Project Number Date
test_Tails_ISO_stable 6580 14 Aug 2026, 11:34

Feature Report

Steps Scenarios Features
Feature Passed Failed Skipped Pending Undefined Total Passed Failed Total Duration Status
The Tor enforcement is effective 37 1 1 0 0 39 7 1 8 1:50.281 Failed
Tags: @product
Feature The Tor enforcement is effective
As a Tails user I want all direct Internet connections I do by mistake or applications do by misconfiguration or buggy leaks to be blocked And as a Tails developer I want to ensure that the automated test suite detects firewall leaks reliably
Tags: @product
10.953
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 10.600
Then the firewall's policy is to drop all IPv4 traffic 0.090
And the firewall is configured to only allow the clearnet and debian-tor users to connect directly to the Internet over IPv4 0.160
And the firewall's NAT rules only redirect traffic for the Unsafe Browser, Tor's TransPort, and DNSPort 0.062
And the firewall is configured to block all external IPv6 traffic 0.040
After features/support/hooks.rb:339 0.740
After features/support/hooks.rb:108 0.000
Tags: @product @doc
24.204
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.011
Given I have started Tails from DVD and logged in and the network is connected 9.615
And I capture all network traffic 0.008
When I successfully start the Unsafe Browser 7.118
And I open the Tails homepage in the Unsafe Browser 6.972
And the Tails homepage loads in the Unsafe Browser 0.357
Then the firewall leak detector has detected leaks 0.131
After features/support/hooks.rb:339 1.163
After features/support/hooks.rb:108 0.043
Tags: @product
9.541
Scenario Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Steps
Given I have started Tails from DVD and logged in and the network is connected 9.294
And I capture all network traffic 0.004
And I disable Tails' firewall 0.100
When I do a TCP DNS lookup of "torproject.org" 0.141
Failed to resolve torproject.org:
;; communications error to 9.9.9.9#53: connection reset
;; communications error to 9.9.9.9#53: connection reset
;; no servers could be reached
.
<false> is not true. (Test::Unit::AssertionFailedError)
./features/step_definitions/firewall_leaks.rb:22:in `/^I do a TCP DNS lookup of "(.*?)"$/'
features/tor_enforcement.feature:28:in `When I do a TCP DNS lookup of "torproject.org"'
Then the firewall leak detector has detected leaks 0.000
After features/support/hooks.rb:339 4.775

SCENARIO FAILED: 'Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector' (at time 03:19:20)

Boot log: https://jenkins.tails.boum.org/job/test_Tails_ISO_stable/6580/artifact/build-artifacts/03:19:20_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.file_content_var_log_boot.log

Screenshot: https://jenkins.tails.boum.org/job/test_Tails_ISO_stable/6580/artifact/build-artifacts/03:19:20_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.png

Video: https://jenkins.tails.boum.org/job/test_Tails_ISO_stable/6580/artifact/build-artifacts/03:19:20_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.mkv

Systemd journal: https://jenkins.tails.boum.org/job/test_Tails_ISO_stable/6580/artifact/build-artifacts/03:19:20_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.journal

After features/support/hooks.rb:108 0.045
Tags: @product
9.893
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.004
Given I have started Tails from DVD and logged in and the network is connected 9.485
And I capture all network traffic 0.003
And I disable Tails' firewall 0.098
When I do a UDP DNS lookup of "torproject.org" 0.184
Then the firewall leak detector has detected leaks 0.121
After features/support/hooks.rb:339 0.783
After features/support/hooks.rb:108 0.048
Tags: @product
13.911
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Given I have started Tails from DVD and logged in and the network is connected 9.581
And I capture all network traffic 0.009
And I disable Tails' firewall 0.124
When I send some ICMP pings 4.065
Then the firewall leak detector has detected leaks 0.130
After features/support/hooks.rb:339 0.738
After features/support/hooks.rb:108 0.042
9.756
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Before features/support/hooks.rb:527 0.007
Given I have started Tails from DVD and logged in and the network is connected 9.467
When I open an untorified UDP connection to 1.2.3.4 on port 42 0.201
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.087
After features/support/hooks.rb:535 0.246
After features/support/hooks.rb:339 0.675
After features/support/hooks.rb:108 0.000
15.627
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.020
Before features/support/hooks.rb:527 0.039
Given I have started Tails from DVD and logged in and the network is connected 10.199
When I open an untorified ICMP connection to 1.2.3.4 5.333
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.095
After features/support/hooks.rb:535 0.246
After features/support/hooks.rb:339 0.842
After features/support/hooks.rb:108 0.000
Tags: @product
16.391
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Given I have started Tails from DVD without network and logged in 6.397
And the system DNS is using the local DNS resolver 0.016
And the network is plugged 0.036
And I successfully configure Tor 9.935
Then the system DNS is still using the local DNS resolver 0.005
After features/support/hooks.rb:339 0.733
After features/support/hooks.rb:108 0.000