522 Connection Timed Out — Causes & Fix
HTTP 522 (Connection Timed Out) means Cloudflare timed out trying to connect to the origin server — the TCP handshake didn't complete in time.
- Applies to
- Any website or web server (HTTP standard)
- Time to fix
- 15 minutes – 2 hours
What it means
Causes include an overloaded origin, a firewall dropping Cloudflare packets, routing issues, or too-low keepalive settings. This is a Cloudflare-specific status code (not part of the HTTP standard). Cloudflare returns it when it sits in front of a site and has a problem reaching or getting a valid response from the origin (your) server — so the fix is almost always at the origin, not with the visitor.
Symptoms
- Cloudflare "Error 522" page
- Connections to the site hang then fail
How to fix it
- 1
Check origin load and firewall
1. As the operator: confirm the origin isn't overloaded and its firewall allows Cloudflare IPs.
- 2
Review network/keepalive
1. Check routing and increase keepalive timeouts so connections stay open long enough.
Frequently asked questions
522 vs 521?
521 means the origin actively refused the connection (down/blocked); 522 means the connection attempt timed out (overloaded/dropped packets). Both are origin-side.
Last updated July 20, 2026
Guidance only — always consult a qualified professional or the official service manual before carrying out repairs.