Goose Attack Report

Users: 5

Target Host: http://trustify:8080/

goose v0.18.0

Plan overview

Action Started Stopped Elapsed Users
Increasing25-09-16 02:16:3125-09-16 02:16:3600:00:050 → 5
Maintaining25-09-16 02:16:3625-09-16 02:21:3600:05:005
Decreasing25-09-16 02:21:3625-09-16 02:21:4300:00:070 ← 5

Request Metrics

Method Name # Requests # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
GET get_advisory_by_doc_id 130 (+39) 0 11.24 (+2.55) 3 (+1) 69 (+9) 0.43 (+0.13) 0.00 (+0.00)
GET get_analysis_latest_cpe 130 (+36) 0 136.58 (+15.53) 28 (-9) 992 (+676) 0.43 (+0.12) 0.00 (+0.00)
GET get_analysis_status 130 (+36) 0 8.51 (+0.92) 1 (0) 61 (+6) 0.43 (+0.12) 0.00 (+0.00)
GET get_sbom[sha256:720e4451…a939656247164447] 130 (+36) 0 728.49 (-294.20) 163 (-75) 1862 (-1702) 0.43 (+0.12) 0.00 (+0.00)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 130 (+37) 0 798.47 (-91.86) 338 (+106) 1587 (+249) 0.43 (+0.12) 0.00 (+0.00)
GET list_advisory 130 (+39) 0 491.97 (+82.17) 205 (+92) 1074 (+428) 0.43 (+0.13) 0.00 (+0.00)
GET list_advisory_paginated 130 (+39) 0 436.67 (+83.83) 140 (+61) 1291 (+704) 0.43 (+0.13) 0.00 (+0.00)
GET list_importer 130 (+39) 0 6.93 (+3.43) 1 (0) 62 (+17) 0.43 (+0.13) 0.00 (+0.00)
GET list_organizations 130 (+39) 0 5.59 (-8.51) 1 (0) 64 (+15) 0.43 (+0.13) 0.00 (+0.00)
GET list_packages 130 (+39) 0 456.96 (+99.05) 82 (+12) 1405 (+522) 0.43 (+0.13) 0.00 (+0.00)
GET list_packages_paginated 130 (+39) 0 402.24 (+82.75) 101 (+7) 1028 (+463) 0.43 (+0.13) 0.00 (+0.00)
GET list_products 130 (+35) 0 8.07 (-3.74) 2 (-1) 63 (+3) 0.43 (+0.12) 0.00 (+0.00)
GET list_sboms 130 (+35) 0 1022.92 (-90.05) 529 (-48) 1499 (-319) 0.43 (+0.12) 0.00 (+0.00)
GET list_sboms_paginated 130 (+35) 0 1323.01 (-1240.05) 470 (-22) 2690 (-4505) 0.43 (+0.12) 0.00 (+0.00)
GET list_vulnerabilities 130 (+39) 0 262.12 (+13.24) 62 (+13) 911 (+346) 0.43 (+0.13) 0.00 (+0.00)
GET list_vulnerabilities_paginated 130 (+39) 0 179.38 (+18.00) 40 (+2) 306 (+4) 0.43 (+0.13) 0.00 (+0.00)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 130 (+37) 0 52.89 (-5.34) 8 (-3) 171 (-11) 0.43 (+0.12) 0.00 (+0.00)
GET search_advisory 130 (+39) 0 934.02 (+147.05) 233 (+101) 1913 (-103) 0.43 (+0.13) 0.00 (+0.00)
GET search_exact_purl 130 (+35) 0 8.89 (+1.99) 1 (-2) 57 (+1) 0.43 (+0.12) 0.00 (+0.00)
GET search_purls 135 (+39) 0 3920.65 (-3007.42) 1094 (-7) 7917 (-4491) 0.45 (+0.13) 0.00 (+0.00)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 130 (+38) 0 534.87 (-80.42) 220 (+70) 1202 (-87) 0.43 (+0.13) 0.00 (+0.00)
Aggregated 2735 (+789) 0 564.74 (-212.00) 1 (0) 7917 (-4491) 9.12 (+2.63) 0.00 (+0.00)

Response Time Metrics

Method Name 50%ile (ms) 60%ile (ms) 70%ile (ms) 80%ile (ms) 90%ile (ms) 95%ile (ms) 99%ile (ms) 100%ile (ms)
GET get_advisory_by_doc_id 6 (+1) 7 (+1) 9 (+2) 11 (+2) 35 (+22) 49 (+31) 67 (+9) 69 (+9)
GET get_analysis_latest_cpe 89 (-21) 110 (-10) 150 (0) 190 (+20) 290 (+110) 350 (+160) 800 (+590) 992 (+676)
GET get_analysis_status 2 (0) 2 (-1) 3 (-1) 6 (+1) 45 (+2) 50 (+1) 55 (+2) 61 (+6)
GET get_sbom[sha256:720e4451…a939656247164447] 600 (+100) 700 (+100) 800 (+200) 1,000 (-1,000) 1,000 (-2,000) 1,862 (-1,138) 1,862 (-1,702) 1,862 (-1,702)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 800 (-100) 900 (0) 900 (-100) 900 (-100) 1,000 (0) 1,000 (0) 1,587 (+587) 1,587 (+587)
GET list_advisory 440 (+30) 460 (+20) 480 (+10) 600 (+110) 700 (+200) 800 (+200) 1,000 (+400) 1,000 (+400)
GET list_advisory_paginated 420 (+40) 460 (+80) 480 (+80) 490 (+80) 600 (+130) 600 (+120) 700 (+113) 1,000 (+413)
GET list_importer 2 (+1) 3 (+1) 4 (+2) 5 (+2) 22 (+17) 44 (+38) 50 (+12) 62 (+17)
GET list_organizations 2 (-3) 3 (-3) 4 (-7) 6 (-31) 9 (-34) 21 (-26) 47 (-1) 64 (+15)
GET list_packages 420 (+40) 430 (+30) 450 (+30) 490 (+40) 600 (+120) 900 (+300) 1,000 (+200) 1,000 (+117)
GET list_packages_paginated 400 (+70) 420 (+50) 450 (+60) 480 (+70) 500 (+50) 700 (+230) 900 (+400) 1,000 (+435)
GET list_products 5 (-1) 6 (-1) 7 (-1) 8 (-2) 11 (-30) 43 (-5) 58 (-2) 63 (+3)
GET list_sboms 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (-818) 1,000 (-818) 1,000 (-818)
GET list_sboms_paginated 1,000 (-1,000) 1,000 (-1,000) 1,000 (-2,000) 2,000 (-2,000) 2,000 (-3,000) 2,000 (-3,000) 2,690 (-4,310) 2,690 (-4,310)
GET list_vulnerabilities 220 (-20) 240 (-30) 280 (-10) 300 (-20) 350 (-30) 490 (+50) 900 (+400) 900 (+335)
GET list_vulnerabilities_paginated 180 (+10) 180 (0) 190 (0) 200 (0) 220 (-20) 270 (+10) 306 (+6) 306 (+6)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 31 (-28) 56 (-12) 63 (-13) 76 (-12) 130 (+10) 150 (0) 170 (-10) 170 (-10)
GET search_advisory 800 (+100) 900 (+100) 1,000 (+100) 1,000 (0) 1,913 (+913) 1,913 (-87) 1,913 (-87) 1,913 (-87)
GET search_exact_purl 4 (-2) 4 (-2) 5 (-1) 6 (-1) 43 (+35) 50 (+41) 56 (+10) 57 (+1)
GET search_purls 4,000 (-4,000) 4,000 (-5,000) 4,000 (-6,000) 4,000 (-6,000) 5,000 (-6,000) 5,000 (-7,000) 7,917 (-4,083) 7,917 (-4,083)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 470 (-130) 500 (-100) 500 (-200) 700 (-100) 800 (-100) 800 (-100) 1,000 (0) 1,000 (0)
Aggregated 320 (+40) 420 (+30) 500 (0) 800 (0) 1,000 (-1,000) 2,000 (-1,000) 4,000 (-6,000) 7,917 (-4,083)

Status Code Metrics

Method Name Status Codes
GET get_advisory_by_doc_id 130 [200]
GET get_analysis_latest_cpe 130 [200]
GET get_analysis_status 130 [200]
GET get_sbom[sha256:720e4451…a939656247164447] 130 [200]
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 130 [200]
GET list_advisory 130 [200]
GET list_advisory_paginated 130 [200]
GET list_importer 130 [200]
GET list_organizations 130 [200]
GET list_packages 130 [200]
GET list_packages_paginated 130 [200]
GET list_products 130 [200]
GET list_sboms 130 [200]
GET list_sboms_paginated 130 [200]
GET list_vulnerabilities 130 [200]
GET list_vulnerabilities_paginated 130 [200]
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 130 [200]
GET search_advisory 130 [200]
GET search_exact_purl 130 [200]
GET search_purls 135 [200]
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 130 [200]
Aggregated 2,735 [200]

Transaction Metrics

Transaction # Times Run # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
WebsiteUser
0.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.1 website_index 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.2 website_openapi 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.3 website_sboms 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.4 website_packages 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.5 website_advisories 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.6 website_importers 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser
1.0 logon 130 (+39) 0 (0) 14.15 (+0.46) 8 (+2) 22 (-7) 0.43 (+0.13) 0.00 (+0.00)
1.1 list_organizations 130 (+39) 0 (0) 5.74 (-8.46) 1 (0) 64 (+14) 0.43 (+0.13) 0.00 (+0.00)
1.2 list_advisory 130 (+39) 0 (0) 491.98 (+82.13) 205 (+92) 1074 (+428) 0.43 (+0.13) 0.00 (+0.00)
1.3 list_advisory_paginated 130 (+39) 0 (0) 436.70 (+83.81) 141 (+62) 1291 (+704) 0.43 (+0.13) 0.00 (+0.00)
1.4 get_advisory_by_doc_id 130 (+39) 0 (0) 11.28 (+2.51) 3 (+1) 69 (+9) 0.43 (+0.13) 0.00 (+0.00)
1.5 search_advisory 130 (+39) 0 (0) 934.05 (+147.05) 233 (+101) 1913 (-103) 0.43 (+0.13) 0.00 (+0.00)
1.6 list_vulnerabilities 130 (+39) 0 (0) 262.15 (+13.21) 62 (+13) 911 (+346) 0.43 (+0.13) 0.00 (+0.00)
1.7 list_vulnerabilities_paginated 130 (+39) 0 (0) 179.45 (+18.05) 40 (+2) 306 (+4) 0.43 (+0.13) 0.00 (+0.00)
1.8 list_importer 130 (+39) 0 (0) 6.98 (+3.44) 1 (0) 62 (+17) 0.43 (+0.13) 0.00 (+0.00)
1.9 list_packages 130 (+39) 0 (0) 457.07 (+99.10) 82 (+12) 1405 (+522) 0.43 (+0.13) 0.00 (+0.00)
1.10 list_packages_paginated 130 (+39) 0 (0) 402.29 (+82.78) 101 (+7) 1028 (+463) 0.43 (+0.13) 0.00 (+0.00)
1.11 search_purls 135 (+39) 0 (0) 3920.71 (-3007.40) 1094 (-7) 7918 (-4490) 0.45 (+0.13) 0.00 (+0.00)
1.12 search_exact_purl 130 (+35) 0 (0) 8.95 (+2.04) 1 (-2) 57 (+1) 0.43 (+0.12) 0.00 (+0.00)
1.13 list_products 130 (+35) 0 (0) 8.08 (-3.77) 2 (-1) 63 (+3) 0.43 (+0.12) 0.00 (+0.00)
1.14 list_sboms 130 (+35) 0 (0) 1022.95 (-90.05) 529 (-48) 1499 (-319) 0.43 (+0.12) 0.00 (+0.00)
1.15 list_sboms_paginated 130 (+35) 0 (0) 1323.03 (-1240.08) 470 (-22) 2690 (-4505) 0.43 (+0.12) 0.00 (+0.00)
1.16 get_analysis_status 130 (+36) 0 (0) 8.59 (+0.94) 1 (0) 61 (+6) 0.43 (+0.12) 0.00 (+0.00)
1.17 get_analysis_latest_cpe 130 (+36) 0 (0) 136.66 (+15.50) 28 (-9) 992 (+676) 0.43 (+0.12) 0.00 (+0.00)
1.18 get_sbom[sha256:720e4451…a939656247164447] 130 (+36) 0 (0) 728.54 (-294.23) 163 (-75) 1862 (-1702) 0.43 (+0.12) 0.00 (+0.00)
1.19 sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 130 (+37) 0 (0) 52.95 (-5.34) 8 (-3) 171 (-11) 0.43 (+0.12) 0.00 (+0.00)
1.20 get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 130 (+37) 0 (0) 798.57 (-91.82) 339 (+107) 1587 (+249) 0.43 (+0.12) 0.00 (+0.00)
1.21 post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 130 (+38) 0 (0) 534.95 (-80.45) 220 (+70) 1202 (-87) 0.43 (+0.13) 0.00 (+0.00)
Aggregated 2,865 (+828) 0 (0) 539.11 (-202.92) 1 (0) 7918 (-4490) 9.55 (+2.76) 0.00 (+0.00)

Scenario Metrics

Scenario # Users # Times Run Average (ms) Min (ms) Max (ms) Scenarios/s Iterations
WebsiteUser 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser 5 (0) 130 (+39) 11424.19 (-4745.29) 4686 (-4199) 15735 (-8921) 0.43 (+0.13) 26.00 (+7.80)
Aggregated 5 (0) 130 (+39) 11424.19 (-4745.29) 4686 (-4199) 15735 (-8921) 0.43 (+0.13) 26.00 (+7.80)

User Metrics