Goose Attack Report

Users: 7

Target Host: http://trustify:8080/

goose v0.18.0

Plan overview

Action Started Stopped Elapsed Users
Increasing25-11-07 02:15:5025-11-07 02:15:5700:00:070 → 7
Maintaining25-11-07 02:15:5725-11-07 02:20:5700:05:007
Decreasing25-11-07 02:20:5725-11-07 02:21:0100:00:040 ← 7

Request Metrics

Method Name # Requests # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
DELETE delete_sbom_from_pool_sequential[100 SBOMs] 35 (-1) 0 1657.31 (+262.90) 230 (-335) 5569 (+2708) 0.12 (-0.00) 0.00 (+0.00)
GET get_advisory_by_doc_id 15 (+11) 0 24.47 (+5.97) 3 (-1) 154 (+128) 0.05 (+0.04) 0.00 (+0.00)
GET get_analysis_latest_cpe 15 (+10) 0 233.40 (-17.40) 113 (+18) 385 (+4) 0.05 (+0.03) 0.00 (+0.00)
GET get_analysis_status 15 (+10) 0 8.80 (+3.40) 1 (-2) 56 (+47) 0.05 (+0.03) 0.00 (+0.00)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 15 (+11) 0 780.80 (-164.45) 177 (-53) 1380 (+188) 0.05 (+0.04) 0.00 (+0.00)
GET get_sbom[sha256:720e4451…a939656247164447] 15 (+6) 0 1583.20 (+353.42) 434 (+15) 3759 (+1358) 0.05 (+0.02) 0.00 (+0.00)
GET get_sbom_advisories[sha256:87fd06bc…9d7b8304c0d2d9b2] 15 (+6) 0 56914.73 (-187193.27) 49285 (-155317) 70204 (-229797) 0.05 (+0.02) 0.00 (-0.00)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 15 (+11) 0 6236.73 (-397.52) 3109 (-1689) 8506 (+1130) 0.05 (+0.04) 0.00 (+0.00)
GET list_advisory 15 (+11) 0 616.33 (+187.58) 181 (-44) 1227 (+728) 0.05 (+0.04) 0.00 (+0.00)
GET list_advisory_paginated 15 (+11) 0 474.40 (-183.85) 125 (-409) 864 (+160) 0.05 (+0.04) 0.00 (+0.00)
GET list_importer 16 (+11) 0 3.69 (-0.31) 1 (0) 11 (+4) 0.05 (+0.04) 0.00 (+0.00)
GET list_organizations 15 (+11) 0 25.13 (+19.88) 2 (+1) 61 (+52) 0.05 (+0.04) 0.00 (+0.00)
GET list_packages 16 (+11) 0 472.19 (+69.79) 114 (-17) 1160 (+593) 0.05 (+0.04) 0.00 (+0.00)
GET list_packages_paginated 16 (+11) 0 310.00 (-44.20) 102 (-70) 483 (-71) 0.05 (+0.04) 0.00 (+0.00)
GET list_products 15 (+10) 0 11.67 (-7.33) 5 (-1) 55 (0) 0.05 (+0.03) 0.00 (+0.00)
GET list_sboms 15 (+10) 0 1300.00 (-587.20) 548 (+275) 3400 (+139) 0.05 (+0.03) 0.00 (+0.00)
GET list_sboms_paginated 15 (+10) 0 4506.40 (+3094.80) 1115 (+692) 12713 (+8734) 0.05 (+0.03) 0.00 (+0.00)
GET list_vulnerabilities 16 (+11) 0 359.94 (-6.26) 66 (-83) 677 (+146) 0.05 (+0.04) 0.00 (+0.00)
GET list_vulnerabilities_paginated 16 (+11) 0 218.50 (-8.90) 69 (-31) 394 (+43) 0.05 (+0.04) 0.00 (+0.00)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 15 (+11) 0 85.27 (+56.77) 10 (+6) 195 (+138) 0.05 (+0.04) 0.00 (+0.00)
GET search_advisory 16 (+11) 0 1229.12 (-415.68) 224 (+100) 3696 (+961) 0.05 (+0.04) 0.00 (+0.00)
GET search_exact_purl 15 (+10) 0 27.07 (+10.67) 6 (+2) 78 (+26) 0.05 (+0.03) 0.00 (+0.00)
GET search_licenses 1 (0) 0 89070.00 (-29070.00) 89070 (-29070) 89070 (-29070) 0.00 (+0.00) 0.00 (+0.00)
GET search_purls 20 (+15) 0 19478.65 (+8996.45) 8420 (+93) 24857 (+13600) 0.07 (+0.05) 0.00 (+0.00)
GET search_purls_by_license 1 (0) 0 156325.00 (-54695.00) 156325 (-54695) 156325 (-54695) 0.00 (+0.00) 0.00 (+0.00)
GET search_sboms_by_license 1 (0) 0 60233.00 (-22749.00) 60233 (-22749) 60233 (-22749) 0.00 (+0.00) 0.00 (+0.00)
POST get_recommendations[pkg:rpm/redhat/…e-metrics@2.13.8] 15 (+11) 0 23.80 (+14.30) 5 (0) 70 (+57) 0.05 (+0.04) 0.00 (+0.00)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 15 (+11) 0 511.20 (+137.95) 195 (+71) 1031 (+490) 0.05 (+0.04) 0.00 (+0.00)
Aggregated 409 (+251) 0 4633.63 (-13038.18) 1 (0) 156325 (-143676) 1.36 (+0.84) 0.00 (-0.00)

Response Time Metrics

Method Name 50%ile (ms) 60%ile (ms) 70%ile (ms) 80%ile (ms) 90%ile (ms) 95%ile (ms) 99%ile (ms) 100%ile (ms)
DELETE delete_sbom_from_pool_sequential[100 SBOMs] 2,000 (+1,000) 2,000 (+1,000) 2,000 (0) 2,000 (0) 3,000 (+1,000) 3,000 (+1,000) 5,569 (+2,708) 5,569 (+2,708)
GET get_advisory_by_doc_id 11 (-8) 12 (-7) 17 (-8) 18 (-7) 56 (+30) 56 (+30) 150 (+124) 150 (+124)
GET get_analysis_latest_cpe 210 (-60) 220 (-50) 280 (0) 280 (0) 380 (0) 380 (0) 385 (+5) 385 (+5)
GET get_analysis_status 4 (-1) 6 (+1) 8 (+2) 8 (+2) 13 (+4) 13 (+4) 56 (+47) 56 (+47)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 600 (-400) 700 (-300) 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (0)
GET get_sbom[sha256:720e4451…a939656247164447] 1,000 (0) 1,000 (0) 2,000 (+1,000) 3,000 (+2,000) 3,759 (+2,759) 3,759 (+1,759) 3,759 (+1,759) 3,759 (+1,759)
GET get_sbom_advisories[sha256:87fd06bc…9d7b8304c0d2d9b2] 57,000 (-207,000) 59,000 (-205,000) 61,000 (-203,000) 61,000 (-203,000) 63,000 (-211,000) 63,000 (-237,000) 70,000 (-230,000) 70,000 (-230,000)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 6,000 (-1,000) 7,000 (0) 7,000 (0) 7,000 (0) 8,000 (+1,000) 8,000 (+1,000) 8,506 (+1,506) 8,506 (+1,506)
GET list_advisory 600 (+110) 700 (+210) 700 (+201) 900 (+401) 1,000 (+501) 1,000 (+501) 1,000 (+501) 1,000 (+501)
GET list_advisory_paginated 490 (-210) 500 (-200) 600 (-100) 700 (0) 800 (+100) 800 (+100) 864 (+164) 864 (+164)
GET list_importer 3 (-1) 3 (-1) 3 (-2) 5 (0) 6 (-1) 7 (0) 11 (+4) 11 (+4)
GET list_organizations 13 (+8) 42 (+37) 45 (+39) 46 (+40) 56 (+47) 56 (+47) 61 (+52) 61 (+52)
GET list_packages 500 (+90) 600 (+190) 600 (+100) 600 (+100) 600 (+33) 800 (+233) 1,000 (+433) 1,000 (+433)
GET list_packages_paginated 320 (-60) 380 (0) 380 (-50) 410 (-20) 420 (-134) 470 (-84) 480 (-74) 480 (-74)
GET list_products 8 (-2) 9 (-1) 11 (-7) 11 (-7) 13 (-42) 13 (-42) 55 (0) 55 (0)
GET list_sboms 900 (-1,100) 1,000 (-1,000) 1,000 (-2,000) 2,000 (-1,000) 3,000 (0) 3,000 (0) 3,000 (0) 3,000 (0)
GET list_sboms_paginated 4,000 (+3,100) 4,000 (+3,100) 6,000 (+5,000) 8,000 (+7,000) 8,000 (+4,021) 8,000 (+4,021) 12,713 (+8,734) 12,713 (+8,734)
GET list_vulnerabilities 300 (-140) 420 (-20) 600 (+100) 600 (+100) 600 (+100) 600 (+100) 677 (+177) 677 (+177)
GET list_vulnerabilities_paginated 230 (-50) 280 (0) 280 (0) 290 (+10) 310 (-40) 320 (-30) 390 (+40) 390 (+40)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 58 (+32) 61 (+35) 120 (+93) 170 (+143) 190 (+133) 190 (+133) 195 (+138) 195 (+138)
GET search_advisory 1,000 (-1,000) 1,000 (-1,000) 1,000 (-1,000) 1,000 (-1,000) 2,000 (-735) 3,000 (+265) 3,696 (+961) 3,696 (+961)
GET search_exact_purl 31 (+23) 36 (+28) 39 (+28) 39 (+28) 40 (-12) 40 (-12) 78 (+26) 78 (+26)
GET search_licenses 89,070 (-29,070) 89,070 (-29,070) 89,070 (-29,070) 89,070 (-29,070) 89,070 (-29,070) 89,070 (-29,070) 89,070 (-29,070) 89,070 (-29,070)
GET search_purls 20,000 (+9,000) 20,000 (+9,000) 21,000 (+10,000) 23,000 (+12,000) 24,857 (+13,857) 24,857 (+13,857) 24,857 (+13,857) 24,857 (+13,857)
GET search_purls_by_license 156,325 (-54,695) 156,325 (-54,695) 156,325 (-54,695) 156,325 (-54,695) 156,325 (-54,695) 156,325 (-54,695) 156,325 (-54,695) 156,325 (-54,695)
GET search_sboms_by_license 60,233 (-22,749) 60,233 (-22,749) 60,233 (-22,749) 60,233 (-22,749) 60,233 (-22,749) 60,233 (-22,749) 60,233 (-22,749) 60,233 (-22,749)
POST get_recommendations[pkg:rpm/redhat/…e-metrics@2.13.8] 13 (+4) 14 (+5) 17 (+6) 48 (+37) 66 (+53) 66 (+53) 70 (+57) 70 (+57)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 370 (-30) 600 (+200) 700 (+270) 800 (+370) 1,000 (+500) 1,000 (+500) 1,000 (+500) 1,000 (+500)
Aggregated 380 (-320) 600 (-400) 1,000 (0) 2,000 (0) 8,000 (0) 25,000 (-181,000) 61,000 (-203,000) 156,000 (-144,000)

Status Code Metrics

Method Name Status Codes
DELETE delete_sbom_from_pool_sequential[100 SBOMs] 35 [200]
GET get_advisory_by_doc_id 15 [200]
GET get_analysis_latest_cpe 15 [200]
GET get_analysis_status 15 [200]
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 15 [200]
GET get_sbom[sha256:720e4451…a939656247164447] 15 [200]
GET get_sbom_advisories[sha256:87fd06bc…9d7b8304c0d2d9b2] 15 [200]
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 15 [200]
GET list_advisory 15 [200]
GET list_advisory_paginated 15 [200]
GET list_importer 16 [200]
GET list_organizations 15 [200]
GET list_packages 16 [200]
GET list_packages_paginated 16 [200]
GET list_products 15 [200]
GET list_sboms 15 [200]
GET list_sboms_paginated 15 [200]
GET list_vulnerabilities 16 [200]
GET list_vulnerabilities_paginated 16 [200]
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 15 [200]
GET search_advisory 16 [200]
GET search_exact_purl 15 [200]
GET search_licenses 1 [200]
GET search_purls 20 [200]
GET search_purls_by_license 1 [200]
GET search_sboms_by_license 1 [200]
POST get_recommendations[pkg:rpm/redhat/…e-metrics@2.13.8] 15 [200]
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 15 [200]
Aggregated 409 [200]

Transaction Metrics

Transaction # Times Run # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
WebsiteUser
0.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.1 website_index 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.2 website_openapi 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.3 website_sboms 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.4 website_packages 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.5 website_advisories 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.6 website_importers 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser
1.0 logon 15 (+11) 0 (0) 15.00 (+2.25) 8 (+2) 29 (+13) 0.05 (+0.04) 0.00 (+0.00)
1.1 list_organizations 15 (+11) 0 (0) 25.27 (+20.02) 2 (+1) 61 (+52) 0.05 (+0.04) 0.00 (+0.00)
1.2 list_advisory 15 (+11) 0 (0) 616.40 (+187.65) 181 (-44) 1227 (+728) 0.05 (+0.04) 0.00 (+0.00)
1.3 list_advisory_paginated 15 (+11) 0 (0) 474.40 (-183.85) 125 (-409) 864 (+160) 0.05 (+0.04) 0.00 (+0.00)
1.4 get_advisory_by_doc_id 15 (+11) 0 (0) 24.67 (+6.17) 3 (-1) 154 (+128) 0.05 (+0.04) 0.00 (+0.00)
1.5 search_advisory 16 (+11) 0 (0) 1229.12 (-415.68) 224 (+100) 3696 (+961) 0.05 (+0.04) 0.00 (+0.00)
1.6 list_vulnerabilities 16 (+11) 0 (0) 360.00 (-6.20) 66 (-83) 677 (+146) 0.05 (+0.04) 0.00 (+0.00)
1.7 list_vulnerabilities_paginated 16 (+11) 0 (0) 218.50 (-8.90) 69 (-31) 394 (+43) 0.05 (+0.04) 0.00 (+0.00)
1.8 list_importer 16 (+11) 0 (0) 3.75 (-0.25) 1 (0) 11 (+4) 0.05 (+0.04) 0.00 (+0.00)
1.9 list_packages 16 (+11) 0 (0) 472.25 (+69.85) 114 (-17) 1160 (+593) 0.05 (+0.04) 0.00 (+0.00)
1.10 list_packages_paginated 16 (+11) 0 (0) 310.12 (-44.08) 102 (-70) 483 (-71) 0.05 (+0.04) 0.00 (+0.00)
1.11 search_purls 20 (+15) 0 (0) 19478.65 (+8996.45) 8420 (+93) 24857 (+13600) 0.07 (+0.05) 0.00 (+0.00)
1.12 search_exact_purl 15 (+10) 0 (0) 27.07 (+10.67) 6 (+2) 78 (+26) 0.05 (+0.03) 0.00 (+0.00)
1.13 list_products 15 (+10) 0 (0) 11.67 (-7.33) 5 (-1) 55 (0) 0.05 (+0.03) 0.00 (+0.00)
1.14 list_sboms 15 (+10) 0 (0) 1300.07 (-587.13) 548 (+275) 3400 (+139) 0.05 (+0.03) 0.00 (+0.00)
1.15 list_sboms_paginated 15 (+10) 0 (0) 4506.40 (+3094.60) 1115 (+692) 12713 (+8734) 0.05 (+0.03) 0.00 (+0.00)
1.16 get_analysis_status 15 (+10) 0 (0) 8.93 (+3.53) 2 (-1) 56 (+47) 0.05 (+0.03) 0.00 (+0.00)
1.17 get_analysis_latest_cpe 15 (+10) 0 (0) 233.40 (-17.40) 113 (+18) 385 (+4) 0.05 (+0.03) 0.00 (+0.00)
1.18 get_sbom[sha256:720e4451…a939656247164447] 15 (+6) 0 (0) 1583.20 (+353.31) 434 (+14) 3759 (+1358) 0.05 (+0.02) 0.00 (+0.00)
1.19 get_sbom_advisories[sha256:87fd06bc…9d7b8304c0d2d9b2] 15 (+6) 0 (0) 56914.80 (-187193.42) 49285 (-155317) 70204 (-229797) 0.05 (+0.02) 0.00 (+0.00)
1.20 sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 15 (+11) 0 (0) 85.40 (+56.90) 10 (+6) 195 (+138) 0.05 (+0.04) 0.00 (+0.00)
1.21 get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 15 (+11) 0 (0) 6236.80 (-397.45) 3109 (-1689) 8506 (+1130) 0.05 (+0.04) 0.00 (+0.00)
1.22 post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 15 (+11) 0 (0) 511.27 (+137.77) 195 (+71) 1031 (+489) 0.05 (+0.04) 0.00 (+0.00)
1.23 get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 15 (+11) 0 (0) 780.87 (-164.38) 177 (-53) 1380 (+188) 0.05 (+0.04) 0.00 (+0.00)
1.24 get_recommendations[pkg:rpm/redhat/…e-metrics@2.13.8] 15 (+11) 0 (0) 23.93 (+14.43) 5 (0) 70 (+57) 0.05 (+0.04) 0.00 (+0.00)
RestAPIUserSlow
2.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
2.1 search_licenses 1 (0) 0 (0) 89070.00 (-29070.00) 89070 (-29070) 89070 (-29070) 0.00 (+0.00) 0.00 (+0.00)
2.2 search_sboms_by_license 1 (0) 0 (0) 60233.00 (-22749.00) 60233 (-22749) 60233 (-22749) 0.00 (+0.00) 0.00 (+0.00)
2.3 search_purls_by_license 1 (0) 0 (0) 156325.00 (-54695.00) 156325 (-54695) 156325 (-54695) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUserDelete
3.0 logon 34 (-2) 0 (0) 9.68 (-1.32) 6 (0) 20 (-1) 0.11 (-0.01) 0.00 (+0.00)
3.1 delete_sbom_from_pool_sequential[100 SBOMs] 35 (-1) 0 (0) 1657.49 (+262.71) 230 (-335) 5570 (+2708) 0.12 (-0.00) 0.00 (+0.00)
Aggregated 458 (+260) 0 (0) 4137.89 (-9963.85) 1 (0) 156325 (-143676) 1.53 (+0.87) 0.00 (+0.00)

Scenario Metrics

Scenario # Users # Times Run Average (ms) Min (ms) Max (ms) Scenarios/s Iterations
WebsiteUser 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser 5 (+1) 15 (+11) 94805.20 (-186276.55) 75231 (-202742) 114712 (-172698) 0.05 (+0.04) 3.00 (+2.00)
RestAPIUserSlow 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUserDelete 1 (0) 34 (-2) 8767.29 (+408.49) 7130 (+58) 13152 (+2585) 0.11 (-0.01) 34.00 (-2.00)
Aggregated 6 (+1) 49 (+9) 35105.43 (-525.67) 7130 (+58) 114712 (-172698) 0.16 (+0.03) 37.00 (+0.00)

User Metrics