Goose Attack Report

Users: 5

Target Host: http://trustify:8080/

goose v0.18.0

Plan overview

Action Started Stopped Elapsed Users
Increasing25-09-30 02:17:2725-09-30 02:17:3200:00:050 → 5
Maintaining25-09-30 02:17:3225-09-30 02:22:3200:05:005
Decreasing25-09-30 02:22:3225-09-30 02:22:3200:00:000 ← 5

Request Metrics

Method Name # Requests # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
GET get_advisory_by_doc_id 115 (0) 0 13.97 (+1.78) 3 (0) 64 (+4) 0.38 (+0.00) 0.00 (+0.00)
GET get_analysis_latest_cpe 120 (+2) 0 138.12 (+12.57) 35 (+2) 353 (+44) 0.40 (+0.01) 0.00 (+0.00)
GET get_analysis_status 120 (+2) 0 5.85 (+0.28) 1 (0) 55 (+3) 0.40 (+0.01) 0.00 (+0.00)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 119 (+2) 0 732.97 (-303.04) 344 (+94) 1232 (-332) 0.40 (+0.01) 0.00 (+0.00)
GET get_purl_gc 120 (+2) 120 1.12 (-0.31) 1 (0) 6 (+1) 0.40 (+0.01) 0.40 (+0.01)
GET get_sbom[sha256:720e4451…a939656247164447] 120 (+2) 0 706.74 (-595.37) 233 (+20) 1706 (-1788) 0.40 (+0.01) 0.00 (+0.00)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 120 (+3) 0 778.63 (-128.55) 402 (+119) 1117 (-305) 0.40 (+0.01) 0.00 (+0.00)
GET list_advisory 119 (+3) 0 464.71 (+17.28) 298 (+173) 915 (-73) 0.40 (+0.01) 0.00 (+0.00)
GET list_advisory_paginated 118 (+2) 0 441.53 (+89.49) 223 (+121) 1268 (+738) 0.39 (+0.01) 0.00 (+0.00)
GET list_importer 115 (+1) 0 4.11 (+1.10) 1 (0) 54 (+7) 0.38 (+0.00) 0.00 (+0.00)
GET list_organizations 119 (+3) 0 7.72 (-3.30) 1 (0) 48 (-3) 0.40 (+0.01) 0.00 (+0.00)
GET list_packages 115 (+1) 0 465.91 (+110.14) 108 (+19) 1062 (+228) 0.38 (+0.00) 0.00 (+0.00)
GET list_packages_paginated 115 (+1) 0 405.28 (+74.66) 102 (+4) 675 (+113) 0.38 (+0.00) 0.00 (+0.00)
GET list_products 120 (+1) 0 4.72 (-7.02) 2 (0) 9 (-58) 0.40 (+0.00) 0.00 (+0.00)
GET list_sboms 120 (+1) 0 1016.47 (-270.59) 487 (-113) 1423 (-566) 0.40 (+0.00) 0.00 (+0.00)
GET list_sboms_paginated 120 (+1) 0 1354.45 (-1514.89) 429 (-70) 3103 (-4969) 0.40 (+0.00) 0.00 (+0.00)
GET list_vulnerabilities 115 (0) 0 214.97 (-14.70) 55 (0) 358 (-6) 0.38 (+0.00) 0.00 (+0.00)
GET list_vulnerabilities_paginated 115 (+1) 0 178.09 (+5.91) 39 (-2) 309 (+20) 0.38 (+0.00) 0.00 (+0.00)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 120 (+3) 0 55.52 (-4.98) 8 (-2) 176 (-17) 0.40 (+0.01) 0.00 (+0.00)
GET search_advisory 115 (0) 0 1081.39 (+303.72) 282 (+146) 2495 (+383) 0.38 (+0.00) 0.00 (+0.00)
GET search_exact_purl 120 (+1) 0 6.31 (-3.48) 2 (0) 53 (-10) 0.40 (+0.00) 0.00 (+0.00)
GET search_purls 120 (+1) 0 4170.12 (+2350.08) 2286 (+1683) 6001 (+702) 0.40 (+0.00) 0.00 (+0.00)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 120 (+3) 0 455.70 (-254.84) 182 (-40) 903 (-196) 0.40 (+0.01) 0.00 (+0.00)
Aggregated 2720 (+36) 120 555.38 (-7.25) 1 (0) 6001 (-2071) 9.07 (+0.12) 0.40 (+0.01)

Response Time Metrics

Method Name 50%ile (ms) 60%ile (ms) 70%ile (ms) 80%ile (ms) 90%ile (ms) 95%ile (ms) 99%ile (ms) 100%ile (ms)
GET get_advisory_by_doc_id 7 (+1) 8 (+1) 11 (+2) 17 (+6) 49 (+3) 55 (+2) 62 (+6) 64 (+4)
GET get_analysis_latest_cpe 120 (+10) 140 (+20) 170 (+20) 190 (+20) 200 (+10) 200 (0) 270 (-10) 350 (+41)
GET get_analysis_status 2 (-1) 3 (0) 3 (-1) 4 (0) 6 (0) 46 (0) 53 (+2) 55 (+3)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 700 (-300) 800 (-200) 800 (-200) 900 (-100) 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (-564)
GET get_purl_gc 1 (0) 1 (0) 1 (0) 1 (-1) 2 (-1) 3 (-1) 4 (0) 6 (+1)
GET get_sbom[sha256:720e4451…a939656247164447] 600 (+170) 700 (+200) 700 (-2,300) 1,000 (-2,000) 1,000 (-2,000) 1,706 (-1,294) 1,706 (-1,294) 1,706 (-1,294)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 800 (-100) 800 (-100) 900 (-100) 900 (-100) 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (0)
GET list_advisory 450 (0) 470 (-10) 480 (-20) 500 (0) 600 (0) 700 (0) 900 (+200) 900 (-88)
GET list_advisory_paginated 410 (+40) 430 (+50) 470 (+70) 490 (+80) 500 (+40) 700 (+220) 1,000 (+500) 1,000 (+500)
GET list_importer 2 (0) 2 (0) 2 (-1) 3 (-1) 5 (0) 6 (-1) 48 (+38) 54 (+7)
GET list_organizations 3 (-1) 4 (-1) 5 (-1) 8 (-3) 24 (-17) 38 (-8) 48 (-1) 48 (-3)
GET list_packages 470 (+100) 480 (+100) 500 (+110) 500 (+90) 600 (+110) 800 (+300) 1,000 (+400) 1,000 (+200)
GET list_packages_paginated 410 (+90) 430 (+80) 470 (+90) 500 (+110) 500 (+80) 600 (+140) 600 (+100) 675 (+113)
GET list_products 5 (-1) 5 (-2) 5 (-3) 6 (-4) 6 (-40) 7 (-46) 9 (-50) 9 (-58)
GET list_sboms 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (-989) 1,000 (-989) 1,000 (-989) 1,000 (-989) 1,000 (-989)
GET list_sboms_paginated 1,000 (-1,000) 1,000 (-2,000) 2,000 (-2,000) 2,000 (-2,000) 2,000 (-3,000) 3,000 (-3,000) 3,000 (-4,000) 3,000 (-5,000)
GET list_vulnerabilities 210 (-10) 220 (-30) 240 (-30) 270 (-10) 290 (0) 300 (0) 330 (-30) 358 (-2)
GET list_vulnerabilities_paginated 180 (0) 190 (0) 190 (-10) 210 (0) 260 (+40) 280 (+20) 309 (+20) 309 (+20)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 49 (-9) 67 (-2) 74 (-1) 94 (+1) 110 (0) 120 (-40) 170 (-20) 176 (-14)
GET search_advisory 900 (+200) 1,000 (+300) 1,000 (+100) 2,000 (+1,000) 2,000 (+1,000) 2,000 (0) 2,000 (0) 2,000 (0)
GET search_exact_purl 5 (0) 5 (-1) 5 (-2) 6 (-2) 6 (-11) 7 (-44) 52 (-5) 53 (-10)
GET search_purls 4,000 (+3,000) 4,000 (+3,000) 5,000 (+3,000) 5,000 (+1,000) 5,000 (+1,000) 5,000 (0) 6,000 (+1,000) 6,000 (+1,000)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 420 (-280) 460 (-340) 500 (-300) 600 (-300) 700 (-200) 800 (-200) 900 (-100) 900 (-100)
Aggregated 300 (+20) 420 (+30) 500 (-100) 800 (-100) 1,000 (0) 2,000 (0) 5,000 (0) 6,000 (-2,000)

Status Code Metrics

Method Name Status Codes
GET get_advisory_by_doc_id 115 [200]
GET get_analysis_latest_cpe 120 [200]
GET get_analysis_status 120 [200]
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 119 [200]
GET get_purl_gc 120 [403]
GET get_sbom[sha256:720e4451…a939656247164447] 120 [200]
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 120 [200]
GET list_advisory 119 [200]
GET list_advisory_paginated 118 [200]
GET list_importer 115 [200]
GET list_organizations 119 [200]
GET list_packages 115 [200]
GET list_packages_paginated 115 [200]
GET list_products 120 [200]
GET list_sboms 120 [200]
GET list_sboms_paginated 120 [200]
GET list_vulnerabilities 115 [200]
GET list_vulnerabilities_paginated 115 [200]
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 120 [200]
GET search_advisory 115 [200]
GET search_exact_purl 120 [200]
GET search_purls 120 [200]
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 120 [200]
Aggregated 2,600 [200], 120 [403]

Transaction Metrics

Transaction # Times Run # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
WebsiteUser
0.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.1 website_index 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.2 website_openapi 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.3 website_sboms 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.4 website_packages 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.5 website_advisories 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.6 website_importers 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser
1.0 logon 119 (+3) 0 (0) 13.04 (-1.66) 7 (0) 24 (-13) 0.40 (+0.01) 0.00 (+0.00)
1.1 list_organizations 119 (+3) 0 (0) 7.84 (-3.36) 1 (0) 48 (-3) 0.40 (+0.01) 0.00 (+0.00)
1.2 list_advisory 119 (+3) 0 (0) 464.76 (+17.27) 298 (+173) 915 (-73) 0.40 (+0.01) 0.00 (+0.00)
1.3 list_advisory_paginated 118 (+2) 0 (0) 441.58 (+89.45) 223 (+121) 1268 (+738) 0.39 (+0.01) 0.00 (+0.00)
1.4 get_advisory_by_doc_id 115 (0) 0 (0) 14.00 (+1.70) 3 (0) 64 (+4) 0.38 (+0.00) 0.00 (+0.00)
1.5 search_advisory 115 (0) 0 (0) 1081.43 (+303.70) 282 (+146) 2495 (+383) 0.38 (+0.00) 0.00 (+0.00)
1.6 list_vulnerabilities 115 (0) 0 (0) 215.01 (-14.77) 55 (0) 358 (-6) 0.38 (+0.00) 0.00 (+0.00)
1.7 list_vulnerabilities_paginated 115 (+1) 0 (0) 178.17 (+5.91) 39 (-2) 309 (+20) 0.38 (+0.00) 0.00 (+0.00)
1.8 list_importer 115 (+1) 0 (0) 4.15 (+1.08) 1 (0) 54 (+7) 0.38 (+0.00) 0.00 (+0.00)
1.9 list_packages 115 (+1) 0 (0) 465.96 (+110.11) 108 (+19) 1062 (+228) 0.38 (+0.00) 0.00 (+0.00)
1.10 list_packages_paginated 115 (+1) 0 (0) 405.37 (+74.71) 102 (+4) 675 (+113) 0.38 (+0.00) 0.00 (+0.00)
1.11 search_purls 120 (+1) 0 (0) 4170.14 (+2350.07) 2286 (+1683) 6001 (+702) 0.40 (+0.00) 0.00 (+0.00)
1.12 search_exact_purl 120 (+1) 0 (0) 6.33 (-3.48) 2 (0) 53 (-10) 0.40 (+0.00) 0.00 (+0.00)
1.13 list_products 120 (+1) 0 (0) 4.76 (-7.05) 2 (0) 9 (-58) 0.40 (+0.00) 0.00 (+0.00)
1.14 list_sboms 120 (+1) 0 (0) 1016.54 (-270.59) 487 (-113) 1423 (-566) 0.40 (+0.00) 0.00 (+0.00)
1.15 list_sboms_paginated 120 (+1) 0 (0) 1354.53 (-1514.85) 429 (-70) 3103 (-4969) 0.40 (+0.00) 0.00 (+0.00)
1.16 get_analysis_status 120 (+2) 0 (0) 5.90 (+0.26) 1 (0) 55 (+3) 0.40 (+0.01) 0.00 (+0.00)
1.17 get_analysis_latest_cpe 120 (+2) 0 (0) 138.15 (+12.54) 35 (+2) 353 (+44) 0.40 (+0.01) 0.00 (+0.00)
1.18 get_purl_gc 120 (+2) 0 (0) 1.17 (-0.31) 1 (0) 6 (+1) 0.40 (+0.01) 0.00 (+0.00)
1.19 get_sbom[sha256:720e4451…a939656247164447] 120 (+2) 0 (0) 706.77 (-595.46) 233 (+20) 1706 (-1789) 0.40 (+0.01) 0.00 (+0.00)
1.20 sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 120 (+3) 0 (0) 55.61 (-4.96) 8 (-2) 176 (-17) 0.40 (+0.01) 0.00 (+0.00)
1.21 get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 120 (+3) 0 (0) 778.70 (-128.54) 402 (+119) 1117 (-305) 0.40 (+0.01) 0.00 (+0.00)
1.22 post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 120 (+3) 0 (0) 455.77 (-254.89) 182 (-40) 903 (-197) 0.40 (+0.01) 0.00 (+0.00)
1.23 get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 119 (+2) 0 (0) 733.03 (-303.06) 344 (+94) 1232 (-332) 0.40 (+0.01) 0.00 (+0.00)
Aggregated 2,839 (+39) 0 (0) 532.10 (-7.22) 1 (0) 6001 (-2071) 9.46 (+0.13) 0.00 (+0.00)

Scenario Metrics

Scenario # Users # Times Run Average (ms) Min (ms) Max (ms) Scenarios/s Iterations
WebsiteUser 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser 5 (0) 119 (+3) 12622.66 (-165.87) 6395 (-33) 16710 (-3988) 0.40 (+0.01) 23.80 (+0.60)
Aggregated 5 (0) 119 (+3) 12622.66 (-165.87) 6395 (-33) 16710 (-3988) 0.40 (+0.01) 23.80 (+0.60)

User Metrics

Errors

# Error
120 (+2) 403 Forbidden: get_purl_gc