # For details see man 4 crontabs
Edwin Chen 1.1 57 # Example of job definition:
58 # .~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~- minute (0 - 59)
59 # | .~-~-~-~-~-~-~-~-~-~-~-~-- hour (0 - 23)
60 # | | .~-~-~-~-~-~-~-~-~-~- day of month (1 - 31)
61 # | | | .~-~-~-~-~-~-- month (1 - 12) OR jan,feb,mar,apr ...
62 # | | | | .~-~-~-~- day of week (0 - 6) (Sunday=0 or 7) OR sun,mon,tue,wed,thu,fri,sat
63 # | | | | |
64 # * * * * * user-name command to be executed
65 #*/10 * * * *  checklog
66 ~* 23 * * *  /etc/init.d/auto_update start
Edwin Chen 2.1 67 */20 * * * *  /usr/bin/monitor_gateway.sh     
Edwin Chen 1.1 68 )))
69
70 * Reboot device.
71
Xiaoling 44.4 72
Xiaoling 30.2 73 == **1.3  Monitor Public IP** ==
Xiaoling 8.2 74
Xiaoling 30.2 75
Edwin Chen 1.1 76 The monitor_gateway.sh has been updated to upload the public ip of the device as well.
77
78 User can find the public ip in field7, the chart is not able to show the complete public ip, user can check that in the export.
79
Xiaoling 44.2 80
Xiaoling 10.2 81 [[image:image-20220531145559-2.png]]
Edwin Chen 1.1 82
83 Find Public IP
84
85
86
Xiaoling 30.2 87 = **2.  Remote Access** =
Edwin Chen 1.1 88
Xiaoling 30.2 89 == **2.1  Remote Access via Remote.it.** ==
Edwin Chen 1.1 90
Xiaoling 30.2 91
Edwin Chen 1.1 92 Remote.it for remote access is available in the latest Dragino firmware for gateway. For security concern, the remote.it only available base on end user demand.
93
94
Xiaoling 30.2 95 (% style="color:red" %)**Important Notice:**
96
Edwin Chen 1.1 97 * Remote.it access will give full control of your device to remote support.
Kilight Cao 37.1 98 * The Remote.it allows Dragino Support to remote access to the device, If user want to access himself, it need to sign up for an remote.it account.
Edwin Chen 1.1 99
Xiaoling 44.2 100 * For how to use remote.it for (% style="color:blue" %)**general remote control**(%%), please see :  [[Remoteit user instruction for Dragino Gateway>>url:https://www.dragino.com/downloads/index.php?dir=LoRa_Gateway/&file=Dragino-Remoteit_User_Manual.pdf]].
101 * For Quick add remote.it to (% style="color:blue" %)**Dragino for remote debug**(%%), please see below:
Edwin Chen 1.1 102
Xiaoling 44.2 103 (% style="color:blue" %)**1. Install the Remote.it software**
Edwin Chen 33.1 104
Xiaoling 44.10 105 Users can directly click** "Install"** on the Web UI to install Remote. it.
Edwin Chen 34.1 106
Xiaoling 44.2 107
Kilight Cao 41.1 108 [[image:image-20220725134300-1.png||height="438" width="905"]]
109
Kilight Cao 42.1 110
Kilight Cao 37.1 111
Xiaoling 44.2 112 (% style="color:blue" %)**2. Enter the license key**
113
Xiaoling 44.6 114 Users need to enter the license key in the box under **"2. Register"** section and click the **"Save"** button and** "Register"** button.
Kilight Cao 37.1 115
Kilight Cao 44.1 116 (% style="color:red" %)**When the user enters this license key, Dragino support will have access to your gateway.**
Kilight Cao 39.1 117
Xiaoling 44.2 118
Kilight Cao 37.1 119 (% class="box infomessage" %)
120 (((
Xiaoling 44.2 121 **57F60715-606F-510D-A3D2-739860EBDB98**
Kilight Cao 37.1 122 )))
123
124 [[image:image-20220725113010-1.png||height="455" width="899"]]
125
126
127
Xiaoling 44.2 128 (% style="color:blue" %)**3. Connect and tell us your device ID or Hostname**
Kilight Cao 37.1 129
Xiaoling 44.2 130 Users can view the device ID or Hostname of the gateway on** (% style="color:red" %)System ~-~-> System Overview(%%)** interface.Such as : dragino-1ef9ac
131
132
Kilight Cao 37.1 133 [[image:image-20220725115720-2.png||height="658" width="900"]]
134
135
Kilight Cao 50.1 136 === **How to register hp0d with Remote.it** ===
Xiaoling 44.2 137
Kilight Cao 49.1 138
139 **Prerequisites:**
140
141 Users must have an account and APP for remote.it
142
143 [[https:~~/~~/app.remote.it>>https://app.remote.it]]
144
145
146 (% style="color:blue" %)**1. Click "+" in the APP to add a device**
147
148 Then click Add "Linux & Raspberry Pi" and the APP will generate a command to register the device.
149
150
151 [[image:image-20220815173938-1.jpeg||height="574" width="919"]]
152
153
154 (% style="color:blue" %)**2.Copy the register device command**
155
156
157 [[image:image-20220815173944-2.jpeg||height="556" width="923"]]
158
159
160 (% style="color:blue" %)**3.Enter the command copied from the previous step on the HP0D Linux command line**
161
162 [[image:image-20220815173951-3.jpeg||height="424" width="1147"]]
163
164
165 (% style="color:blue" %)**4.Check whether the device is successfully registered on the Remote.it APP**
166
167
168 [[image:image-20220815173958-4.jpeg||height="580" width="964"]]
169
170
Xiaoling 30.2 171 == **2.2  RSSH Introduction** ==
Edwin Chen 1.1 172
Xiaoling 31.3 173
Edwin Chen 2.1 174 Reverse SSH for remote access is available in the latest Dragino firmware for gateway. For security concern, the RSSH only available base on end user demand.
Edwin Chen 1.1 175
Xiaoling 44.2 176 (% style="color:red" %)**Important Notice:**
Edwin Chen 1.1 177
Edwin Chen 2.2 178 (% class="box warningmessage" %)
Edwin Chen 2.1 179 (((
180 RSSH access will give full control of your device to remote support. Please remove sensitivity info before perform this
181 This RSSH allow Dragino Support to remote access to the device, If user want to access himself, he need to set up the RSSH server himself.
182 )))
183
184
Xiaoling 44.6 185 **Below gateway support reverse SSH access:**
186
Edwin Chen 4.1 187 * Firmware Version > lgw~-~-build-v5.4.1618196981-20210412-1111 [[Firmware Download>>url:http://www.dragino.com/downloads/index.php?dir=LoRa_Gateway/LPS8/Firmware/Release/]]
Edwin Chen 2.1 188 * LG01N, OLG01N (Note: LG01-P LG01-S doesn't support)
189 * LG02, OLG02
190 * LG308, DLOS8
191 * LPS8
192 * LIG16
193 * MS14 series if installed with the same firmware.
194
Xiaoling 44.2 195
Xiaoling 44.14 196
Xiaoling 30.4 197 === **2.2.1  End User Guide to use SSH access** ===
Xiaoling 9.5 198
Xiaoling 30.4 199
Edwin Chen 4.1 200 Go to this the Reverse SSH page as below:
Edwin Chen 1.1 201
Xiaoling 44.3 202
Xiaoling 11.2 203 [[image:image-20220531150151-3.png]]
Edwin Chen 1.1 204
Edwin Chen 4.1 205 Get the RSSH configure page
Edwin Chen 1.1 206
Xiaoling 11.3 207
208
Xiaoling 12.2 209 [[image:image-20220531150338-4.png]]
Edwin Chen 1.1 210
Edwin Chen 4.1 211 Connection OK.
212
Xiaoling 12.2 213
Xiaoling 30.4 214 * (% style="color:#037691" %)**Login ID**(%%):  Input sshuser
215 * (% style="color:#037691" %)**Host Address**(%%):  Input support.dragino.com
216 * (% style="color:#037691" %)**Host Port** (%%):  Please email to support @ dragino.com to get a valid host port.
Xiaoling 12.3 217 * (% style="color:#037691" %)**Connect at Startup**(%%) : Choose to enable connect once the device is powered.
Xiaoling 30.4 218 * (% style="color:#037691" %)**Network Keys**(%%):  Click the Generate keys to generate the keys and download / mail it to Dragino support so Dragino can prepare the remote access to
Edwin Chen 4.1 219
220 After doing above, please download and mail the public keys to Dragino support and wait for our mail for the valid host port. Input the valid host port got from our support and click connect so we can remote access to your gateway.
221
Edwin Chen 5.1 222
223
Xiaoling 30.5 224 === **2.2.2  Set Up RSSH Server** ===
225
Xiaoling 44.3 226
Edwin Chen 5.2 227 Advance administrator can config a SSH server to provide support their end user themselves., Steps as below
Edwin Chen 5.1 228
229
Xiaoling 9.7 230
Xiaoling 44.3 231 ==== (% style="color:blue" %)**Step 1 :  Download the SSH service code**(%%) ====
Edwin Chen 5.1 232
Xiaoling 30.5 233
234 **1).**  git clone [[https:~~/~~/github.com/dragino/rssh-server.git>>url:https://github.com/dragino/rssh-server.git]] rssh-server
235
Xiaoling 13.2 236 [[image:image-20220531150750-5.png]]
Edwin Chen 5.1 237
238
Xiaoling 30.5 239 **2).**  cd rssh-server; sudo make ~-~--> to Generate the execute file:rssh_serv
240
Xiaoling 14.2 241 [[image:image-20220531150811-6.png]]
Edwin Chen 5.1 242
243
244 **Debug** :
245
Xiaoling 14.3 246 (((
247 (% class="box" %)
248 (((
249 if you git fail.  ~-~->  (% style="color:#037691" %)**sudo: git: command not found**(%%).
250 please install git.  ~-~->    (% style="color:#037691" %)**yum install git -y  or  apt-get install git -y**(%%).
251 if you make error 127,it** (% style="color:#037691" %)lack of gcc(%%)**.
252 please install gcc.  ~-~->  (% style="color:#037691" %)**yum install gcc**(%%).
253 )))
254 )))
Edwin Chen 5.1 255
Xiaoling 15.2 256 [[image:image-20220531151516-7.png]]
Edwin Chen 5.1 257
258
Xiaoling 15.2 259 (((
260 (% class="box" %)
261 (((
262 if you make a fatal error : sqlite3.h,it (% style="color:#037691" %)**lack of sqlite3**(%%).
263 please insatell sqlite3.
264 )))
265 )))
Edwin Chen 5.1 266
Xiaoling 16.2 267 [[image:image-20220531151628-8.png]]
Edwin Chen 5.1 268
269
Xiaoling 44.8 270 (% style="color:blue" %)**How to install Sqlit3:**
Edwin Chen 5.1 271
Edwin Chen 5.2 272 (% class="box infomessage" %)
273 (((
Xiaoling 44.3 274 **~ Step 1:** Download the SQLit3 installation package
Xiaoling 30.5 275 sudo wget **[[https:~~/~~/www.sqlite.org/2021/sqlite-autoconf-3350400.tar.gz>>url:https://www.sqlite.org/2021/sqlite-autoconf-3350400.tar.gz]]**
Xiaoling 16.4 276
Xiaoling 44.3 277 **Step 2: **tar the SQLit3 installation package
Edwin Chen 5.1 278 sudo tar -zxvf sqlite-autoconf-3350300.tar.gz
Xiaoling 30.5 279
Xiaoling 44.3 280 **Step 3:** Generate the makefile
Edwin Chen 5.1 281 cd sqlite-autoconf-3350300/;./configure
Xiaoling 30.5 282
Xiaoling 44.3 283 **Step 4:** Compile makefile
Edwin Chen 5.1 284 sudo make
Xiaoling 30.5 285
Xiaoling 44.3 286 **Step 5:** Install makefile
Edwin Chen 5.1 287 sudo make install
Xiaoling 30.5 288
289 **Check:**
Xiaoling 44.3 290 cd /usr/local/bin;ls -al  ~-~->    Check to see if there is a file for sqlite3
Edwin Chen 5.2 291 cd sqlite-autoconf-3350300/;./sqlite3 test.db        ~-~->    Test whether the sqlite3 was installed successfully
Xiaoling 30.5 292
293 **debug:**
Edwin Chen 5.1 294 If you get the imformation that is SQLite header and source version mismatch, when you execute./sqlite3 test.db.
295 Please execute the command /sbin/ldconfig.
296 After that execute the command ./sqlite3 test.db again.
Edwin Chen 5.2 297 )))
298
299
300
Xiaoling 44.3 301 ==== (% style="color:blue" %)**Step 2 :  Install and run the RSS service**(%%) ====
Edwin Chen 5.2 302
Xiaoling 30.5 303
304 **1). ** install database for /var/rsshdb.sqlite3 and Server development port for 3721(The default is 3721)
305
Edwin Chen 5.2 306 user must enter the root account and run the following commands
307
308 (% class="box infomessage" %)
309 (((
Xiaoling 44.9 310 **$ ./create_sqlite3_db.sh
Edwin Chen 5.2 311 $ ./rssh_serv -p  3721 2>&1 &
Xiaoling 44.9 312 $ ps -ef | grep rssh_serv check 3721 port**
Edwin Chen 5.2 313 )))
314
Xiaoling 18.2 315 [[image:image-20220531151958-10.png]]
Edwin Chen 5.2 316
317
318 **Debug:**
319
320 {{{ Check /var/rsshdb.sqlite3 --> ls /var/rsshdb.sqlite3
321 Check ls /var/rsshdb.sqlite3 --> sudo chmod 777 rssh_serv
Edwin Chen 5.1 322 }}}
323
Edwin Chen 5.2 324 {{{ if fail to open dpvlry or to bind to it
325 please kill rssh_serv,and run ./rssh_serv -p 3721 2>&1 & again
326 }}}
Edwin Chen 5.1 327
Edwin Chen 5.2 328
329
Xiaoling 44.3 330 ==== (% style="color:blue" %)**Step 3 :  Create a minimal SSH user (reverse SSH proxy for the gateway)**(%%) ====
Edwin Chen 5.2 331
Xiaoling 30.5 332
Edwin Chen 5.2 333 (% class="box infomessage" %)
334 (((
Xiaoling 30.5 335 **1):**  sudo useradd XXXXX (custom user name)
336 **2):**  sudo passwd xxxxxx
337 **3):**  cp /bin/bash /bin/rbash
338 **4):**  sudo nano /etc/passwd ~-~-> Change /bin/bash to /bin/rbash
339 **5):**  sudo nano /home/xxxxx/.bashrc **empty it,and input export PATH=$HOME/bin**
340 **6):**  sudo nano /home/xxxxx/.bash_profile **empty it,and input export PATH=$HOME/bin**
Edwin Chen 5.2 341 )))
342
Xiaoling 30.5 343 (% style="color:red" %)**Now user "XXXXX" is the user with limited permissions of the current system**
Edwin Chen 5.2 344
Edwin Chen 7.1 345
Xiaoling 18.3 346
Xiaoling 44.3 347 ==== (% style="color:blue" %)**Step 4 :  Create an authorization key file**(%%) ====
Edwin Chen 7.1 348
349
Xiaoling 30.5 350 **1):**  sudo mkdir /home/xxxxx/.ssh; sudo touch /home/xxxxx/.ssh/authorizedkey
351
Xiaoling 44.12 352
Edwin Chen 7.1 353 **Debug:**
354
355 {{{ check: sudo ls /home/xxxxx/.ssh/authorizedkey}}}
356
357
358
Xiaoling 30.5 359 === **2.2.3  How does user get the gateway to connect to a user's private server** ===
Edwin Chen 5.2 360
361
Xiaoling 9.9 362
Xiaoling 44.3 363 ==== (% style="color:blue" %)**Step 1 :  Come back the gateway web UI to get the gateway Public key**(%%) ====
Edwin Chen 5.2 364
Xiaoling 44.3 365
Xiaoling 30.5 366 **1)**  in the system ~-~-> (% style="color:#037691" %)**Remote Mgmt/span**
367
Xiaoling 19.2 368 [[image:image-20220531152419-11.png]]
Edwin Chen 5.2 369
370
371
Xiaoling 44.3 372 ==== (% style="color:blue" %)**Step 2 :  Authorization server**(%%) ====
Xiaoling 30.5 373
374
Edwin Chen 7.1 375 Input the Gateway Publickey into user's private server "/home/XXXXX/.ssh/authorized_keys" file.
Edwin Chen 5.2 376
Xiaoling 20.2 377 [[image:image-20220531152549-12.png]]
Edwin Chen 5.2 378
379
380
Xiaoling 44.3 381 ==== (% style="color:blue" %)**Step 3 :  Connect private server**(%%) ====
Xiaoling 30.5 382
383
Edwin Chen 7.1 384 This is same as connect Dragino Support Server but just change the server address to customize server address.
Edwin Chen 5.2 385
Xiaoling 21.2 386 [[image:image-20220531152633-13.png]]
Edwin Chen 5.2 387
388
389
Xiaoling 44.3 390 ==== (% style="color:blue" %)**Step 4 :  Check Connection**(%%) ====
Edwin Chen 5.2 391
Xiaoling 30.5 392
Edwin Chen 5.2 393 Rssh Host connection Ok
394
Xiaoling 22.2 395 [[image:image-20220531152815-14.png]]
Edwin Chen 5.2 396
397
Edwin Chen 7.1 398 User can use common ps | grep ssh to check it in the gateway.
Edwin Chen 5.2 399
Xiaoling 23.2 400 [[image:image-20220531152840-15.png]]
Edwin Chen 5.2 401
402
403
Xiaoling 44.3 404 ==== (% style="color:blue" %)**Step 5 :  Access the gateway from customized server**(%%) ====
Xiaoling 30.5 405
406
Edwin Chen 7.1 407 Check what gateways link to server.
Edwin Chen 5.2 408
Xiaoling 24.2 409 (% class="box infomessage" %)
410 (((
Xiaoling 44.3 411 **$ ./connect-gw.sh -l**
Xiaoling 24.2 412 )))
Edwin Chen 5.2 413
Xiaoling 24.2 414 [[image:image-20220531153016-16.png]]
Edwin Chen 5.2 415
416
417
Edwin Chen 7.1 418 Access the gateway
Edwin Chen 5.2 419
Xiaoling 25.2 420 (% class="box infomessage" %)
421 (((
Xiaoling 44.3 422 **$ ./connect-gw.sh <GWID>**
Xiaoling 25.2 423 )))
Edwin Chen 5.2 424
Xiaoling 25.2 425 [[image:image-20220531153219-17.png]]
Xiaoling 30.5 426
427