Project Number Date
test_Tails_ISO_21565-flatpak-safe 50 24 Sep 2026, 14:52

Feature Report

Steps Scenarios Features
Feature Passed Failed Skipped Pending Undefined Total Passed Failed Total Duration Status
The Tor enforcement is effective 37 1 1 0 0 39 7 1 8 1:49.991 Failed
Tags: @product
Feature The Tor enforcement is effective
As a Tails user I want all direct Internet connections I do by mistake or applications do by misconfiguration or buggy leaks to be blocked And as a Tails developer I want to ensure that the automated test suite detects firewall leaks reliably
Tags: @product
10.950
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 10.728
Then the firewall's policy is to drop all IPv4 traffic 0.038
And the firewall is configured to only allow the clearnet and debian-tor users to connect directly to the Internet over IPv4 0.108
And the firewall's NAT rules only redirect traffic for the Unsafe Browser, Tor's TransPort, and DNSPort 0.041
And the firewall is configured to block all external IPv6 traffic 0.032
After features/support/hooks.rb:339 0.703
After features/support/hooks.rb:108 0.000
Tags: @product @doc
24.106
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Given I have started Tails from DVD and logged in and the network is connected 9.313
And I capture all network traffic 0.003
When I successfully start the Unsafe Browser 7.455
And I open the Tails homepage in the Unsafe Browser 6.912
And the Tails homepage loads in the Unsafe Browser 0.299
Then the firewall leak detector has detected leaks 0.121
After features/support/hooks.rb:339 0.598
After features/support/hooks.rb:108 0.046
Tags: @product
9.852
Scenario Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Steps
Given I have started Tails from DVD and logged in and the network is connected 9.581
And I capture all network traffic 0.002
And I disable Tails' firewall 0.102
When I do a TCP DNS lookup of "torproject.org" 0.164
Failed to resolve torproject.org:
;; communications error to 9.9.9.9#53: connection reset
;; communications error to 9.9.9.9#53: connection reset
;; no servers could be reached
.
<false> is not true. (Test::Unit::AssertionFailedError)
./features/step_definitions/firewall_leaks.rb:22:in `/^I do a TCP DNS lookup of "(.*?)"$/'
features/tor_enforcement.feature:28:in `When I do a TCP DNS lookup of "torproject.org"'
Then the firewall leak detector has detected leaks 0.000
After features/support/hooks.rb:339 4.913

SCENARIO FAILED: 'Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector' (at time 03:28:40)

Boot log: https://jenkins.tails.net/job/test_Tails_ISO_21565-flatpak-safe/50/artifact/build-artifacts/03:28:40_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.file_content_var_log_boot.log

Screenshot: https://jenkins.tails.net/job/test_Tails_ISO_21565-flatpak-safe/50/artifact/build-artifacts/03:28:40_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.png

Video: https://jenkins.tails.net/job/test_Tails_ISO_21565-flatpak-safe/50/artifact/build-artifacts/03:28:40_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.mkv

Systemd journal: https://jenkins.tails.net/job/test_Tails_ISO_21565-flatpak-safe/50/artifact/build-artifacts/03:28:40_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.journal

After features/support/hooks.rb:108 0.047
Tags: @product
9.708
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.291
And I capture all network traffic 0.002
And I disable Tails' firewall 0.096
When I do a UDP DNS lookup of "torproject.org" 0.213
Then the firewall leak detector has detected leaks 0.104
After features/support/hooks.rb:339 1.000
After features/support/hooks.rb:108 0.052
Tags: @product
13.968
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.007
Given I have started Tails from DVD and logged in and the network is connected 9.686
And I capture all network traffic 0.003
And I disable Tails' firewall 0.116
When I send some ICMP pings 4.052
Then the firewall leak detector has detected leaks 0.110
After features/support/hooks.rb:339 0.742
After features/support/hooks.rb:108 0.050
10.192
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Before features/support/hooks.rb:527 0.005
Given I have started Tails from DVD and logged in and the network is connected 9.928
When I open an untorified UDP connection to 1.2.3.4 on port 42 0.189
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.074
After features/support/hooks.rb:535 0.225
After features/support/hooks.rb:339 0.671
After features/support/hooks.rb:108 0.000
14.913
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Before features/support/hooks.rb:527 0.001
Given I have started Tails from DVD and logged in and the network is connected 9.444
When I open an untorified ICMP connection to 1.2.3.4 5.369
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.099
After features/support/hooks.rb:535 0.291
After features/support/hooks.rb:339 0.949
After features/support/hooks.rb:108 0.000
Tags: @product
16.299
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD without network and logged in 6.289
And the system DNS is using the local DNS resolver 0.010
And the network is plugged 0.045
And I successfully configure Tor 9.948
Then the system DNS is still using the local DNS resolver 0.006
After features/support/hooks.rb:339 0.914
After features/support/hooks.rb:108 0.000