Goose Attack Report

Users: 7

Target Host: http://trustify:8080/

goose v0.18.0

Plan overview

Action Started Stopped Elapsed Users
Increasing25-11-19 02:15:0225-11-19 02:15:0900:00:070 → 7
Maintaining25-11-19 02:15:0925-11-19 02:20:0900:05:007
Decreasing25-11-19 02:20:0925-11-19 02:20:3200:00:230 ← 7

Request Metrics

Method Name # Requests # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
DELETE delete_sbom_from_pool_sequential[100 SBOMs] 35 (+1) 0 1790.17 (-201.98) 303 (-23) 4528 (-534) 0.12 (+0.00) 0.00 (+0.00)
GET download_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 10 (0) 10 17.20 (+5.60) 2 (0) 64 (+9) 0.03 (+0.00) 0.03 (+0.00)
GET get_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 10 (0) 10 17.80 (+10.60) 1 (0) 151 (+130) 0.03 (+0.00) 0.03 (+0.00)
GET get_advisory_by_doc_id 10 (0) 0 10.50 (-9.10) 4 (0) 20 (-49) 0.03 (+0.00) 0.00 (+0.00)
GET get_analysis_latest_cpe 15 (0) 0 249.87 (-107.33) 180 (-3) 466 (-424) 0.05 (+0.00) 0.00 (+0.00)
GET get_analysis_status 15 (0) 0 12.20 (-2.87) 3 (0) 56 (+1) 0.05 (+0.00) 0.00 (+0.00)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 10 (0) 0 601.30 (+13.40) 136 (-14) 1078 (-51) 0.03 (+0.00) 0.00 (+0.00)
GET get_sbom[sha256:720e4451…a939656247164447] 15 (0) 0 1365.87 (-741.93) 453 (+46) 2885 (-5197) 0.05 (+0.00) 0.00 (+0.00)
GET get_sbom_advisories[sha256:87fd06bc…9d7b8304c0d2d9b2] 15 (0) 0 58570.87 (-4053.46) 50908 (-1692) 64626 (-16190) 0.05 (+0.00) 0.00 (+0.00)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 10 (0) 0 8299.50 (-653.90) 2616 (-4613) 12495 (-172) 0.03 (+0.00) 0.00 (+0.00)
GET list_advisory 10 (0) 0 473.10 (-27.20) 225 (+52) 691 (+10) 0.03 (+0.00) 0.00 (+0.00)
GET list_advisory_labels 15 (0) 0 13137.27 (-77.33) 8806 (+1200) 20595 (-2587) 0.05 (+0.00) 0.00 (+0.00)
GET list_advisory_paginated 10 (0) 0 431.90 (-59.70) 168 (-16) 610 (-115) 0.03 (+0.00) 0.00 (+0.00)
GET list_importer 11 (0) 0 3.82 (-0.18) 1 (0) 9 (-8) 0.04 (+0.00) 0.00 (+0.00)
GET list_organizations 10 (0) 0 9.70 (-18.40) 2 (+1) 38 (-65) 0.03 (+0.00) 0.00 (+0.00)
GET list_packages 11 (0) 0 371.82 (-56.73) 191 (+40) 536 (-74) 0.04 (+0.00) 0.00 (+0.00)
GET list_packages_paginated 11 (0) 0 359.45 (-40.73) 126 (-55) 595 (+53) 0.04 (+0.00) 0.00 (+0.00)
GET list_products 15 (0) 0 24.13 (+9.27) 5 (+1) 85 (+40) 0.05 (+0.00) 0.00 (+0.00)
GET list_sboms 15 (0) 0 737.20 (-871.47) 528 (-65) 1112 (-2253) 0.05 (+0.00) 0.00 (+0.00)
GET list_sboms_paginated 15 (0) 0 3308.20 (-5604.67) 1089 (+509) 12520 (-20499) 0.05 (+0.00) 0.00 (+0.00)
GET list_vulnerabilities 11 (0) 0 282.73 (-77.36) 64 (-56) 490 (-160) 0.04 (+0.00) 0.00 (+0.00)
GET list_vulnerabilities_paginated 11 (0) 0 226.27 (+37.45) 76 (+36) 370 (+103) 0.04 (+0.00) 0.00 (+0.00)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 10 (0) 0 96.90 (+38.70) 7 (+2) 194 (+45) 0.03 (+0.00) 0.00 (+0.00)
GET search_advisory 11 (0) 0 957.00 (+180.82) 299 (+34) 1923 (+648) 0.04 (+0.00) 0.00 (+0.00)
GET search_exact_purl 15 (0) 0 25.87 (+3.67) 5 (+2) 52 (-13) 0.05 (+0.00) 0.00 (+0.00)
GET search_licenses 1 (0) 0 109404.00 (-2389.00) 109404 (-2389) 109404 (-2389) 0.00 (+0.00) 0.00 (+0.00)
GET search_purls 15 (0) 0 19505.40 (+12567.07) 13200 (+12008) 24070 (+13893) 0.05 (+0.00) 0.00 (+0.00)
GET search_purls_by_license 1 (0) 0 156727.00 (+14817.00) 156727 (+14817) 156727 (+14817) 0.00 (+0.00) 0.00 (+0.00)
GET search_sboms_by_license 1 (0) 0 58889.00 (-37094.00) 58889 (-37094) 58889 (-37094) 0.00 (+0.00) 0.00 (+0.00)
POST get_recommendations[pkg:rpm/redhat/…e-metrics@2.13.8] 10 (0) 0 42.90 (-42.50) 5 (-1) 99 (-70) 0.03 (+0.00) 0.00 (+0.00)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 10 (0) 0 410.40 (-46.80) 158 (+26) 1060 (+80) 0.03 (+0.00) 0.00 (+0.00)
Aggregated 364 (+1) 20 5412.23 (-70.96) 1 (0) 156727 (+14817) 1.21 (+0.00) 0.07 (+0.00)

Response Time Metrics

Method Name 50%ile (ms) 60%ile (ms) 70%ile (ms) 80%ile (ms) 90%ile (ms) 95%ile (ms) 99%ile (ms) 100%ile (ms)
DELETE delete_sbom_from_pool_sequential[100 SBOMs] 1,000 (-1,000) 2,000 (0) 3,000 (+1,000) 3,000 (0) 3,000 (0) 3,000 (0) 4,528 (-472) 4,528 (-472)
GET download_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 6 (0) 7 (0) 7 (-3) 31 (+20) 41 (+25) 64 (+9) 64 (+9) 64 (+9)
GET get_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 2 (0) 2 (-4) 3 (-7) 5 (-8) 11 (-4) 150 (+129) 150 (+129) 150 (+129)
GET get_advisory_by_doc_id 10 (0) 10 (-1) 14 (0) 14 (-6) 16 (-29) 20 (-49) 20 (-49) 20 (-49)
GET get_analysis_latest_cpe 200 (-140) 230 (-130) 290 (-70) 300 (-70) 310 (-140) 310 (-140) 466 (-424) 466 (-424)
GET get_analysis_status 5 (-1) 5 (-1) 7 (0) 7 (0) 53 (-1) 53 (-1) 56 (+1) 56 (+1)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 600 (+100) 700 (0) 800 (+100) 1,000 (+300) 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (0)
GET get_sbom[sha256:720e4451…a939656247164447] 1,000 (-1,000) 2,000 (0) 2,000 (0) 2,000 (0) 2,885 (-1,115) 2,885 (-1,115) 2,885 (-5,115) 2,885 (-5,115)
GET get_sbom_advisories[sha256:87fd06bc…9d7b8304c0d2d9b2] 61,000 (-2,000) 61,000 (-3,000) 62,000 (-2,000) 63,000 (-1,000) 63,000 (-3,000) 63,000 (-3,000) 64,626 (-16,190) 64,626 (-16,190)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 8,000 (0) 8,000 (0) 8,000 (0) 11,000 (+1,000) 12,000 (+1,000) 12,000 (-667) 12,000 (-667) 12,000 (-667)
GET list_advisory 500 (-100) 600 (0) 600 (-81) 600 (-81) 691 (+10) 691 (+10) 691 (+10) 691 (+10)
GET list_advisory_labels 11,000 (-1,000) 12,000 (0) 15,000 (+1,000) 18,000 (+2,000) 20,000 (-3,000) 20,000 (-3,000) 20,595 (-2,405) 20,595 (-2,405)
GET list_advisory_paginated 460 (-40) 490 (-110) 600 (0) 600 (0) 600 (-100) 600 (-100) 600 (-100) 600 (-100)
GET list_importer 3 (+1) 3 (+1) 5 (0) 6 (+1) 7 (+1) 7 (+1) 9 (-8) 9 (-8)
GET list_organizations 4 (-2) 4 (-6) 6 (-8) 13 (-33) 23 (-65) 38 (-62) 38 (-62) 38 (-62)
GET list_packages 400 (-100) 400 (-200) 490 (-110) 500 (-100) 500 (-100) 500 (-100) 500 (-100) 500 (-100)
GET list_packages_paginated 400 (-20) 430 (-70) 500 (0) 500 (0) 595 (+95) 595 (+95) 595 (+95) 595 (+95)
GET list_products 9 (-2) 11 (-1) 46 (+29) 48 (+28) 51 (+19) 51 (+19) 85 (+40) 85 (+40)
GET list_sboms 700 (-300) 800 (-200) 800 (-200) 800 (-1,200) 1,000 (-2,000) 1,000 (-2,000) 1,000 (-2,000) 1,000 (-2,000)
GET list_sboms_paginated 2,000 (-2,000) 2,000 (-2,000) 3,000 (-12,000) 3,000 (-13,000) 12,000 (-12,000) 12,000 (-12,000) 12,520 (-20,480) 12,520 (-20,480)
GET list_vulnerabilities 370 (-50) 440 (+10) 440 (+10) 450 (-50) 470 (-30) 470 (-30) 490 (-160) 490 (-160)
GET list_vulnerabilities_paginated 280 (+40) 280 (+40) 290 (+40) 360 (+110) 360 (+93) 360 (+93) 370 (+103) 370 (+103)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 60 (+8) 67 (+7) 150 (+89) 160 (+93) 180 (+70) 190 (+41) 190 (+41) 190 (+41)
GET search_advisory 800 (0) 900 (0) 1,000 (+100) 1,923 (+923) 1,923 (+923) 1,923 (+923) 1,923 (+923) 1,923 (+923)
GET search_exact_purl 17 (+8) 17 (+8) 49 (+32) 50 (-1) 52 (-13) 52 (-13) 52 (-13) 52 (-13)
GET search_licenses 109,404 (-2,389) 109,404 (-2,389) 109,404 (-2,389) 109,404 (-2,389) 109,404 (-2,389) 109,404 (-2,389) 109,404 (-2,389) 109,404 (-2,389)
GET search_purls 20,000 (+12,000) 21,000 (+13,000) 22,000 (+14,000) 23,000 (+13,000) 23,000 (+13,000) 23,000 (+13,000) 24,000 (+14,000) 24,000 (+14,000)
GET search_purls_by_license 156,727 (+14,817) 156,727 (+14,817) 156,727 (+14,817) 156,727 (+14,817) 156,727 (+14,817) 156,727 (+14,817) 156,727 (+14,817) 156,727 (+14,817)
GET search_sboms_by_license 58,889 (-37,094) 58,889 (-37,094) 58,889 (-37,094) 58,889 (-37,094) 58,889 (-37,094) 58,889 (-37,094) 58,889 (-37,094) 58,889 (-37,094)
POST get_recommendations[pkg:rpm/redhat/…e-metrics@2.13.8] 41 (-39) 59 (-24) 62 (-21) 62 (-58) 62 (-107) 99 (-70) 99 (-70) 99 (-70)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 220 (-160) 350 (-150) 500 (-100) 600 (-100) 700 (-100) 1,000 (+20) 1,000 (+20) 1,000 (+20)
Aggregated 400 (-100) 600 (-100) 1,000 (0) 3,000 (0) 14,000 (+4,000) 24,000 (-9,000) 63,000 (-3,000) 156,727 (+14,817)

Status Code Metrics

Method Name Status Codes
DELETE delete_sbom_from_pool_sequential[100 SBOMs] 35 [200]
GET download_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 10 [404]
GET get_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 10 [404]
GET get_advisory_by_doc_id 10 [200]
GET get_analysis_latest_cpe 15 [200]
GET get_analysis_status 15 [200]
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 10 [200]
GET get_sbom[sha256:720e4451…a939656247164447] 15 [200]
GET get_sbom_advisories[sha256:87fd06bc…9d7b8304c0d2d9b2] 15 [200]
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 10 [200]
GET list_advisory 10 [200]
GET list_advisory_labels 15 [200]
GET list_advisory_paginated 10 [200]
GET list_importer 11 [200]
GET list_organizations 10 [200]
GET list_packages 11 [200]
GET list_packages_paginated 11 [200]
GET list_products 15 [200]
GET list_sboms 15 [200]
GET list_sboms_paginated 15 [200]
GET list_vulnerabilities 11 [200]
GET list_vulnerabilities_paginated 11 [200]
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 10 [200]
GET search_advisory 11 [200]
GET search_exact_purl 15 [200]
GET search_licenses 1 [200]
GET search_purls 15 [200]
GET search_purls_by_license 1 [200]
GET search_sboms_by_license 1 [200]
POST get_recommendations[pkg:rpm/redhat/…e-metrics@2.13.8] 10 [200]
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 10 [200]
Aggregated 344 [200], 20 [404]

Transaction Metrics

Transaction # Times Run # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
WebsiteUser
0.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.1 website_index 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.2 website_openapi 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.3 website_sboms 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.4 website_packages 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.5 website_advisories 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.6 website_importers 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser
1.0 logon 10 (0) 0 (0) 12.90 (-1.00) 7 (-1) 18 (-1) 0.03 (+0.00) 0.00 (+0.00)
1.1 list_organizations 10 (0) 0 (0) 9.70 (-18.40) 2 (+1) 38 (-65) 0.03 (+0.00) 0.00 (+0.00)
1.2 list_advisory 10 (0) 0 (0) 473.20 (-27.30) 225 (+52) 691 (+10) 0.03 (+0.00) 0.00 (+0.00)
1.3 list_advisory_paginated 10 (0) 0 (0) 431.90 (-59.80) 168 (-16) 610 (-115) 0.03 (+0.00) 0.00 (+0.00)
1.4 get_advisory_by_doc_id 10 (0) 0 (0) 10.50 (-9.10) 4 (0) 20 (-49) 0.03 (+0.00) 0.00 (+0.00)
1.5 search_advisory 11 (0) 0 (0) 957.09 (+180.82) 299 (+34) 1923 (+648) 0.04 (+0.00) 0.00 (+0.00)
1.6 list_vulnerabilities 11 (0) 0 (0) 282.73 (-77.45) 64 (-56) 490 (-160) 0.04 (+0.00) 0.00 (+0.00)
1.7 list_vulnerabilities_paginated 11 (0) 0 (0) 226.27 (+37.45) 76 (+36) 370 (+103) 0.04 (+0.00) 0.00 (+0.00)
1.8 list_importer 11 (0) 0 (0) 3.82 (-0.18) 1 (0) 9 (-8) 0.04 (+0.00) 0.00 (+0.00)
1.9 list_packages 11 (0) 0 (0) 371.82 (-56.73) 191 (+40) 536 (-74) 0.04 (+0.00) 0.00 (+0.00)
1.10 list_packages_paginated 11 (0) 0 (0) 359.45 (-40.73) 126 (-55) 595 (+53) 0.04 (+0.00) 0.00 (+0.00)
1.11 search_purls 15 (0) 0 (0) 19505.47 (+12567.00) 13200 (+12008) 24070 (+13893) 0.05 (+0.00) 0.00 (+0.00)
1.12 search_exact_purl 15 (0) 0 (0) 26.07 (+3.87) 5 (+2) 53 (-12) 0.05 (+0.00) 0.00 (+0.00)
1.13 list_products 15 (0) 0 (0) 24.27 (+9.33) 5 (+1) 85 (+40) 0.05 (+0.00) 0.00 (+0.00)
1.14 list_sboms 15 (0) 0 (0) 737.27 (-871.40) 528 (-65) 1113 (-2252) 0.05 (+0.00) 0.00 (+0.00)
1.15 list_sboms_paginated 15 (0) 0 (0) 3308.27 (-5604.67) 1089 (+509) 12520 (-20500) 0.05 (+0.00) 0.00 (+0.00)
1.16 get_analysis_status 15 (0) 0 (0) 12.33 (-2.73) 3 (0) 56 (+1) 0.05 (+0.00) 0.00 (+0.00)
1.17 get_analysis_latest_cpe 15 (0) 0 (0) 249.87 (-107.53) 180 (-3) 466 (-425) 0.05 (+0.00) 0.00 (+0.00)
1.18 list_advisory_labels 15 (0) 0 (0) 13137.33 (-77.33) 8806 (+1200) 20595 (-2587) 0.05 (+0.00) 0.00 (+0.00)
1.19 get_sbom[sha256:720e4451…a939656247164447] 15 (0) 0 (0) 1366.00 (-741.87) 454 (+47) 2886 (-5196) 0.05 (+0.00) 0.00 (+0.00)
1.20 get_sbom_advisories[sha256:87fd06bc…9d7b8304c0d2d9b2] 15 (0) 0 (0) 58570.87 (-4053.87) 50908 (-1692) 64626 (-16190) 0.05 (+0.00) 0.00 (+0.00)
1.21 sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 10 (0) 0 (0) 96.90 (+38.60) 7 (+2) 194 (+45) 0.03 (+0.00) 0.00 (+0.00)
1.22 get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 10 (0) 0 (0) 8299.60 (-653.80) 2617 (-4612) 12495 (-172) 0.03 (+0.00) 0.00 (+0.00)
1.23 post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 10 (0) 0 (0) 410.40 (-46.80) 158 (+26) 1060 (+80) 0.03 (+0.00) 0.00 (+0.00)
1.24 get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 10 (0) 0 (0) 601.30 (+13.30) 136 (-14) 1078 (-52) 0.03 (+0.00) 0.00 (+0.00)
1.25 get_recommendations[pkg:rpm/redhat/…e-metrics@2.13.8] 10 (0) 0 (0) 43.00 (-42.40) 5 (-1) 99 (-70) 0.03 (+0.00) 0.00 (+0.00)
1.26 download_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 10 (0) 0 (0) 17.20 (+5.60) 2 (0) 64 (+9) 0.03 (+0.00) 0.00 (+0.00)
1.27 get_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 10 (0) 0 (0) 17.80 (+10.60) 1 (0) 151 (+130) 0.03 (+0.00) 0.00 (+0.00)
RestAPIUserSlow
2.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
2.1 search_licenses 1 (0) 0 (0) 109404.00 (-2389.00) 109404 (-2389) 109404 (-2389) 0.00 (+0.00) 0.00 (+0.00)
2.2 search_sboms_by_license 1 (0) 0 (0) 58889.00 (-37094.00) 58889 (-37094) 58889 (-37094) 0.00 (+0.00) 0.00 (+0.00)
2.3 search_purls_by_license 1 (0) 0 (0) 156727.00 (+14817.00) 156727 (+14817) 156727 (+14817) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUserDelete
3.0 logon 34 (+1) 0 (0) 11.79 (+1.04) 6 (0) 19 (+1) 0.11 (+0.00) 0.00 (+0.00)
3.1 delete_sbom_from_pool_sequential[100 SBOMs] 35 (+1) 0 (0) 1790.40 (-201.92) 303 (-23) 4528 (-535) 0.12 (+0.00) 0.00 (+0.00)
Aggregated 408 (+2) 0 (0) 4828.56 (-73.90) 1 (0) 156727 (+14817) 1.36 (+0.01) 0.00 (+0.00)

Scenario Metrics

Scenario # Users # Times Run Average (ms) Min (ms) Max (ms) Scenarios/s Iterations
WebsiteUser 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser 5 (0) 10 (0) 107827.30 (+7444.90) 100292 (+3398) 117777 (+9616) 0.03 (+0.00) 2.00 (+0.00)
RestAPIUserSlow 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUserDelete 1 (0) 34 (+1) 8770.62 (-258.84) 7225 (+352) 11527 (-589) 0.11 (+0.00) 34.00 (+1.00)
Aggregated 6 (0) 44 (+1) 31283.50 (+1009.17) 7225 (+352) 117777 (+9616) 0.15 (+0.00) 36.00 (+1.00)

User Metrics

Errors

# Error
10 (0) 404 Not Found: download_advisory[24ae57c3-4b57-4…2c1-83ae26059a89]
10 (0) 404 Not Found: get_advisory[24ae57c3-4b57-4…2c1-83ae26059a89]