Goose Attack Report

Users: 6

Target Host: http://trustify:8080/

goose v0.18.0

Plan overview

Action Started Stopped Elapsed Users
Increasing25-10-29 02:15:3425-10-29 02:15:4000:00:060 → 6
Maintaining25-10-29 02:15:4025-10-29 02:20:4000:05:006
Decreasing25-10-29 02:20:4025-10-29 02:20:5400:00:140 ← 6

Request Metrics

Method Name # Requests # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
GET get_advisory_by_doc_id 53 (-7) 0 11.53 (-1.79) 3 (0) 61 (-2) 0.18 (-0.02) 0.00 (+0.00)
GET get_analysis_latest_cpe 55 (-7) 0 253.87 (+39.68) 83 (+47) 530 (+57) 0.18 (-0.02) 0.00 (+0.00)
GET get_analysis_status 55 (-7) 0 5.04 (-4.04) 1 (0) 55 (+1) 0.18 (-0.02) 0.00 (+0.00)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 55 (-5) 0 861.13 (+6.01) 149 (-127) 2091 (-916) 0.18 (-0.02) 0.00 (+0.00)
GET get_sbom[sha256:720e4451…a939656247164447] 55 (-7) 0 2123.27 (+947.85) 438 (+240) 6798 (+1501) 0.18 (-0.02) 0.00 (+0.00)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 55 (-7) 0 7520.05 (-162.35) 4678 (+966) 13223 (+940) 0.18 (-0.02) 0.00 (+0.00)
GET list_advisory 54 (-6) 0 619.04 (+53.12) 120 (-24) 1360 (+271) 0.18 (-0.02) 0.00 (+0.00)
GET list_advisory_paginated 53 (-7) 0 532.70 (+29.65) 168 (-1) 1314 (+46) 0.18 (-0.02) 0.00 (+0.00)
GET list_importer 53 (-7) 0 6.36 (+2.73) 1 (0) 54 (+6) 0.18 (-0.02) 0.00 (+0.00)
GET list_organizations 55 (-5) 0 18.53 (+4.01) 1 (0) 52 (-3) 0.18 (-0.02) 0.00 (+0.00)
GET list_packages 53 (-7) 0 418.57 (-11.83) 98 (-26) 1149 (+255) 0.18 (-0.02) 0.00 (+0.00)
GET list_packages_paginated 53 (-7) 0 337.06 (-51.34) 116 (-6) 570 (-548) 0.18 (-0.02) 0.00 (+0.00)
GET list_products 57 (-6) 0 13.33 (-3.32) 3 (+1) 85 (+18) 0.19 (-0.02) 0.00 (+0.00)
GET list_sboms 57 (-6) 0 1475.28 (+156.61) 705 (-37) 2180 (-284) 0.19 (-0.02) 0.00 (+0.00)
GET list_sboms_paginated 56 (-7) 0 4468.66 (+2259.41) 503 (-154) 12999 (+7392) 0.19 (-0.02) 0.00 (+0.00)
GET list_vulnerabilities 53 (-7) 0 333.40 (-63.67) 87 (+16) 723 (-132) 0.18 (-0.02) 0.00 (+0.00)
GET list_vulnerabilities_paginated 53 (-7) 0 180.57 (-49.07) 29 (-17) 298 (-86) 0.18 (-0.02) 0.00 (+0.00)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 55 (-7) 0 91.98 (+23.63) 19 (+4) 320 (+123) 0.18 (-0.02) 0.00 (+0.00)
GET search_advisory 53 (-8) 0 1370.55 (+316.74) 195 (+53) 3696 (+495) 0.18 (-0.03) 0.00 (+0.00)
GET search_exact_purl 57 (-6) 0 6.91 (-3.90) 2 (0) 30 (-33) 0.19 (-0.02) 0.00 (+0.00)
GET search_licenses 1 (0) 0 96317.00 (+18673.00) 96317 (+18673) 96317 (+18673) 0.00 (+0.00) 0.00 (+0.00)
GET search_purls 57 (-7) 0 5898.04 (-453.29) 706 (-272) 12473 (-3193) 0.19 (-0.02) 0.00 (+0.00)
GET search_purls_by_license 1 (0) 0 138477.00 (-43878.00) 138477 (-43878) 138477 (-43878) 0.00 (+0.00) 0.00 (+0.00)
GET search_sboms_by_license 1 (0) 0 81136.00 (+26196.00) 81136 (+26196) 81136 (+26196) 0.00 (+0.00) 0.00 (+0.00)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 55 (-5) 0 815.85 (-41.11) 232 (+64) 1511 (-79) 0.18 (-0.02) 0.00 (+0.00)
Aggregated 1205 (-145) 0 1521.23 (+163.86) 1 (0) 138477 (-43878) 4.02 (-0.48) 0.00 (+0.00)

Response Time Metrics

Method Name 50%ile (ms) 60%ile (ms) 70%ile (ms) 80%ile (ms) 90%ile (ms) 95%ile (ms) 99%ile (ms) 100%ile (ms)
GET get_advisory_by_doc_id 6 (0) 7 (0) 9 (0) 10 (-3) 28 (-24) 52 (-2) 59 (-3) 61 (-2)
GET get_analysis_latest_cpe 250 (+50) 270 (+60) 290 (+50) 300 (0) 380 (0) 420 (+20) 470 (+20) 500 (+30)
GET get_analysis_status 3 (+1) 3 (0) 4 (0) 5 (-3) 9 (-32) 10 (-42) 52 (-2) 55 (+1)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 700 (0) 800 (0) 1,000 (+100) 1,000 (0) 2,000 (+1,000) 2,000 (0) 2,000 (-1,000) 2,000 (-1,000)
GET get_sbom[sha256:720e4451…a939656247164447] 900 (+200) 1,000 (+200) 2,000 (+1,000) 5,000 (+3,000) 5,000 (+2,000) 6,798 (+3,798) 6,798 (+2,798) 6,798 (+1,798)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 7,000 (-1,000) 7,000 (-1,000) 8,000 (0) 9,000 (-1,000) 12,000 (0) 12,000 (0) 13,000 (+1,000) 13,000 (+1,000)
GET list_advisory 500 (-100) 600 (0) 600 (0) 800 (+100) 1,000 (+200) 1,000 (+200) 1,000 (0) 1,000 (0)
GET list_advisory_paginated 490 (-10) 500 (0) 600 (0) 700 (+100) 800 (+100) 900 (+200) 1,000 (+200) 1,000 (0)
GET list_importer 2 (0) 3 (0) 4 (+1) 5 (+1) 6 (0) 49 (+42) 54 (+45) 54 (+6)
GET list_organizations 4 (-1) 10 (+4) 39 (+32) 43 (+3) 47 (+3) 50 (+5) 50 (+1) 52 (-3)
GET list_packages 450 (+30) 480 (+10) 490 (0) 500 (0) 600 (0) 700 (0) 800 (0) 1,000 (+106)
GET list_packages_paginated 330 (-50) 370 (-30) 420 (0) 430 (-40) 490 (-110) 500 (-100) 500 (-200) 570 (-430)
GET list_products 7 (0) 8 (-1) 12 (-4) 14 (-11) 23 (-28) 64 (+12) 82 (+17) 85 (+18)
GET list_sboms 2,000 (+1,000) 2,000 (+1,000) 2,000 (+1,000) 2,000 (0) 2,000 (0) 2,000 (0) 2,000 (0) 2,000 (0)
GET list_sboms_paginated 4,000 (+2,000) 5,000 (+3,000) 5,000 (+2,000) 7,000 (+4,000) 8,000 (+4,000) 9,000 (+5,000) 9,000 (+4,000) 12,999 (+7,392)
GET list_vulnerabilities 270 (-40) 310 (-90) 380 (-80) 600 (0) 700 (0) 700 (-100) 700 (-155) 700 (-155)
GET list_vulnerabilities_paginated 200 (-40) 210 (-60) 210 (-80) 220 (-80) 280 (-80) 280 (-90) 290 (-90) 298 (-82)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 87 (+30) 92 (+19) 100 (+17) 130 (+36) 180 (+10) 190 (0) 200 (+3) 320 (+123)
GET search_advisory 1,000 (+100) 1,000 (0) 2,000 (+1,000) 2,000 (+1,000) 3,000 (+1,000) 3,000 (+1,000) 3,696 (+696) 3,696 (+696)
GET search_exact_purl 5 (0) 6 (0) 7 (0) 8 (0) 12 (-29) 15 (-41) 30 (-31) 30 (-33)
GET search_licenses 96,317 (+18,673) 96,317 (+18,673) 96,317 (+18,673) 96,317 (+18,673) 96,317 (+18,673) 96,317 (+18,673) 96,317 (+18,673) 96,317 (+18,673)
GET search_purls 6,000 (-1,000) 6,000 (-2,000) 8,000 (-1,000) 8,000 (-1,000) 11,000 (+1,000) 12,000 (+1,000) 12,000 (+1,000) 12,000 (-3,666)
GET search_purls_by_license 138,477 (-43,878) 138,477 (-43,878) 138,477 (-43,878) 138,477 (-43,878) 138,477 (-43,878) 138,477 (-43,878) 138,477 (-43,878) 138,477 (-43,878)
GET search_sboms_by_license 81,136 (+26,196) 81,136 (+26,196) 81,136 (+26,196) 81,136 (+26,196) 81,136 (+26,196) 81,136 (+26,196) 81,136 (+26,196) 81,136 (+26,196)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 800 (0) 800 (-100) 900 (-100) 1,000 (0) 1,000 (0) 1,000 (0) 1,511 (+511) 1,511 (-79)
Aggregated 370 (-20) 500 (0) 800 (+100) 1,000 (0) 5,000 (+2,000) 7,000 (0) 12,000 (+1,000) 138,000 (-44,000)

Status Code Metrics

Method Name Status Codes
GET get_advisory_by_doc_id 53 [200]
GET get_analysis_latest_cpe 55 [200]
GET get_analysis_status 55 [200]
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 55 [200]
GET get_sbom[sha256:720e4451…a939656247164447] 55 [200]
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 55 [200]
GET list_advisory 54 [200]
GET list_advisory_paginated 53 [200]
GET list_importer 53 [200]
GET list_organizations 55 [200]
GET list_packages 53 [200]
GET list_packages_paginated 53 [200]
GET list_products 57 [200]
GET list_sboms 57 [200]
GET list_sboms_paginated 56 [200]
GET list_vulnerabilities 53 [200]
GET list_vulnerabilities_paginated 53 [200]
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 55 [200]
GET search_advisory 53 [200]
GET search_exact_purl 57 [200]
GET search_licenses 1 [200]
GET search_purls 57 [200]
GET search_purls_by_license 1 [200]
GET search_sboms_by_license 1 [200]
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 55 [200]
Aggregated 1,205 [200]

Transaction Metrics

Transaction # Times Run # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
WebsiteUser
0.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.1 website_index 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.2 website_openapi 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.3 website_sboms 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.4 website_packages 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.5 website_advisories 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.6 website_importers 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser
1.0 logon 55 (-5) 0 (0) 15.53 (-0.96) 7 (-1) 36 (+1) 0.18 (-0.02) 0.00 (+0.00)
1.1 list_organizations 55 (-5) 0 (0) 18.71 (+4.01) 1 (0) 52 (-3) 0.18 (-0.02) 0.00 (+0.00)
1.2 list_advisory 54 (-6) 0 (0) 619.19 (+53.27) 120 (-24) 1360 (+271) 0.18 (-0.02) 0.00 (+0.00)
1.3 list_advisory_paginated 53 (-7) 0 (0) 532.72 (+29.63) 168 (-1) 1314 (+46) 0.18 (-0.02) 0.00 (+0.00)
1.4 get_advisory_by_doc_id 53 (-7) 0 (0) 11.58 (-1.82) 3 (0) 61 (-2) 0.18 (-0.02) 0.00 (+0.00)
1.5 search_advisory 53 (-8) 0 (0) 1370.64 (+316.74) 195 (+52) 3696 (+495) 0.18 (-0.03) 0.00 (+0.00)
1.6 list_vulnerabilities 53 (-7) 0 (0) 333.42 (-63.73) 87 (+16) 723 (-132) 0.18 (-0.02) 0.00 (+0.00)
1.7 list_vulnerabilities_paginated 53 (-7) 0 (0) 180.60 (-49.03) 29 (-17) 298 (-86) 0.18 (-0.02) 0.00 (+0.00)
1.8 list_importer 53 (-7) 0 (0) 6.36 (+2.73) 1 (0) 54 (+6) 0.18 (-0.02) 0.00 (+0.00)
1.9 list_packages 53 (-7) 0 (0) 418.60 (-11.88) 98 (-26) 1149 (+255) 0.18 (-0.02) 0.00 (+0.00)
1.10 list_packages_paginated 53 (-7) 0 (0) 337.13 (-51.38) 116 (-6) 570 (-548) 0.18 (-0.02) 0.00 (+0.00)
1.11 search_purls 57 (-7) 0 (0) 5898.11 (-453.30) 707 (-272) 12473 (-3193) 0.19 (-0.02) 0.00 (+0.00)
1.12 search_exact_purl 57 (-6) 0 (0) 6.96 (-3.84) 2 (0) 30 (-33) 0.19 (-0.02) 0.00 (+0.00)
1.13 list_products 57 (-6) 0 (0) 13.39 (-3.30) 3 (+1) 85 (+18) 0.19 (-0.02) 0.00 (+0.00)
1.14 list_sboms 57 (-6) 0 (0) 1475.32 (+156.55) 705 (-37) 2180 (-284) 0.19 (-0.02) 0.00 (+0.00)
1.15 list_sboms_paginated 56 (-7) 0 (0) 4468.79 (+2259.45) 503 (-154) 12999 (+7391) 0.19 (-0.02) 0.00 (+0.00)
1.16 get_analysis_status 55 (-7) 0 (0) 5.05 (-4.06) 1 (0) 55 (+1) 0.18 (-0.02) 0.00 (+0.00)
1.17 get_analysis_latest_cpe 55 (-7) 0 (0) 253.89 (+39.62) 83 (+47) 530 (+57) 0.18 (-0.02) 0.00 (+0.00)
1.18 get_sbom[sha256:720e4451…a939656247164447] 55 (-7) 0 (0) 2123.40 (+947.95) 438 (+240) 6798 (+1501) 0.18 (-0.02) 0.00 (+0.00)
1.19 sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 55 (-7) 0 (0) 92.11 (+23.72) 19 (+4) 320 (+123) 0.18 (-0.02) 0.00 (+0.00)
1.20 get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 55 (-7) 0 (0) 7520.13 (-162.37) 4678 (+966) 13223 (+940) 0.18 (-0.02) 0.00 (+0.00)
1.21 post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 55 (-5) 0 (0) 815.93 (-41.11) 232 (+64) 1511 (-79) 0.18 (-0.02) 0.00 (+0.00)
1.22 get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 55 (-5) 0 (0) 861.24 (+6.04) 149 (-127) 2091 (-916) 0.18 (-0.02) 0.00 (+0.00)
RestAPIUserSlow
2.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
2.1 search_licenses 1 (0) 0 (0) 96317.00 (+18673.00) 96317 (+18673) 96317 (+18673) 0.00 (+0.00) 0.00 (+0.00)
2.2 search_sboms_by_license 1 (0) 0 (0) 81136.00 (+26196.00) 81136 (+26196) 81136 (+26196) 0.00 (+0.00) 0.00 (+0.00)
2.3 search_purls_by_license 1 (0) 0 (0) 138477.00 (-43878.00) 138477 (-43878) 138477 (-43878) 0.00 (+0.00) 0.00 (+0.00)
Aggregated 1,260 (-150) 0 (0) 1454.82 (+155.22) 1 (0) 138477 (-43878) 4.20 (-0.50) 0.00 (+0.00)

Scenario Metrics

Scenario # Users # Times Run Average (ms) Min (ms) Max (ms) Scenarios/s Iterations
WebsiteUser 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser 5 (0) 55 (-5) 27263.35 (+2771.23) 16576 (+1266) 38119 (+5257) 0.18 (-0.02) 11.00 (-1.00)
RestAPIUserSlow 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
Aggregated 5 (0) 55 (-5) 27263.35 (+2771.23) 16576 (+1266) 38119 (+5257) 0.18 (-0.02) 11.00 (-1.00)

User Metrics