Goose Attack Report

Users: 5

Target Host: http://trustify:8080/

goose v0.18.0

Plan overview

Action Started Stopped Elapsed Users
Increasing25-10-20 02:19:4625-10-20 02:19:5100:00:050 → 5
Maintaining25-10-20 02:19:5125-10-20 02:24:5200:05:015
Decreasing25-10-20 02:24:5225-10-20 02:25:5300:01:010 ← 5

Request Metrics

Method Name # Requests # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
GET get_advisory_by_doc_id 3 (+1) 0 26.67 (+16.17) 26 (+21) 27 (+11) 0.01 (+0.00) 0.00 (+0.00)
GET get_analysis_latest_cpe 5 (0) 0 175.40 (+7.60) 173 (+8) 177 (+6) 0.02 (+0.00) 0.00 (+0.00)
GET get_analysis_status 5 (0) 0 2.40 (+0.80) 1 (0) 4 (+2) 0.02 (+0.00) 0.00 (+0.00)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 3 (+1) 0 1552.00 (+12.00) 1551 (+1169) 1553 (-1145) 0.01 (+0.00) 0.00 (+0.00)
GET get_sbom[sha256:720e4451…a939656247164447] 3 (+1) 0 1460.33 (-273.17) 1457 (+354) 1462 (-902) 0.01 (+0.00) 0.00 (+0.00)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 3 (+1) 0 6115.00 (+2872.50) 6067 (+2861) 6180 (+2901) 0.01 (+0.00) 0.00 (+0.00)
GET list_advisory 3 (+1) 0 515.67 (-506.33) 514 (-252) 518 (-760) 0.01 (+0.00) 0.00 (+0.00)
GET list_advisory_paginated 3 (+1) 0 346.00 (-57.50) 346 (+138) 346 (-253) 0.01 (+0.00) 0.00 (+0.00)
GET list_importer 3 (+1) 0 3.33 (+1.33) 1 (-1) 7 (+5) 0.01 (+0.00) 0.00 (+0.00)
GET list_organizations 3 (+1) 0 2.00 (-2.00) 2 (0) 2 (-4) 0.01 (+0.00) 0.00 (+0.00)
GET list_packages 3 (+1) 0 248.33 (+14.33) 243 (+10) 251 (+16) 0.01 (+0.00) 0.00 (+0.00)
GET list_packages_paginated 3 (+1) 0 295.00 (+91.00) 286 (+83) 305 (+100) 0.01 (+0.00) 0.00 (+0.00)
GET list_products 5 (0) 0 35.20 (+27.80) 10 (+4) 53 (+45) 0.02 (+0.00) 0.00 (+0.00)
GET list_sboms 5 (0) 0 651.60 (+49.20) 645 (+50) 659 (+46) 0.02 (+0.00) 0.00 (+0.00)
GET list_sboms_paginated 5 (0) 0 492.20 (-23.00) 485 (-15) 497 (-26) 0.02 (+0.00) 0.00 (+0.00)
GET list_vulnerabilities 3 (+1) 0 305.67 (+180.17) 305 (+259) 307 (+102) 0.01 (+0.00) 0.00 (+0.00)
GET list_vulnerabilities_paginated 3 (+1) 0 120.67 (+38.67) 120 (+42) 121 (+35) 0.01 (+0.00) 0.00 (+0.00)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 3 (+1) 0 133.67 (-220.83) 119 (-11) 142 (-437) 0.01 (+0.00) 0.00 (+0.00)
GET search_advisory 3 (+1) 0 2245.33 (+1231.33) 2245 (+2077) 2246 (+386) 0.01 (+0.00) 0.00 (+0.00)
GET search_exact_purl 5 (0) 0 24.40 (+16.60) 5 (-2) 51 (+42) 0.02 (+0.00) 0.00 (+0.00)
GET search_licenses 5 (0) 0 152831.80 (+3734.00) 136489 (+4305) 196467 (+16264) 0.02 (+0.00) 0.00 (+0.00)
GET search_purls 8 (+1) 0 21826.62 (-254.66) 8315 (+929) 41321 (-12993) 0.03 (+0.00) 0.00 (+0.00)
GET search_purls_by_license 5 (0) 3 86405.60 (-37233.40) 28336 (+15542) 146787 (-35538) 0.02 (+0.00) 0.01 (+0.00)
GET search_sboms_by_license 5 (0) 5 66270.20 (-2815.40) 49208 (-13356) 74240 (-6757) 0.02 (+0.00) 0.02 (+0.00)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 3 (+1) 0 789.00 (-1012.50) 715 (-2) 831 (-2055) 0.01 (+0.00) 0.00 (+0.00)
Aggregated 98 (+16) 8 17872.79 (-5221.59) 1 (0) 196467 (+14142) 0.33 (+0.05) 0.03 (+0.00)

Response Time Metrics

Method Name 50%ile (ms) 60%ile (ms) 70%ile (ms) 80%ile (ms) 90%ile (ms) 95%ile (ms) 99%ile (ms) 100%ile (ms)
GET get_advisory_by_doc_id 27 (+22) 27 (+22) 27 (+22) 27 (+11) 27 (+11) 27 (+11) 27 (+11) 27 (+11)
GET get_analysis_latest_cpe 177 (+7) 177 (+7) 177 (+7) 177 (+7) 177 (+7) 177 (+7) 177 (+7) 177 (+7)
GET get_analysis_status 2 (0) 2 (0) 3 (+1) 3 (+1) 4 (+2) 4 (+2) 4 (+2) 4 (+2)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 1,553 (+1,171) 1,553 (+1,171) 1,553 (+1,171) 1,553 (-1,145) 1,553 (-1,145) 1,553 (-1,145) 1,553 (-1,145) 1,553 (-1,145)
GET get_sbom[sha256:720e4451…a939656247164447] 1,457 (+354) 1,457 (+354) 1,457 (+354) 1,457 (-543) 1,457 (-543) 1,457 (-543) 1,457 (-543) 1,457 (-543)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 6,067 (+2,861) 6,067 (+2,861) 6,067 (+2,861) 6,067 (+2,861) 6,067 (+2,861) 6,067 (+2,861) 6,067 (+2,861) 6,067 (+2,861)
GET list_advisory 514 (-286) 514 (-286) 514 (-286) 514 (-486) 514 (-486) 514 (-486) 514 (-486) 514 (-486)
GET list_advisory_paginated 346 (+136) 346 (+136) 346 (+136) 346 (-253) 346 (-253) 346 (-253) 346 (-253) 346 (-253)
GET list_importer 2 (0) 2 (0) 2 (0) 2 (0) 7 (+5) 7 (+5) 7 (+5) 7 (+5)
GET list_organizations 2 (0) 2 (0) 2 (0) 2 (-4) 2 (-4) 2 (-4) 2 (-4) 2 (-4)
GET list_packages 250 (+17) 250 (+17) 250 (+17) 250 (+15) 250 (+15) 250 (+15) 250 (+15) 250 (+15)
GET list_packages_paginated 290 (+87) 290 (+87) 290 (+87) 290 (+85) 305 (+100) 305 (+100) 305 (+100) 305 (+100)
GET list_products 51 (+43) 51 (+43) 52 (+44) 52 (+44) 53 (+45) 53 (+45) 53 (+45) 53 (+45)
GET list_sboms 659 (+59) 659 (+59) 659 (+59) 659 (+59) 659 (+59) 659 (+59) 659 (+59) 659 (+59)
GET list_sboms_paginated 490 (-10) 490 (-10) 497 (-3) 497 (-3) 497 (-3) 497 (-3) 497 (-3) 497 (-3)
GET list_vulnerabilities 307 (+261) 307 (+261) 307 (+261) 307 (+102) 307 (+102) 307 (+102) 307 (+102) 307 (+102)
GET list_vulnerabilities_paginated 120 (+42) 120 (+42) 120 (+42) 120 (+34) 120 (+34) 120 (+34) 120 (+34) 120 (+34)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 140 (+10) 140 (+10) 140 (+10) 140 (-439) 140 (-439) 140 (-439) 140 (-439) 140 (-439)
GET search_advisory 2,245 (+2,075) 2,245 (+2,075) 2,245 (+2,075) 2,245 (+385) 2,245 (+385) 2,245 (+385) 2,245 (+385) 2,245 (+385)
GET search_exact_purl 9 (+2) 9 (+2) 50 (+41) 50 (+41) 51 (+42) 51 (+42) 51 (+42) 51 (+42)
GET search_licenses 138,000 (-1,000) 138,000 (-1,000) 156,000 (-2,000) 156,000 (-2,000) 196,000 (+16,000) 196,000 (+16,000) 196,000 (+16,000) 196,000 (+16,000)
GET search_purls 11,000 (+1,000) 12,000 (+2,000) 41,000 (+30,000) 41,000 (-13,000) 41,000 (-13,000) 41,000 (-13,000) 41,000 (-13,000) 41,000 (-13,000)
GET search_purls_by_license 61,000 (-119,000) 61,000 (-119,000) 146,787 (-34,213) 146,787 (-34,213) 146,787 (-35,213) 146,787 (-35,213) 146,787 (-35,213) 146,787 (-35,213)
GET search_sboms_by_license 69,000 (+2,000) 69,000 (+2,000) 70,000 (0) 70,000 (0) 74,000 (-6,997) 74,000 (-6,997) 74,000 (-6,997) 74,000 (-6,997)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 800 (+83) 800 (+83) 800 (+83) 800 (-2,086) 800 (-2,086) 800 (-2,086) 800 (-2,086) 800 (-2,086)
Aggregated 490 (-10) 700 (+100) 2,000 (-1,000) 10,000 (-3,000) 69,000 (-12,000) 137,000 (-21,000) 156,000 (-25,000) 196,000 (+14,000)

Status Code Metrics

Method Name Status Codes
GET get_advisory_by_doc_id 3 [200]
GET get_analysis_latest_cpe 5 [200]
GET get_analysis_status 5 [200]
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 3 [200]
GET get_sbom[sha256:720e4451…a939656247164447] 3 [200]
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 3 [200]
GET list_advisory 3 [200]
GET list_advisory_paginated 3 [200]
GET list_importer 3 [200]
GET list_organizations 3 [200]
GET list_packages 3 [200]
GET list_packages_paginated 3 [200]
GET list_products 5 [200]
GET list_sboms 5 [200]
GET list_sboms_paginated 5 [200]
GET list_vulnerabilities 3 [200]
GET list_vulnerabilities_paginated 3 [200]
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 3 [200]
GET search_advisory 3 [200]
GET search_exact_purl 5 [200]
GET search_licenses 5 [200]
GET search_purls 8 [200]
GET search_purls_by_license 3 [500], 2 [200]
GET search_sboms_by_license 5 [500]
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 3 [200]
Aggregated 90 [200], 8 [500]

Transaction Metrics

Transaction # Times Run # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
WebsiteUser
0.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.1 website_index 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.2 website_openapi 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.3 website_sboms 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.4 website_packages 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.5 website_advisories 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.6 website_importers 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser
1.0 logon 3 (+1) 0 (0) 11.33 (-1.17) 9 (-2) 13 (-1) 0.01 (+0.00) 0.00 (+0.00)
1.1 list_organizations 3 (+1) 0 (0) 2.00 (-2.00) 2 (0) 2 (-4) 0.01 (+0.00) 0.00 (+0.00)
1.2 list_advisory 3 (+1) 0 (0) 515.67 (-506.83) 514 (-252) 518 (-761) 0.01 (+0.00) 0.00 (+0.00)
1.3 list_advisory_paginated 3 (+1) 0 (0) 346.00 (-57.50) 346 (+138) 346 (-253) 0.01 (+0.00) 0.00 (+0.00)
1.4 get_advisory_by_doc_id 3 (+1) 0 (0) 26.67 (+16.17) 26 (+21) 27 (+11) 0.01 (+0.00) 0.00 (+0.00)
1.5 search_advisory 3 (+1) 0 (0) 2245.33 (+1231.33) 2245 (+2077) 2246 (+386) 0.01 (+0.00) 0.00 (+0.00)
1.6 list_vulnerabilities 3 (+1) 0 (0) 305.67 (+180.17) 305 (+259) 307 (+102) 0.01 (+0.00) 0.00 (+0.00)
1.7 list_vulnerabilities_paginated 3 (+1) 0 (0) 121.00 (+39.00) 120 (+42) 122 (+36) 0.01 (+0.00) 0.00 (+0.00)
1.8 list_importer 3 (+1) 0 (0) 3.33 (+1.33) 1 (-1) 7 (+5) 0.01 (+0.00) 0.00 (+0.00)
1.9 list_packages 3 (+1) 0 (0) 248.33 (+14.33) 243 (+10) 251 (+16) 0.01 (+0.00) 0.00 (+0.00)
1.10 list_packages_paginated 3 (+1) 0 (0) 295.33 (+91.33) 286 (+83) 306 (+101) 0.01 (+0.00) 0.00 (+0.00)
1.11 search_purls 8 (+1) 0 (0) 21826.62 (-254.80) 8315 (+929) 41321 (-12993) 0.03 (+0.00) 0.00 (+0.00)
1.12 search_exact_purl 5 (0) 0 (0) 24.40 (+16.40) 5 (-2) 51 (+42) 0.02 (+0.00) 0.00 (+0.00)
1.13 list_products 5 (0) 0 (0) 35.20 (+27.80) 10 (+4) 53 (+45) 0.02 (+0.00) 0.00 (+0.00)
1.14 list_sboms 5 (0) 0 (0) 651.80 (+49.40) 646 (+51) 659 (+46) 0.02 (+0.00) 0.00 (+0.00)
1.15 list_sboms_paginated 5 (0) 0 (0) 492.20 (-23.00) 485 (-15) 497 (-26) 0.02 (+0.00) 0.00 (+0.00)
1.16 get_analysis_status 5 (0) 0 (0) 2.40 (+0.80) 1 (0) 4 (+2) 0.02 (+0.00) 0.00 (+0.00)
1.17 get_analysis_latest_cpe 5 (0) 0 (0) 175.60 (+7.80) 174 (+9) 177 (+6) 0.02 (+0.00) 0.00 (+0.00)
1.18 search_licenses 5 (0) 0 (0) 152831.80 (+3733.80) 136489 (+4305) 196467 (+16264) 0.02 (+0.00) 0.00 (+0.00)
1.19 search_sboms_by_license 5 (0) 0 (0) 66270.20 (-2815.40) 49208 (-13356) 74240 (-6757) 0.02 (+0.00) 0.00 (+0.00)
1.20 search_purls_by_license 5 (0) 0 (0) 86405.60 (-37233.40) 28336 (+15542) 146787 (-35538) 0.02 (+0.00) 0.00 (+0.00)
1.21 get_sbom[sha256:720e4451…a939656247164447] 3 (+1) 0 (0) 1460.33 (-273.17) 1457 (+354) 1462 (-902) 0.01 (+0.00) 0.00 (+0.00)
1.22 sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 3 (+1) 0 (0) 133.67 (-220.83) 119 (-11) 142 (-437) 0.01 (+0.00) 0.00 (+0.00)
1.23 get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 3 (+1) 0 (0) 6115.00 (+2872.50) 6067 (+2861) 6180 (+2901) 0.01 (+0.00) 0.00 (+0.00)
1.24 post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 3 (+1) 0 (0) 789.00 (-1012.50) 715 (-2) 831 (-2055) 0.01 (+0.00) 0.00 (+0.00)
1.25 get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 3 (+1) 0 (0) 1552.00 (+12.00) 1551 (+1169) 1553 (-1145) 0.01 (+0.00) 0.00 (+0.00)
Aggregated 101 (+17) 0 (0) 17341.91 (-5202.60) 1 (0) 196467 (+14142) 0.34 (+0.06) 0.00 (+0.00)

Scenario Metrics

Scenario # Users # Times Run Average (ms) Min (ms) Max (ms) Scenarios/s Iterations
WebsiteUser 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser 3 (+1) 3 (+1) 296704.66 (-2379.34) 294367 (-4714) 298375 (-712) 0.01 (+0.00) 1.00 (+0.00)
Aggregated 3 (+1) 3 (+1) 296704.66 (-2379.34) 294367 (-4714) 298375 (-712) 0.01 (+0.00) 1.00 (+0.00)

User Metrics

Errors

# Error
3 (+1) 500 Internal Server Error: search_purls_by_license
5 (0) 500 Internal Server Error: search_sboms_by_license