Project Number Date
test_Tails_ISO_21318-tor-browser-16.0 67 10 Aug 2026, 08:04

Feature Report

Steps Scenarios Features
Feature Passed Failed Skipped Pending Undefined Total Passed Failed Total Duration Status
The Tor enforcement is effective 37 1 1 0 0 39 7 1 8 1:50.921 Failed
Tags: @product
Feature The Tor enforcement is effective
As a Tails user I want all direct Internet connections I do by mistake or applications do by misconfiguration or buggy leaks to be blocked And as a Tails developer I want to ensure that the automated test suite detects firewall leaks reliably
Tags: @product
10.532
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Given I have started Tails from DVD and logged in and the network is connected 10.230
Then the firewall's policy is to drop all IPv4 traffic 0.054
And the firewall is configured to only allow the clearnet and debian-tor users to connect directly to the Internet over IPv4 0.154
And the firewall's NAT rules only redirect traffic for the Unsafe Browser, Tor's TransPort, and DNSPort 0.046
And the firewall is configured to block all external IPv6 traffic 0.046
After features/support/hooks.rb:339 0.668
After features/support/hooks.rb:108 0.000
Tags: @product @doc
25.875
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.009
Given I have started Tails from DVD and logged in and the network is connected 9.741
And I capture all network traffic 0.005
When I successfully start the Unsafe Browser 6.896
And I open the Tails homepage in the Unsafe Browser 8.657
And the Tails homepage loads in the Unsafe Browser 0.405
Then the firewall leak detector has detected leaks 0.168
After features/support/hooks.rb:339 0.859
After features/support/hooks.rb:108 0.026
Tags: @product
9.747
Scenario Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Steps
Given I have started Tails from DVD and logged in and the network is connected 9.421
And I capture all network traffic 0.006
And I disable Tails' firewall 0.133
When I do a TCP DNS lookup of "torproject.org" 0.185
Failed to resolve torproject.org:
;; communications error to 9.9.9.9#53: connection reset
;; communications error to 9.9.9.9#53: connection reset
;; no servers could be reached
.
<false> is not true. (Test::Unit::AssertionFailedError)
./features/step_definitions/firewall_leaks.rb:22:in `/^I do a TCP DNS lookup of "(.*?)"$/'
features/tor_enforcement.feature:28:in `When I do a TCP DNS lookup of "torproject.org"'
Then the firewall leak detector has detected leaks 0.000
After features/support/hooks.rb:339 5.074

SCENARIO FAILED: 'Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector' (at time 03:16:02)

Boot log: https://jenkins.tails.boum.org/job/test_Tails_ISO_21318-tor-browser-16.0/67/artifact/build-artifacts/03:16:02_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.file_content_var_log_boot.log

Screenshot: https://jenkins.tails.boum.org/job/test_Tails_ISO_21318-tor-browser-16.0/67/artifact/build-artifacts/03:16:02_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.png

Video: https://jenkins.tails.boum.org/job/test_Tails_ISO_21318-tor-browser-16.0/67/artifact/build-artifacts/03:16:02_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.mkv

Systemd journal: https://jenkins.tails.boum.org/job/test_Tails_ISO_21318-tor-browser-16.0/67/artifact/build-artifacts/03:16:02_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.journal

After features/support/hooks.rb:108 0.033
Tags: @product
9.902
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.004
Given I have started Tails from DVD and logged in and the network is connected 9.445
And I capture all network traffic 0.004
And I disable Tails' firewall 0.108
When I do a UDP DNS lookup of "torproject.org" 0.234
Then the firewall leak detector has detected leaks 0.109
After features/support/hooks.rb:339 0.754
After features/support/hooks.rb:108 0.046
Tags: @product
13.632
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Given I have started Tails from DVD and logged in and the network is connected 9.333
And I capture all network traffic 0.004
And I disable Tails' firewall 0.101
When I send some ICMP pings 4.051
Then the firewall leak detector has detected leaks 0.141
After features/support/hooks.rb:339 0.534
After features/support/hooks.rb:108 0.066
9.966
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.004
Before features/support/hooks.rb:527 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.589
When I open an untorified UDP connection to 1.2.3.4 on port 42 0.282
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.094
After features/support/hooks.rb:535 0.247
After features/support/hooks.rb:339 0.964
After features/support/hooks.rb:108 0.000
15.019
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Before features/support/hooks.rb:527 0.003
Given I have started Tails from DVD and logged in and the network is connected 9.558
When I open an untorified ICMP connection to 1.2.3.4 5.370
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.089
After features/support/hooks.rb:535 0.248
After features/support/hooks.rb:339 0.865
After features/support/hooks.rb:108 0.000
Tags: @product
16.245
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Given I have started Tails from DVD without network and logged in 6.549
And the system DNS is using the local DNS resolver 0.005
And the network is plugged 0.028
And I successfully configure Tor 9.655
Then the system DNS is still using the local DNS resolver 0.007
After features/support/hooks.rb:339 0.900
After features/support/hooks.rb:108 0.000