Goose Attack Report

Users: 6

Target Host: http://trustify:8080/

goose v0.18.0

Plan overview

Action Started Stopped Elapsed Users
Increasing25-10-21 02:15:5025-10-21 02:15:5600:00:060 → 6
Maintaining25-10-21 02:15:5625-10-21 02:20:5700:05:016
Decreasing25-10-21 02:20:5725-10-21 02:21:1300:00:160 ← 6

Request Metrics

Method Name # Requests # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
GET get_advisory_by_doc_id 62 (+3) 0 15.02 (-4.27) 3 (0) 62 (-313) 0.21 (+0.01) 0.00 (+0.00)
GET get_analysis_latest_cpe 65 (+5) 0 221.40 (-23.18) 37 (-43) 892 (+186) 0.22 (+0.02) 0.00 (+0.00)
GET get_analysis_status 65 (+5) 0 8.66 (+3.21) 1 (0) 66 (+12) 0.22 (+0.02) 0.00 (+0.00)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 62 (+3) 0 806.05 (+22.40) 186 (-15) 1810 (+391) 0.21 (+0.01) 0.00 (+0.00)
GET get_sbom[sha256:720e4451…a939656247164447] 65 (+5) 0 1113.32 (-211.06) 237 (-73) 4095 (+86) 0.22 (+0.02) 0.00 (+0.00)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 65 (+5) 0 8158.43 (-497.75) 3524 (+37) 14417 (+14) 0.22 (+0.02) 0.00 (+0.00)
GET list_advisory 62 (+3) 0 572.81 (+88.03) 147 (+19) 1500 (+573) 0.21 (+0.01) 0.00 (+0.00)
GET list_advisory_paginated 62 (+3) 0 476.84 (+49.79) 107 (-10) 928 (+230) 0.21 (+0.01) 0.00 (+0.00)
GET list_importer 63 (+3) 0 2.81 (-1.52) 1 (0) 14 (-41) 0.21 (+0.01) 0.00 (+0.00)
GET list_organizations 62 (+3) 0 15.71 (+3.05) 1 (0) 51 (+3) 0.21 (+0.01) 0.00 (+0.00)
GET list_packages 63 (+3) 0 440.08 (+50.73) 103 (-20) 1067 (+188) 0.21 (+0.01) 0.00 (+0.00)
GET list_packages_paginated 63 (+7) 0 377.37 (+45.28) 106 (-14) 785 (+212) 0.21 (+0.02) 0.00 (+0.00)
GET list_products 66 (+6) 0 38.41 (+20.73) 2 (0) 399 (+292) 0.22 (+0.02) 0.00 (+0.00)
GET list_sboms 66 (+6) 0 1154.06 (-176.12) 724 (-25) 2142 (-474) 0.22 (+0.02) 0.00 (+0.00)
GET list_sboms_paginated 66 (+6) 0 1781.74 (-242.39) 397 (-231) 5141 (-749) 0.22 (+0.02) 0.00 (+0.00)
GET list_vulnerabilities 63 (+3) 0 323.43 (-42.70) 45 (-34) 718 (-349) 0.21 (+0.01) 0.00 (+0.00)
GET list_vulnerabilities_paginated 63 (+3) 0 220.41 (+30.33) 34 (0) 366 (+55) 0.21 (+0.01) 0.00 (+0.00)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 65 (+5) 0 81.60 (-12.72) 16 (-5) 272 (-26) 0.22 (+0.02) 0.00 (+0.00)
GET search_advisory 62 (+2) 0 1146.97 (+273.55) 160 (+10) 3289 (+1239) 0.21 (+0.01) 0.00 (+0.00)
GET search_exact_purl 66 (+6) 0 11.23 (-5.44) 2 (0) 60 (-42) 0.22 (+0.02) 0.00 (+0.00)
GET search_licenses 1 (0) 0 95797.00 (-2788.00) 95797 (-2788) 95797 (-2788) 0.00 (+0.00) 0.00 (+0.00)
GET search_purls 66 (+6) 0 5825.59 (-1143.61) 1093 (-1432) 13016 (-717) 0.22 (+0.02) 0.00 (+0.00)
GET search_purls_by_license 1 (0) 0 175011.00 (+12860.00) 175011 (+12860) 175011 (+12860) 0.00 (+0.00) 0.00 (+0.00)
GET search_sboms_by_license 1 (0) 1 47721.00 (-2561.00) 47721 (-2561) 47721 (-2561) 0.00 (+0.00) 0.00 (+0.00)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 62 (+3) 0 787.13 (+18.21) 240 (-45) 1465 (+109) 0.21 (+0.01) 0.00 (+0.00)
Aggregated 1407 (+94) 1 1311.86 (-79.81) 1 (0) 175011 (+12860) 4.69 (+0.31) 0.00 (+0.00)

Response Time Metrics

Method Name 50%ile (ms) 60%ile (ms) 70%ile (ms) 80%ile (ms) 90%ile (ms) 95%ile (ms) 99%ile (ms) 100%ile (ms)
GET get_advisory_by_doc_id 6 (0) 7 (-1) 9 (0) 15 (+4) 52 (+1) 57 (-7) 60 (-10) 62 (-313)
GET get_analysis_latest_cpe 200 (-20) 230 (0) 270 (-10) 290 (-20) 370 (-40) 410 (-60) 600 (0) 892 (+192)
GET get_analysis_status 3 (+1) 4 (+2) 5 (+2) 6 (+2) 39 (+33) 47 (+16) 54 (0) 66 (+12)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 700 (0) 800 (-100) 1,000 (0) 1,000 (0) 1,000 (0) 1,810 (+810) 1,810 (+810) 1,810 (+810)
GET get_sbom[sha256:720e4451…a939656247164447] 800 (-100) 800 (-200) 1,000 (0) 1,000 (-2,000) 3,000 (0) 3,000 (-1,000) 4,000 (0) 4,000 (0)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 7,000 (-1,000) 8,000 (0) 8,000 (-1,000) 10,000 (-2,000) 12,000 (-1,000) 13,000 (0) 14,000 (0) 14,000 (0)
GET list_advisory 600 (+100) 600 (+100) 600 (0) 700 (+100) 800 (+100) 900 (+100) 1,000 (+100) 1,500 (+600)
GET list_advisory_paginated 490 (+20) 500 (+10) 500 (0) 600 (0) 600 (0) 800 (+200) 900 (+202) 900 (+202)
GET list_importer 2 (0) 2 (-1) 3 (0) 3 (-1) 5 (-1) 7 (-2) 13 (-34) 14 (-41)
GET list_organizations 6 (+2) 6 (+1) 11 (+2) 40 (+11) 46 (+7) 48 (+2) 50 (+3) 51 (+3)
GET list_packages 480 (+80) 490 (+20) 500 (0) 600 (+100) 600 (+100) 700 (+100) 800 (+100) 1,000 (+121)
GET list_packages_paginated 390 (+80) 410 (+60) 430 (+30) 480 (+60) 600 (+100) 600 (+100) 700 (+127) 785 (+212)
GET list_products 7 (-1) 11 (+2) 13 (-1) 17 (-5) 60 (+5) 399 (+337) 399 (+327) 399 (+292)
GET list_sboms 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (-1,000) 1,000 (-1,000) 2,000 (0) 2,000 (0) 2,000 (-616)
GET list_sboms_paginated 1,000 (-1,000) 2,000 (0) 2,000 (0) 2,000 (0) 3,000 (-1,000) 4,000 (0) 5,000 (+1,000) 5,000 (-890)
GET list_vulnerabilities 310 (-10) 340 (-70) 440 (0) 480 (0) 500 (0) 600 (-400) 700 (-300) 700 (-300)
GET list_vulnerabilities_paginated 240 (+30) 270 (+60) 280 (+60) 280 (+40) 340 (+50) 360 (+60) 366 (+56) 366 (+56)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 78 (-3) 82 (-4) 93 (+2) 110 (+10) 130 (-50) 210 (-50) 270 (-10) 270 (-28)
GET search_advisory 900 (+100) 1,000 (+100) 1,000 (0) 2,000 (+1,000) 3,000 (+1,000) 3,000 (+1,000) 3,000 (+1,000) 3,000 (+1,000)
GET search_exact_purl 5 (-1) 7 (0) 8 (0) 11 (-2) 35 (-16) 46 (-39) 56 (-44) 60 (-40)
GET search_licenses 95,797 (-2,788) 95,797 (-2,788) 95,797 (-2,788) 95,797 (-2,788) 95,797 (-2,788) 95,797 (-2,788) 95,797 (-2,788) 95,797 (-2,788)
GET search_purls 6,000 (-1,000) 7,000 (0) 7,000 (-1,000) 9,000 (0) 10,000 (0) 11,000 (0) 11,000 (-1,000) 13,000 (-733)
GET search_purls_by_license 175,011 (+12,860) 175,011 (+12,860) 175,011 (+12,860) 175,011 (+12,860) 175,011 (+12,860) 175,011 (+12,860) 175,011 (+12,860) 175,011 (+12,860)
GET search_sboms_by_license 47,721 (-2,561) 47,721 (-2,561) 47,721 (-2,561) 47,721 (-2,561) 47,721 (-2,561) 47,721 (-2,561) 47,721 (-2,561) 47,721 (-2,561)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 800 (+100) 800 (0) 900 (0) 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (0)
Aggregated 380 (+60) 500 (+10) 700 (0) 1,000 (0) 3,000 (0) 7,000 (0) 12,000 (0) 175,000 (+13,000)

Status Code Metrics

Method Name Status Codes
GET get_advisory_by_doc_id 62 [200]
GET get_analysis_latest_cpe 65 [200]
GET get_analysis_status 65 [200]
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 62 [200]
GET get_sbom[sha256:720e4451…a939656247164447] 65 [200]
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 65 [200]
GET list_advisory 62 [200]
GET list_advisory_paginated 62 [200]
GET list_importer 63 [200]
GET list_organizations 62 [200]
GET list_packages 63 [200]
GET list_packages_paginated 63 [200]
GET list_products 66 [200]
GET list_sboms 66 [200]
GET list_sboms_paginated 66 [200]
GET list_vulnerabilities 63 [200]
GET list_vulnerabilities_paginated 63 [200]
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 65 [200]
GET search_advisory 62 [200]
GET search_exact_purl 66 [200]
GET search_licenses 1 [200]
GET search_purls 66 [200]
GET search_purls_by_license 1 [200]
GET search_sboms_by_license 1 [500]
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 62 [200]
Aggregated 1,406 [200], 1 [500]

Transaction Metrics

Transaction # Times Run # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
WebsiteUser
0.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.1 website_index 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.2 website_openapi 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.3 website_sboms 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.4 website_packages 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.5 website_advisories 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.6 website_importers 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser
1.0 logon 62 (+3) 0 (0) 15.29 (+1.24) 8 (0) 37 (+11) 0.21 (+0.01) 0.00 (+0.00)
1.1 list_organizations 62 (+3) 0 (0) 15.92 (+3.14) 2 (+1) 53 (+5) 0.21 (+0.01) 0.00 (+0.00)
1.2 list_advisory 62 (+3) 0 (0) 572.90 (+88.07) 147 (+19) 1500 (+573) 0.21 (+0.01) 0.00 (+0.00)
1.3 list_advisory_paginated 62 (+3) 0 (0) 476.92 (+49.77) 107 (-11) 928 (+230) 0.21 (+0.01) 0.00 (+0.00)
1.4 get_advisory_by_doc_id 62 (+3) 0 (0) 15.05 (-4.34) 3 (0) 62 (-313) 0.21 (+0.01) 0.00 (+0.00)
1.5 search_advisory 62 (+2) 0 (0) 1147.13 (+273.65) 160 (+10) 3291 (+1241) 0.21 (+0.01) 0.00 (+0.00)
1.6 list_vulnerabilities 63 (+3) 0 (0) 323.48 (-42.71) 45 (-34) 718 (-349) 0.21 (+0.01) 0.00 (+0.00)
1.7 list_vulnerabilities_paginated 63 (+3) 0 (0) 220.51 (+30.36) 34 (0) 367 (+56) 0.21 (+0.01) 0.00 (+0.00)
1.8 list_importer 63 (+3) 0 (0) 2.87 (-1.49) 1 (0) 14 (-41) 0.21 (+0.01) 0.00 (+0.00)
1.9 list_packages 63 (+3) 0 (0) 440.10 (+50.68) 103 (-20) 1067 (+188) 0.21 (+0.01) 0.00 (+0.00)
1.10 list_packages_paginated 63 (+7) 0 (0) 377.41 (+45.22) 106 (-14) 785 (+212) 0.21 (+0.02) 0.00 (+0.00)
1.11 search_purls 66 (+6) 0 (0) 5825.64 (-1143.58) 1093 (-1432) 13016 (-717) 0.22 (+0.02) 0.00 (+0.00)
1.12 search_exact_purl 66 (+6) 0 (0) 11.26 (-5.51) 2 (0) 60 (-43) 0.22 (+0.02) 0.00 (+0.00)
1.13 list_products 66 (+6) 0 (0) 38.45 (+20.65) 2 (0) 399 (+292) 0.22 (+0.02) 0.00 (+0.00)
1.14 list_sboms 66 (+6) 0 (0) 1154.08 (-176.14) 724 (-25) 2142 (-474) 0.22 (+0.02) 0.00 (+0.00)
1.15 list_sboms_paginated 66 (+6) 0 (0) 1781.85 (-242.35) 398 (-230) 5141 (-749) 0.22 (+0.02) 0.00 (+0.00)
1.16 get_analysis_status 65 (+5) 0 (0) 8.71 (+3.04) 1 (0) 66 (+12) 0.22 (+0.02) 0.00 (+0.00)
1.17 get_analysis_latest_cpe 65 (+5) 0 (0) 221.49 (-23.14) 37 (-44) 892 (+186) 0.22 (+0.02) 0.00 (+0.00)
1.18 get_sbom[sha256:720e4451…a939656247164447] 65 (+5) 0 (0) 1113.54 (-210.94) 237 (-73) 4095 (+85) 0.22 (+0.02) 0.00 (+0.00)
1.19 sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 65 (+5) 0 (0) 81.62 (-12.73) 16 (-5) 272 (-26) 0.22 (+0.02) 0.00 (+0.00)
1.20 get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 65 (+5) 0 (0) 8158.58 (-497.67) 3524 (+37) 14417 (+14) 0.22 (+0.02) 0.00 (+0.00)
1.21 post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 62 (+3) 0 (0) 787.21 (+18.23) 240 (-45) 1465 (+109) 0.21 (+0.01) 0.00 (+0.00)
1.22 get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 62 (+3) 0 (0) 806.13 (+22.38) 186 (-15) 1810 (+391) 0.21 (+0.01) 0.00 (+0.00)
RestAPIUserSlow
2.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
2.1 search_licenses 1 (0) 0 (0) 95797.00 (-2788.00) 95797 (-2788) 95797 (-2788) 0.00 (+0.00) 0.00 (+0.00)
2.2 search_sboms_by_license 1 (0) 0 (0) 47721.00 (-2561.00) 47721 (-2561) 47721 (-2561) 0.00 (+0.00) 0.00 (+0.00)
2.3 search_purls_by_license 1 (0) 0 (0) 175011.00 (+12860.00) 175011 (+12860) 175011 (+12860) 0.00 (+0.00) 0.00 (+0.00)
Aggregated 1,469 (+97) 0 (0) 1256.49 (-75.33) 1 (0) 175011 (+12860) 4.90 (+0.32) 0.00 (+0.00)

Scenario Metrics

Scenario # Users # Times Run Average (ms) Min (ms) Max (ms) Scenarios/s Iterations
WebsiteUser 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser 5 (0) 62 (+3) 23658.47 (-1486.62) 14307 (-1706) 33408 (-2249) 0.21 (+0.01) 12.40 (+0.60)
RestAPIUserSlow 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
Aggregated 5 (0) 62 (+3) 23658.47 (-1486.62) 14307 (-1706) 33408 (-2249) 0.21 (+0.01) 12.40 (+0.60)

User Metrics

Errors

# Error
1 (0) 500 Internal Server Error: search_sboms_by_license