Project Number Date
test_Tails_ISO_devel 4571 26 Aug 2026, 18:27

Feature Report

Steps Scenarios Features
Feature Passed Failed Skipped Pending Undefined Total Passed Failed Total Duration Status
The Tor enforcement is effective 37 1 1 0 0 39 7 1 8 1:59.510 Failed
Tags: @product
Feature The Tor enforcement is effective
As a Tails user I want all direct Internet connections I do by mistake or applications do by misconfiguration or buggy leaks to be blocked And as a Tails developer I want to ensure that the automated test suite detects firewall leaks reliably
Tags: @product
10.265
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.967
Then the firewall's policy is to drop all IPv4 traffic 0.047
And the firewall is configured to only allow the clearnet and debian-tor users to connect directly to the Internet over IPv4 0.164
And the firewall's NAT rules only redirect traffic for the Unsafe Browser, Tor's TransPort, and DNSPort 0.043
And the firewall is configured to block all external IPv6 traffic 0.041
After features/support/hooks.rb:339 0.835
After features/support/hooks.rb:108 0.000
Tags: @product @doc
23.845
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.347
And I capture all network traffic 0.004
When I successfully start the Unsafe Browser 6.778
And I open the Tails homepage in the Unsafe Browser 7.277
And the Tails homepage loads in the Unsafe Browser 0.301
Then the firewall leak detector has detected leaks 0.135
After features/support/hooks.rb:339 0.824
After features/support/hooks.rb:108 0.053
Tags: @product
9.643
Scenario Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.016
Steps
Given I have started Tails from DVD and logged in and the network is connected 9.376
And I capture all network traffic 0.003
And I disable Tails' firewall 0.129
When I do a TCP DNS lookup of "torproject.org" 0.134
Failed to resolve torproject.org:
;; communications error to 9.9.9.9#53: connection reset
;; communications error to 9.9.9.9#53: connection reset
;; no servers could be reached
.
<false> is not true. (Test::Unit::AssertionFailedError)
./features/step_definitions/firewall_leaks.rb:22:in `/^I do a TCP DNS lookup of "(.*?)"$/'
features/tor_enforcement.feature:28:in `When I do a TCP DNS lookup of "torproject.org"'
Then the firewall leak detector has detected leaks 0.000
After features/support/hooks.rb:339 4.563

SCENARIO FAILED: 'Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector' (at time 03:19:35)

Boot log: https://jenkins.tails.boum.org/job/test_Tails_ISO_devel/4571/artifact/build-artifacts/03:19:35_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.file_content_var_log_boot.log

Screenshot: https://jenkins.tails.boum.org/job/test_Tails_ISO_devel/4571/artifact/build-artifacts/03:19:35_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.png

Video: https://jenkins.tails.boum.org/job/test_Tails_ISO_devel/4571/artifact/build-artifacts/03:19:35_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.mkv

Systemd journal: https://jenkins.tails.boum.org/job/test_Tails_ISO_devel/4571/artifact/build-artifacts/03:19:35_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.journal

After features/support/hooks.rb:108 0.033
Tags: @product
10.066
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.730
And I capture all network traffic 0.003
And I disable Tails' firewall 0.104
When I do a UDP DNS lookup of "torproject.org" 0.125
Then the firewall leak detector has detected leaks 0.102
After features/support/hooks.rb:339 0.642
After features/support/hooks.rb:108 0.040
Tags: @product
13.715
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Given I have started Tails from DVD and logged in and the network is connected 9.424
And I capture all network traffic 0.006
And I disable Tails' firewall 0.123
When I send some ICMP pings 4.054
Then the firewall leak detector has detected leaks 0.106
After features/support/hooks.rb:339 0.932
After features/support/hooks.rb:108 0.040
22.271
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Before features/support/hooks.rb:527 0.003
Given I have started Tails from DVD and logged in and the network is connected 21.980
When I open an untorified UDP connection to 1.2.3.4 on port 42 0.221
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.068
After features/support/hooks.rb:535 0.255
After features/support/hooks.rb:339 0.578
After features/support/hooks.rb:108 0.000
14.872
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Before features/support/hooks.rb:527 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.425
When I open an untorified ICMP connection to 1.2.3.4 5.345
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.101
After features/support/hooks.rb:535 0.234
After features/support/hooks.rb:339 0.570
After features/support/hooks.rb:108 0.000
Tags: @product
14.830
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.007
Given I have started Tails from DVD without network and logged in 6.479
And the system DNS is using the local DNS resolver 0.004
And the network is plugged 0.029
And I successfully configure Tor 8.310
Then the system DNS is still using the local DNS resolver 0.005
After features/support/hooks.rb:339 0.891
After features/support/hooks.rb:108 0.000