Project Number Date
test_Tails_ISO_stable 6543 29 Jul 2026, 11:35

Feature Report

Steps Scenarios Features
Feature Passed Failed Skipped Pending Undefined Total Passed Failed Total Duration Status
The Tor enforcement is effective 37 1 1 0 0 39 7 1 8 2:1.209 Failed
Tags: @product
Feature The Tor enforcement is effective
As a Tails user I want all direct Internet connections I do by mistake or applications do by misconfiguration or buggy leaks to be blocked And as a Tails developer I want to ensure that the automated test suite detects firewall leaks reliably
Tags: @product
11.162
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.004
Given I have started Tails from DVD and logged in and the network is connected 10.848
Then the firewall's policy is to drop all IPv4 traffic 0.052
And the firewall is configured to only allow the clearnet and debian-tor users to connect directly to the Internet over IPv4 0.159
And the firewall's NAT rules only redirect traffic for the Unsafe Browser, Tor's TransPort, and DNSPort 0.056
And the firewall is configured to block all external IPv6 traffic 0.045
After features/support/hooks.rb:339 0.538
After features/support/hooks.rb:108 0.000
Tags: @product @doc
25.159
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.812
And I capture all network traffic 0.005
When I successfully start the Unsafe Browser 7.251
And I open the Tails homepage in the Unsafe Browser 7.520
And the Tails homepage loads in the Unsafe Browser 0.393
Then the firewall leak detector has detected leaks 0.176
After features/support/hooks.rb:339 0.928
After features/support/hooks.rb:108 0.044
Tags: @product
14.572
Scenario Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.004
Steps
Given I have started Tails from DVD and logged in and the network is connected 9.764
And I capture all network traffic 0.008
And I disable Tails' firewall 0.112
When I do a TCP DNS lookup of "torproject.org" 4.687
Failed to resolve torproject.org:
;; communications error to 9.9.9.9#53: end of file
;; communications error to 9.9.9.9#53: end of file
;; no servers could be reached
.
<false> is not true. (Test::Unit::AssertionFailedError)
./features/step_definitions/firewall_leaks.rb:22:in `/^I do a TCP DNS lookup of "(.*?)"$/'
features/tor_enforcement.feature:28:in `When I do a TCP DNS lookup of "torproject.org"'
Then the firewall leak detector has detected leaks 0.000
After features/support/hooks.rb:339 4.807

SCENARIO FAILED: 'Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector' (at time 03:15:58)

Boot log: https://jenkins.tails.boum.org/job/test_Tails_ISO_stable/6543/artifact/build-artifacts/03:15:58_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.file_content_var_log_boot.log

Screenshot: https://jenkins.tails.boum.org/job/test_Tails_ISO_stable/6543/artifact/build-artifacts/03:15:58_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.png

Video: https://jenkins.tails.boum.org/job/test_Tails_ISO_stable/6543/artifact/build-artifacts/03:15:58_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.mkv

Systemd journal: https://jenkins.tails.boum.org/job/test_Tails_ISO_stable/6543/artifact/build-artifacts/03:15:58_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.journal

After features/support/hooks.rb:108 0.046
Tags: @product
12.884
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.016
Given I have started Tails from DVD and logged in and the network is connected 10.074
And I capture all network traffic 0.003
And I disable Tails' firewall 0.116
When I do a UDP DNS lookup of "torproject.org" 2.563
Then the firewall leak detector has detected leaks 0.126
After features/support/hooks.rb:339 0.853
After features/support/hooks.rb:108 0.046
Tags: @product
14.124
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.004
Given I have started Tails from DVD and logged in and the network is connected 9.812
And I capture all network traffic 0.004
And I disable Tails' firewall 0.102
When I send some ICMP pings 4.080
Then the firewall leak detector has detected leaks 0.124
After features/support/hooks.rb:339 0.615
After features/support/hooks.rb:108 0.042
10.432
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Before features/support/hooks.rb:527 0.001
Given I have started Tails from DVD and logged in and the network is connected 9.761
When I open an untorified UDP connection to 1.2.3.4 on port 42 0.536
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.135
After features/support/hooks.rb:535 0.247
After features/support/hooks.rb:339 1.077
After features/support/hooks.rb:108 0.000
15.343
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.004
Before features/support/hooks.rb:527 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.943
When I open an untorified ICMP connection to 1.2.3.4 5.324
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.074
After features/support/hooks.rb:535 0.373
After features/support/hooks.rb:339 1.193
After features/support/hooks.rb:108 0.000
Tags: @product
17.529
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.004
Given I have started Tails from DVD without network and logged in 6.805
And the system DNS is using the local DNS resolver 0.009
And the network is plugged 0.014
And I successfully configure Tor 10.693
Then the system DNS is still using the local DNS resolver 0.006
After features/support/hooks.rb:339 0.694
After features/support/hooks.rb:108 0.000