Prerequisites
- Windows 10/11 or Windows Server 2012 R2 and later
- PowerShell (run as Administrator)
- Internet access on the target machine
Deploy
1
Create a Windows PC tunnel
In ProxyLink, go to Devices → + Add → Windows PC. ProxyLink generates a one-time deploy command.
2
Run the command on the target PC
Open PowerShell as Administrator and run the generated command:The script installs WireGuard and UltraVNC silently. Takes about 30 seconds.
3
PC appears in your dashboard
Once the WireGuard tunnel connects, the PC registers its hostname automatically. You’ll see it online in your Devices page.
4
VNC is secured automatically
The deploy sets a per-device VNC password and ProxyLink connects with it for you — no manual configuration on the machine. VNC is ready as soon as the PC comes online.
5
Connect via browser
Click VNC or RDP next to the device in your Devices page. A browser terminal opens — no client software needed.
What the script installs
Deploy via RMM
The command works with any RMM tool that can run PowerShell:After deploy
- VNC and RDP ports are only accessible through the WireGuard tunnel — not exposed to the internet
- The ProxyLink Agent runs as a Windows scheduled task (SYSTEM account) — no window visible to users
- To push a config change (VNC password, settings), use the Update Config button on the tunnel row — it keeps the device’s existing WireGuard key, so the tunnel stays up and you can even run it from inside a ProxyLink session. To issue a brand-new key, use Re-key this device in that dialog; for a device that is down but whose Agent is still checking in, use Fix WireGuard.