Goose Attack Report

Users: 5

Target Host: http://trustify:8080/

goose v0.18.0

Plan overview

Action Started Stopped Elapsed Users
Increasing25-10-19 02:18:5625-10-19 02:19:0100:00:050 → 5
Maintaining25-10-19 02:19:0125-10-19 02:24:0100:05:005
Decreasing25-10-19 02:24:0125-10-19 02:25:3300:01:320 ← 5

Request Metrics

Method Name # Requests # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
GET get_advisory_by_doc_id 2 (0) 0 10.50 (+0.00) 5 (-4) 16 (+4) 0.01 (+0.00) 0.00 (+0.00)
GET get_analysis_latest_cpe 5 (0) 0 167.80 (+18.20) 165 (+17) 171 (+20) 0.02 (+0.00) 0.00 (+0.00)
GET get_analysis_status 5 (0) 0 1.60 (-19.80) 1 (0) 2 (-35) 0.02 (+0.00) 0.00 (+0.00)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 2 (0) 0 1540.00 (+287.00) 382 (-861) 2698 (+1435) 0.01 (+0.00) 0.00 (+0.00)
GET get_sbom[sha256:720e4451…a939656247164447] 2 (0) 0 1733.50 (+773.00) 1103 (+145) 2364 (+1401) 0.01 (+0.00) 0.00 (+0.00)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 2 (0) 0 3242.50 (-1123.50) 3206 (-1137) 3279 (-1110) 0.01 (+0.00) 0.00 (+0.00)
GET list_advisory 2 (0) 0 1022.00 (+354.50) 766 (+109) 1278 (+600) 0.01 (+0.00) 0.00 (+0.00)
GET list_advisory_paginated 2 (0) 0 403.50 (+13.50) 208 (-178) 599 (+205) 0.01 (+0.00) 0.00 (+0.00)
GET list_importer 2 (0) 0 2.00 (+0.50) 2 (+1) 2 (0) 0.01 (+0.00) 0.00 (+0.00)
GET list_organizations 2 (0) 0 4.00 (-0.50) 2 (-1) 6 (0) 0.01 (+0.00) 0.00 (+0.00)
GET list_packages 2 (0) 0 234.00 (+44.50) 233 (+44) 235 (+45) 0.01 (+0.00) 0.00 (+0.00)
GET list_packages_paginated 2 (0) 0 204.00 (-13.00) 203 (-9) 205 (-17) 0.01 (+0.00) 0.00 (+0.00)
GET list_products 5 (0) 0 7.40 (+1.00) 6 (+3) 8 (-1) 0.02 (+0.00) 0.00 (+0.00)
GET list_sboms 5 (0) 0 602.40 (+20.00) 595 (+18) 613 (+22) 0.02 (+0.00) 0.00 (+0.00)
GET list_sboms_paginated 5 (0) 0 515.20 (+46.40) 500 (+48) 523 (+28) 0.02 (+0.00) 0.00 (+0.00)
GET list_vulnerabilities 2 (0) 0 125.50 (-46.50) 46 (-126) 205 (+33) 0.01 (+0.00) 0.00 (+0.00)
GET list_vulnerabilities_paginated 2 (0) 0 82.00 (-18.50) 78 (-22) 86 (-15) 0.01 (+0.00) 0.00 (+0.00)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 2 (0) 0 354.50 (+91.50) 130 (-129) 579 (+312) 0.01 (+0.00) 0.00 (+0.00)
GET search_advisory 2 (0) 0 1014.00 (-425.00) 168 (-1269) 1860 (+419) 0.01 (+0.00) 0.00 (+0.00)
GET search_exact_purl 5 (0) 0 7.80 (+2.00) 7 (+4) 9 (0) 0.02 (+0.00) 0.00 (+0.00)
GET search_licenses 5 (0) 0 149097.80 (-2942.00) 132184 (+712) 180203 (-23051) 0.02 (+0.00) 0.00 (+0.00)
GET search_purls 7 (0) 0 22081.29 (+14915.71) 7386 (+6190) 54314 (+37189) 0.02 (+0.00) 0.00 (+0.00)
GET search_purls_by_license 5 (0) 2 123639.00 (-2395.40) 12794 (-2030) 182325 (-5276) 0.02 (+0.00) 0.01 (+0.00)
GET search_sboms_by_license 5 (0) 5 69085.60 (+3032.60) 62564 (+4513) 80997 (+10900) 0.02 (+0.00) 0.02 (+0.00)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 2 (0) 0 1801.50 (-294.00) 717 (-1349) 2886 (+761) 0.01 (+0.00) 0.00 (+0.00)
Aggregated 82 (0) 7 23094.38 (+1128.20) 1 (0) 182325 (-20929) 0.27 (+0.00) 0.02 (+0.00)

Response Time Metrics

Method Name 50%ile (ms) 60%ile (ms) 70%ile (ms) 80%ile (ms) 90%ile (ms) 95%ile (ms) 99%ile (ms) 100%ile (ms)
GET get_advisory_by_doc_id 5 (-4) 5 (-4) 5 (-4) 16 (+4) 16 (+4) 16 (+4) 16 (+4) 16 (+4)
GET get_analysis_latest_cpe 170 (+20) 170 (+20) 170 (+20) 170 (+20) 170 (+20) 170 (+20) 170 (+20) 170 (+20)
GET get_analysis_status 2 (-30) 2 (-30) 2 (-31) 2 (-31) 2 (-35) 2 (-35) 2 (-35) 2 (-35)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 382 (-861) 382 (-861) 382 (-861) 2,698 (+1,455) 2,698 (+1,455) 2,698 (+1,455) 2,698 (+1,455) 2,698 (+1,455)
GET get_sbom[sha256:720e4451…a939656247164447] 1,103 (+140) 1,103 (+140) 1,103 (+140) 2,000 (+1,037) 2,000 (+1,037) 2,000 (+1,037) 2,000 (+1,037) 2,000 (+1,037)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 3,206 (-1,137) 3,206 (-1,137) 3,206 (-1,137) 3,206 (-1,137) 3,206 (-1,137) 3,206 (-1,137) 3,206 (-1,137) 3,206 (-1,137)
GET list_advisory 800 (+122) 800 (+122) 800 (+122) 1,000 (+322) 1,000 (+322) 1,000 (+322) 1,000 (+322) 1,000 (+322)
GET list_advisory_paginated 210 (-180) 210 (-180) 210 (-180) 599 (+209) 599 (+209) 599 (+209) 599 (+209) 599 (+209)
GET list_importer 2 (+1) 2 (+1) 2 (+1) 2 (0) 2 (0) 2 (0) 2 (0) 2 (0)
GET list_organizations 2 (-1) 2 (-1) 2 (-1) 6 (0) 6 (0) 6 (0) 6 (0) 6 (0)
GET list_packages 233 (+43) 233 (+43) 233 (+43) 235 (+45) 235 (+45) 235 (+45) 235 (+45) 235 (+45)
GET list_packages_paginated 203 (-9) 203 (-9) 203 (-9) 205 (-15) 205 (-15) 205 (-15) 205 (-15) 205 (-15)
GET list_products 8 (+2) 8 (+2) 8 (-1) 8 (-1) 8 (-1) 8 (-1) 8 (-1) 8 (-1)
GET list_sboms 600 (+9) 600 (+9) 600 (+9) 600 (+9) 600 (+9) 600 (+9) 600 (+9) 600 (+9)
GET list_sboms_paginated 500 (+40) 500 (+40) 500 (+20) 500 (+20) 500 (+5) 500 (+5) 500 (+5) 500 (+5)
GET list_vulnerabilities 46 (-126) 46 (-126) 46 (-126) 205 (+33) 205 (+33) 205 (+33) 205 (+33) 205 (+33)
GET list_vulnerabilities_paginated 78 (-22) 78 (-22) 78 (-22) 86 (-14) 86 (-14) 86 (-14) 86 (-14) 86 (-14)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 130 (-130) 130 (-130) 130 (-130) 579 (+312) 579 (+312) 579 (+312) 579 (+312) 579 (+312)
GET search_advisory 170 (-1,267) 170 (-1,267) 170 (-1,267) 1,860 (+423) 1,860 (+423) 1,860 (+423) 1,860 (+423) 1,860 (+423)
GET search_exact_purl 7 (+1) 7 (+1) 9 (+2) 9 (+2) 9 (0) 9 (0) 9 (0) 9 (0)
GET search_licenses 139,000 (-1,000) 139,000 (-1,000) 158,000 (+11,000) 158,000 (+11,000) 180,000 (-23,000) 180,000 (-23,000) 180,000 (-23,000) 180,000 (-23,000)
GET search_purls 10,000 (+6,000) 10,000 (+6,000) 11,000 (+6,000) 54,000 (+37,000) 54,000 (+37,000) 54,000 (+37,000) 54,000 (+37,000) 54,000 (+37,000)
GET search_purls_by_license 180,000 (-1,000) 180,000 (-1,000) 181,000 (-6,000) 181,000 (-6,000) 182,000 (-5,601) 182,000 (-5,601) 182,000 (-5,601) 182,000 (-5,601)
GET search_sboms_by_license 67,000 (0) 67,000 (0) 70,000 (+1,000) 70,000 (+1,000) 80,997 (+10,997) 80,997 (+10,997) 80,997 (+10,997) 80,997 (+10,997)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 717 (-1,349) 717 (-1,349) 717 (-1,349) 2,886 (+820) 2,886 (+820) 2,886 (+820) 2,886 (+820) 2,886 (+820)
Aggregated 500 (+40) 600 (-100) 3,000 (+2,000) 13,000 (-2,000) 81,000 (+11,000) 158,000 (+11,000) 181,000 (-7,000) 182,000 (-21,000)

Status Code Metrics

Method Name Status Codes
GET get_advisory_by_doc_id 2 [200]
GET get_analysis_latest_cpe 5 [200]
GET get_analysis_status 5 [200]
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 2 [200]
GET get_sbom[sha256:720e4451…a939656247164447] 2 [200]
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 2 [200]
GET list_advisory 2 [200]
GET list_advisory_paginated 2 [200]
GET list_importer 2 [200]
GET list_organizations 2 [200]
GET list_packages 2 [200]
GET list_packages_paginated 2 [200]
GET list_products 5 [200]
GET list_sboms 5 [200]
GET list_sboms_paginated 5 [200]
GET list_vulnerabilities 2 [200]
GET list_vulnerabilities_paginated 2 [200]
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 2 [200]
GET search_advisory 2 [200]
GET search_exact_purl 5 [200]
GET search_licenses 5 [200]
GET search_purls 7 [200]
GET search_purls_by_license 2 [500], 3 [200]
GET search_sboms_by_license 5 [500]
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 2 [200]
Aggregated 7 [500], 75 [200]

Transaction Metrics

Transaction # Times Run # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
WebsiteUser
0.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.1 website_index 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.2 website_openapi 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.3 website_sboms 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.4 website_packages 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.5 website_advisories 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.6 website_importers 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser
1.0 logon 2 (0) 0 (0) 12.50 (-3.00) 11 (-4) 14 (-2) 0.01 (+0.00) 0.00 (+0.00)
1.1 list_organizations 2 (0) 0 (0) 4.00 (-0.50) 2 (-1) 6 (0) 0.01 (+0.00) 0.00 (+0.00)
1.2 list_advisory 2 (0) 0 (0) 1022.50 (+354.50) 766 (+109) 1279 (+600) 0.01 (+0.00) 0.00 (+0.00)
1.3 list_advisory_paginated 2 (0) 0 (0) 403.50 (+13.50) 208 (-178) 599 (+205) 0.01 (+0.00) 0.00 (+0.00)
1.4 get_advisory_by_doc_id 2 (0) 0 (0) 10.50 (-0.50) 5 (-4) 16 (+3) 0.01 (+0.00) 0.00 (+0.00)
1.5 search_advisory 2 (0) 0 (0) 1014.00 (-425.00) 168 (-1269) 1860 (+419) 0.01 (+0.00) 0.00 (+0.00)
1.6 list_vulnerabilities 2 (0) 0 (0) 125.50 (-46.50) 46 (-126) 205 (+33) 0.01 (+0.00) 0.00 (+0.00)
1.7 list_vulnerabilities_paginated 2 (0) 0 (0) 82.00 (-18.50) 78 (-22) 86 (-15) 0.01 (+0.00) 0.00 (+0.00)
1.8 list_importer 2 (0) 0 (0) 2.00 (+0.50) 2 (+1) 2 (0) 0.01 (+0.00) 0.00 (+0.00)
1.9 list_packages 2 (0) 0 (0) 234.00 (+44.50) 233 (+44) 235 (+45) 0.01 (+0.00) 0.00 (+0.00)
1.10 list_packages_paginated 2 (0) 0 (0) 204.00 (-13.00) 203 (-9) 205 (-17) 0.01 (+0.00) 0.00 (+0.00)
1.11 search_purls 7 (0) 0 (0) 22081.43 (+14915.86) 7386 (+6190) 54314 (+37189) 0.02 (+0.00) 0.00 (+0.00)
1.12 search_exact_purl 5 (0) 0 (0) 8.00 (+2.20) 7 (+4) 9 (0) 0.02 (+0.00) 0.00 (+0.00)
1.13 list_products 5 (0) 0 (0) 7.40 (+1.00) 6 (+3) 8 (-1) 0.02 (+0.00) 0.00 (+0.00)
1.14 list_sboms 5 (0) 0 (0) 602.40 (+20.00) 595 (+18) 613 (+22) 0.02 (+0.00) 0.00 (+0.00)
1.15 list_sboms_paginated 5 (0) 0 (0) 515.20 (+46.40) 500 (+48) 523 (+28) 0.02 (+0.00) 0.00 (+0.00)
1.16 get_analysis_status 5 (0) 0 (0) 1.60 (-19.80) 1 (0) 2 (-35) 0.02 (+0.00) 0.00 (+0.00)
1.17 get_analysis_latest_cpe 5 (0) 0 (0) 167.80 (+18.20) 165 (+17) 171 (+20) 0.02 (+0.00) 0.00 (+0.00)
1.18 search_licenses 5 (0) 0 (0) 149098.00 (-2941.80) 132184 (+712) 180203 (-23051) 0.02 (+0.00) 0.00 (+0.00)
1.19 search_sboms_by_license 5 (0) 0 (0) 69085.60 (+3032.60) 62564 (+4513) 80997 (+10900) 0.02 (+0.00) 0.00 (+0.00)
1.20 search_purls_by_license 5 (0) 0 (0) 123639.00 (-2395.40) 12794 (-2030) 182325 (-5276) 0.02 (+0.00) 0.00 (+0.00)
1.21 get_sbom[sha256:720e4451…a939656247164447] 2 (0) 0 (0) 1733.50 (+773.00) 1103 (+145) 2364 (+1401) 0.01 (+0.00) 0.00 (+0.00)
1.22 sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 2 (0) 0 (0) 354.50 (+91.50) 130 (-129) 579 (+312) 0.01 (+0.00) 0.00 (+0.00)
1.23 get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 2 (0) 0 (0) 3242.50 (-1123.50) 3206 (-1137) 3279 (-1110) 0.01 (+0.00) 0.00 (+0.00)
1.24 post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 2 (0) 0 (0) 1801.50 (-294.00) 717 (-1349) 2886 (+761) 0.01 (+0.00) 0.00 (+0.00)
1.25 get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 2 (0) 0 (0) 1540.00 (+287.00) 382 (-861) 2698 (+1435) 0.01 (+0.00) 0.00 (+0.00)
Aggregated 84 (0) 0 (0) 22544.51 (+1101.33) 1 (0) 182325 (-20929) 0.28 (+0.00) 0.00 (+0.00)

Scenario Metrics

Scenario # Users # Times Run Average (ms) Min (ms) Max (ms) Scenarios/s Iterations
WebsiteUser 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser 2 (0) 2 (0) 299084.00 (+10383.50) 299081 (+10891) 299087 (+9876) 0.01 (+0.00) 1.00 (+0.00)
Aggregated 2 (0) 2 (0) 299084.00 (+10383.50) 299081 (+10891) 299087 (+9876) 0.01 (+0.00) 1.00 (+0.00)

User Metrics

Errors

# Error
2 (0) 500 Internal Server Error: search_purls_by_license
5 (0) 500 Internal Server Error: search_sboms_by_license