Goose Attack Report

Users: 5

Target Host: http://trustify:8080/

goose v0.18.0

Plan overview

Action Started Stopped Elapsed Users
Increasing25-10-12 02:19:0925-10-12 02:19:1400:00:050 → 5
Maintaining25-10-12 02:19:1425-10-12 02:24:1400:05:005
Decreasing25-10-12 02:24:1425-10-12 02:24:1600:00:020 ← 5

Request Metrics

Method Name # Requests # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
GET get_advisory_by_doc_id 50 (-20) 0 11.44 (+2.25) 3 (0) 58 (-3) 0.17 (-0.07) 0.00 (+0.00)
GET get_analysis_latest_cpe 55 (-20) 0 144.87 (+6.41) 32 (+1) 523 (+7) 0.18 (-0.07) 0.00 (+0.00)
GET get_analysis_status 55 (-20) 0 7.11 (-3.02) 1 (0) 54 (-7) 0.18 (-0.07) 0.00 (+0.00)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 50 (-20) 0 676.14 (-87.83) 106 (+16) 1394 (-606) 0.17 (-0.07) 0.00 (+0.00)
GET get_sbom[sha256:720e4451…a939656247164447] 55 (-20) 0 1268.27 (+253.19) 190 (+7) 3806 (+44) 0.18 (-0.07) 0.00 (+0.00)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 55 (-15) 0 7703.60 (-166.80) 5846 (-257) 12587 (+1430) 0.18 (-0.05) 0.00 (+0.00)
GET list_advisory 50 (-20) 0 449.52 (-40.04) 92 (+14) 719 (-99) 0.17 (-0.07) 0.00 (+0.00)
GET list_advisory_paginated 50 (-20) 0 393.72 (+3.52) 87 (-13) 635 (-59) 0.17 (-0.07) 0.00 (+0.00)
GET list_importer 50 (-20) 0 6.02 (+1.93) 1 (0) 52 (+4) 0.17 (-0.07) 0.00 (+0.00)
GET list_organizations 50 (-20) 0 11.76 (+3.09) 1 (0) 58 (+11) 0.17 (-0.07) 0.00 (+0.00)
GET list_packages 50 (-20) 0 373.78 (-12.91) 59 (+5) 581 (-284) 0.17 (-0.07) 0.00 (+0.00)
GET list_packages_paginated 50 (-20) 0 331.06 (+2.32) 91 (+31) 561 (-4) 0.17 (-0.07) 0.00 (+0.00)
GET list_products 55 (-20) 0 14.47 (+8.89) 4 (+1) 95 (+82) 0.18 (-0.07) 0.00 (+0.00)
GET list_sboms 55 (-20) 0 1242.65 (+295.39) 596 (-17) 1903 (+604) 0.18 (-0.07) 0.00 (+0.00)
GET list_sboms_paginated 55 (-20) 0 2039.24 (+729.36) 505 (-26) 4102 (+1094) 0.18 (-0.07) 0.00 (+0.00)
GET list_vulnerabilities 50 (-20) 0 198.04 (-77.20) 44 (+7) 314 (-200) 0.17 (-0.07) 0.00 (+0.00)
GET list_vulnerabilities_paginated 50 (-20) 0 143.38 (-29.16) 30 (+2) 275 (-63) 0.17 (-0.07) 0.00 (+0.00)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 55 (-15) 0 102.51 (+39.58) 15 (-1) 295 (+5) 0.18 (-0.05) 0.00 (+0.00)
GET search_advisory 50 (-20) 0 1052.62 (+286.31) 118 (-6) 2276 (+350) 0.17 (-0.07) 0.00 (+0.00)
GET search_exact_purl 55 (-20) 0 6.53 (+1.98) 4 (+2) 12 (+2) 0.18 (-0.07) 0.00 (+0.00)
GET search_purls 55 (-20) 0 11017.07 (+5789.33) 5635 (+2310) 13843 (+6691) 0.18 (-0.07) 0.00 (+0.00)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 50 (-20) 0 762.50 (-16.17) 164 (+14) 1526 (+32) 0.17 (-0.07) 0.00 (+0.00)
Aggregated 1150 (-430) 0 1317.87 (+361.60) 1 (0) 13843 (+2686) 3.83 (-1.43) 0.00 (+0.00)

Response Time Metrics

Method Name 50%ile (ms) 60%ile (ms) 70%ile (ms) 80%ile (ms) 90%ile (ms) 95%ile (ms) 99%ile (ms) 100%ile (ms)
GET get_advisory_by_doc_id 5 (+1) 7 (0) 9 (+1) 12 (+3) 24 (+3) 57 (+19) 58 (+2) 58 (-3)
GET get_analysis_latest_cpe 150 (+40) 160 (+30) 190 (+20) 200 (-10) 210 (-60) 270 (-20) 290 (-70) 500 (0)
GET get_analysis_status 3 (+1) 3 (0) 4 (0) 5 (-1) 9 (-40) 48 (-5) 51 (-9) 54 (-7)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 700 (-100) 700 (-100) 800 (-100) 1,000 (0) 1,000 (0) 1,000 (-1,000) 1,000 (-1,000) 1,000 (-1,000)
GET get_sbom[sha256:720e4451…a939656247164447] 800 (+100) 1,000 (+200) 1,000 (+100) 2,000 (+1,000) 3,000 (0) 3,000 (0) 3,806 (+44) 3,806 (+44)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 7,000 (-1,000) 8,000 (0) 8,000 (0) 8,000 (0) 10,000 (0) 10,000 (-1,000) 11,000 (0) 12,587 (+1,587)
GET list_advisory 490 (-10) 500 (0) 600 (+100) 600 (0) 600 (0) 700 (0) 700 (-100) 700 (-100)
GET list_advisory_paginated 440 (+30) 470 (+40) 490 (+30) 500 (+30) 500 (+10) 600 (+100) 600 (-94) 600 (-94)
GET list_importer 2 (0) 2 (0) 3 (0) 4 (+1) 7 (+2) 47 (+22) 52 (+25) 52 (+4)
GET list_organizations 3 (-1) 4 (-1) 9 (+1) 16 (+5) 39 (+16) 48 (+9) 58 (+15) 58 (+11)
GET list_packages 430 (+20) 450 (+30) 470 (+30) 480 (+10) 490 (-10) 581 (-119) 581 (-284) 581 (-284)
GET list_packages_paginated 370 (-10) 390 (0) 400 (-20) 410 (-20) 430 (-50) 500 (0) 561 (+61) 561 (-4)
GET list_products 7 (+2) 7 (+1) 8 (+2) 9 (+2) 11 (+3) 91 (+82) 93 (+81) 95 (+82)
GET list_sboms 1,000 (0) 1,000 (0) 1,000 (0) 1,903 (+903) 1,903 (+903) 1,903 (+903) 1,903 (+903) 1,903 (+903)
GET list_sboms_paginated 2,000 (+1,000) 2,000 (+1,000) 3,000 (+1,000) 3,000 (+1,000) 3,000 (+1,000) 3,000 (+1,000) 4,000 (+1,000) 4,000 (+1,000)
GET list_vulnerabilities 220 (-100) 220 (-110) 250 (-100) 290 (-70) 290 (-70) 300 (-70) 310 (-110) 310 (-190)
GET list_vulnerabilities_paginated 150 (-50) 180 (-30) 190 (-20) 200 (-20) 210 (-20) 230 (0) 275 (-5) 275 (-63)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 78 (+16) 83 (+11) 120 (+42) 170 (+82) 200 (+90) 260 (+90) 270 (+60) 295 (+5)
GET search_advisory 1,000 (+300) 1,000 (+200) 2,000 (+1,000) 2,000 (+1,000) 2,000 (+1,000) 2,000 (+74) 2,000 (+74) 2,000 (+74)
GET search_exact_purl 6 (+2) 7 (+2) 7 (+2) 7 (+2) 8 (+2) 8 (+1) 10 (+1) 12 (+2)
GET search_purls 12,000 (+7,000) 13,000 (+8,000) 13,000 (+7,000) 13,000 (+7,000) 13,843 (+7,843) 13,843 (+7,843) 13,843 (+6,843) 13,843 (+6,843)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 800 (0) 800 (-100) 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (0) 1,526 (+526) 1,526 (+526)
Aggregated 280 (-50) 460 (+20) 600 (0) 1,000 (0) 3,000 (+1,000) 8,000 (+2,000) 13,000 (+5,000) 13,843 (+2,843)

Status Code Metrics

Method Name Status Codes
GET get_advisory_by_doc_id 50 [200]
GET get_analysis_latest_cpe 55 [200]
GET get_analysis_status 55 [200]
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 50 [200]
GET get_sbom[sha256:720e4451…a939656247164447] 55 [200]
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 55 [200]
GET list_advisory 50 [200]
GET list_advisory_paginated 50 [200]
GET list_importer 50 [200]
GET list_organizations 50 [200]
GET list_packages 50 [200]
GET list_packages_paginated 50 [200]
GET list_products 55 [200]
GET list_sboms 55 [200]
GET list_sboms_paginated 55 [200]
GET list_vulnerabilities 50 [200]
GET list_vulnerabilities_paginated 50 [200]
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 55 [200]
GET search_advisory 50 [200]
GET search_exact_purl 55 [200]
GET search_purls 55 [200]
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 50 [200]
Aggregated 1,150 [200]

Transaction Metrics

Transaction # Times Run # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
WebsiteUser
0.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.1 website_index 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.2 website_openapi 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.3 website_sboms 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.4 website_packages 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.5 website_advisories 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.6 website_importers 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser
1.0 logon 50 (-20) 0 (0) 14.22 (-1.61) 8 (+1) 33 (+5) 0.17 (-0.07) 0.00 (+0.00)
1.1 list_organizations 50 (-20) 0 (0) 11.94 (+3.11) 1 (0) 58 (+10) 0.17 (-0.07) 0.00 (+0.00)
1.2 list_advisory 50 (-20) 0 (0) 449.60 (-40.01) 92 (+14) 719 (-99) 0.17 (-0.07) 0.00 (+0.00)
1.3 list_advisory_paginated 50 (-20) 0 (0) 393.76 (+3.50) 87 (-13) 635 (-59) 0.17 (-0.07) 0.00 (+0.00)
1.4 get_advisory_by_doc_id 50 (-20) 0 (0) 11.46 (+2.17) 3 (0) 58 (-3) 0.17 (-0.07) 0.00 (+0.00)
1.5 search_advisory 50 (-20) 0 (0) 1052.70 (+286.30) 118 (-6) 2276 (+350) 0.17 (-0.07) 0.00 (+0.00)
1.6 list_vulnerabilities 50 (-20) 0 (0) 198.08 (-77.28) 44 (+7) 315 (-199) 0.17 (-0.07) 0.00 (+0.00)
1.7 list_vulnerabilities_paginated 50 (-20) 0 (0) 143.56 (-29.01) 30 (+2) 276 (-62) 0.17 (-0.07) 0.00 (+0.00)
1.8 list_importer 50 (-20) 0 (0) 6.08 (+1.98) 1 (0) 53 (+5) 0.17 (-0.07) 0.00 (+0.00)
1.9 list_packages 50 (-20) 0 (0) 373.88 (-12.83) 59 (+5) 581 (-284) 0.17 (-0.07) 0.00 (+0.00)
1.10 list_packages_paginated 50 (-20) 0 (0) 331.10 (+2.31) 91 (+31) 561 (-4) 0.17 (-0.07) 0.00 (+0.00)
1.11 search_purls 55 (-20) 0 (0) 11017.09 (+5789.32) 5635 (+2310) 13843 (+6691) 0.18 (-0.07) 0.00 (+0.00)
1.12 search_exact_purl 55 (-20) 0 (0) 6.58 (+2.01) 4 (+2) 12 (+2) 0.18 (-0.07) 0.00 (+0.00)
1.13 list_products 55 (-20) 0 (0) 14.51 (+8.91) 4 (+1) 95 (+82) 0.18 (-0.07) 0.00 (+0.00)
1.14 list_sboms 55 (-20) 0 (0) 1242.67 (+295.38) 596 (-17) 1903 (+604) 0.18 (-0.07) 0.00 (+0.00)
1.15 list_sboms_paginated 55 (-20) 0 (0) 2039.31 (+729.43) 505 (-26) 4102 (+1094) 0.18 (-0.07) 0.00 (+0.00)
1.16 get_analysis_status 55 (-20) 0 (0) 7.15 (-3.03) 1 (0) 54 (-7) 0.18 (-0.07) 0.00 (+0.00)
1.17 get_analysis_latest_cpe 55 (-20) 0 (0) 144.93 (+6.34) 32 (+1) 523 (+7) 0.18 (-0.07) 0.00 (+0.00)
1.18 get_sbom[sha256:720e4451…a939656247164447] 55 (-20) 0 (0) 1268.27 (+253.18) 190 (+7) 3806 (+44) 0.18 (-0.07) 0.00 (+0.00)
1.19 sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 55 (-15) 0 (0) 102.60 (+39.59) 15 (-1) 297 (+7) 0.18 (-0.05) 0.00 (+0.00)
1.20 get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 55 (-15) 0 (0) 7703.64 (-166.83) 5846 (-257) 12587 (+1430) 0.18 (-0.05) 0.00 (+0.00)
1.21 post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 50 (-20) 0 (0) 762.56 (-16.15) 164 (+14) 1526 (+32) 0.17 (-0.07) 0.00 (+0.00)
1.22 get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 50 (-20) 0 (0) 676.28 (-87.83) 106 (+16) 1394 (-606) 0.17 (-0.07) 0.00 (+0.00)
Aggregated 1,200 (-450) 0 (0) 1262.96 (+347.25) 1 (0) 13843 (+2686) 4.00 (-1.50) 0.00 (+0.00)

Scenario Metrics

Scenario # Users # Times Run Average (ms) Min (ms) Max (ms) Scenarios/s Iterations
WebsiteUser 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser 5 (0) 50 (-20) 27597.28 (+6714.59) 17557 (+1077) 36071 (+11086) 0.17 (-0.07) 10.00 (-4.00)
Aggregated 5 (0) 50 (-20) 27597.28 (+6714.59) 17557 (+1077) 36071 (+11086) 0.17 (-0.07) 10.00 (-4.00)

User Metrics