Quick Start

Troubleshooting

Check the profile, nodes, system proxy, clock, DNS, and ports in a reliable order.

Do not change many settings at once. Disable System Proxy first, confirm the direct connection works, and then follow this order.

Quick checklist

Confirm the direct connection

Disable System Proxy and TUN mode, then open a familiar website. If the direct connection also fails, resolve the local network problem first.

Update the subscription

Update the active profile manually and check for HTTP 401, HTTP 403, timeout, or parse errors.

Test several nodes

Test nodes in more than one region. If all of them show Timeout, check whether the subscription expired, traffic was exhausted, or the provider is unavailable.

Check the proxy mode

Make sure the client is not in Direct mode. Use Rule mode normally; switch to Global briefly only when comparing routing behavior.

Check the system clock

Enable automatic date, time, and time zone settings. A significantly incorrect clock can break encrypted connections.

Restart the client

Quit other VPN or proxy tools completely, then restart the current client. Avoid letting several programs modify the system proxy or virtual adapters at the same time.

Common symptoms

Every node shows Timeout

Check these first:

  • Whether the subscription expired or ran out of traffic.
  • Whether the profile updated successfully.
  • Whether the device date and time zone are correct.
  • Whether the current network restricts the connection.
  • Whether another VPN or proxy tool is running.

Enabling System Proxy breaks all connectivity

Disable System Proxy to restore networking, then choose a node that passes the latency test. If local websites also fail, check for Global mode or an unavailable node.

The browser works but another app does not

The application may ignore the system proxy. Check its own proxy options first. If required, follow the advanced settings guide and enable TUN mode.

The profile cannot be downloaded

ErrorPossible cause
401 / 403The subscription expired, was revoked, or its credentials were reset
TimeoutThe current network cannot reach the subscription server
Invalid URLThe URL was copied incompletely or the wrong address was copied
Parse errorThe response is not a configuration format supported by the client

A port is already in use

Close other proxy tools and restart the client. If the error remains, check whether the local HTTP, SOCKS, or Mixed port conflicts with another application.

The browser reports a DNS error

Temporarily disable secure DNS in the browser, then restart both the client and browser. Avoid changing the operating system DNS, browser DNS, and client DNS at the same time unless you understand the configuration.

If the problem remains

When requesting help, include the following information without exposing subscription URLs, passwords, or other private data:

  • Operating system and client name.
  • Client version.
  • Whether you use System Proxy or TUN mode.
  • The exact error message.
  • Steps you already tried.
  • A log excerpt with server addresses removed.
Never upload a complete configuration file to a public support channel. It may contain server addresses, authentication data, and subscription credentials.
Copyright © 2026 Clash.Build