Skip to content

Pairing and Remote Access

kenji edited this page Sep 7, 2026 · 1 revision

Pairing and Remote Access

Remote access is disabled by default. When enabled, NetWatch listens only on the selected private IPv4 interface and leaves its existing backend services on Windows loopback.

Enable remote access

  1. Open Settings → Remote access.
  2. Select the private interface used by the phone.
  3. Keep the default port unless it conflicts with another local service.
  4. Select Enable Remote Access.
  5. Select Pair new device and scan the QR code from NetWatch Android.

Pairing creates a credential for that device and pins the PC's HTTPS identity on Android.

Manage paired devices

The paired-device list on the PC shows devices allowed to connect. Use Revoke to remove one device or Revoke all to remove every device. A revoked phone must pair again.

Disabling remote access stops the LAN listener. Regenerate identity replaces the PC identity and invalidates existing pairings, so use it only when you intend to pair every device again.

Network limits

  • The phone and PC must be able to reach each other on the selected private network.
  • Guest Wi-Fi, access-point isolation, or restrictive host firewall rules can block the connection.
  • The feature is for private LAN use. It is not an Internet-facing remote-access service.
  • A changed certificate, PC identity, or address requires re-pairing rather than an insecure fallback.

For the exact security design, limits, and release checks, read the versioned remote security model. Protocol details are maintained in Remote Protocol v1.

Clone this wiki locally