Goose Attack Report

Users: 5

Target Host: http://trustify:8080/

goose v0.18.0

Plan overview

Action Started Stopped Elapsed Users
Increasing25-10-10 02:15:0325-10-10 02:15:0800:00:050 → 5
Maintaining25-10-10 02:15:0825-10-10 02:20:0800:05:005
Decreasing25-10-10 02:20:0825-10-10 02:20:0900:00:010 ← 5

Request Metrics

Method Name # Requests # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
GET get_advisory_by_doc_id 69 0 9.54 3 51 0.23 0.00
GET get_analysis_latest_cpe 70 (+65) 0 148.30 (-18.90) 35 (-65) 271 (+31) 0.23 (+0.22) 0.00 (+0.00)
GET get_analysis_status 70 (+65) 0 5.44 (+1.84) 1 (-1) 58 (+50) 0.23 (+0.22) 0.00 (+0.00)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 69 0 660.42 105 1300 0.23 0.00
GET get_sbom[sha256:720e4451…a939656247164447] 70 (+65) 0 975.50 (+312.90) 324 (-272) 3763 (+3078) 0.23 (+0.22) 0.00 (+0.00)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 70 (+65) 0 7959.36 (-292041.66) 5617 (-294383) 12341 (-287661) 0.23 (+0.22) 0.00 (-0.02)
GET list_advisory 69 0 461.83 88 889 0.23 0.00
GET list_advisory_paginated 69 0 389.28 85 583 0.23 0.00
GET list_importer 65 0 3.51 1 49 0.22 0.00
GET list_organizations 69 0 6.87 1 39 0.23 0.00
GET list_packages 65 0 359.94 59 681 0.22 0.00
GET list_packages_paginated 65 0 358.31 95 567 0.22 0.00
GET list_products 70 (+65) 0 7.83 (-1.97) 3 (-3) 48 (+33) 0.23 (+0.22) 0.00 (+0.00)
GET list_sboms 70 (+65) 0 866.50 (+239.30) 594 (-31) 1293 (+663) 0.23 (+0.22) 0.00 (+0.00)
GET list_sboms_paginated 70 (+65) 0 1281.83 (-852.17) 485 (-1556) 2717 (+454) 0.23 (+0.22) 0.00 (+0.00)
GET list_vulnerabilities 65 0 208.85 41 332 0.22 0.00
GET list_vulnerabilities_paginated 65 0 154.40 29 265 0.22 0.00
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 70 (+65) 0 85.90 (+9.50) 16 (-54) 280 (+198) 0.23 (+0.22) 0.00 (+0.00)
GET search_advisory 69 0 777.87 138 2012 0.23 0.00
GET search_exact_purl 70 (+65) 0 13.14 (+6.74) 3 (0) 54 (+43) 0.23 (+0.22) 0.00 (+0.00)
GET search_purls 70 (+65) 0 6268.59 (+2350.59) 4740 (+2778) 8775 (+3189) 0.23 (+0.22) 0.00 (+0.00)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 69 0 723.81 161 1388 0.23 0.00
Aggregated 1508 (+1458) 0 1002.94 (-29757.68) 1 (-1) 12341 (-287661) 5.03 (+4.86) 0.00 (-0.02)

Response Time Metrics

Method Name 50%ile (ms) 60%ile (ms) 70%ile (ms) 80%ile (ms) 90%ile (ms) 95%ile (ms) 99%ile (ms) 100%ile (ms)
GET get_advisory_by_doc_id 6 6 8 9 15 44 48 51
GET get_analysis_latest_cpe 160 (+20) 170 (+30) 190 (-50) 200 (-40) 210 (-30) 230 (-10) 270 (+30) 270 (+30)
GET get_analysis_status 2 (0) 3 (+1) 3 (-1) 4 (0) 6 (-2) 44 (+36) 54 (+46) 58 (+50)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 600 700 800 1,000 1,000 1,000 1,000 1,000
GET get_sbom[sha256:720e4451…a939656247164447] 700 (+15) 800 (+115) 900 (+215) 1,000 (+315) 2,000 (+1,315) 3,000 (+2,315) 3,000 (+2,315) 3,763 (+3,078)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 7,000 (-293,000) 8,000 (-292,000) 8,000 (-292,000) 9,000 (-291,000) 11,000 (-289,000) 12,000 (-288,000) 12,000 (-288,000) 12,000 (-288,000)
GET list_advisory 500 500 600 600 600 600 800 889
GET list_advisory_paginated 440 450 480 490 500 500 583 583
GET list_importer 2 2 3 4 5 5 44 49
GET list_organizations 3 5 6 10 17 27 38 39
GET list_packages 400 410 420 470 500 600 600 681
GET list_packages_paginated 390 420 430 470 490 500 567 567
GET list_products 6 (-5) 6 (-5) 7 (-4) 8 (-3) 10 (-5) 13 (-2) 46 (+31) 48 (+33)
GET list_sboms 800 (+175) 900 (+275) 1,000 (+375) 1,000 (+375) 1,000 (+375) 1,000 (+375) 1,000 (+375) 1,000 (+375)
GET list_sboms_paginated 1,000 (-1,041) 1,000 (-1,041) 2,000 (-41) 2,000 (-41) 2,000 (-41) 2,000 (-41) 2,000 (-41) 2,717 (+676)
GET list_vulnerabilities 220 240 260 290 310 320 330 330
GET list_vulnerabilities_paginated 170 170 190 190 210 240 260 265
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 78 (+1) 82 (+5) 91 (+10) 100 (+19) 200 (+118) 200 (+118) 230 (+148) 280 (+198)
GET search_advisory 700 700 800 1,000 1,000 2,000 2,000 2,000
GET search_exact_purl 6 (0) 6 (0) 7 (-1) 10 (+2) 49 (+38) 51 (+40) 53 (+42) 54 (+43)
GET search_purls 6,000 (+2,000) 6,000 (+2,000) 6,000 (+1,000) 7,000 (+2,000) 7,000 (+1,414) 8,000 (+2,414) 8,000 (+2,414) 8,775 (+3,189)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 800 900 1,000 1,000 1,000 1,000 1,000 1,000
Aggregated 290 (+50) 450 (-150) 600 (-100) 900 (-1,100) 2,000 (-4,000) 7,000 (-293,000) 9,000 (-291,000) 12,000 (-288,000)

Status Code Metrics

Method Name Status Codes
GET get_advisory_by_doc_id 69 [200]
GET get_analysis_latest_cpe 70 [200]
GET get_analysis_status 70 [200]
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 69 [200]
GET get_sbom[sha256:720e4451…a939656247164447] 70 [200]
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 70 [200]
GET list_advisory 69 [200]
GET list_advisory_paginated 69 [200]
GET list_importer 65 [200]
GET list_organizations 69 [200]
GET list_packages 65 [200]
GET list_packages_paginated 65 [200]
GET list_products 70 [200]
GET list_sboms 70 [200]
GET list_sboms_paginated 70 [200]
GET list_vulnerabilities 65 [200]
GET list_vulnerabilities_paginated 65 [200]
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 70 [200]
GET search_advisory 69 [200]
GET search_exact_purl 70 [200]
GET search_purls 70 [200]
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 69 [200]
Aggregated 1,508 [200]

Transaction Metrics

Transaction # Times Run # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
WebsiteUser
0.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.1 website_index 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.2 website_openapi 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.3 website_sboms 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.4 website_packages 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.5 website_advisories 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.6 website_importers 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser
1.0 logon 69 (+69) 0 (0) 15.35 (+15.35) 8 (+8) 34 (+34) 0.23 (+0.23) 0.00 (+0.00)
1.1 list_organizations 69 (+69) 0 (0) 7.13 (+7.13) 1 (+1) 39 (+39) 0.23 (+0.23) 0.00 (+0.00)
1.2 list_advisory 69 (+69) 0 (0) 461.86 (+461.86) 88 (+88) 889 (+889) 0.23 (+0.23) 0.00 (+0.00)
1.3 list_advisory_paginated 69 (+69) 0 (0) 389.35 (+389.35) 85 (+85) 584 (+584) 0.23 (+0.23) 0.00 (+0.00)
1.4 get_advisory_by_doc_id 69 (+69) 0 (0) 9.57 (+9.57) 3 (+3) 51 (+51) 0.23 (+0.23) 0.00 (+0.00)
1.5 search_advisory 69 (+69) 0 (0) 778.00 (+778.00) 138 (+138) 2012 (+2012) 0.23 (+0.23) 0.00 (+0.00)
1.6 list_vulnerabilities 65 (+65) 0 (0) 208.97 (+208.97) 41 (+41) 332 (+332) 0.22 (+0.22) 0.00 (+0.00)
1.7 list_vulnerabilities_paginated 65 (+65) 0 (0) 154.43 (+154.43) 29 (+29) 265 (+265) 0.22 (+0.22) 0.00 (+0.00)
1.8 list_importer 65 (+65) 0 (0) 3.58 (+3.58) 1 (+1) 49 (+49) 0.22 (+0.22) 0.00 (+0.00)
1.9 list_packages 65 (+65) 0 (0) 360.00 (+360.00) 59 (+59) 681 (+681) 0.22 (+0.22) 0.00 (+0.00)
1.10 list_packages_paginated 65 (+65) 0 (0) 358.42 (+358.42) 95 (+95) 567 (+567) 0.22 (+0.22) 0.00 (+0.00)
1.11 search_purls 70 (+65) 0 (0) 6268.66 (+2350.66) 4741 (+2779) 8775 (+3189) 0.23 (+0.22) 0.00 (+0.00)
1.12 search_exact_purl 70 (+65) 0 (0) 13.20 (+6.80) 3 (0) 54 (+43) 0.23 (+0.22) 0.00 (+0.00)
1.13 list_products 70 (+65) 0 (0) 7.84 (-1.96) 3 (-3) 48 (+33) 0.23 (+0.22) 0.00 (+0.00)
1.14 list_sboms 70 (+65) 0 (0) 866.57 (+239.37) 594 (-31) 1293 (+663) 0.23 (+0.22) 0.00 (+0.00)
1.15 list_sboms_paginated 70 (+65) 0 (0) 1281.84 (-852.56) 485 (-1557) 2717 (+453) 0.23 (+0.22) 0.00 (+0.00)
1.16 get_analysis_status 70 (+65) 0 (0) 5.49 (+1.69) 1 (-1) 58 (+50) 0.23 (+0.22) 0.00 (+0.00)
1.17 get_analysis_latest_cpe 70 (+65) 0 (0) 148.39 (-18.81) 35 (-65) 271 (+31) 0.23 (+0.22) 0.00 (+0.00)
1.18 get_sbom[sha256:720e4451…a939656247164447] 70 (+65) 0 (0) 975.54 (+312.94) 324 (-272) 3763 (+3078) 0.23 (+0.22) 0.00 (+0.00)
1.19 sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 70 (+65) 0 (0) 85.93 (+9.53) 16 (-54) 280 (+198) 0.23 (+0.22) 0.00 (+0.00)
1.20 get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 70 (+65) 0 (0) 7959.54 (-292041.66) 5618 (-294382) 12341 (-287662) 0.23 (+0.22) 0.00 (+0.00)
1.21 post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 69 (+69) 0 (0) 723.90 (+723.90) 161 (+161) 1388 (+1388) 0.23 (+0.23) 0.00 (+0.00)
1.22 get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 69 (+69) 0 (0) 660.48 (+660.48) 105 (+105) 1300 (+1300) 0.23 (+0.23) 0.00 (+0.00)
Aggregated 1,577 (+1,527) 0 (0) 959.06 (-29801.56) 1 (-1) 12341 (-287662) 5.26 (+5.09) 0.00 (+0.00)

Scenario Metrics

Scenario # Users # Times Run Average (ms) Min (ms) Max (ms) Scenarios/s Iterations
WebsiteUser 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser 5 (+5) 69 (+69) 21537.07 (+21537.07) 16666 (+16666) 26065 (+26065) 0.23 (+0.23) 13.80 (+13.80)
Aggregated 5 (+5) 69 (+69) 21537.07 (+NaN) 16666 (+16666) 26065 (+26065) 0.23 (+0.23) 13.80 (+13.80)

User Metrics