Goose Attack Report

Users: 6

Target Host: http://trustify:8080/

goose v0.18.0

Plan overview

Action Started Stopped Elapsed Users
Increasing25-10-22 02:18:0525-10-22 02:18:1100:00:060 → 6
Maintaining25-10-22 02:18:1125-10-22 02:23:1100:05:006
Decreasing25-10-22 02:23:1125-10-22 02:23:4000:00:290 ← 6

Request Metrics

Method Name # Requests # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
GET get_advisory_by_doc_id 51 (-11) 0 17.80 (+2.79) 3 (0) 68 (+6) 0.17 (-0.04) 0.00 (+0.00)
GET get_analysis_latest_cpe 53 (-12) 0 224.47 (+3.07) 90 (+53) 510 (-382) 0.18 (-0.04) 0.00 (+0.00)
GET get_analysis_status 53 (-12) 0 11.04 (+2.38) 1 (0) 58 (-8) 0.18 (-0.04) 0.00 (+0.00)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 51 (-11) 0 947.86 (+141.81) 222 (+36) 1933 (+123) 0.17 (-0.04) 0.00 (+0.00)
GET get_sbom[sha256:720e4451…a939656247164447] 53 (-12) 0 1182.15 (+68.83) 403 (+166) 3722 (-373) 0.18 (-0.04) 0.00 (+0.00)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 52 (-13) 0 7636.27 (-522.16) 3605 (+81) 14689 (+272) 0.17 (-0.04) 0.00 (+0.00)
GET list_advisory 51 (-11) 0 720.14 (+147.33) 164 (+17) 1653 (+153) 0.17 (-0.04) 0.00 (+0.00)
GET list_advisory_paginated 51 (-11) 0 546.33 (+69.49) 144 (+37) 931 (+3) 0.17 (-0.04) 0.00 (+0.00)
GET list_importer 52 (-11) 0 6.87 (+4.06) 1 (0) 56 (+42) 0.17 (-0.04) 0.00 (+0.00)
GET list_organizations 51 (-11) 0 16.02 (+0.31) 1 (0) 55 (+4) 0.17 (-0.04) 0.00 (+0.00)
GET list_packages 52 (-11) 0 448.73 (+8.65) 151 (+48) 1117 (+50) 0.17 (-0.04) 0.00 (+0.00)
GET list_packages_paginated 52 (-11) 0 401.50 (+24.13) 128 (+22) 1277 (+492) 0.17 (-0.04) 0.00 (+0.00)
GET list_products 55 (-11) 0 20.93 (-17.48) 2 (0) 137 (-262) 0.18 (-0.04) 0.00 (+0.00)
GET list_sboms 55 (-11) 0 1294.95 (+140.88) 804 (+80) 2214 (+72) 0.18 (-0.04) 0.00 (+0.00)
GET list_sboms_paginated 55 (-11) 0 2232.67 (+450.93) 639 (+242) 6419 (+1278) 0.18 (-0.04) 0.00 (+0.00)
GET list_vulnerabilities 52 (-11) 0 322.63 (-0.79) 70 (+25) 612 (-106) 0.17 (-0.04) 0.00 (+0.00)
GET list_vulnerabilities_paginated 52 (-11) 0 221.88 (+1.47) 31 (-3) 388 (+22) 0.17 (-0.04) 0.00 (+0.00)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 52 (-13) 0 70.81 (-10.79) 16 (0) 217 (-55) 0.17 (-0.04) 0.00 (+0.00)
GET search_advisory 52 (-10) 0 1101.23 (-45.74) 199 (+39) 2701 (-588) 0.17 (-0.03) 0.00 (+0.00)
GET search_exact_purl 55 (-11) 0 32.78 (+21.55) 3 (+1) 206 (+146) 0.18 (-0.04) 0.00 (+0.00)
GET search_licenses 2 (+1) 0 60516.50 (-35280.50) 51792 (-44005) 69241 (-26556) 0.01 (+0.00) 0.00 (+0.00)
GET search_purls 56 (-10) 0 9907.77 (+4082.18) 2121 (+1028) 27106 (+14090) 0.19 (-0.03) 0.00 (+0.00)
GET search_purls_by_license 1 (0) 0 175488.00 (+477.00) 175488 (+477) 175488 (+477) 0.00 (+0.00) 0.00 (+0.00)
GET search_sboms_by_license 1 (0) 1 34651.00 (-13070.00) 34651 (-13070) 34651 (-13070) 0.00 (+0.00) 0.00 (+0.00)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 51 (-11) 0 909.63 (+122.50) 188 (-52) 1896 (+431) 0.17 (-0.04) 0.00 (+0.00)
Aggregated 1161 (-246) 1 1593.52 (+281.66) 1 (0) 175488 (+477) 3.87 (-0.82) 0.00 (+0.00)

Response Time Metrics

Method Name 50%ile (ms) 60%ile (ms) 70%ile (ms) 80%ile (ms) 90%ile (ms) 95%ile (ms) 99%ile (ms) 100%ile (ms)
GET get_advisory_by_doc_id 10 (+4) 11 (+4) 14 (+5) 16 (+1) 55 (+3) 57 (0) 62 (+2) 68 (+6)
GET get_analysis_latest_cpe 210 (+10) 230 (0) 260 (-10) 290 (0) 390 (+20) 410 (0) 500 (-100) 500 (-392)
GET get_analysis_status 3 (0) 4 (0) 4 (-1) 7 (+1) 50 (+11) 53 (+6) 55 (+1) 58 (-8)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 700 (0) 1,000 (+200) 1,000 (0) 1,933 (+933) 1,933 (+933) 1,933 (+123) 1,933 (+123) 1,933 (+123)
GET get_sbom[sha256:720e4451…a939656247164447] 800 (0) 900 (+100) 1,000 (0) 2,000 (+1,000) 2,000 (-1,000) 3,000 (0) 3,000 (-1,000) 3,722 (-278)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 7,000 (0) 7,000 (-1,000) 8,000 (0) 9,000 (-1,000) 12,000 (0) 12,000 (-1,000) 12,000 (-2,000) 14,689 (+689)
GET list_advisory 700 (+100) 700 (+100) 800 (+200) 1,000 (+300) 1,000 (+200) 1,000 (+100) 1,653 (+653) 1,653 (+153)
GET list_advisory_paginated 500 (+10) 600 (+100) 600 (+100) 700 (+100) 700 (+100) 800 (0) 900 (0) 900 (0)
GET list_importer 2 (0) 3 (+1) 4 (+1) 7 (+4) 13 (+8) 42 (+35) 47 (+34) 56 (+42)
GET list_organizations 5 (-1) 7 (+1) 11 (0) 39 (-1) 48 (+2) 49 (+1) 53 (+3) 55 (+4)
GET list_packages 410 (-70) 440 (-50) 500 (0) 600 (0) 600 (0) 800 (+100) 900 (+100) 1,000 (0)
GET list_packages_paginated 390 (0) 410 (0) 420 (-10) 470 (-10) 600 (0) 600 (0) 600 (-100) 1,000 (+215)
GET list_products 8 (+1) 9 (-2) 13 (0) 16 (-1) 73 (+13) 89 (-310) 130 (-269) 137 (-262)
GET list_sboms 1,000 (0) 1,000 (0) 1,000 (0) 2,000 (+1,000) 2,000 (+1,000) 2,000 (0) 2,000 (0) 2,000 (0)
GET list_sboms_paginated 2,000 (+1,000) 2,000 (0) 3,000 (+1,000) 3,000 (+1,000) 4,000 (+1,000) 4,000 (0) 6,000 (+1,000) 6,000 (+1,000)
GET list_vulnerabilities 300 (-10) 350 (+10) 390 (-50) 450 (-30) 500 (0) 500 (-100) 600 (-100) 600 (-100)
GET list_vulnerabilities_paginated 230 (-10) 260 (-10) 270 (-10) 280 (0) 300 (-40) 300 (-60) 370 (+4) 388 (+22)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 72 (-6) 76 (-6) 81 (-12) 95 (-15) 120 (-10) 180 (-30) 200 (-70) 217 (-53)
GET search_advisory 1,000 (+100) 1,000 (0) 1,000 (0) 1,000 (-1,000) 2,000 (-1,000) 2,000 (-1,000) 2,701 (-299) 2,701 (-299)
GET search_exact_purl 8 (+3) 10 (+3) 52 (+44) 56 (+45) 62 (+27) 170 (+124) 170 (+114) 206 (+146)
GET search_licenses 52,000 (-43,797) 52,000 (-43,797) 52,000 (-43,797) 69,000 (-26,797) 69,000 (-26,797) 69,000 (-26,797) 69,000 (-26,797) 69,000 (-26,797)
GET search_purls 4,000 (-2,000) 5,000 (-2,000) 17,000 (+10,000) 21,000 (+12,000) 23,000 (+13,000) 27,000 (+16,000) 27,000 (+16,000) 27,000 (+14,000)
GET search_purls_by_license 175,488 (+477) 175,488 (+477) 175,488 (+477) 175,488 (+477) 175,488 (+477) 175,488 (+477) 175,488 (+477) 175,488 (+477)
GET search_sboms_by_license 34,651 (-13,070) 34,651 (-13,070) 34,651 (-13,070) 34,651 (-13,070) 34,651 (-13,070) 34,651 (-13,070) 34,651 (-13,070) 34,651 (-13,070)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 800 (0) 900 (+100) 1,000 (+100) 1,000 (0) 1,000 (0) 1,896 (+896) 1,896 (+896) 1,896 (+896)
Aggregated 410 (+30) 600 (+100) 800 (+100) 1,000 (0) 3,000 (0) 7,000 (0) 22,000 (+10,000) 175,000 (0)

Status Code Metrics

Method Name Status Codes
GET get_advisory_by_doc_id 51 [200]
GET get_analysis_latest_cpe 53 [200]
GET get_analysis_status 53 [200]
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 51 [200]
GET get_sbom[sha256:720e4451…a939656247164447] 53 [200]
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 52 [200]
GET list_advisory 51 [200]
GET list_advisory_paginated 51 [200]
GET list_importer 52 [200]
GET list_organizations 51 [200]
GET list_packages 52 [200]
GET list_packages_paginated 52 [200]
GET list_products 55 [200]
GET list_sboms 55 [200]
GET list_sboms_paginated 55 [200]
GET list_vulnerabilities 52 [200]
GET list_vulnerabilities_paginated 52 [200]
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 52 [200]
GET search_advisory 52 [200]
GET search_exact_purl 55 [200]
GET search_licenses 2 [200]
GET search_purls 56 [200]
GET search_purls_by_license 1 [200]
GET search_sboms_by_license 1 [500]
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 51 [200]
Aggregated 1 [500], 1,160 [200]

Transaction Metrics

Transaction # Times Run # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
WebsiteUser
0.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.1 website_index 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.2 website_openapi 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.3 website_sboms 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.4 website_packages 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.5 website_advisories 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.6 website_importers 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser
1.0 logon 51 (-11) 0 (0) 15.80 (+0.51) 8 (0) 34 (-3) 0.17 (-0.04) 0.00 (+0.00)
1.1 list_organizations 51 (-11) 0 (0) 16.18 (+0.26) 2 (0) 55 (+2) 0.17 (-0.04) 0.00 (+0.00)
1.2 list_advisory 51 (-11) 0 (0) 720.16 (+147.25) 164 (+17) 1653 (+153) 0.17 (-0.04) 0.00 (+0.00)
1.3 list_advisory_paginated 51 (-11) 0 (0) 546.41 (+69.49) 144 (+37) 932 (+4) 0.17 (-0.04) 0.00 (+0.00)
1.4 get_advisory_by_doc_id 51 (-11) 0 (0) 17.90 (+2.85) 3 (0) 68 (+6) 0.17 (-0.04) 0.00 (+0.00)
1.5 search_advisory 52 (-10) 0 (0) 1101.33 (-45.80) 199 (+39) 2701 (-590) 0.17 (-0.03) 0.00 (+0.00)
1.6 list_vulnerabilities 52 (-11) 0 (0) 322.71 (-0.76) 70 (+25) 612 (-106) 0.17 (-0.04) 0.00 (+0.00)
1.7 list_vulnerabilities_paginated 52 (-11) 0 (0) 221.96 (+1.45) 31 (-3) 388 (+21) 0.17 (-0.04) 0.00 (+0.00)
1.8 list_importer 52 (-11) 0 (0) 6.87 (+3.99) 1 (0) 56 (+42) 0.17 (-0.04) 0.00 (+0.00)
1.9 list_packages 52 (-11) 0 (0) 448.87 (+8.77) 151 (+48) 1117 (+50) 0.17 (-0.04) 0.00 (+0.00)
1.10 list_packages_paginated 52 (-11) 0 (0) 401.54 (+24.13) 128 (+22) 1277 (+492) 0.17 (-0.04) 0.00 (+0.00)
1.11 search_purls 56 (-10) 0 (0) 9907.79 (+4082.15) 2121 (+1028) 27106 (+14090) 0.19 (-0.03) 0.00 (+0.00)
1.12 search_exact_purl 55 (-11) 0 (0) 32.82 (+21.56) 3 (+1) 206 (+146) 0.18 (-0.04) 0.00 (+0.00)
1.13 list_products 55 (-11) 0 (0) 21.00 (-17.45) 2 (0) 137 (-262) 0.18 (-0.04) 0.00 (+0.00)
1.14 list_sboms 55 (-11) 0 (0) 1295.00 (+140.92) 804 (+80) 2214 (+72) 0.18 (-0.04) 0.00 (+0.00)
1.15 list_sboms_paginated 55 (-11) 0 (0) 2232.69 (+450.84) 639 (+241) 6419 (+1278) 0.18 (-0.04) 0.00 (+0.00)
1.16 get_analysis_status 53 (-12) 0 (0) 11.08 (+2.37) 1 (0) 58 (-8) 0.18 (-0.04) 0.00 (+0.00)
1.17 get_analysis_latest_cpe 53 (-12) 0 (0) 224.47 (+2.98) 90 (+53) 510 (-382) 0.18 (-0.04) 0.00 (+0.00)
1.18 get_sbom[sha256:720e4451…a939656247164447] 53 (-12) 0 (0) 1182.25 (+68.71) 403 (+166) 3722 (-373) 0.18 (-0.04) 0.00 (+0.00)
1.19 sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 52 (-13) 0 (0) 70.90 (-10.71) 17 (+1) 217 (-55) 0.17 (-0.04) 0.00 (+0.00)
1.20 get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 52 (-13) 0 (0) 7636.38 (-522.20) 3605 (+81) 14689 (+272) 0.17 (-0.04) 0.00 (+0.00)
1.21 post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 51 (-11) 0 (0) 909.67 (+122.46) 188 (-52) 1896 (+431) 0.17 (-0.04) 0.00 (+0.00)
1.22 get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 51 (-11) 0 (0) 948.06 (+141.93) 223 (+37) 1933 (+123) 0.17 (-0.04) 0.00 (+0.00)
RestAPIUserSlow
2.0 logon 1 (+1) 0 (0) 13.00 (+13.00) 13 (+13) 13 (+13) 0.00 (+0.00) 0.00 (+0.00)
2.1 search_licenses 2 (+1) 0 (0) 60516.50 (-35280.50) 51792 (-44005) 69241 (-26556) 0.01 (+0.00) 0.00 (+0.00)
2.2 search_sboms_by_license 1 (0) 0 (0) 34651.00 (-13070.00) 34651 (-13070) 34651 (-13070) 0.00 (+0.00) 0.00 (+0.00)
2.3 search_purls_by_license 1 (0) 0 (0) 175488.00 (+477.00) 175488 (+477) 175488 (+477) 0.00 (+0.00) 0.00 (+0.00)
Aggregated 1,213 (-256) 0 (0) 1525.21 (+268.72) 1 (0) 175488 (+477) 4.04 (-0.85) 0.00 (+0.00)

Scenario Metrics

Scenario # Users # Times Run Average (ms) Min (ms) Max (ms) Scenarios/s Iterations
WebsiteUser 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser 5 (0) 51 (-11) 28633.69 (+4975.22) 17902 (+3595) 50798 (+17390) 0.17 (-0.04) 10.20 (-2.20)
RestAPIUserSlow 1 (+1) 1 (+1) 261941.00 (+261941.00) 261941 (+261941) 261941 (+261941) 0.00 (+0.00) 1.00 (+1.00)
Aggregated 6 (+1) 52 (-10) 33120.37 (+9461.90) 17902 (+3595) 261941 (+228533) 0.17 (-0.03) 11.20 (-1.20)

User Metrics

Errors

# Error
1 (0) 500 Internal Server Error: search_sboms_by_license