Project Number Date
test_Tails_ISO_stable 6566 08 Aug 2026, 11:46

Feature Report

Steps Scenarios Features
Feature Passed Failed Skipped Pending Undefined Total Passed Failed Total Duration Status
The Tor enforcement is effective 37 1 1 0 0 39 7 1 8 1:52.091 Failed
Tags: @product
Feature The Tor enforcement is effective
As a Tails user I want all direct Internet connections I do by mistake or applications do by misconfiguration or buggy leaks to be blocked And as a Tails developer I want to ensure that the automated test suite detects firewall leaks reliably
Tags: @product
10.990
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 10.729
Then the firewall's policy is to drop all IPv4 traffic 0.050
And the firewall is configured to only allow the clearnet and debian-tor users to connect directly to the Internet over IPv4 0.126
And the firewall's NAT rules only redirect traffic for the Unsafe Browser, Tor's TransPort, and DNSPort 0.043
And the firewall is configured to block all external IPv6 traffic 0.040
After features/support/hooks.rb:339 0.697
After features/support/hooks.rb:108 0.000
Tags: @product @doc
24.850
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.625
And I capture all network traffic 0.003
When I successfully start the Unsafe Browser 7.643
And I open the Tails homepage in the Unsafe Browser 7.049
And the Tails homepage loads in the Unsafe Browser 0.383
Then the firewall leak detector has detected leaks 0.144
After features/support/hooks.rb:339 0.836
After features/support/hooks.rb:108 0.052
Tags: @product
9.958
Scenario Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Steps
Given I have started Tails from DVD and logged in and the network is connected 9.706
And I capture all network traffic 0.004
And I disable Tails' firewall 0.106
When I do a TCP DNS lookup of "torproject.org" 0.142
Failed to resolve torproject.org:
;; communications error to 9.9.9.9#53: connection reset
;; communications error to 9.9.9.9#53: connection reset
;; no servers could be reached
.
<false> is not true. (Test::Unit::AssertionFailedError)
./features/step_definitions/firewall_leaks.rb:22:in `/^I do a TCP DNS lookup of "(.*?)"$/'
features/tor_enforcement.feature:28:in `When I do a TCP DNS lookup of "torproject.org"'
Then the firewall leak detector has detected leaks 0.000
After features/support/hooks.rb:339 4.771

SCENARIO FAILED: 'Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector' (at time 03:27:36)

Boot log: https://jenkins.tails.boum.org/job/test_Tails_ISO_stable/6566/artifact/build-artifacts/03:27:36_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.file_content_var_log_boot.log

Screenshot: https://jenkins.tails.boum.org/job/test_Tails_ISO_stable/6566/artifact/build-artifacts/03:27:36_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.png

Video: https://jenkins.tails.boum.org/job/test_Tails_ISO_stable/6566/artifact/build-artifacts/03:27:36_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.mkv

Systemd journal: https://jenkins.tails.boum.org/job/test_Tails_ISO_stable/6566/artifact/build-artifacts/03:27:36_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.journal

After features/support/hooks.rb:108 0.058
Tags: @product
10.163
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.774
And I capture all network traffic 0.004
And I disable Tails' firewall 0.157
When I do a UDP DNS lookup of "torproject.org" 0.114
Then the firewall leak detector has detected leaks 0.112
After features/support/hooks.rb:339 0.529
After features/support/hooks.rb:108 0.046
Tags: @product
13.610
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.352
And I capture all network traffic 0.002
And I disable Tails' firewall 0.105
When I send some ICMP pings 4.043
Then the firewall leak detector has detected leaks 0.105
After features/support/hooks.rb:339 0.519
After features/support/hooks.rb:108 0.035
10.179
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Before features/support/hooks.rb:527 0.001
Given I have started Tails from DVD and logged in and the network is connected 9.877
When I open an untorified UDP connection to 1.2.3.4 on port 42 0.213
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.088
After features/support/hooks.rb:535 0.258
After features/support/hooks.rb:339 0.813
After features/support/hooks.rb:108 0.000
14.875
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.009
Before features/support/hooks.rb:527 0.004
Given I have started Tails from DVD and logged in and the network is connected 9.385
When I open an untorified ICMP connection to 1.2.3.4 5.388
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.100
After features/support/hooks.rb:535 0.232
After features/support/hooks.rb:339 0.590
After features/support/hooks.rb:108 0.000
Tags: @product
17.462
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD without network and logged in 6.651
And the system DNS is using the local DNS resolver 0.005
And the network is plugged 0.041
And I successfully configure Tor 10.758
Then the system DNS is still using the local DNS resolver 0.005
After features/support/hooks.rb:339 0.761
After features/support/hooks.rb:108 0.000