I'm trying to familiarize with OpenPLi after using openATV for many years.
One of the most important things for me is to be able to login to the box using SSH both locally and remotely.
In order to do this I've uninstalled Dropbear, installed Openssh and... well, I can connect locally to the decoder using the root account without any issue, but if I try to connect outside my LAN/WLAN the connection times out.
Of course, the relative port on my router has already been forwarded...
Any ideas???
OpenPLi 8.0 and remote ssh issue
#1
Posted 9 February 2021 - 17:50
Re: OpenPLi 8.0 and remote ssh issue #2
Posted 9 February 2021 - 18:11
What is wrong with Dropbear? It does all that out of the box, no need for the full ssh daemon.
Currently in use: VU+ Duo 4K (2xFBC S2), VU+ Solo 4K (1xFBC S2), uClan Usytm 4K Ultimate (S2+T2), Octagon SF8008 (S2+T2), Zgemma H9.2H (S2+T2)
Due to my bad health, I will not be very active at times and may be slow to respond. I will not read the forum or PM on a regular basis.
Many answers to your question can be found in our new and improved wiki.
Re: OpenPLi 8.0 and remote ssh issue #3
Re: OpenPLi 8.0 and remote ssh issue #4
Posted 9 February 2021 - 18:18
Maybe restart your router. Or test whether you can access other devices from the internet.
Edited by betacentauri, 9 February 2021 - 18:18.
Re: OpenPLi 8.0 and remote ssh issue #5
Posted 11 February 2021 - 11:59
I've checked my router setup, rebooted it, but nothing has changed...
The same problem can be noticed if I try to "publish" Openwebif on the Internet.
Well, considering that a NAS, a Raspberry and another Zgemma (in a different location) all work flawlessly with quite a similar configuration and that openATV was the same, maybe I think there is something wrong with the network implementation in OpenPLi...
What do you think, is there anybody able to connect to their own decoder from "the outside"???
Re: OpenPLi 8.0 and remote ssh issue #6
Re: OpenPLi 8.0 and remote ssh issue #7
Re: OpenPLi 8.0 and remote ssh issue #8
Posted 11 February 2021 - 12:57
OpenWebif is by default blocked for non-local adresses if authentication is not enabled.
Currently in use: VU+ Duo 4K (2xFBC S2), VU+ Solo 4K (1xFBC S2), uClan Usytm 4K Ultimate (S2+T2), Octagon SF8008 (S2+T2), Zgemma H9.2H (S2+T2)
Due to my bad health, I will not be very active at times and may be slow to respond. I will not read the forum or PM on a regular basis.
Many answers to your question can be found in our new and improved wiki.
Re: OpenPLi 8.0 and remote ssh issue #9
Re: OpenPLi 8.0 and remote ssh issue #10
Posted 11 February 2021 - 15:52
Maybe a routing issue on the box, for example no or an incorrect default gateway?
Currently in use: VU+ Duo 4K (2xFBC S2), VU+ Solo 4K (1xFBC S2), uClan Usytm 4K Ultimate (S2+T2), Octagon SF8008 (S2+T2), Zgemma H9.2H (S2+T2)
Due to my bad health, I will not be very active at times and may be slow to respond. I will not read the forum or PM on a regular basis.
Many answers to your question can be found in our new and improved wiki.
Re: OpenPLi 8.0 and remote ssh issue #11
Re: OpenPLi 8.0 and remote ssh issue #12
Posted 11 February 2021 - 22:29
Well, guys, this is quite mental: the gateway is fine, of course it's not a problem regarding the browser cache.
Basically the box doesn't accept any connections coming from the outside, ssh, ftp, openwebif and so on...
Maybe, it's a missing package or it's an OpenPLi policy to compile the kernel that way just to make the connections safer.
Just to be clearer, with the same exact settings everything works perfectly with openATV.
Re: OpenPLi 8.0 and remote ssh issue #13
Re: OpenPLi 8.0 and remote ssh issue #14
Posted 11 February 2021 - 23:27
And yes, reflash the box without restoring settings, set a password and try again to access it.
(By the way I would still recommend to use a VPN to access your local LAN from the internet)
Re: OpenPLi 8.0 and remote ssh issue #15
Re: OpenPLi 8.0 and remote ssh issue #16
Posted 12 February 2021 - 01:46
There is nothing present that would prevent this, the box is as insecure as they come. There isn't even user seperation, everything runs as root.
Currently in use: VU+ Duo 4K (2xFBC S2), VU+ Solo 4K (1xFBC S2), uClan Usytm 4K Ultimate (S2+T2), Octagon SF8008 (S2+T2), Zgemma H9.2H (S2+T2)
Due to my bad health, I will not be very active at times and may be slow to respond. I will not read the forum or PM on a regular basis.
Many answers to your question can be found in our new and improved wiki.
Re: OpenPLi 8.0 and remote ssh issue #17
Posted 12 February 2021 - 07:24
I've checked my router setup, rebooted it, but nothing has changed...
The same problem can be noticed if I try to "publish" Openwebif on the Internet.
Well, considering that a NAS, a Raspberry and another Zgemma (in a different location) all work flawlessly with quite a similar configuration and that openATV was the same, maybe I think there is something wrong with the network implementation in OpenPLi...
What do you think, is there anybody able to connect to their own decoder from "the outside"???
Probably this is not what you would like to hear, but the only secure remote access to internal LAN systems from the internet is via OpenVPN Server that is running on the router itself. From there a simple ssh or rdp to any local system is fully secured.
Running Merlin on an ASUS router, setting-up such config is a 10min job.
That being said, I agree with you that since all your other systems are reachable via port forward, it should also work with your STB and OpenPLi
Edited by gspock, 12 February 2021 - 07:26.
VU+ DUO-4K-SE with 1 DBV-C and 1TB Hitachi HDD, OpenPLi 8.3
Re: OpenPLi 8.0 and remote ssh issue #18
Posted 12 February 2021 - 07:29
Have you activated iptables on the box?
And yes, reflash the box without restoring settings, set a password and try again to access it.
(By the way I would still recommend to use a VPN to access your local LAN from the internet)
Hi, iptables takes place at router side, no? why should it happen at STB level ??
VU+ DUO-4K-SE with 1 DBV-C and 1TB Hitachi HDD, OpenPLi 8.3
Re: OpenPLi 8.0 and remote ssh issue #19
Re: OpenPLi 8.0 and remote ssh issue #20
Posted 12 February 2021 - 15:50
Iptables isn't really usable on the STB anyway, a lot of the modules are missing.
Currently in use: VU+ Duo 4K (2xFBC S2), VU+ Solo 4K (1xFBC S2), uClan Usytm 4K Ultimate (S2+T2), Octagon SF8008 (S2+T2), Zgemma H9.2H (S2+T2)
Due to my bad health, I will not be very active at times and may be slow to respond. I will not read the forum or PM on a regular basis.
Many answers to your question can be found in our new and improved wiki.
10 user(s) are reading this topic
0 members, 10 guests, 0 anonymous users