Project Number Date
test_Tails_ISO_21461-update-chutney 19 10 Aug 2026, 22:19

Feature Report

Steps Scenarios Features
Feature Passed Failed Skipped Pending Undefined Total Passed Failed Total Duration Status
The Tor enforcement is effective 37 1 1 0 0 39 7 1 8 1:45.397 Failed
Tags: @product
Feature The Tor enforcement is effective
As a Tails user I want all direct Internet connections I do by mistake or applications do by misconfiguration or buggy leaks to be blocked And as a Tails developer I want to ensure that the automated test suite detects firewall leaks reliably
Tags: @product
10.160
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.915
Then the firewall's policy is to drop all IPv4 traffic 0.042
And the firewall is configured to only allow the clearnet and debian-tor users to connect directly to the Internet over IPv4 0.123
And the firewall's NAT rules only redirect traffic for the Unsafe Browser, Tor's TransPort, and DNSPort 0.043
And the firewall is configured to block all external IPv6 traffic 0.036
After features/support/hooks.rb:339 0.462
After features/support/hooks.rb:108 0.000
Tags: @product @doc
22.582
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.035
And I capture all network traffic 0.003
When I successfully start the Unsafe Browser 6.432
And I open the Tails homepage in the Unsafe Browser 6.688
And the Tails homepage loads in the Unsafe Browser 0.292
Then the firewall leak detector has detected leaks 0.129
After features/support/hooks.rb:339 0.602
After features/support/hooks.rb:108 0.044
Tags: @product
9.539
Scenario Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Steps
Given I have started Tails from DVD and logged in and the network is connected 9.272
And I capture all network traffic 0.003
And I disable Tails' firewall 0.108
When I do a TCP DNS lookup of "torproject.org" 0.155
Failed to resolve torproject.org:
;; communications error to 9.9.9.9#53: connection reset
;; communications error to 9.9.9.9#53: connection reset
;; no servers could be reached
.
<false> is not true. (Test::Unit::AssertionFailedError)
./features/step_definitions/firewall_leaks.rb:22:in `/^I do a TCP DNS lookup of "(.*?)"$/'
features/tor_enforcement.feature:28:in `When I do a TCP DNS lookup of "torproject.org"'
Then the firewall leak detector has detected leaks 0.000
After features/support/hooks.rb:339 4.734

SCENARIO FAILED: 'Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector' (at time 03:15:14)

Boot log: https://jenkins.tails.boum.org/job/test_Tails_ISO_21461-update-chutney/19/artifact/build-artifacts/03:15:14_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.file_content_var_log_boot.log

Screenshot: https://jenkins.tails.boum.org/job/test_Tails_ISO_21461-update-chutney/19/artifact/build-artifacts/03:15:14_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.png

Video: https://jenkins.tails.boum.org/job/test_Tails_ISO_21461-update-chutney/19/artifact/build-artifacts/03:15:14_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.mkv

Systemd journal: https://jenkins.tails.boum.org/job/test_Tails_ISO_21461-update-chutney/19/artifact/build-artifacts/03:15:14_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.journal

After features/support/hooks.rb:108 0.042
Tags: @product
9.647
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.269
And I capture all network traffic 0.003
And I disable Tails' firewall 0.095
When I do a UDP DNS lookup of "torproject.org" 0.152
Then the firewall leak detector has detected leaks 0.126
After features/support/hooks.rb:339 0.489
After features/support/hooks.rb:108 0.041
Tags: @product
13.391
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.173
And I capture all network traffic 0.003
And I disable Tails' firewall 0.080
When I send some ICMP pings 4.034
Then the firewall leak detector has detected leaks 0.099
After features/support/hooks.rb:339 0.724
After features/support/hooks.rb:108 0.042
9.500
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Before features/support/hooks.rb:527 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.185
When I open an untorified UDP connection to 1.2.3.4 on port 42 0.223
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.091
After features/support/hooks.rb:535 0.318
After features/support/hooks.rb:339 0.816
After features/support/hooks.rb:108 0.000
14.677
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Before features/support/hooks.rb:527 0.004
Given I have started Tails from DVD and logged in and the network is connected 9.280
When I open an untorified ICMP connection to 1.2.3.4 5.326
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.070
After features/support/hooks.rb:535 0.218
After features/support/hooks.rb:339 0.731
After features/support/hooks.rb:108 0.000
Tags: @product
15.897
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD without network and logged in 6.157
And the system DNS is using the local DNS resolver 0.005
And the network is plugged 0.045
And I successfully configure Tor 9.680
Then the system DNS is still using the local DNS resolver 0.009
After features/support/hooks.rb:339 0.783
After features/support/hooks.rb:108 0.000