응용 앱 · EdgeReach

무인 장치를, 어디서든 브라우저로 관제

키오스크·디지털 사이니지·산업용 PC·PLC 게이트웨이·무인 계측/의료 장비처럼 사람이 없는 기기를 CGNAT·방화벽 뒤에서도 VPN 없이 원격 관제하는 솔루션입니다. 플릿(다수 기기) 대량 프로비저닝과 에이전트 등록, 원격 실행·설정/펌웨어 배포, 그리고 설치 없이 브라우저로 여는 라이브 화면까지. EdgeReach는 넷서브의 4개 SDK(ConnectKit·DeviceKit·SessionKit·ServerKit)를 조립해 만든 제품입니다.

무인 장치 관제 종단간 암호화 · VPN 불필요 브라우저 라이브 화면 온프렘 · 자체호스팅

EdgeReach는 규모별 도입형 솔루션입니다. 기기에는 기기별 등록(enroll) 번들로 에이전트가 배포되고, 운영자는 중앙 관리 콘솔브라우저로 플릿을 관제합니다. 직접 만들고 싶다면 아래 SDK를 조립하세요.

핵심 기능

📦 대량 프로비저닝 · 등록

플릿을 콘솔/CLI로 사전 등록하고 기기별 enroll 번들(agent.json)을 발급합니다. 기기가 처음 접속하면 대기 → 온라인으로 자동 전환됩니다.

🛠️ 원격 관제(RMM)

인벤토리·상태 수집, 원격 명령 실행, 버전 관리 설정 배포(config-push)를 에이전트로 수행합니다 (DeviceKit RPC·텔레메트리).

⬆️ 파일 · 펌웨어 배포

청킹·재개·SHA-256 검증·원자적 적용으로 헤드리스 기기까지 안전하게 파일/펌웨어를 밀어 넣습니다.

🖥️ 브라우저 라이브 화면

설치 없이 브라우저로 무인 기기의 화면을 보고 제어합니다. ServerKit 웹 뷰어 게이트웨이가 온프렘에서 세션을 종단·디코드해 브라우저로 재전송합니다.

🔐 종단간 암호화 · NAT 통과

ConnectKit의 J-PAKE·AES-256-GCM으로 종단간 암호화하고, 홀펀칭 P2P·릴레이 자동 폴백으로 방화벽·CGNAT 뒤에서도 VPN 없이 붙습니다.

🚨 플릿 모니터 · 알림

오프라인·저디스크·고부하 등 상태 전환을 감지해 웹훅/Slack으로 알립니다. 무인 운영에 필수인 조기 경보.

🏢 중앙 관리 콘솔

기기 인벤토리·접속 이력, 역할 관리(RBAC)·접근 정책, 호스트 비밀 보관(Vault)을 조직 단위로 관리합니다(엣지 SKU).

🔒 자체호스팅 · 데이터 주권

연결 서버와 콘솔을 조직이 직접 운영합니다. 화면·명령·데이터가 외부 클라우드를 거치지 않아 규제·폐쇄망에 적합합니다.

작동 원리 — 넷서브 4-Kit 조립

EdgeReach는 새 프로토콜을 처음부터 만든 게 아니라, 넷서브의 개발자 SDK를 조립해 완성한 제품입니다. 한 ConnectKit 연결 위에서 제어(DeviceKit)화면(SessionKit)을 멀티플렉싱하고, 브라우저 관제는 ServerKit이 담당합니다.

한 연결에서 제어와 화면이 함께 흐릅니다: DeviceKit가 제어·텔레메트리를 담당하고, 화면은 DeviceKit session 서브채널에 얹힌 SessionKit이 담당하며, 브라우저에는 ServerKit 웹 뷰어 게이트웨이가 프레임을 재전송합니다.

이럴 때 씁니다

구성 · 도입 · 콘솔 접근

운영자는 중앙 관리 콘솔(엣지 SKU)브라우저 웹 뷰어(ServerKit ViewerGateway)로 플릿을 관제합니다. 콘솔은 고객 신뢰 경계 안(온프렘)에 자체호스팅합니다.

🔴 라이브 데모 — 설치 없이 브라우저에서 EdgeReach 웹 뷰어를 바로 체험할 수 있습니다: console.edge.remote-viewer.com — 합성 데모 장치가 실시간 화면을 스트리밍합니다(운영 데이터 없음). 실제 도입은 아래처럼 온프렘 자체호스팅입니다.
구성 요소역할제공/접근
중앙 관리 콘솔 (엣지 SKU)기기·프로비저닝·역할·비밀 관리도입 시 온프렘 제공
에이전트기기에 상주 — 제어·텔레메트리·화면기기별 enroll 번들로 배포
웹 뷰어 (ServerKit ViewerGateway)브라우저 라이브 화면·제어온프렘 배포 · ServerKit
프로비저닝 CLI플릿 대량 등록 · 번들 발급도입 시 제공

EdgeReach는 넷서브의 개발자 SDK(ConnectKit · DeviceKit · SessionKit · ServerKit) 위에서 동작합니다. 직접 무인장치 솔루션을 만들거나 서버를 자체호스팅하려면 SDK 제품을 참고하세요.
Apps · EdgeReach

Operate unattended devices — from any browser

A solution for remotely operating unattended devices — kiosks, digital signage, industrial PCs, PLC gateways, unmanned lab / medical equipment — behind CGNAT and firewalls, with no VPN. Bulk fleet provisioning and agent enrollment, remote exec and config / firmware delivery, and a live screen that opens in a browser, no install. EdgeReach is built by assembling the NetServ Kits (ConnectKit · DeviceKit · SessionKit · ServerKit).

Unattended device ops End-to-end encrypted · no VPN Browser live screen On-prem · self-hosted

EdgeReach is an onboarded, quoted-to-scale solution. Agents deploy to devices via a per-device enrollment bundle; operators run the fleet from a central console and a browser. Want to build it yourself? Assemble the SDKs below.

Key features

📦 Bulk provisioning & enrollment

Pre-register a fleet from the console / CLI and emit a per-device enrollment bundle (agent.json). Each device flips awaiting → online on first contact.

🛠️ Remote management (RMM)

Inventory and status, remote command exec, and versioned config-push via the agent (DeviceKit RPC · telemetry).

⬆️ File & firmware delivery

Chunked, resumable, SHA-256-verified transfer with atomic apply — update even headless devices safely.

🖥️ Browser live screen

See and control an unattended device's screen from a browser, no install. The ServerKit web-viewer gateway terminates and decodes the session on-prem and re-serves frames.

🔐 End-to-end encryption · NAT traversal

ConnectKit's J-PAKE · AES-256-GCM end-to-end encryption, with hole-punch P2P and relay fallback — it connects from behind firewalls and CGNAT with no VPN.

🚨 Fleet monitor · alerts

Detect offline / low-disk / high-load transitions and alert via webhook / Slack — the early warning unattended operations need.

🏢 Central management console

Device inventory and connection history, roles (RBAC) and access policy, and a host-secret vault at the organization level (edge SKU).

🔒 Self-hosted · data sovereignty

Run the connection servers and console yourself. Screen, commands, and data never pass through an outside cloud — a fit for regulated and closed networks.

How it works — assembled from the NetServ Kits

EdgeReach didn't invent a new protocol — it assembles NetServ's developer SDKs. Over one ConnectKit connection it multiplexes control (DeviceKit) and screen (SessionKit), and ServerKit handles the browser-based operation.

Control and screen ride one connection: DeviceKit carries control and telemetry, SessionKit rides DeviceKit's session sub-channel for the screen, and the ServerKit web-viewer gateway re-serves frames to the browser.

Use it when

Components · onboarding · console access

Operators run the fleet from a central console (edge SKU) and a browser web viewer (ServerKit ViewerGateway). The console is self-hosted inside your trust boundary.

🔴 Live demo — try the EdgeReach web viewer right in your browser, no install: console.edge.remote-viewer.com — a synthetic demo device streams a live screen (no production data). A real deployment is on-prem / self-hosted, as below.
ComponentRoleProvided / access
Central console (edge SKU)Devices · provisioning · roles · secretsOn-prem, provided at onboarding
AgentResident on the device — control · telemetry · screenDeployed via per-device enrollment bundle
Web viewer (ServerKit ViewerGateway)Browser live screen & controlOn-prem · ServerKit
Provisioning CLIBulk fleet enrollment · bundle issuanceProvided at onboarding

EdgeReach runs on NetServ's developer SDKs (ConnectKit · DeviceKit · SessionKit · ServerKit). To build your own unattended-device solution or self-host the servers, see the SDK Products.