Project Number Date
test_Tails_ISO_21565-flatpak-safe 9 24 Aug 2026, 16:31

Feature Report

Steps Scenarios Features
Feature Passed Failed Skipped Pending Undefined Total Passed Failed Total Duration Status
The Tor enforcement is effective 37 1 1 0 0 39 7 1 8 1:52.118 Failed
Tags: @product
Feature The Tor enforcement is effective
As a Tails user I want all direct Internet connections I do by mistake or applications do by misconfiguration or buggy leaks to be blocked And as a Tails developer I want to ensure that the automated test suite detects firewall leaks reliably
Tags: @product
11.325
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 11.052
Then the firewall's policy is to drop all IPv4 traffic 0.061
And the firewall is configured to only allow the clearnet and debian-tor users to connect directly to the Internet over IPv4 0.123
And the firewall's NAT rules only redirect traffic for the Unsafe Browser, Tor's TransPort, and DNSPort 0.044
And the firewall is configured to block all external IPv6 traffic 0.043
After features/support/hooks.rb:339 0.795
After features/support/hooks.rb:108 0.000
Tags: @product @doc
24.856
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.526
And I capture all network traffic 0.003
When I successfully start the Unsafe Browser 7.615
And I open the Tails homepage in the Unsafe Browser 7.229
And the Tails homepage loads in the Unsafe Browser 0.349
Then the firewall leak detector has detected leaks 0.132
After features/support/hooks.rb:339 0.834
After features/support/hooks.rb:108 0.050
Tags: @product
9.991
Scenario Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.004
Steps
Given I have started Tails from DVD and logged in and the network is connected 9.683
And I capture all network traffic 0.002
And I disable Tails' firewall 0.121
When I do a TCP DNS lookup of "torproject.org" 0.183
Failed to resolve torproject.org:
;; communications error to 9.9.9.9#53: connection reset
;; communications error to 9.9.9.9#53: connection reset
;; no servers could be reached
.
<false> is not true. (Test::Unit::AssertionFailedError)
./features/step_definitions/firewall_leaks.rb:22:in `/^I do a TCP DNS lookup of "(.*?)"$/'
features/tor_enforcement.feature:28:in `When I do a TCP DNS lookup of "torproject.org"'
Then the firewall leak detector has detected leaks 0.000
After features/support/hooks.rb:339 4.779

SCENARIO FAILED: 'Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector' (at time 03:00:19)

Boot log: https://jenkins.tails.boum.org/job/test_Tails_ISO_21565-flatpak-safe/9/artifact/build-artifacts/03:00:19_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.file_content_var_log_boot.log

Screenshot: https://jenkins.tails.boum.org/job/test_Tails_ISO_21565-flatpak-safe/9/artifact/build-artifacts/03:00:19_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.png

Video: https://jenkins.tails.boum.org/job/test_Tails_ISO_21565-flatpak-safe/9/artifact/build-artifacts/03:00:19_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.mkv

Systemd journal: https://jenkins.tails.boum.org/job/test_Tails_ISO_21565-flatpak-safe/9/artifact/build-artifacts/03:00:19_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.journal

After features/support/hooks.rb:108 0.035
Tags: @product
9.990
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.651
And I capture all network traffic 0.002
And I disable Tails' firewall 0.082
When I do a UDP DNS lookup of "torproject.org" 0.143
Then the firewall leak detector has detected leaks 0.109
After features/support/hooks.rb:339 0.686
After features/support/hooks.rb:108 0.056
Tags: @product
14.045
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD and logged in and the network is connected 9.781
And I capture all network traffic 0.003
And I disable Tails' firewall 0.097
When I send some ICMP pings 4.043
Then the firewall leak detector has detected leaks 0.119
After features/support/hooks.rb:339 0.671
After features/support/hooks.rb:108 0.041
9.794
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.005
Before features/support/hooks.rb:527 0.006
Given I have started Tails from DVD and logged in and the network is connected 9.539
When I open an untorified UDP connection to 1.2.3.4 on port 42 0.189
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.066
After features/support/hooks.rb:535 0.266
After features/support/hooks.rb:339 0.680
After features/support/hooks.rb:108 0.000
15.018
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Before features/support/hooks.rb:527 0.001
Given I have started Tails from DVD and logged in and the network is connected 9.625
When I open an untorified ICMP connection to 1.2.3.4 5.317
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.076
After features/support/hooks.rb:535 0.316
After features/support/hooks.rb:339 0.967
After features/support/hooks.rb:108 0.000
Tags: @product
17.095
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.002
Given I have started Tails from DVD without network and logged in 6.633
And the system DNS is using the local DNS resolver 0.008
And the network is plugged 0.042
And I successfully configure Tor 10.407
Then the system DNS is still using the local DNS resolver 0.004
After features/support/hooks.rb:339 0.647
After features/support/hooks.rb:108 0.000