Goose Attack Report

Users: 5

Target Host: http://trustify:8080/

goose v0.18.0

Plan overview

Action Started Stopped Elapsed Users
Increasing25-09-27 02:15:1925-09-27 02:15:2400:00:050 → 5
Maintaining25-09-27 02:15:2425-09-27 02:20:2500:05:015
Decreasing25-09-27 02:20:2525-09-27 02:20:2700:00:020 ← 5

Request Metrics

Method Name # Requests # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
GET get_advisory_by_doc_id 65 (-15) 0 13.83 (+2.36) 3 (+1) 64 (-3) 0.22 (-0.05) 0.00 (+0.00)
GET get_analysis_latest_cpe 65 (-18) 0 133.38 (-45.54) 30 (-7) 383 (-108) 0.22 (-0.06) 0.00 (+0.00)
GET get_analysis_status 65 (-18) 0 3.48 (-4.62) 1 (0) 37 (-19) 0.22 (-0.06) 0.00 (+0.00)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 65 (-15) 0 770.09 (-184.08) 352 (+114) 1001 (-600) 0.22 (-0.05) 0.00 (+0.00)
GET get_purl_gc 65 65 1.18 1 4 0.22 0.22
GET get_sbom[sha256:720e4451…a939656247164447] 65 (-18) 0 794.43 (-516.06) 175 (-126) 1607 (-1700) 0.22 (-0.06) 0.00 (+0.00)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 65 (-18) 0 766.48 (-60.13) 331 (+51) 1006 (-366) 0.22 (-0.06) 0.00 (+0.00)
GET list_advisory 65 (-15) 0 528.69 (+87.88) 344 (+246) 865 (+128) 0.22 (-0.05) 0.00 (+0.00)
GET list_advisory_paginated 65 (-15) 0 427.42 (+50.49) 136 (+42) 606 (+72) 0.22 (-0.05) 0.00 (+0.00)
GET list_importer 65 (-15) 0 2.17 (-0.68) 1 (0) 17 (-34) 0.22 (-0.05) 0.00 (+0.00)
GET list_organizations 65 (-15) 0 7.23 (-1.39) 1 (0) 41 (-6) 0.22 (-0.05) 0.00 (+0.00)
GET list_packages 65 (-15) 0 502.40 (+74.56) 345 (+265) 949 (0) 0.22 (-0.05) 0.00 (+0.00)
GET list_packages_paginated 65 (-15) 0 399.38 (+37.95) 114 (+14) 594 (-296) 0.22 (-0.05) 0.00 (+0.00)
GET list_products 65 (-20) 0 6.71 (-0.61) 4 (+2) 13 (-39) 0.22 (-0.07) 0.00 (+0.00)
GET list_sboms 65 (-20) 0 1021.40 (-325.04) 592 (+55) 1473 (-815) 0.22 (-0.07) 0.00 (+0.00)
GET list_sboms_paginated 65 (-20) 0 1182.45 (-2074.57) 495 (+22) 2584 (-4104) 0.22 (-0.07) 0.00 (+0.00)
GET list_vulnerabilities 65 (-15) 0 304.32 (+10.87) 132 (+86) 378 (-224) 0.22 (-0.05) 0.00 (+0.00)
GET list_vulnerabilities_paginated 65 (-15) 0 183.11 (-3.37) 114 (+76) 208 (-172) 0.22 (-0.05) 0.00 (+0.00)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 65 (-18) 0 55.65 (-18.08) 9 (+1) 180 (-150) 0.22 (-0.06) 0.00 (+0.00)
GET search_advisory 65 (-15) 0 955.37 (+215.73) 420 (+297) 2101 (-1) 0.22 (-0.05) 0.00 (+0.00)
GET search_exact_purl 65 (-20) 0 10.18 (+1.22) 5 (+4) 54 (-15) 0.22 (-0.07) 0.00 (+0.00)
GET search_purls 70 (-15) 0 13811.89 (+7189.42) 7003 (+4573) 16748 (+7229) 0.23 (-0.05) 0.00 (+0.00)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 65 (-15) 0 469.00 (-197.75) 207 (+60) 973 (-476) 0.22 (-0.05) 0.00 (+0.00)
Aggregated 1500 (-300) 65 1014.55 (+174.41) 1 (0) 16748 (+7229) 5.00 (-1.00) 0.22 (+0.22)

Response Time Metrics

Method Name 50%ile (ms) 60%ile (ms) 70%ile (ms) 80%ile (ms) 90%ile (ms) 95%ile (ms) 99%ile (ms) 100%ile (ms)
GET get_advisory_by_doc_id 5 (-1) 6 (0) 9 (+2) 12 (+1) 51 (+15) 57 (+8) 62 (+4) 64 (-3)
GET get_analysis_latest_cpe 110 (-70) 170 (-20) 180 (-30) 200 (-20) 210 (-90) 280 (-100) 300 (-170) 380 (-110)
GET get_analysis_status 2 (-1) 2 (-1) 3 (-1) 3 (-2) 7 (-39) 10 (-40) 28 (-27) 37 (-19)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 800 (-100) 800 (-200) 800 (-200) 800 (-200) 900 (-100) 900 (-701) 900 (-701) 1,000 (-601)
GET get_purl_gc 1 1 1 1 2 2 3 4
GET get_sbom[sha256:720e4451…a939656247164447] 700 (-200) 800 (-200) 900 (-1,100) 1,000 (-1,000) 1,000 (-2,000) 1,000 (-2,000) 1,607 (-1,393) 1,607 (-1,393)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 800 (0) 900 (0) 900 (0) 900 (-100) 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (0)
GET list_advisory 490 (+60) 500 (+50) 600 (+110) 600 (+100) 700 (+100) 800 (+200) 800 (+100) 865 (+165)
GET list_advisory_paginated 430 (+40) 470 (+60) 490 (+60) 500 (+40) 500 (0) 500 (0) 600 (+100) 600 (+100)
GET list_importer 2 (0) 2 (0) 2 (0) 3 (0) 3 (-1) 4 (-2) 5 (-5) 17 (-34)
GET list_organizations 5 (+1) 6 (+2) 8 (+2) 11 (+3) 13 (-25) 19 (-23) 34 (-10) 41 (-6)
GET list_packages 450 (+20) 450 (+20) 460 (0) 500 (+20) 900 (+100) 900 (0) 900 (0) 900 (0)
GET list_packages_paginated 420 (+40) 420 (+20) 450 (+30) 480 (+10) 500 (+10) 500 (-300) 594 (-296) 594 (-296)
GET list_products 6 (+1) 7 (+1) 7 (-1) 8 (-1) 10 (-2) 11 (-4) 12 (-39) 13 (-39)
GET list_sboms 1,000 (0) 1,000 (0) 1,000 (-1,000) 1,000 (-1,000) 1,000 (-1,000) 1,000 (-1,000) 1,000 (-1,000) 1,000 (-1,000)
GET list_sboms_paginated 1,000 (-2,000) 1,000 (-2,000) 1,000 (-3,000) 2,000 (-3,000) 2,000 (-3,000) 2,000 (-4,000) 2,000 (-4,688) 2,584 (-4,104)
GET list_vulnerabilities 340 (+10) 340 (-10) 340 (-30) 360 (-30) 360 (-40) 370 (-70) 378 (-222) 378 (-222)
GET list_vulnerabilities_paginated 190 (0) 190 (-10) 190 (-10) 200 (-20) 200 (-60) 208 (-62) 208 (-162) 208 (-172)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 38 (-34) 64 (-16) 68 (-16) 89 (-9) 120 (-30) 160 (-20) 160 (-30) 180 (-150)
GET search_advisory 800 (+200) 1,000 (+400) 1,000 (+300) 1,000 (0) 2,000 (+1,000) 2,000 (0) 2,000 (0) 2,000 (0)
GET search_exact_purl 7 (+3) 7 (+2) 8 (+2) 8 (0) 10 (-6) 52 (-1) 52 (-14) 54 (-15)
GET search_purls 15,000 (+8,000) 15,000 (+8,000) 16,000 (+9,000) 16,000 (+9,000) 16,748 (+8,748) 16,748 (+7,748) 16,748 (+7,229) 16,748 (+7,229)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 450 (-150) 500 (-200) 600 (-200) 600 (-300) 700 (-300) 800 (-200) 800 (-200) 973 (-27)
Aggregated 340 (0) 440 (0) 600 (0) 800 (-200) 1,000 (-1,000) 2,000 (-3,000) 16,000 (+9,000) 16,748 (+7,229)

Status Code Metrics

Method Name Status Codes
GET get_advisory_by_doc_id 65 [200]
GET get_analysis_latest_cpe 65 [200]
GET get_analysis_status 65 [200]
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 65 [200]
GET get_purl_gc 65 [403]
GET get_sbom[sha256:720e4451…a939656247164447] 65 [200]
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 65 [200]
GET list_advisory 65 [200]
GET list_advisory_paginated 65 [200]
GET list_importer 65 [200]
GET list_organizations 65 [200]
GET list_packages 65 [200]
GET list_packages_paginated 65 [200]
GET list_products 65 [200]
GET list_sboms 65 [200]
GET list_sboms_paginated 65 [200]
GET list_vulnerabilities 65 [200]
GET list_vulnerabilities_paginated 65 [200]
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 65 [200]
GET search_advisory 65 [200]
GET search_exact_purl 65 [200]
GET search_purls 70 [200]
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 65 [200]
Aggregated 1,435 [200], 65 [403]

Transaction Metrics

Transaction # Times Run # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
WebsiteUser
0.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.1 website_index 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.2 website_openapi 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.3 website_sboms 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.4 website_packages 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.5 website_advisories 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.6 website_importers 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser
1.0 logon 65 (-15) 0 (0) 17.78 (+3.92) 11 (+4) 32 (+11) 0.22 (-0.05) 0.00 (+0.00)
1.1 list_organizations 65 (-15) 0 (0) 7.42 (-1.42) 1 (0) 41 (-6) 0.22 (-0.05) 0.00 (+0.00)
1.2 list_advisory 65 (-15) 0 (0) 528.72 (+87.89) 344 (+246) 865 (+128) 0.22 (-0.05) 0.00 (+0.00)
1.3 list_advisory_paginated 65 (-15) 0 (0) 427.43 (+50.47) 136 (+42) 606 (+72) 0.22 (-0.05) 0.00 (+0.00)
1.4 get_advisory_by_doc_id 65 (-15) 0 (0) 13.89 (+2.38) 3 (+1) 64 (-3) 0.22 (-0.05) 0.00 (+0.00)
1.5 search_advisory 65 (-15) 0 (0) 955.48 (+215.79) 420 (+297) 2101 (-1) 0.22 (-0.05) 0.00 (+0.00)
1.6 list_vulnerabilities 65 (-15) 0 (0) 304.37 (+10.87) 132 (+86) 378 (-224) 0.22 (-0.05) 0.00 (+0.00)
1.7 list_vulnerabilities_paginated 65 (-15) 0 (0) 183.14 (-3.39) 114 (+76) 208 (-172) 0.22 (-0.05) 0.00 (+0.00)
1.8 list_importer 65 (-15) 0 (0) 2.17 (-0.69) 1 (0) 17 (-34) 0.22 (-0.05) 0.00 (+0.00)
1.9 list_packages 65 (-15) 0 (0) 502.42 (+74.57) 345 (+265) 949 (0) 0.22 (-0.05) 0.00 (+0.00)
1.10 list_packages_paginated 65 (-15) 0 (0) 399.46 (+37.94) 114 (+14) 594 (-296) 0.22 (-0.05) 0.00 (+0.00)
1.11 search_purls 70 (-15) 0 (0) 13811.91 (+7189.38) 7003 (+4573) 16748 (+7229) 0.23 (-0.05) 0.00 (+0.00)
1.12 search_exact_purl 65 (-20) 0 (0) 10.18 (+1.16) 5 (+3) 54 (-15) 0.22 (-0.07) 0.00 (+0.00)
1.13 list_products 65 (-20) 0 (0) 6.77 (-0.58) 4 (+2) 13 (-39) 0.22 (-0.07) 0.00 (+0.00)
1.14 list_sboms 65 (-20) 0 (0) 1021.43 (-325.02) 592 (+55) 1473 (-815) 0.22 (-0.07) 0.00 (+0.00)
1.15 list_sboms_paginated 65 (-20) 0 (0) 1182.52 (-2074.57) 495 (+22) 2584 (-4104) 0.22 (-0.07) 0.00 (+0.00)
1.16 get_analysis_status 65 (-18) 0 (0) 3.54 (-4.61) 1 (0) 37 (-19) 0.22 (-0.06) 0.00 (+0.00)
1.17 get_analysis_latest_cpe 65 (-18) 0 (0) 133.40 (-45.56) 30 (-7) 383 (-108) 0.22 (-0.06) 0.00 (+0.00)
1.18 get_purl_gc 65 0 1.22 1 4 0.22 0.00
1.19 get_sbom[sha256:720e4451…a939656247164447] 65 0 794.48 175 1607 0.22 0.00
1.20 sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 65 0 55.69 9 180 0.22 0.00
1.21 get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 65 0 766.52 331 1006 0.22 0.00
1.22 post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 65 0 469.09 207 973 0.22 0.00
1.23 get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 65 0 770.12 352 1001 0.22 0.00
Aggregated 1,565 (-315) 0 (0) 972.41 (+168.03) 1 (0) 16748 (+7229) 5.22 (-1.05) 0.00 (+0.00)

Scenario Metrics

Scenario # Users # Times Run Average (ms) Min (ms) Max (ms) Scenarios/s Iterations
WebsiteUser 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser 5 (0) 65 (-15) 21960.69 (+4419.49) 11443 (+4303) 26950 (+2580) 0.22 (-0.05) 13.00 (-3.00)
Aggregated 5 (0) 65 (-15) 21960.69 (+4419.49) 11443 (+4303) 26950 (+2580) 0.22 (-0.05) 13.00 (-3.00)

User Metrics

Errors

# Error
65 403 Forbidden: get_purl_gc