In short
- Three cases out of four are a typing mistake: a space pasted with the password, a URL in the wrong field, a missing port. The server says 'refused' for all of them.
- The site's checker settles it in thirty seconds: it shows the account status (active, expired, banned, disabled) and its end date. Test before you search.
- Expired, banned, disabled: no app can do anything about it, it is between you and the provider. But each case has a reason, and it concerns you.
On this page
- Settling it in thirty seconds
- 1. One character too many
- 2. The right information in the wrong field
- 3. The MAC portal without its MAC
- 4. The subscription expired
- 5. The account is banned or disabled
- 6. The server blocks the app, not you
- 7. The server moved
- The false cousin: the connection limit
- What not to do
It is the vaguest message in IPTV: "login refused", "failed to authorize", or simply an empty channel list. The server said no, without saying why. Yet the possible reasons range from an extra space in a copy-paste to an account banned for sharing, and they are not fixed the same way at all. This guide takes them in order of frequency, and starts with the only tool that tells them apart.
Settling it in thirty seconds
First of all, test your details with the checker. It asks your provider's server, from our machines, and shows what the server answers: account status (active, expired, banned, disabled), end date, number of connections allowed, channel count.
| The checker says | You are in case |
|---|---|
| Active, with a future end date | 1, 2 or 3: a typing mistake in the app |
| Expired | 4 |
| Banned or disabled | 5 |
| Refused, no status | 1 to 3 if the details were just retyped, otherwise 6 |
| Address not found or timeout | 7 |
If the checker says "active" while the app refuses, the server accepts your details: it is the way they are entered in the app that is off. That is the most frequent case, and the quickest to fix.
1. One character too many
Xtream Codes details are strings of letters and digits generated by the server. They are copied, not retyped. The classic mistakes:
- A space pasted before or after the password, invisible in the field. Messaging apps often add one at the end of a line.
- A zero and an O, a 1 and an l confused when retyping. The server makes no allowance.
- A capital letter changed by the phone keyboard, which capitalises the first character of a field by default.
Clear the field, paste again from the provider's message, and check the cursor lands right against the last character.
2. The right information in the wrong field
IPTV access comes in three forms, and each has its fields:
- Xtream Codes: a server address, a username, a password. The address stops at the port, for example
http://server.example:8080. Nothing after it. - M3U URL: a single long line containing
get.phpor ending in.m3u. It goes in the M3U field, not the server field. - MAC portal: a portal URL and a MAC address. See case 3.
The typical mistake: pasting the full M3U URL into the "server" field of an Xtream access. The server receives an address that already contains credentials, plus the credentials next to it, and refuses. Another classic: pasting http://server.example:8080/player_api.php instead of http://server.example:8080. The M3U vs Xtream Codes guide details what each form contains.
Two details that matter: the port (:8080, :80, :25461, the one the provider gave, never guessed) and http or https, copied as is. An http server refused over https, and the other way round, also gives a "refused".
3. The MAC portal without its MAC
Some providers do not use a username and password but a MAC address, in the form 00:1A:79:XX:XX:XX, which their server ties to your subscription. It is the legacy of dedicated set-top boxes, where the address was the box's own.
Today the address is a key like any other: the provider assigns you one, you enter it in the app with the portal URL. If the server refuses, the address entered is not the one it knows. Three cases: a typo, an address not yet activated on the provider's side, or an address already tied to another device that the provider has to release. In all three, they hold the key.
4. The subscription expired
The number one case of "it worked yesterday". The end date has passed, the server refuses everything. The checker shows it in black and white, and IPTV Guard warns you a week, three days and one day before, precisely so it does not happen in front of the TV.
If you just renewed and it still refuses, the server has not recorded the payment yet: it is common, and it is fixed on the provider's side. Nothing to change in the app, it retries on its own.
5. The account is banned or disabled
The server recognises your login and refuses anyway: the provider cut it. The app's message says so explicitly. The usual reasons, in order:
- The login got passed around. A friend, a group, a forum. The server sees connections from several cities and the provider cuts, often without warning.
- An unpaid bill or a dispute with the reseller.
- Too many devices in a short time, which some providers read as sharing.
No app can lift a ban. It is a conversation with the provider, and it is better to know which of the three reasons before starting it.
6. The server blocks the app, not you
Rarer and more confusing: the details are correct, the checker says active, but the app is refused. Some providers close access to the Xtream Codes API behind a firewall, leaving only the M3U playlist open. Result: an Xtream access refused, the same thing accepted as M3U.
IPTV Guard detects this case when adding the playlist and switches to M3U on its own, telling you what changes: everything works, except the information only the API gives, such as the expiry date and the number of connections.
7. The server moved
"Address not found" or "timeout" on a subscription that has not expired: the provider changed address and yours points to a dead server. It is not a refusal, it is silence. The guide my provider changed its address explains how to update without losing favorites and resume points.
The false cousin: the connection limit
Some apps show "failed to authorize" when the server refuses a slot because the subscription is already in use elsewhere. It is not a login problem, and retyping it a hundred times will change nothing. The sign: it works sometimes, fails at other times, depending on what the other devices in the home are doing. The guide on the connection limit explains how to get your slot back.
What not to do
- Reinstall the app. None of the seven cases is in the app.
- Create a new playlist at every attempt. Fix the one that exists: your favorites and resume points are attached to it.
- Ask for new login details before testing the old ones with the checker. A provider that generates new ones at every call will never look for the cause.
In IPTV Guard
IPTV Guard tests your login details when you add them and tells you which case you are in: refused, expired, banned. If the provider blocks the Xtream API but lets the M3U playlist through, the app switches on its own and warns you about what you lose (the expiry date). And for MAC portals, you enter the MAC address you were given, no dedicated box required.
Frequently asked questions
The provider says my details are correct, the app says no.
Copy and paste from their message, do not retype. If it still fails, test with the site's checker: it queries the same server with the same details, from another network. If it says active, the problem is a stray character in the app. If it says refused, the provider is wrong.
It worked yesterday, I changed nothing.
Then you are in the last four cases: expiry, deactivation, address change or connection limit. The checker tells you which.
What exactly is 'failed to authorize'?
The generic message some apps show when the server refuses. It covers a wrong password as well as an expired subscription or a reached connection limit. That is why it is not enough: you need to know why the server refuses.
My provider asks for a MAC address. Is that for a box?
Originally yes, not any more. A MAC portal identifies the subscriber by an address in the form 00:1A:79:XX:XX:XX instead of a username and password. IPTV Guard takes the address the provider assigned you: no box needed.
Can I share my login with a friend?
You can, and it is the number one cause of bans. A login that connects from three cities ends up flagged by the server, and the provider cuts it. The connection limit will hit you before that anyway.
