Project Number Date
test_Tails_ISO_devel 4596 04 Sep 2026, 11:11

Feature Report

Steps Scenarios Features
Feature Passed Failed Skipped Pending Undefined Total Passed Failed Total Duration Status
The Tor enforcement is effective 37 1 1 0 0 39 7 1 8 1:55.738 Failed
Tags: @product
Feature The Tor enforcement is effective
As a Tails user I want all direct Internet connections I do by mistake or applications do by misconfiguration or buggy leaks to be blocked And as a Tails developer I want to ensure that the automated test suite detects firewall leaks reliably
Tags: @product
10.184
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.908
Then the firewall's policy is to drop all IPv4 traffic 0.044
And the firewall is configured to only allow the clearnet and debian-tor users to connect directly to the Internet over IPv4 0.148
And the firewall's NAT rules only redirect traffic for the Unsafe Browser, Tor's TransPort, and DNSPort 0.042
And the firewall is configured to block all external IPv6 traffic 0.039
After features/support/hooks.rb:339 0.991
After features/support/hooks.rb:108 0.000
Tags: @product @doc
23.320
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.217
And I capture all network traffic 0.003
When I successfully start the Unsafe Browser 6.772
And I open the Tails homepage in the Unsafe Browser 6.976
And the Tails homepage loads in the Unsafe Browser 0.224
Then the firewall leak detector has detected leaks 0.126
After features/support/hooks.rb:339 0.840
After features/support/hooks.rb:108 0.036
Tags: @product
9.281
Scenario Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Steps
Given I have started Tails from DVD and logged in and the network is connected 9.069
And I capture all network traffic 0.003
And I disable Tails' firewall 0.099
When I do a TCP DNS lookup of "torproject.org" 0.109
Failed to resolve torproject.org:
;; communications error to 9.9.9.9#53: connection reset
;; communications error to 9.9.9.9#53: connection reset
;; no servers could be reached
.
<false> is not true. (Test::Unit::AssertionFailedError)
./features/step_definitions/firewall_leaks.rb:22:in `/^I do a TCP DNS lookup of "(.*?)"$/'
features/tor_enforcement.feature:28:in `When I do a TCP DNS lookup of "torproject.org"'
Then the firewall leak detector has detected leaks 0.000
After features/support/hooks.rb:339 4.905

SCENARIO FAILED: 'Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector' (at time 03:14:36)

Boot log: https://jenkins.tails.boum.org/job/test_Tails_ISO_devel/4596/artifact/build-artifacts/03:14:36_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.file_content_var_log_boot.log

Screenshot: https://jenkins.tails.boum.org/job/test_Tails_ISO_devel/4596/artifact/build-artifacts/03:14:36_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.png

Video: https://jenkins.tails.boum.org/job/test_Tails_ISO_devel/4596/artifact/build-artifacts/03:14:36_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.mkv

Systemd journal: https://jenkins.tails.boum.org/job/test_Tails_ISO_devel/4596/artifact/build-artifacts/03:14:36_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.journal

After features/support/hooks.rb:108 0.043
Tags: @product
9.578
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.009
Given I have started Tails from DVD and logged in and the network is connected 9.147
And I capture all network traffic 0.003
And I disable Tails' firewall 0.099
When I do a UDP DNS lookup of "torproject.org" 0.224
Then the firewall leak detector has detected leaks 0.104
After features/support/hooks.rb:339 0.554
After features/support/hooks.rb:108 0.038
Tags: @product
13.493
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.201
And I capture all network traffic 0.003
And I disable Tails' firewall 0.131
When I send some ICMP pings 4.051
Then the firewall leak detector has detected leaks 0.105
After features/support/hooks.rb:339 0.629
After features/support/hooks.rb:108 0.058
9.513
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Before features/support/hooks.rb:527 0.001
Given I have started Tails from DVD and logged in and the network is connected 9.192
When I open an untorified UDP connection to 1.2.3.4 on port 42 0.237
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.083
After features/support/hooks.rb:535 0.251
After features/support/hooks.rb:339 0.865
After features/support/hooks.rb:108 0.000
26.285
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Before features/support/hooks.rb:527 0.001
Given I have started Tails from DVD and logged in and the network is connected 20.925
When I open an untorified ICMP connection to 1.2.3.4 5.288
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.071
After features/support/hooks.rb:535 0.240
After features/support/hooks.rb:339 0.575
After features/support/hooks.rb:108 0.000
Tags: @product
14.081
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD without network and logged in 6.237
And the system DNS is using the local DNS resolver 0.004
And the network is plugged 0.033
And I successfully configure Tor 7.801
Then the system DNS is still using the local DNS resolver 0.004
After features/support/hooks.rb:339 0.645
After features/support/hooks.rb:108 0.000