Goose Attack Report

Users: 7

Target Host: http://trustify:8080/

goose v0.18.0

Plan overview

Action Started Stopped Elapsed Users
Increasing25-11-10 02:18:3225-11-10 02:18:3900:00:070 → 7
Maintaining25-11-10 02:18:3925-11-10 02:23:3900:05:007
Decreasing25-11-10 02:23:3925-11-10 02:23:5600:00:170 ← 7

Request Metrics

Method Name # Requests # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
DELETE delete_sbom_from_pool_sequential[100 SBOMs] 35 (-1) 0 1570.97 (-7.28) 309 (+71) 3863 (-1146) 0.12 (-0.00) 0.00 (+0.00)
GET get_advisory_by_doc_id 15 (+1) 0 12.93 (-17.42) 4 (+1) 34 (-54) 0.05 (+0.00) 0.00 (+0.00)
GET get_analysis_latest_cpe 15 (0) 0 249.20 (-7.53) 106 (-54) 396 (-31) 0.05 (+0.00) 0.00 (+0.00)
GET get_analysis_status 15 (0) 0 10.73 (-1.73) 2 (0) 51 (-7) 0.05 (+0.00) 0.00 (+0.00)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 15 (+1) 0 718.67 (-289.69) 330 (+32) 1211 (-560) 0.05 (+0.00) 0.00 (+0.00)
GET get_sbom[sha256:720e4451…a939656247164447] 15 (0) 0 914.53 (-658.67) 212 (-463) 2177 (-2422) 0.05 (+0.00) 0.00 (+0.00)
GET get_sbom_advisories[sha256:87fd06bc…9d7b8304c0d2d9b2] 15 (0) 0 54333.73 (-4957.00) 44863 (-7251) 62382 (-7060) 0.05 (+0.00) 0.00 (+0.00)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 15 (+1) 0 8909.47 (+2196.97) 7233 (+5002) 12795 (+2185) 0.05 (+0.00) 0.00 (+0.00)
GET list_advisory 15 (+1) 0 646.27 (+146.55) 166 (-4) 1119 (+398) 0.05 (+0.00) 0.00 (+0.00)
GET list_advisory_paginated 15 (+1) 0 530.73 (+41.45) 125 (-68) 703 (-23) 0.05 (+0.00) 0.00 (+0.00)
GET list_importer 16 (+1) 0 7.94 (+3.80) 2 (0) 84 (+74) 0.05 (+0.00) 0.00 (+0.00)
GET list_organizations 15 (+1) 0 20.40 (+2.83) 1 (-1) 100 (+54) 0.05 (+0.00) 0.00 (+0.00)
GET list_packages 16 (+1) 0 426.94 (-20.53) 144 (-23) 871 (+175) 0.05 (+0.00) 0.00 (+0.00)
GET list_packages_paginated 16 (+1) 0 390.25 (+3.65) 134 (+65) 541 (+22) 0.05 (+0.00) 0.00 (+0.00)
GET list_products 15 (0) 0 11.13 (-2.80) 6 (+1) 42 (-32) 0.05 (+0.00) 0.00 (+0.00)
GET list_sboms 15 (0) 0 971.60 (-375.93) 631 (-127) 2503 (+213) 0.05 (+0.00) 0.00 (+0.00)
GET list_sboms_paginated 15 (0) 0 3816.67 (-1451.60) 1206 (+808) 10411 (-4459) 0.05 (+0.00) 0.00 (+0.00)
GET list_vulnerabilities 16 (+1) 0 423.81 (+47.68) 50 (-134) 707 (+15) 0.05 (+0.00) 0.00 (+0.00)
GET list_vulnerabilities_paginated 16 (+1) 0 242.62 (+38.56) 59 (-29) 355 (-15) 0.05 (+0.00) 0.00 (+0.00)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 15 (+1) 0 72.60 (+19.96) 8 (+1) 386 (+202) 0.05 (+0.00) 0.00 (+0.00)
GET search_advisory 15 (+1) 0 1412.47 (+46.61) 262 (+22) 2480 (-91) 0.05 (+0.00) 0.00 (+0.00)
GET search_exact_purl 15 (0) 0 28.87 (+5.27) 6 (+1) 70 (+20) 0.05 (+0.00) 0.00 (+0.00)
GET search_licenses 2 (+1) 0 56773.50 (-23519.50) 31247 (-49046) 82300 (+2007) 0.01 (+0.00) 0.00 (+0.00)
GET search_purls 20 (+1) 0 20329.75 (+970.80) 12925 (+623) 24269 (-4623) 0.07 (+0.00) 0.00 (+0.00)
GET search_purls_by_license 1 (0) 0 169281.00 (-1397.00) 169281 (-1397) 169281 (-1397) 0.00 (+0.00) 0.00 (+0.00)
GET search_sboms_by_license 1 (0) 0 36231.00 (-19790.00) 36231 (-19790) 36231 (-19790) 0.00 (+0.00) 0.00 (+0.00)
POST get_recommendations[pkg:rpm/redhat/…e-metrics@2.13.8] 15 (+1) 0 45.07 (+13.50) 6 (+2) 179 (+62) 0.05 (+0.00) 0.00 (+0.00)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 15 (+1) 0 622.67 (-22.90) 125 (+54) 1565 (+358) 0.05 (+0.00) 0.00 (+0.00)
Aggregated 409 (+16) 0 4656.28 (-233.41) 1 (-1) 169281 (-1397) 1.36 (+0.05) 0.00 (+0.00)

Response Time Metrics

Method Name 50%ile (ms) 60%ile (ms) 70%ile (ms) 80%ile (ms) 90%ile (ms) 95%ile (ms) 99%ile (ms) 100%ile (ms)
DELETE delete_sbom_from_pool_sequential[100 SBOMs] 2,000 (+1,000) 2,000 (0) 2,000 (0) 2,000 (0) 3,000 (0) 3,000 (0) 3,863 (-1,137) 3,863 (-1,137)
GET get_advisory_by_doc_id 11 (-3) 14 (-1) 15 (-20) 16 (-41) 24 (-52) 24 (-52) 34 (-54) 34 (-54)
GET get_analysis_latest_cpe 210 (-10) 230 (+10) 280 (0) 310 (0) 390 (0) 390 (0) 396 (-31) 396 (-31)
GET get_analysis_status 3 (-3) 4 (-4) 8 (-1) 10 (0) 51 (-2) 51 (-2) 51 (-7) 51 (-7)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 700 (+100) 800 (-200) 800 (-971) 800 (-971) 900 (-871) 900 (-871) 1,000 (-771) 1,000 (-771)
GET get_sbom[sha256:720e4451…a939656247164447] 600 (-400) 700 (-300) 900 (-1,100) 2,000 (0) 2,000 (-1,000) 2,000 (-1,000) 2,000 (-2,599) 2,000 (-2,599)
GET get_sbom_advisories[sha256:87fd06bc…9d7b8304c0d2d9b2] 55,000 (-5,000) 57,000 (-3,000) 59,000 (-2,000) 60,000 (-1,000) 61,000 (-7,000) 61,000 (-7,000) 62,000 (-7,000) 62,000 (-7,000)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 8,000 (+1,000) 8,000 (+1,000) 9,000 (+1,000) 11,000 (+3,000) 12,795 (+4,795) 12,795 (+4,795) 12,795 (+2,185) 12,795 (+2,185)
GET list_advisory 600 (+100) 600 (+100) 600 (+100) 700 (+100) 1,000 (+400) 1,000 (+400) 1,000 (+300) 1,000 (+300)
GET list_advisory_paginated 600 (+120) 600 (+110) 700 (+200) 700 (+200) 700 (+100) 700 (+100) 700 (0) 700 (0)
GET list_importer 3 (0) 3 (0) 3 (-2) 4 (-2) 4 (-4) 5 (-3) 84 (+74) 84 (+74)
GET list_organizations 6 (-2) 6 (-3) 21 (-15) 25 (-12) 80 (+38) 80 (+38) 100 (+54) 100 (+54)
GET list_packages 460 (+50) 480 (-10) 500 (0) 500 (-100) 500 (-100) 600 (0) 871 (+175) 871 (+175)
GET list_packages_paginated 420 (-50) 470 (-10) 480 (-10) 490 (0) 490 (-10) 500 (0) 500 (0) 500 (0)
GET list_products 9 (0) 9 (-1) 9 (-5) 12 (-3) 15 (-4) 15 (-4) 42 (-32) 42 (-32)
GET list_sboms 700 (-300) 700 (-300) 900 (-100) 1,000 (-1,000) 2,000 (0) 2,000 (0) 2,503 (+503) 2,503 (+503)
GET list_sboms_paginated 2,000 (-2,000) 2,000 (-4,000) 6,000 (-2,000) 8,000 (-1,000) 9,000 (-3,000) 9,000 (-3,000) 10,000 (-4,870) 10,000 (-4,870)
GET list_vulnerabilities 440 (+90) 490 (+130) 490 (+130) 600 (+230) 700 (+8) 700 (+8) 700 (+8) 700 (+8)
GET list_vulnerabilities_paginated 220 (+30) 300 (+100) 310 (+100) 320 (+110) 340 (-20) 340 (-20) 355 (-15) 355 (-15)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 30 (+7) 31 (-3) 59 (-6) 73 (-27) 260 (+150) 260 (+150) 386 (+206) 386 (+206)
GET search_advisory 2,000 (+1,000) 2,000 (+1,000) 2,000 (0) 2,000 (0) 2,000 (-571) 2,000 (-571) 2,000 (-571) 2,000 (-571)
GET search_exact_purl 11 (-7) 14 (-5) 68 (+26) 68 (+26) 69 (+26) 69 (+26) 70 (+20) 70 (+20)
GET search_licenses 31,247 (-49,046) 31,247 (-49,046) 31,247 (-49,046) 82,000 (+1,707) 82,000 (+1,707) 82,000 (+1,707) 82,000 (+1,707) 82,000 (+1,707)
GET search_purls 21,000 (+1,000) 21,000 (0) 21,000 (-1,000) 21,000 (-2,000) 24,000 (+1,000) 24,000 (0) 24,000 (-4,892) 24,000 (-4,892)
GET search_purls_by_license 169,281 (-1,397) 169,281 (-1,397) 169,281 (-1,397) 169,281 (-1,397) 169,281 (-1,397) 169,281 (-1,397) 169,281 (-1,397) 169,281 (-1,397)
GET search_sboms_by_license 36,231 (-19,790) 36,231 (-19,790) 36,231 (-19,790) 36,231 (-19,790) 36,231 (-19,790) 36,231 (-19,790) 36,231 (-19,790) 36,231 (-19,790)
POST get_recommendations[pkg:rpm/redhat/…e-metrics@2.13.8] 42 (+30) 43 (+29) 55 (+35) 56 (+33) 83 (-17) 83 (-17) 179 (+62) 179 (+62)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 600 (+240) 600 (-100) 800 (-200) 900 (-100) 1,000 (0) 1,000 (0) 1,565 (+565) 1,565 (+565)
Aggregated 480 (+10) 600 (0) 900 (-100) 2,000 (0) 12,000 (+1,000) 24,000 (+1,000) 60,000 (-2,000) 169,000 (-1,678)

Status Code Metrics

Method Name Status Codes
DELETE delete_sbom_from_pool_sequential[100 SBOMs] 35 [200]
GET get_advisory_by_doc_id 15 [200]
GET get_analysis_latest_cpe 15 [200]
GET get_analysis_status 15 [200]
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 15 [200]
GET get_sbom[sha256:720e4451…a939656247164447] 15 [200]
GET get_sbom_advisories[sha256:87fd06bc…9d7b8304c0d2d9b2] 15 [200]
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 15 [200]
GET list_advisory 15 [200]
GET list_advisory_paginated 15 [200]
GET list_importer 16 [200]
GET list_organizations 15 [200]
GET list_packages 16 [200]
GET list_packages_paginated 16 [200]
GET list_products 15 [200]
GET list_sboms 15 [200]
GET list_sboms_paginated 15 [200]
GET list_vulnerabilities 16 [200]
GET list_vulnerabilities_paginated 16 [200]
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 15 [200]
GET search_advisory 15 [200]
GET search_exact_purl 15 [200]
GET search_licenses 2 [200]
GET search_purls 20 [200]
GET search_purls_by_license 1 [200]
GET search_sboms_by_license 1 [200]
POST get_recommendations[pkg:rpm/redhat/…e-metrics@2.13.8] 15 [200]
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 15 [200]
Aggregated 409 [200]

Transaction Metrics

Transaction # Times Run # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
WebsiteUser
0.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.1 website_index 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.2 website_openapi 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.3 website_sboms 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.4 website_packages 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.5 website_advisories 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.6 website_importers 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser
1.0 logon 15 (+1) 0 (0) 16.60 (+2.74) 11 (+3) 26 (+6) 0.05 (+0.00) 0.00 (+0.00)
1.1 list_organizations 15 (+1) 0 (0) 20.60 (+2.74) 1 (-1) 101 (+53) 0.05 (+0.00) 0.00 (+0.00)
1.2 list_advisory 15 (+1) 0 (0) 646.47 (+146.61) 166 (-4) 1119 (+398) 0.05 (+0.00) 0.00 (+0.00)
1.3 list_advisory_paginated 15 (+1) 0 (0) 530.73 (+41.45) 125 (-68) 703 (-23) 0.05 (+0.00) 0.00 (+0.00)
1.4 get_advisory_by_doc_id 15 (+1) 0 (0) 13.00 (-17.43) 4 (+1) 34 (-54) 0.05 (+0.00) 0.00 (+0.00)
1.5 search_advisory 15 (+1) 0 (0) 1412.53 (+46.68) 262 (+22) 2480 (-91) 0.05 (+0.00) 0.00 (+0.00)
1.6 list_vulnerabilities 16 (+1) 0 (0) 423.81 (+47.68) 50 (-134) 707 (+15) 0.05 (+0.00) 0.00 (+0.00)
1.7 list_vulnerabilities_paginated 16 (+1) 0 (0) 242.62 (+38.49) 59 (-29) 355 (-15) 0.05 (+0.00) 0.00 (+0.00)
1.8 list_importer 16 (+1) 0 (0) 8.00 (+3.87) 2 (0) 85 (+75) 0.05 (+0.00) 0.00 (+0.00)
1.9 list_packages 16 (+1) 0 (0) 426.94 (-20.66) 144 (-23) 871 (+175) 0.05 (+0.00) 0.00 (+0.00)
1.10 list_packages_paginated 16 (+1) 0 (0) 390.25 (+3.58) 134 (+65) 541 (+22) 0.05 (+0.00) 0.00 (+0.00)
1.11 search_purls 20 (+1) 0 (0) 20329.75 (+970.80) 12925 (+623) 24269 (-4623) 0.07 (+0.00) 0.00 (+0.00)
1.12 search_exact_purl 15 (0) 0 (0) 28.93 (+5.27) 6 (+1) 70 (+20) 0.05 (+0.00) 0.00 (+0.00)
1.13 list_products 15 (0) 0 (0) 11.13 (-2.93) 6 (+1) 42 (-32) 0.05 (+0.00) 0.00 (+0.00)
1.14 list_sboms 15 (0) 0 (0) 971.67 (-375.87) 631 (-127) 2503 (+213) 0.05 (+0.00) 0.00 (+0.00)
1.15 list_sboms_paginated 15 (0) 0 (0) 3816.67 (-1451.67) 1206 (+808) 10411 (-4459) 0.05 (+0.00) 0.00 (+0.00)
1.16 get_analysis_status 15 (0) 0 (0) 10.80 (-1.73) 2 (0) 51 (-7) 0.05 (+0.00) 0.00 (+0.00)
1.17 get_analysis_latest_cpe 15 (0) 0 (0) 249.40 (-7.33) 106 (-54) 396 (-31) 0.05 (+0.00) 0.00 (+0.00)
1.18 get_sbom[sha256:720e4451…a939656247164447] 15 (0) 0 (0) 914.53 (-658.80) 212 (-463) 2177 (-2422) 0.05 (+0.00) 0.00 (+0.00)
1.19 get_sbom_advisories[sha256:87fd06bc…9d7b8304c0d2d9b2] 15 (0) 0 (0) 54333.80 (-4957.00) 44863 (-7251) 62382 (-7060) 0.05 (+0.00) 0.00 (+0.00)
1.20 sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 15 (+1) 0 (0) 72.80 (+20.01) 8 (+1) 386 (+202) 0.05 (+0.00) 0.00 (+0.00)
1.21 get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 15 (+1) 0 (0) 8909.53 (+2196.96) 7233 (+5002) 12796 (+2186) 0.05 (+0.00) 0.00 (+0.00)
1.22 post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 15 (+1) 0 (0) 622.73 (-22.84) 126 (+55) 1565 (+358) 0.05 (+0.00) 0.00 (+0.00)
1.23 get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 15 (+1) 0 (0) 718.73 (-289.62) 330 (+32) 1211 (-560) 0.05 (+0.00) 0.00 (+0.00)
1.24 get_recommendations[pkg:rpm/redhat/…e-metrics@2.13.8] 15 (+1) 0 (0) 45.13 (+13.42) 6 (+1) 179 (+62) 0.05 (+0.00) 0.00 (+0.00)
RestAPIUserSlow
2.0 logon 1 (+1) 0 (0) 7.00 (+7.00) 7 (+7) 7 (+7) 0.00 (+0.00) 0.00 (+0.00)
2.1 search_licenses 2 (+1) 0 (0) 56773.50 (-23519.50) 31247 (-49046) 82300 (+2007) 0.01 (+0.00) 0.00 (+0.00)
2.2 search_sboms_by_license 1 (0) 0 (0) 36231.00 (-19791.00) 36231 (-19791) 36231 (-19791) 0.00 (+0.00) 0.00 (+0.00)
2.3 search_purls_by_license 1 (0) 0 (0) 169281.00 (-1397.00) 169281 (-1397) 169281 (-1397) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUserDelete
3.0 logon 35 (0) 0 (0) 11.00 (+0.40) 6 (0) 19 (0) 0.12 (+0.00) 0.00 (+0.00)
3.1 delete_sbom_from_pool_sequential[100 SBOMs] 35 (-1) 0 (0) 1571.23 (-7.19) 310 (+72) 3863 (-1146) 0.12 (-0.00) 0.00 (+0.00)
Aggregated 460 (+18) 0 (0) 4140.04 (-207.58) 1 (-1) 169281 (-1397) 1.53 (+0.06) 0.00 (+0.00)

Scenario Metrics

Scenario # Users # Times Run Average (ms) Min (ms) Max (ms) Scenarios/s Iterations
WebsiteUser 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser 5 (0) 15 (+1) 93760.00 (-4964.43) 81294 (-3739) 106573 (-738) 0.05 (+0.00) 3.00 (+0.20)
RestAPIUserSlow 1 (+1) 1 (+1) 287822.00 (+287822.00) 287822 (+287822) 287822 (+287822) 0.00 (+0.00) 1.00 (+1.00)
RestAPIUserDelete 1 (0) 35 (0) 8659.91 (+107.43) 7283 (+676) 10651 (-502) 0.12 (+0.00) 35.00 (+0.00)
Aggregated 7 (+1) 51 (+2) 39163.12 (+4847.22) 7283 (+676) 287822 (+180511) 0.17 (+0.01) 39.00 (+1.20)

User Metrics