Connection refused, timeouts and resets
Updated 2 min read
When the connection fails before any status code appears, the problem is between your client and the proxy, or between the proxy and the target. Find which hop fails first.
Step 1: test the proxy alone
curl -sS -m 20 -x "http://USERNAME:PASSWORD@HOST:PORT" https://api.ipify.org; echo
| Result | Meaning | Next step |
|---|---|---|
An address is printed |
The proxy works; the problem is with the target |
Step 3 |
Connection refused |
Nothing accepted the connection at that host and port |
Step 2 |
Operation timed out or Connection timed out |
Packets to the proxy are dropped |
Step 2 |
Could not resolve proxy |
The host name in the proxy URL is wrong |
Copy the host again from the proxy's page |
Step 2: check the path to the proxy
- Compare host, port and scheme with the Connection card on the proxy's page, character for character. The scheme must match the protocol shown there.
- Confirm the proxy is Active. An expired proxy stops accepting connections.
- Open Service status in the dashboard sidebar for open incidents or scheduled maintenance.
- Run the same command from another network, such as a laptop on a different connection. If it works there, a firewall on your side is blocking outbound traffic to that port; ask your network team to allow it.
- If you use the IP allowlist, confirm your current public address is on it. See Authenticating by IP allowlist.
Step 3: check the target
- Request the target through the proxy with
curl -vand note where it stops. - If the target times out only through the proxy, try a new connection or another address. Some targets slow down or drop traffic they consider unwanted rather than refusing it.
- Set explicit timeouts in your client. Without one, a stalled connection can hang a worker indefinitely.
When to contact support
If step 1 fails from more than one network, select Report an issue on the proxy's page and choose Cannot connect. You can also use the chat button on this help centre, or write to support@proxyforge.io; both are answered by people. Include the time of the failures, your time zone, the proxy ID and the curl -v output with the password replaced by REDACTED.