Project Number Date
test_Tails_ISO_21461-update-chutney 16 07 Aug 2026, 22:36

Feature Report

Steps Scenarios Features
Feature Passed Failed Skipped Pending Undefined Total Passed Failed Total Duration Status
The Tor enforcement is effective 37 1 1 0 0 39 7 1 8 1:48.024 Failed
Tags: @product
Feature The Tor enforcement is effective
As a Tails user I want all direct Internet connections I do by mistake or applications do by misconfiguration or buggy leaks to be blocked And as a Tails developer I want to ensure that the automated test suite detects firewall leaks reliably
Tags: @product
10.421
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 10.149
Then the firewall's policy is to drop all IPv4 traffic 0.044
And the firewall is configured to only allow the clearnet and debian-tor users to connect directly to the Internet over IPv4 0.138
And the firewall's NAT rules only redirect traffic for the Unsafe Browser, Tor's TransPort, and DNSPort 0.042
And the firewall is configured to block all external IPv6 traffic 0.045
After features/support/hooks.rb:339 0.735
After features/support/hooks.rb:108 0.000
Tags: @product @doc
23.615
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.543
And I capture all network traffic 0.004
When I successfully start the Unsafe Browser 6.830
And I open the Tails homepage in the Unsafe Browser 6.797
And the Tails homepage loads in the Unsafe Browser 0.305
Then the firewall leak detector has detected leaks 0.134
After features/support/hooks.rb:339 0.534
After features/support/hooks.rb:108 0.056
Tags: @product
9.742
Scenario Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Steps
Given I have started Tails from DVD and logged in and the network is connected 9.520
And I capture all network traffic 0.004
And I disable Tails' firewall 0.099
When I do a TCP DNS lookup of "torproject.org" 0.118
Failed to resolve torproject.org:
;; communications error to 9.9.9.9#53: connection reset
;; communications error to 9.9.9.9#53: connection reset
;; no servers could be reached
.
<false> is not true. (Test::Unit::AssertionFailedError)
./features/step_definitions/firewall_leaks.rb:22:in `/^I do a TCP DNS lookup of "(.*?)"$/'
features/tor_enforcement.feature:28:in `When I do a TCP DNS lookup of "torproject.org"'
Then the firewall leak detector has detected leaks 0.000
After features/support/hooks.rb:339 5.027

SCENARIO FAILED: 'Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector' (at time 03:14:37)

Boot log: https://jenkins.tails.boum.org/job/test_Tails_ISO_21461-update-chutney/16/artifact/build-artifacts/03:14:37_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.file_content_var_log_boot.log

Screenshot: https://jenkins.tails.boum.org/job/test_Tails_ISO_21461-update-chutney/16/artifact/build-artifacts/03:14:37_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.png

Video: https://jenkins.tails.boum.org/job/test_Tails_ISO_21461-update-chutney/16/artifact/build-artifacts/03:14:37_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.mkv

Systemd journal: https://jenkins.tails.boum.org/job/test_Tails_ISO_21461-update-chutney/16/artifact/build-artifacts/03:14:37_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.journal

After features/support/hooks.rb:108 0.067
Tags: @product
10.117
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.583
And I capture all network traffic 0.004
And I disable Tails' firewall 0.102
When I do a UDP DNS lookup of "torproject.org" 0.271
Then the firewall leak detector has detected leaks 0.155
After features/support/hooks.rb:339 0.606
After features/support/hooks.rb:108 0.035
Tags: @product
13.675
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.355
And I capture all network traffic 0.014
And I disable Tails' firewall 0.110
When I send some ICMP pings 4.074
Then the firewall leak detector has detected leaks 0.121
After features/support/hooks.rb:339 1.015
After features/support/hooks.rb:108 0.061
9.985
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Before features/support/hooks.rb:527 0.001
Given I have started Tails from DVD and logged in and the network is connected 9.655
When I open an untorified UDP connection to 1.2.3.4 on port 42 0.245
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.084
After features/support/hooks.rb:535 0.243
After features/support/hooks.rb:339 0.880
After features/support/hooks.rb:108 0.000
14.991
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Before features/support/hooks.rb:527 0.001
Given I have started Tails from DVD and logged in and the network is connected 9.561
When I open an untorified ICMP connection to 1.2.3.4 5.322
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.107
After features/support/hooks.rb:535 0.258
After features/support/hooks.rb:339 0.887
After features/support/hooks.rb:108 0.000
Tags: @product
15.475
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD without network and logged in 6.191
And the system DNS is using the local DNS resolver 0.008
And the network is plugged 0.034
And I successfully configure Tor 9.235
Then the system DNS is still using the local DNS resolver 0.005
After features/support/hooks.rb:339 0.668
After features/support/hooks.rb:108 0.000