Project Number Date
test_Tails_ISO_devel 4551 16 Aug 2026, 11:10

Feature Report

Steps Scenarios Features
Feature Passed Failed Skipped Pending Undefined Total Passed Failed Total Duration Status
The Tor enforcement is effective 37 1 1 0 0 39 7 1 8 1:47.791 Failed
Tags: @product
Feature The Tor enforcement is effective
As a Tails user I want all direct Internet connections I do by mistake or applications do by misconfiguration or buggy leaks to be blocked And as a Tails developer I want to ensure that the automated test suite detects firewall leaks reliably
Tags: @product
10.550
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Given I have started Tails from DVD and logged in and the network is connected 10.238
Then the firewall's policy is to drop all IPv4 traffic 0.060
And the firewall is configured to only allow the clearnet and debian-tor users to connect directly to the Internet over IPv4 0.158
And the firewall's NAT rules only redirect traffic for the Unsafe Browser, Tor's TransPort, and DNSPort 0.048
And the firewall is configured to block all external IPv6 traffic 0.044
After features/support/hooks.rb:339 0.659
After features/support/hooks.rb:108 0.000
Tags: @product @doc
24.133
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Given I have started Tails from DVD and logged in and the network is connected 9.460
And I capture all network traffic 0.014
When I successfully start the Unsafe Browser 6.840
And I open the Tails homepage in the Unsafe Browser 7.395
And the Tails homepage loads in the Unsafe Browser 0.289
Then the firewall leak detector has detected leaks 0.134
After features/support/hooks.rb:339 0.544
After features/support/hooks.rb:108 0.047
Tags: @product
9.588
Scenario Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Steps
Given I have started Tails from DVD and logged in and the network is connected 9.369
And I capture all network traffic 0.005
And I disable Tails' firewall 0.092
When I do a TCP DNS lookup of "torproject.org" 0.119
Failed to resolve torproject.org:
;; communications error to 9.9.9.9#53: connection reset
;; communications error to 9.9.9.9#53: connection reset
;; no servers could be reached
.
<false> is not true. (Test::Unit::AssertionFailedError)
./features/step_definitions/firewall_leaks.rb:22:in `/^I do a TCP DNS lookup of "(.*?)"$/'
features/tor_enforcement.feature:28:in `When I do a TCP DNS lookup of "torproject.org"'
Then the firewall leak detector has detected leaks 0.000
After features/support/hooks.rb:339 4.625

SCENARIO FAILED: 'Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector' (at time 03:16:13)

Boot log: https://jenkins.tails.boum.org/job/test_Tails_ISO_devel/4551/artifact/build-artifacts/03:16:13_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.file_content_var_log_boot.log

Screenshot: https://jenkins.tails.boum.org/job/test_Tails_ISO_devel/4551/artifact/build-artifacts/03:16:13_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.png

Video: https://jenkins.tails.boum.org/job/test_Tails_ISO_devel/4551/artifact/build-artifacts/03:16:13_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.mkv

Systemd journal: https://jenkins.tails.boum.org/job/test_Tails_ISO_devel/4551/artifact/build-artifacts/03:16:13_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.journal

After features/support/hooks.rb:108 0.052
Tags: @product
9.948
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.526
And I capture all network traffic 0.003
And I disable Tails' firewall 0.084
When I do a UDP DNS lookup of "torproject.org" 0.231
Then the firewall leak detector has detected leaks 0.103
After features/support/hooks.rb:339 0.735
After features/support/hooks.rb:108 0.065
Tags: @product
13.579
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Given I have started Tails from DVD and logged in and the network is connected 9.304
And I capture all network traffic 0.002
And I disable Tails' firewall 0.115
When I send some ICMP pings 4.049
Then the firewall leak detector has detected leaks 0.107
After features/support/hooks.rb:339 0.540
After features/support/hooks.rb:108 0.070
9.564
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.009
Before features/support/hooks.rb:527 0.003
Given I have started Tails from DVD and logged in and the network is connected 9.297
When I open an untorified UDP connection to 1.2.3.4 on port 42 0.191
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.075
After features/support/hooks.rb:535 0.219
After features/support/hooks.rb:339 0.895
After features/support/hooks.rb:108 0.000
14.859
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Before features/support/hooks.rb:527 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.385
When I open an untorified ICMP connection to 1.2.3.4 5.389
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.083
After features/support/hooks.rb:535 0.265
After features/support/hooks.rb:339 0.545
After features/support/hooks.rb:108 0.000
Tags: @product
15.567
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Given I have started Tails from DVD without network and logged in 6.255
And the system DNS is using the local DNS resolver 0.010
And the network is plugged 0.042
And I successfully configure Tor 9.253
Then the system DNS is still using the local DNS resolver 0.005
After features/support/hooks.rb:339 0.590
After features/support/hooks.rb:108 0.000