Upcoming Webinar: RingQ 9.1 Release Webinar — US/Canada (Aug 5) — Wed, Aug 5 · 10:00 AM EST

Register
RingQ Customer Centric Communications

Client Windows Install Guide


RingQ Secure Tunnel

Windows Client Installation Guide

Server (RingQ PBX portal) setup and Windows client (branch/site) installation walkthrough

The RingQ Secure Tunnel lets a remote site run its entire phone system over a single outbound connection. On Windows, this is delivered as two pieces: the RingQ Tunnel Gateway application and the RingQ Proxy service it installs, which together tunnel the site’s IP phones back to the RingQ Cloud PBX without ever exposing a public SIP endpoint or requiring any inbound firewall ports.

1. Prerequisites

RequirementDetails
AccessAdministrator rights on a Windows 10 or 11 (64-bit) machine
NetworkOutbound access to the PBX domain on TCP 6010 (no inbound rules needed at the site)
PBX DomainYour RingQ PBX hostname, e.g. yourcompany.ringq.ai
Auth KeyGenerated from the RingQ portal (Tunnel Connections page) — see Section 2

2. Server-Side Setup — Generate a Tunnel Auth Key

Before installing anything on the Windows machine, create a tunnel entry in the RingQ portal. This generates the auth key that pairs the device with your PBX server.

  1. In the RingQ portal, open Settings → Global, then click the Secure Tunnel tile under Advanced.
Global Settings — the Secure Tunnel tile under Advanced opens Tunnel Connections.

Global Settings — the Secure Tunnel tile under Advanced opens Tunnel Connections.

  1. This opens Tunnel Connections, listing existing servers and their online/offline status. Click + Add Tunnel.
Tunnel Connections — existing servers and their online/offline status.

Tunnel Connections — existing servers and their online/offline status.

  1. Enter a Tunnel name that identifies the site or device (e.g. “ringq_xyz”). The portal auto-generates an Auth key. Click Save.
Add tunnel dialog — name the tunnel and the portal generates the auth key.

Add tunnel dialog — name the tunnel and the portal generates the auth key.

  1. Copy the PBX Domain and Auth key — you’ll paste both into the installer in Section 5.

3. Download the Windows Tunnel Gateway

On ringq.com, go to Get Started → Download.

ringq.com — start from Get Started to reach the download page.

ringq.com — start from Get Started to reach the download page.

Under Secure Tunnel Client, click .EXE under Windows Tunnel to download the installer.

Download page — Secure Tunnel Client section, Windows Tunnel .EXE installer.

Download page — Secure Tunnel Client section, Windows Tunnel .EXE installer.

4. Install the RingQ Tunnel Gateway

Run the downloaded installer.

  1. Select Destination Location — the default is C:\Program Files\RingQ Tunnel Gateway. Click Next.
Select Destination Location — default install path.

Select Destination Location — default install path.

  1. Select Additional Tasks — optionally check Create a desktop shortcut. Click Next.
Select Additional Tasks — optional desktop shortcut.

Select Additional Tasks — optional desktop shortcut.

  1. Ready to Install — review the settings, then click Install.
Ready to Install — review before installing.

Ready to Install — review before installing.

  1. Completing the Setup Wizard — leave Launch RingQ Tunnel Gateway checked and click Finish.
Completing the Setup Wizard — launches RingQ Tunnel Gateway on Finish.

Completing the Setup Wizard — launches RingQ Tunnel Gateway on Finish.

5. Configure the Tunnel — PBX Connection Details

Finishing the Tunnel Gateway installer automatically launches the RingQ Proxy setup wizard, which installs the service that tunnels the office’s IP phones to the RingQ Cloud PBX.

Welcome to the RingQ Tunnel Gateway Installer — click Install to continue.

Welcome to the RingQ Tunnel Gateway Installer — click Install to continue.

On the PBX Connection Details screen, enter:

  • PBX Domain — your RingQ PBX hostname (e.g. team.ringq.ai)
  • Tunnel Auth Key — the key generated in Section 2
PBX Connection Details — empty fields ready for the domain and auth key.

PBX Connection Details — empty fields ready for the domain and auth key.

Tip: The PBX Domain and Auth Key entered here must exactly match the tunnel created in Section 2 — that’s what pairs this Windows machine with your PBX.

PBX Connection Details filled in — domain and auth key entered, ready to continue.

PBX Connection Details filled in — domain and auth key entered, ready to continue.

Click Next.

6. Installing and Verifying

The wizard registers the RingQProxy Windows service and opens the required firewall ports automatically — no manual firewall configuration is needed.

Installing — registering the RingQProxy service and opening firewall ports.

Installing — registering the RingQProxy service and opening firewall ports.

Completing the RingQ Proxy Setup Wizard confirms the tunnel service is running and will start automatically with Windows. Click Finish.

Setup complete — the tunnel service is running and set to auto-start with Windows.

Setup complete — the tunnel service is running and set to auto-start with Windows.

7. Confirm the Connection in the Portal

Back in the RingQ portal’s Tunnel Connections list, the tunnel should now show a populated Device ID, Public IP, Local IP, “Last seen: Just now,” and status Online.

Tunnel Connections — the tunnel now shows Status: Online with populated Device ID and IPs.

Tunnel Connections — the tunnel now shows Status: Online with populated Device ID and IPs.

Bottom line: A tunnel that flips from Offline to Online immediately after Finish confirms the Windows machine paired successfully with your PBX.

8. Troubleshooting Checklist

  • Tunnel shows Offline in the portal — confirm outbound TCP 6010 to the PBX domain isn’t blocked by Windows Defender Firewall or an upstream network firewall.
  • Installer rejects the PBX Domain or Auth Key — re-copy both from the portal (Section 2); keys are tied to a single tunnel entry.
  • Need to change the PBX domain or key — re-run the RingQ Proxy installer (download it again from ringq.com/download) to re-enter the connection details.
  • Service not starting — open Services (services.msc) and confirm RingQProxy is running; it’s set to start automatically with Windows.
  • No other inbound ports need to be opened manually — the installer configures the single outbound-based tunnel connection itself.