Project Number Date
test_Tails_ISO_21565-flatpak-safe 7 22 Aug 2026, 03:15

Feature Report

Steps Scenarios Features
Feature Passed Failed Skipped Pending Undefined Total Passed Failed Total Duration Status
The Tor enforcement is effective 37 1 1 0 0 39 7 1 8 1:44.121 Failed
Tags: @product
Feature The Tor enforcement is effective
As a Tails user I want all direct Internet connections I do by mistake or applications do by misconfiguration or buggy leaks to be blocked And as a Tails developer I want to ensure that the automated test suite detects firewall leaks reliably
Tags: @product
10.125
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.890
Then the firewall's policy is to drop all IPv4 traffic 0.049
And the firewall is configured to only allow the clearnet and debian-tor users to connect directly to the Internet over IPv4 0.099
And the firewall's NAT rules only redirect traffic for the Unsafe Browser, Tor's TransPort, and DNSPort 0.045
And the firewall is configured to block all external IPv6 traffic 0.041
After features/support/hooks.rb:339 0.524
After features/support/hooks.rb:108 0.000
Tags: @product @doc
23.053
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.247
And I capture all network traffic 0.003
When I successfully start the Unsafe Browser 6.463
And I open the Tails homepage in the Unsafe Browser 6.847
And the Tails homepage loads in the Unsafe Browser 0.338
Then the firewall leak detector has detected leaks 0.152
After features/support/hooks.rb:339 0.606
After features/support/hooks.rb:108 0.049
Tags: @product
9.492
Scenario Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Steps
Given I have started Tails from DVD and logged in and the network is connected 9.226
And I capture all network traffic 0.003
And I disable Tails' firewall 0.118
When I do a TCP DNS lookup of "torproject.org" 0.144
Failed to resolve torproject.org:
;; communications error to 9.9.9.9#53: connection reset
;; communications error to 9.9.9.9#53: connection reset
;; no servers could be reached
.
<false> is not true. (Test::Unit::AssertionFailedError)
./features/step_definitions/firewall_leaks.rb:22:in `/^I do a TCP DNS lookup of "(.*?)"$/'
features/tor_enforcement.feature:28:in `When I do a TCP DNS lookup of "torproject.org"'
Then the firewall leak detector has detected leaks 0.000
After features/support/hooks.rb:339 4.713

SCENARIO FAILED: 'Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector' (at time 02:49:40)

Boot log: https://jenkins.tails.boum.org/job/test_Tails_ISO_21565-flatpak-safe/7/artifact/build-artifacts/02:49:40_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.file_content_var_log_boot.log

Screenshot: https://jenkins.tails.boum.org/job/test_Tails_ISO_21565-flatpak-safe/7/artifact/build-artifacts/02:49:40_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.png

Video: https://jenkins.tails.boum.org/job/test_Tails_ISO_21565-flatpak-safe/7/artifact/build-artifacts/02:49:40_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.mkv

Systemd journal: https://jenkins.tails.boum.org/job/test_Tails_ISO_21565-flatpak-safe/7/artifact/build-artifacts/02:49:40_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.journal

After features/support/hooks.rb:108 0.048
Tags: @product
9.536
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.193
And I capture all network traffic 0.003
And I disable Tails' firewall 0.094
When I do a UDP DNS lookup of "torproject.org" 0.140
Then the firewall leak detector has detected leaks 0.105
After features/support/hooks.rb:339 0.573
After features/support/hooks.rb:108 0.042
Tags: @product
13.503
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.202
And I capture all network traffic 0.003
And I disable Tails' firewall 0.138
When I send some ICMP pings 4.051
Then the firewall leak detector has detected leaks 0.107
After features/support/hooks.rb:339 0.638
After features/support/hooks.rb:108 0.035
9.560
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Before features/support/hooks.rb:527 0.001
Given I have started Tails from DVD and logged in and the network is connected 9.308
When I open an untorified UDP connection to 1.2.3.4 on port 42 0.181
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.070
After features/support/hooks.rb:535 0.214
After features/support/hooks.rb:339 0.909
After features/support/hooks.rb:108 0.000
14.689
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Before features/support/hooks.rb:527 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.272
When I open an untorified ICMP connection to 1.2.3.4 5.346
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.070
After features/support/hooks.rb:535 0.233
After features/support/hooks.rb:339 0.702
After features/support/hooks.rb:108 0.000
Tags: @product
14.158
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD without network and logged in 6.178
And the system DNS is using the local DNS resolver 0.005
And the network is plugged 0.029
And I successfully configure Tor 7.935
Then the system DNS is still using the local DNS resolver 0.010
After features/support/hooks.rb:339 0.531
After features/support/hooks.rb:108 0.000