Projekat

Općenito

Profil

Akcije

Podrška #14053

Zatvoren

router-wan-sa-1.bring.out.ba: config-6

Dodano od Ernad Husremović prije oko 17 godina. Izmjenjeno prije oko 17 godina.

Status:
Zatvoreno
Prioritet:
Normalan
Odgovorna osoba:
Kategorija:
-
Početak:
22.04.2008
Završetak:
% završeno:

100%

Procjena vremena:

Opis

  • spržiti novi image ver 1, varijanta 1

Fajlovi

router-wan-sa-1_etc.tar.gpg (49,2 KB) router-wan-sa-1_etc.tar.gpg trenutna config /etc/ router-wan-sa-1 Ernad Husremović, 22.04.2008 16:35
router-wan-sa-1_etc.tar.gpg (49,7 KB) router-wan-sa-1_etc.tar.gpg nver sa refresh_ip varijablama Ernad Husremović, 23.04.2008 12:38
init_etc.tar.gpg (43,9 KB) init_etc.tar.gpg pročišćena varijanta etc tar-a (izbacio nepotrebno - openvpn, refresh_ip.sh itd) Ernad Husremović, 23.04.2008 12:49
etc_config_refresh_ip.txt (1,18 KB) etc_config_refresh_ip.txt mx zapisi ispravljeni - tačke na kraju Ernad Husremović, 24.04.2008 10:29
router-wan-sa-1_etc.tar.gpg (45,4 KB) router-wan-sa-1_etc.tar.gpg mx zapisi ispravljeni - tačke na kraju Ernad Husremović, 24.04.2008 10:51
router-wan-sa-1_mnt_1.tar.gpg (473 KB) router-wan-sa-1_mnt_1.tar.gpg stanje mrežnog dir-a /mnt/1 Ernad Husremović, 24.04.2008 14:28
router-wan-sa-1_etc.tar.gpg (44,7 KB) router-wan-sa-1_etc.tar.gpg /etc Ernad Husremović, 24.04.2008 20:45
router-wan-sa-1_mnt_1.tar.gpg (743 KB) router-wan-sa-1_mnt_1.tar.gpg /mnt/1/ Ernad Husremović, 24.04.2008 20:45

Povezani tiketi 2 (0 otvoreno2 zatvorenih)

korelira sa router - Podrška #14002: router-wan-sa-1.bring.out.ba: config - 5ZatvorenoErnad Husremović17.04.2008

Akcije
korelira sa router - Nove funkcije #14070: openwrt images ver 2ZastarjeloErnad Husremović23.04.2008

Akcije
Akcije #4

Izmjenjeno od Ernad Husremović prije oko 17 godina

pržimo image:

root@router-wan-sa-1:/tmp# wget http://openwrt.bring.out.ba/images/openwrt-brcm-2.4-squashfs-variant-1.trx
Connecting to openwrt.bring.out.ba (192.168.45.184:80)
openwrt-brcm-2.4-squ 100% |*****************************************|  3012k 00:00:00 ETA
root@router-wan-sa-1:/tmp# mtd -r write openwrt-brcm-2.4-squashfs-variant-1.trx linux
Unlocking linux ...
Writing from openwrt-brcm-2.4-squashfs-variant-1.trx to linux ...  [w]
Rebooting ...
Connection to router-wan-sa-1 closed by remote host.
Connection to router-wan-sa-1 closed.

podesio na nmraka-1 http server 192.168.1.77:

$ sudo ip addr addr add 192.168.1.77/24 dev eth 0

test

hernad@nmraka-1:~$ wget http://192.168.1.77/init_etc.tar

--14:58:18--  http://192.168.1.77/init_etc.tar
           => `init_etc.tar'
Connecting to 192.168.1.77:80... connected.
HTTP request sent, awaiting response... 200 OK
Length: 235,520 (230K) [application/x-tar]

100%[==================================>] 235,520       --.--K/s             

14:58:18 (64.04 MB/s) - `init_etc.tar' saved [235520/235520]

Akcije #5

Izmjenjeno od Ernad Husremović prije oko 17 godina

nakon 2-3 minute prišao router-u, ali mi treba /mnt/1

root@router-wan-sa-1:~# /etc/rc.d/S99init-b-out-ba start

shfsmount: Invalid path: /mnt/1

root@router-wan-sa-1:~# mkdir /mnt/1
root@router-wan-sa-1:~# reboot

Akcije #6

Izmjenjeno od Ernad Husremović prije oko 17 godina

sada je /mnt/1 uredno mountan

root@router-wan-sa-1:/mnt/1/etc# ls

init.d              router-wan-sa-1.fw
openvpn             routes.sh

mrežna skripta /mnt/1/etc/init.d/init-b-out-ba a je izvršena (vidim po kraj.txt)

root@router-wan-sa-1:~# ls /tmp/

TZ                  log                 routes.sh
kraj.txt            resolv.conf         run
lib                 resolv.conf.auto    state
lock                router-wan-sa-1.fw

Akcije #7

Izmjenjeno od Ernad Husremović prije oko 17 godina

rute su dignute, imam pristup internetu, rute freezone su takođe ok

root@router-wan-sa-1:/mnt/1/etc# ip route show

89.146.128.1 dev ppp0  proto kernel  scope link  src 89.146.140.161 
195.222.33.151 dev ppp0  scope link 
10.0.0.1 dev ppp1  proto kernel  scope link  src 10.0.70.48 
192.168.55.0/24 via 192.168.45.5 dev br-lan 
192.169.45.0/24 via 192.168.45.4 dev br-lan 
192.168.65.0/24 via 192.168.45.5 dev br-lan 
192.168.66.0/24 via 192.168.45.5 dev br-lan 
192.168.44.0/24 via 192.168.45.5 dev br-lan 
80.65.85.0/24 via 10.0.0.1 dev ppp1 
192.168.45.0/24 dev br-lan  proto kernel  scope link  src 192.168.45.254 
192.168.11.0/24 via 192.168.45.5 dev br-lan 
192.168.42.0/24 via 192.168.45.5 dev br-lan 
192.168.43.0/24 via 192.168.45.5 dev br-lan 
195.222.0.0/16 via 10.0.0.1 dev ppp1 
default via 89.146.128.1 dev ppp0

Akcije #8

Izmjenjeno od Ernad Husremović prije oko 17 godina

/usr/lib/ipkg će biti na mreži, kako sam već ranije bio podesio

root@router-wan-sa-1:/mnt/1/etc# mv /usr/lib/ipkg /usr/lib/ipkg.orig
root@router-wan-sa-1:/mnt/1/etc# ln -s /mnt/1/root_usr_lib_ipkg /usr/lib/ipkg

root@router-wan-sa-1:~# ipkg update

Downloading http://openwrt.bring.out.ba/packages/brcm-2.4/Packages
Updated list of available packages in /usr/lib/ipkg/lists/b-out-ba
Done.

ovo će malo zabune izazvati u tom smislu šta je instalirano a šta ne, ali to nije nikakav veliki problem

tako dobijam pogrešan report o instalacija refresh-dyn-ip paketa:

root@router-wan-sa-1:~# ipkg install refresh-dyn-ip
Package refresh-dyn-ip (0.9.5-3) installed in root is up to date.
Nothing to be done
Done.

lafo ga izbrišem

root@router-wan-sa-1:~# ipkg remove refresh-dyn-ip

Removing package refresh-dyn-ip from root...
Done.

pa ga instaliram

root@router-wan-sa-1:~# ipkg install refresh-dyn-ip

Installing refresh-dyn-ip (0.9.5-3) to root...
Downloading http://openwrt.bring.out.ba/packages/brcm-2.4/./refresh-dyn-ip_0.9.5-3_mipsel.ipk
Configuring refresh-dyn-ip

Host '128.177.28.71' key accepted unconditionally.
(fingerprint md5 35:52:bf:aa:74:dc:7b:97:9d:01:6c:c4:93:c6:4d:7e)
inbox.rss
Mail
mbox
medica.org.ba.zone
monotone.html
router-wan-sa-1.pub
test_smtp.rb
Done.

Akcije #9

Izmjenjeno od Ernad Husremović prije oko 17 godina

moram jednom ručno pokrenuti refresh_ip

root@router-wan-sa-1:~# /etc/refresh_ip.sh

cat: can't open 'last_ip.txt': No such file or directory
mv: cannot rename 'last_call.txt': No such file or directory
ip sigma-com.net =  89.146.140.161
restarting name server

Host '128.177.28.71' is not in the trusted hosts file.
(fingerprint md5 35:52:bf:aa:74:dc:7b:97:9d:01:6c:c4:93:c6:4d:7e)
Do you want to continue connecting? (y/n) y
tmp.zone                                      100%  768     0.8KB/s   00:00    
feedback=_2_

Akcije #10

Izmjenjeno od Ernad Husremović prije oko 17 godina

sljedeći put sve je ok

root@router-wan-sa-1:~# /etc/refresh_ip.sh

no ip change

Akcije #11

Izmjenjeno od Ernad Husremović prije oko 17 godina

jedino što me čudi što ne mogu passwordless pristupiti sada router-wan-sa-1 sa nmraka-1

u /etc/dropbear/authorized_keys našao sam ključeve od
Akcije #12

Izmjenjeno od Ernad Husremović prije oko 17 godina

hajde da restartujem ssh server

root@router-wan-sa-1:/etc/dropbear# /etc/init.d/dropbear restart
Connection to router-wan-sa-1 closed by remote host.
Connection to router-wan-sa-1 closed.

kobna greška :( - izgubio sam vezu - morao sam restartovati router

Akcije #13

Izmjenjeno od Ernad Husremović prije oko 17 godina

hah evo uzroka problema

logread

Jan  1 01:22:34 router-wan-sa-1 authpriv.info dropbear[1575]: /etc/dropbear must be owned by user or root, and not writable by others

root@router-wan-sa-1:~# ls /etc/dropbear -l

lrwxrwxrwx    1 1000     1000           19 Jan  1 01:00 192.168.45.190.key -> router-wan-sa-1.key
lrwxrwxrwx    1 1000     1000           19 Jan  1 01:00 archive.sigma-com.net.key -> router-wan-sa-1.key
-rw-r--r--    1 root     root          397 Jan  1 01:22 authorized_keys
-rw-r--r--    1 1000     1000         1598 Jan  1 01:21 authorized_keys.orig
-rw-------    1 1000     1000          459 Jan  1 01:02 dropbear_dss_host_key
-rw-------    1 1000     1000          427 Jan  1 01:02 dropbear_rsa_host_key
-rw-------    1 1000     1000          427 Jan  1 01:02 router-wan-sa-1.key
-rw-r--r--    1 1000     1000          229 Apr 12  2008 router-wan-sa-1.pub

očigledno da sam ja prilikom promjena na config-u kada sam zapakovao, promjenio user/group id i kada je to otpakovano na rouer-a belaj ...

root@router-wan-sa-1:~# chown root.root -R /etc

sada imam passwordless pristup

Akcije #14

Izmjenjeno od Ernad Husremović prije oko 17 godina

  • Status promijenjeno iz Dodijeljeno u Zatvoreno
Akcije #15

Izmjenjeno od Ernad Husremović prije oko 17 godina

imao sam grešku u refresh_ip config-u (pogledati #14077), zato ću staviti /etc/config/refresh_ip nakon ispravki

Akcije #16

Izmjenjeno od Ernad Husremović prije oko 17 godina

evo kompletnog backup-a, nakon ispravke mx zapisa u refresh_ip

Akcije #17

Izmjenjeno od Ernad Husremović prije oko 17 godina

napravio sam na samom router-u arhivu /mnt/1 mrežnog resursa

Akcije #18

Izmjenjeno od Ernad Husremović prije oko 17 godina

  • % završeno promijenjeno iz 0 u 100

sada kada imam ažurne backup-e /etc i /mnt, ovo mogu smatrati završenim

Akcije

Također dostupno kao Atom PDF