Project Number Date
test_Tails_ISO_21565-flatpak-safe 18 29 Aug 2026, 03:16

Feature Report

Steps Scenarios Features
Feature Passed Failed Skipped Pending Undefined Total Passed Failed Total Duration Status
The Tor enforcement is effective 37 1 1 0 0 39 7 1 8 1:45.595 Failed
Tags: @product
Feature The Tor enforcement is effective
As a Tails user I want all direct Internet connections I do by mistake or applications do by misconfiguration or buggy leaks to be blocked And as a Tails developer I want to ensure that the automated test suite detects firewall leaks reliably
Tags: @product
10.153
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Given I have started Tails from DVD and logged in and the network is connected 9.907
Then the firewall's policy is to drop all IPv4 traffic 0.040
And the firewall is configured to only allow the clearnet and debian-tor users to connect directly to the Internet over IPv4 0.124
And the firewall's NAT rules only redirect traffic for the Unsafe Browser, Tor's TransPort, and DNSPort 0.038
And the firewall is configured to block all external IPv6 traffic 0.041
After features/support/hooks.rb:339 0.479
After features/support/hooks.rb:108 0.000
Tags: @product @doc
22.956
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Given I have started Tails from DVD and logged in and the network is connected 9.146
And I capture all network traffic 0.004
When I successfully start the Unsafe Browser 6.596
And I open the Tails homepage in the Unsafe Browser 6.762
And the Tails homepage loads in the Unsafe Browser 0.312
Then the firewall leak detector has detected leaks 0.134
After features/support/hooks.rb:339 0.724
After features/support/hooks.rb:108 0.070
Tags: @product
9.341
Scenario Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Steps
Given I have started Tails from DVD and logged in and the network is connected 9.089
And I capture all network traffic 0.003
And I disable Tails' firewall 0.103
When I do a TCP DNS lookup of "torproject.org" 0.145
Failed to resolve torproject.org:
;; communications error to 9.9.9.9#53: connection reset
;; communications error to 9.9.9.9#53: connection reset
;; no servers could be reached
.
<false> is not true. (Test::Unit::AssertionFailedError)
./features/step_definitions/firewall_leaks.rb:22:in `/^I do a TCP DNS lookup of "(.*?)"$/'
features/tor_enforcement.feature:28:in `When I do a TCP DNS lookup of "torproject.org"'
Then the firewall leak detector has detected leaks 0.000
After features/support/hooks.rb:339 4.824

SCENARIO FAILED: 'Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector' (at time 02:49:22)

Boot log: https://jenkins.tails.boum.org/job/test_Tails_ISO_21565-flatpak-safe/18/artifact/build-artifacts/02:49:22_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.file_content_var_log_boot.log

Screenshot: https://jenkins.tails.boum.org/job/test_Tails_ISO_21565-flatpak-safe/18/artifact/build-artifacts/02:49:22_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.png

Video: https://jenkins.tails.boum.org/job/test_Tails_ISO_21565-flatpak-safe/18/artifact/build-artifacts/02:49:22_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.mkv

Systemd journal: https://jenkins.tails.boum.org/job/test_Tails_ISO_21565-flatpak-safe/18/artifact/build-artifacts/02:49:22_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.journal

After features/support/hooks.rb:108 0.038
Tags: @product
9.679
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Given I have started Tails from DVD and logged in and the network is connected 9.296
And I capture all network traffic 0.005
And I disable Tails' firewall 0.109
When I do a UDP DNS lookup of "torproject.org" 0.159
Then the firewall leak detector has detected leaks 0.108
After features/support/hooks.rb:339 0.951
After features/support/hooks.rb:108 0.050
Tags: @product
13.602
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.316
And I capture all network traffic 0.003
And I disable Tails' firewall 0.102
When I send some ICMP pings 4.055
Then the firewall leak detector has detected leaks 0.124
After features/support/hooks.rb:339 0.493
After features/support/hooks.rb:108 0.048
9.483
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Before features/support/hooks.rb:527 0.001
Given I have started Tails from DVD and logged in and the network is connected 9.217
When I open an untorified UDP connection to 1.2.3.4 on port 42 0.187
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.078
After features/support/hooks.rb:535 0.245
After features/support/hooks.rb:339 0.894
After features/support/hooks.rb:108 0.000
14.762
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Before features/support/hooks.rb:527 0.001
Given I have started Tails from DVD and logged in and the network is connected 9.356
When I open an untorified ICMP connection to 1.2.3.4 5.316
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.089
After features/support/hooks.rb:535 0.208
After features/support/hooks.rb:339 0.661
After features/support/hooks.rb:108 0.000
Tags: @product
15.614
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD without network and logged in 6.315
And the system DNS is using the local DNS resolver 0.005
And the network is plugged 0.037
And I successfully configure Tor 9.251
Then the system DNS is still using the local DNS resolver 0.004
After features/support/hooks.rb:339 0.540
After features/support/hooks.rb:108 0.000