Project Number Date
test_Tails_ISO_21461-update-chutney 18 09 Aug 2026, 22:19

Feature Report

Steps Scenarios Features
Feature Passed Failed Skipped Pending Undefined Total Passed Failed Total Duration Status
The Tor enforcement is effective 37 1 1 0 0 39 7 1 8 1:48.530 Failed
Tags: @product
Feature The Tor enforcement is effective
As a Tails user I want all direct Internet connections I do by mistake or applications do by misconfiguration or buggy leaks to be blocked And as a Tails developer I want to ensure that the automated test suite detects firewall leaks reliably
Tags: @product
10.569
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Given I have started Tails from DVD and logged in and the network is connected 10.258
Then the firewall's policy is to drop all IPv4 traffic 0.058
And the firewall is configured to only allow the clearnet and debian-tor users to connect directly to the Internet over IPv4 0.157
And the firewall's NAT rules only redirect traffic for the Unsafe Browser, Tor's TransPort, and DNSPort 0.043
And the firewall is configured to block all external IPv6 traffic 0.052
After features/support/hooks.rb:339 0.604
After features/support/hooks.rb:108 0.000
Tags: @product @doc
24.729
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.599
And I capture all network traffic 0.004
When I successfully start the Unsafe Browser 7.415
And I open the Tails homepage in the Unsafe Browser 7.214
And the Tails homepage loads in the Unsafe Browser 0.363
Then the firewall leak detector has detected leaks 0.132
After features/support/hooks.rb:339 1.012
After features/support/hooks.rb:108 0.034
Tags: @product
9.688
Scenario Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Steps
Given I have started Tails from DVD and logged in and the network is connected 9.414
And I capture all network traffic 0.004
And I disable Tails' firewall 0.103
When I do a TCP DNS lookup of "torproject.org" 0.164
Failed to resolve torproject.org:
;; communications error to 9.9.9.9#53: connection reset
;; communications error to 9.9.9.9#53: connection reset
;; no servers could be reached
.
<false> is not true. (Test::Unit::AssertionFailedError)
./features/step_definitions/firewall_leaks.rb:22:in `/^I do a TCP DNS lookup of "(.*?)"$/'
features/tor_enforcement.feature:28:in `When I do a TCP DNS lookup of "torproject.org"'
Then the firewall leak detector has detected leaks 0.000
After features/support/hooks.rb:339 5.112

SCENARIO FAILED: 'Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector' (at time 03:16:04)

Boot log: https://jenkins.tails.boum.org/job/test_Tails_ISO_21461-update-chutney/18/artifact/build-artifacts/03:16:04_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.file_content_var_log_boot.log

Screenshot: https://jenkins.tails.boum.org/job/test_Tails_ISO_21461-update-chutney/18/artifact/build-artifacts/03:16:04_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.png

Video: https://jenkins.tails.boum.org/job/test_Tails_ISO_21461-update-chutney/18/artifact/build-artifacts/03:16:04_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.mkv

Systemd journal: https://jenkins.tails.boum.org/job/test_Tails_ISO_21461-update-chutney/18/artifact/build-artifacts/03:16:04_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.journal

After features/support/hooks.rb:108 0.048
Tags: @product
9.841
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.447
And I capture all network traffic 0.003
And I disable Tails' firewall 0.117
When I do a UDP DNS lookup of "torproject.org" 0.164
Then the firewall leak detector has detected leaks 0.107
After features/support/hooks.rb:339 0.812
After features/support/hooks.rb:108 0.052
Tags: @product
13.565
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.267
And I capture all network traffic 0.003
And I disable Tails' firewall 0.122
When I send some ICMP pings 4.058
Then the firewall leak detector has detected leaks 0.113
After features/support/hooks.rb:339 0.633
After features/support/hooks.rb:108 0.035
9.664
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Before features/support/hooks.rb:527 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.352
When I open an untorified UDP connection to 1.2.3.4 on port 42 0.219
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.093
After features/support/hooks.rb:535 0.234
After features/support/hooks.rb:339 0.771
After features/support/hooks.rb:108 0.000
14.794
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Before features/support/hooks.rb:527 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.385
When I open an untorified ICMP connection to 1.2.3.4 5.335
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.074
After features/support/hooks.rb:535 0.211
After features/support/hooks.rb:339 0.628
After features/support/hooks.rb:108 0.000
Tags: @product
15.676
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD without network and logged in 6.150
And the system DNS is using the local DNS resolver 0.005
And the network is plugged 0.035
And I successfully configure Tor 9.466
Then the system DNS is still using the local DNS resolver 0.018
After features/support/hooks.rb:339 1.050
After features/support/hooks.rb:108 0.000