Project Number Date
test_Tails_ISO_devel 4623 17 Sep 2026, 11:19

Feature Report

Steps Scenarios Features
Feature Passed Failed Skipped Pending Undefined Total Passed Failed Total Duration Status
The Tor enforcement is effective 37 1 1 0 0 39 7 1 8 1:51.727 Failed
Tags: @product
Feature The Tor enforcement is effective
As a Tails user I want all direct Internet connections I do by mistake or applications do by misconfiguration or buggy leaks to be blocked And as a Tails developer I want to ensure that the automated test suite detects firewall leaks reliably
Tags: @product
10.671
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Given I have started Tails from DVD and logged in and the network is connected 10.373
Then the firewall's policy is to drop all IPv4 traffic 0.061
And the firewall is configured to only allow the clearnet and debian-tor users to connect directly to the Internet over IPv4 0.146
And the firewall's NAT rules only redirect traffic for the Unsafe Browser, Tor's TransPort, and DNSPort 0.043
And the firewall is configured to block all external IPv6 traffic 0.046
After features/support/hooks.rb:339 1.046
After features/support/hooks.rb:108 0.000
Tags: @product @doc
24.606
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Given I have started Tails from DVD and logged in and the network is connected 9.766
And I capture all network traffic 0.005
When I successfully start the Unsafe Browser 6.373
And I open the Tails homepage in the Unsafe Browser 7.944
And the Tails homepage loads in the Unsafe Browser 0.357
Then the firewall leak detector has detected leaks 0.159
After features/support/hooks.rb:339 0.559
After features/support/hooks.rb:108 0.055
Tags: @product
10.189
Scenario Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Steps
Given I have started Tails from DVD and logged in and the network is connected 9.907
And I capture all network traffic 0.005
And I disable Tails' firewall 0.115
When I do a TCP DNS lookup of "torproject.org" 0.161
Failed to resolve torproject.org:
;; communications error to 9.9.9.9#53: connection reset
;; communications error to 9.9.9.9#53: connection reset
;; no servers could be reached
.
<false> is not true. (Test::Unit::AssertionFailedError)
./features/step_definitions/firewall_leaks.rb:22:in `/^I do a TCP DNS lookup of "(.*?)"$/'
features/tor_enforcement.feature:28:in `When I do a TCP DNS lookup of "torproject.org"'
Then the firewall leak detector has detected leaks 0.000
After features/support/hooks.rb:339 5.088

SCENARIO FAILED: 'Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector' (at time 03:21:41)

Boot log: https://jenkins.tails.net/job/test_Tails_ISO_devel/4623/artifact/build-artifacts/03:21:41_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.file_content_var_log_boot.log

Screenshot: https://jenkins.tails.net/job/test_Tails_ISO_devel/4623/artifact/build-artifacts/03:21:41_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.png

Video: https://jenkins.tails.net/job/test_Tails_ISO_devel/4623/artifact/build-artifacts/03:21:41_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.mkv

Systemd journal: https://jenkins.tails.net/job/test_Tails_ISO_devel/4623/artifact/build-artifacts/03:21:41_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.journal

After features/support/hooks.rb:108 0.041
Tags: @product
10.263
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.005
Given I have started Tails from DVD and logged in and the network is connected 9.832
And I capture all network traffic 0.003
And I disable Tails' firewall 0.102
When I do a UDP DNS lookup of "torproject.org" 0.199
Then the firewall leak detector has detected leaks 0.125
After features/support/hooks.rb:339 0.889
After features/support/hooks.rb:108 0.034
Tags: @product
14.164
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Given I have started Tails from DVD and logged in and the network is connected 9.835
And I capture all network traffic 0.005
And I disable Tails' firewall 0.123
When I send some ICMP pings 4.079
Then the firewall leak detector has detected leaks 0.120
After features/support/hooks.rb:339 0.614
After features/support/hooks.rb:108 0.035
10.379
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Before features/support/hooks.rb:527 0.003
Given I have started Tails from DVD and logged in and the network is connected 9.446
When I open an untorified UDP connection to 1.2.3.4 on port 42 0.837
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.094
After features/support/hooks.rb:535 0.317
After features/support/hooks.rb:339 0.989
After features/support/hooks.rb:108 0.000
15.339
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Before features/support/hooks.rb:527 0.001
Given I have started Tails from DVD and logged in and the network is connected 9.886
When I open an untorified ICMP connection to 1.2.3.4 5.356
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.095
After features/support/hooks.rb:535 0.283
After features/support/hooks.rb:339 0.546
After features/support/hooks.rb:108 0.000
Tags: @product
16.112
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Given I have started Tails from DVD without network and logged in 6.500
And the system DNS is using the local DNS resolver 0.006
And the network is plugged 0.022
And I successfully configure Tor 9.576
Then the system DNS is still using the local DNS resolver 0.005
After features/support/hooks.rb:339 0.609
After features/support/hooks.rb:108 0.000