# request rejected

`TNL_REQUEST_REJECTED`

the request reached tnl but did not match the public url or supported HTTP request form.

the visitor request was rejected before the local service

```text
+--[ where it stopped ]----------------------------------------+
|                                                              |
|  visitor                                                     |
|     |                                                        |
|     v                                                        |
|  tnl server                                                  |
|     |                                                        |
|     v                                                        |
|  tnl                                                         |
|     |                                                        |
|     x  request rejected                                      |
|  local service (not contacted)                               |
|                                                              |
+--------------------------------------------------------------+
```

## what happened

- the request hostname and TLS server name do not match the public url
- the request uses CONNECT or an absolute URL
- the request contains too many header fields

## if you are visiting

- use the exact HTTPS url provided by the public URL owner
- send an ordinary HTTP request rather than a forward-proxy request

## if you run tnl

- check the requested hostname and any clients constructing unusual HTTP requests

help: https://tnl.dev/e/request
