Project Number Date
test_Tails_ISO_stable 6549 30 Jul 2026, 19:38

Feature Report

Steps Scenarios Features
Feature Passed Failed Skipped Pending Undefined Total Passed Failed Total Duration Status
The Tor enforcement is effective 37 1 1 0 0 39 7 1 8 1:56.528 Failed
Tags: @product
Feature The Tor enforcement is effective
As a Tails user I want all direct Internet connections I do by mistake or applications do by misconfiguration or buggy leaks to be blocked And as a Tails developer I want to ensure that the automated test suite detects firewall leaks reliably
Tags: @product
11.157
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.004
Given I have started Tails from DVD and logged in and the network is connected 10.801
Then the firewall's policy is to drop all IPv4 traffic 0.061
And the firewall is configured to only allow the clearnet and debian-tor users to connect directly to the Internet over IPv4 0.174
And the firewall's NAT rules only redirect traffic for the Unsafe Browser, Tor's TransPort, and DNSPort 0.055
And the firewall is configured to block all external IPv6 traffic 0.063
After features/support/hooks.rb:339 0.536
After features/support/hooks.rb:108 0.000
Tags: @product @doc
24.629
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.004
Given I have started Tails from DVD and logged in and the network is connected 9.854
And I capture all network traffic 0.006
When I successfully start the Unsafe Browser 7.106
And I open the Tails homepage in the Unsafe Browser 7.150
And the Tails homepage loads in the Unsafe Browser 0.344
Then the firewall leak detector has detected leaks 0.167
After features/support/hooks.rb:339 0.653
After features/support/hooks.rb:108 0.062
Tags: @product
14.421
Scenario Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.004
Steps
Given I have started Tails from DVD and logged in and the network is connected 9.639
And I capture all network traffic 0.005
And I disable Tails' firewall 0.114
When I do a TCP DNS lookup of "torproject.org" 4.663
Failed to resolve torproject.org:
;; communications error to 9.9.9.9#53: end of file
;; communications error to 9.9.9.9#53: end of file
;; no servers could be reached
.
<false> is not true. (Test::Unit::AssertionFailedError)
./features/step_definitions/firewall_leaks.rb:22:in `/^I do a TCP DNS lookup of "(.*?)"$/'
features/tor_enforcement.feature:28:in `When I do a TCP DNS lookup of "torproject.org"'
Then the firewall leak detector has detected leaks 0.000
After features/support/hooks.rb:339 4.842

SCENARIO FAILED: 'Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector' (at time 03:21:07)

Boot log: https://jenkins.tails.boum.org/job/test_Tails_ISO_stable/6549/artifact/build-artifacts/03:21:07_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.file_content_var_log_boot.log

Screenshot: https://jenkins.tails.boum.org/job/test_Tails_ISO_stable/6549/artifact/build-artifacts/03:21:07_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.png

Video: https://jenkins.tails.boum.org/job/test_Tails_ISO_stable/6549/artifact/build-artifacts/03:21:07_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.mkv

Systemd journal: https://jenkins.tails.boum.org/job/test_Tails_ISO_stable/6549/artifact/build-artifacts/03:21:07_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.journal

After features/support/hooks.rb:108 0.047
Tags: @product
11.096
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.005
Given I have started Tails from DVD and logged in and the network is connected 9.589
And I capture all network traffic 0.005
And I disable Tails' firewall 0.108
When I do a UDP DNS lookup of "torproject.org" 1.274
Then the firewall leak detector has detected leaks 0.120
After features/support/hooks.rb:339 0.608
After features/support/hooks.rb:108 0.060
Tags: @product
14.242
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.004
Given I have started Tails from DVD and logged in and the network is connected 9.924
And I capture all network traffic 0.005
And I disable Tails' firewall 0.110
When I send some ICMP pings 4.080
Then the firewall leak detector has detected leaks 0.119
After features/support/hooks.rb:339 0.920
After features/support/hooks.rb:108 0.053
9.919
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.004
Before features/support/hooks.rb:527 0.006
Given I have started Tails from DVD and logged in and the network is connected 9.620
When I open an untorified UDP connection to 1.2.3.4 on port 42 0.215
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.082
After features/support/hooks.rb:535 0.253
After features/support/hooks.rb:339 1.043
After features/support/hooks.rb:108 0.000
14.969
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.004
Before features/support/hooks.rb:527 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.561
When I open an untorified ICMP connection to 1.2.3.4 5.326
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.081
After features/support/hooks.rb:535 0.279
After features/support/hooks.rb:339 0.941
After features/support/hooks.rb:108 0.000
Tags: @product
16.091
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.006
Given I have started Tails from DVD without network and logged in 6.592
And the system DNS is using the local DNS resolver 0.005
And the network is plugged 0.018
And I successfully configure Tor 9.469
Then the system DNS is still using the local DNS resolver 0.005
After features/support/hooks.rb:339 0.741
After features/support/hooks.rb:108 0.000