s i s t e m a o p e r a c i o n a l m a g n u x l i n u x | ~/ · documentação · suporte · sobre |
2. On the server side2.1. Configure pppdThe communication will be through a serial port. On the server we will connect through the “/dev/ttyS1” (COM2 in DOS/Windows) device. On your computer this may be different and you should modify the examples below accordingly. I force authentication because I use the configuration to provide a way to access files on a file server for a group of people. After logon they can use the Samba file shares to copy files to and from a laptop. If you are not concerned with security you can comment out the relevant options. PPP (Point-to-Point Protocol) communication provides TCP/IP across a serial link. In other words: when you want to do internet-based browsing through a modem, you are likely to be using it. In Linux PPP is implemented by the PPP daemon “pppd”. Its configuration is done through files in the “/etc/ppp/” directory. We will be using the following files:
The “/etc/ppp/options” file should look more or less like this:
The lines starting with a '#' are comments. The “lock” parameter indicates that a lock file will be created to ensure exclusive access to the serial device, the “auth” parameter indicates that the client will need to authenticate itself, and “login” tells pppd to use the system user names and passwords for authentication. Note that pppd will still check the “/etc/ppp/pap-secrets” file for user name and password information. A special, single line entry makes that pppd will only use the system's user information. The “/etc/ppp/pap-secrets” file looks as follows:
This is the most unsafe setting you can have in this file: it allows any client (user) connect to the server, without using a password and using any IP address. The “login” parameter in the “/etc/ppp/options” file, however, makes that the user name and password supplied by the client for authorization have to match the “/etc/ppp/pap-secrets” file as well as the system user name and password, so the connection will only succeed after typing in a valid user name and password. Options specific to the serial line you are connecting with are placed in “/etc/ppp/options.ttySn”, where n is the number of the serial device. My server uses “/dev/ttyS1”, so the options go into... “/etc/ppp/options.ttyS1”.
All these options are well described in the pppd man page; a few of the key ones are explained with comments in the file. The “crtscts” parameter tells pppd to use hardware flow control. This is recommended because it is the fastest. Alternatively you could specify “xonxoff” to use software-based flow control - you would specify this if your null modem cable doesn't connect the RTS/CTS lines (unlikely if you bought your cable in the store). “115200” specifies the data transmission rate - if you have trouble connecting you might want to try with a lower speed. Note that “auth” and “login” options are commented out here, because they were specified in the general options file. If you also use your computer to dial into an ISP, you will want to specify them here rather than in “/etc/ppp/options”, or you will be asking your ISP to authorize itself when you dial in and that probably won't succeed. The reason why they are not specified in this file by default is because if you have other incoming PPP connections now or in the future, you want to make sure they are always authenticated. Remember that the “pap-secrets” as presented here gives zero protection. Finally, the “ppp_laplink_host:serial_laplink_client” entry specifies the local and remote IP address after the link is up. You can use actual IP numbers here (e.g. 192.168.0.1:192.168.1.1), or entries from the “/etc/hosts” file, like I have done. The nice thing of doing the latter is that you can use the names to refer to these links later. I also recommend you use IP numbers like the ones I used (192.168.0.1:192.168.1.1). These addresses are set aside for local networks and don't exist on the internet, so you are avoiding possible conflicts. After the link is up, the client can refer to the server with the IP address of ppp_laplink_host (192.168.0.1) and the server refers to the client with serial_laplink_client (192.168.1.1). You could use different entries in “/etc/ppp/pap-secrets” to only allow select users access. I am using the PAP protocol for authentication; you could use CHAP if you'd like - the setup is much the same, using the “chap-secrets” file. For these and other options you can consult the man pages and the documentation mentioned at the bottom. 2.2. A getty-like installation of pppdYou can have the PPP daemon (pppd) start when you boot the system and have it monitor the serial line of your choice. An elegant way of achieving this is to edit the “/etc/inittab” file. This file contains information for initializing the system. Add the following to this file:
This reads as follows: for run-levels 3, 4 and 5 start “/usr/sbin/pppd /dev/ttyS1 -detach” and if it dies (at the end of a connection) respawn (start a new one). The -detach option makes that pppd stays connected to the terminal that started it, rather than forking and exiting. This option is necessary because the “init” process would respawn a new one immediately otherwise. Other entries in the inittab file specify getty processes to run on serial terminals (tty's); their initialization looks a lot like this one. To activate this new configuration type:
2.3. Start the server when neededIf it is only occasionally that you want to connect to your server, you might prefer to start the connection manually. All the settings remain the same; you can start the server by simply typing:
at the command line. The “-detach” option is not really necessary, but it makes it easy to kill the connection by pressing “ctrl-c”. 2.4. Serving MS Windows clientsUnfortunately the MS Windows implementation is not quite standard. Before initiating the PPP connection it requires the exchange of the text strings “CLIENT” (from the client) and “CLIENTSERVER” (from the server). To accomodate a Windows client the following line has to be added to the “/etc/ppp/options.ttyS1” file:
Then create the scripts directory and the chat file “/etc/ppp/scripts/winclient.chat”:
The connect option allows you to specify a program to deal with the string exchange before the connection. Usually the “chat” program is used for this; check the manual for more details. The given script deals with the Windows connection issue. You don't need it when connecting a Linux box. |