Goose Attack Report

Users: 7

Target Host: http://trustify:8080/

goose v0.18.0

Plan overview

Action Started Stopped Elapsed Users
Increasing25-12-11 02:15:5025-12-11 02:15:5700:00:070 → 7
Maintaining25-12-11 02:15:5725-12-11 02:20:5700:05:007
Decreasing25-12-11 02:20:5725-12-11 02:21:1100:00:140 ← 7

Request Metrics

Method Name # Requests # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
DELETE delete_sbom_from_pool_sequential[100 SBOMs] 39 (+1) 0 784.41 (-121.25) 75 (+3) 1903 (-805) 0.13 (+0.00) 0.00 (+0.00)
GET download_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 10 (0) 10 16.80 (+3.60) 2 (+1) 62 (-5) 0.03 (+0.00) 0.03 (+0.00)
GET get_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 10 (0) 10 22.60 (+4.50) 1 (0) 124 (+65) 0.03 (+0.00) 0.03 (+0.00)
GET get_advisory_by_doc_id 10 (0) 0 18.30 (+6.90) 6 (+3) 65 (+31) 0.03 (+0.00) 0.00 (+0.00)
GET get_analysis_latest_cpe 15 (0) 0 288.80 (+52.27) 195 (+87) 575 (+186) 0.05 (+0.00) 0.00 (+0.00)
GET get_analysis_status 15 (0) 0 15.80 (+7.60) 1 (-1) 63 (+5) 0.05 (+0.00) 0.00 (+0.00)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 10 (0) 0 524.90 (-198.70) 195 (-7) 1110 (-154) 0.03 (+0.00) 0.00 (+0.00)
GET get_sbom[sha256:720e4451…a939656247164447] 15 (0) 0 1813.60 (+76.40) 394 (-106) 5651 (+1942) 0.05 (+0.00) 0.00 (+0.00)
GET get_sbom_advisories[sha256:87fd06bc…9d7b8304c0d2d9b2] 15 (0) 0 56587.87 (+534.40) 49222 (+3619) 65812 (-1837) 0.05 (+0.00) 0.00 (+0.00)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 10 (-4) 0 7543.80 (-695.06) 4105 (-2407) 13708 (+2612) 0.03 (-0.01) 0.00 (+0.00)
GET list_advisory 10 (0) 0 713.90 (-238.50) 295 (+133) 1396 (-25) 0.03 (+0.00) 0.00 (+0.00)
GET list_advisory_labels 15 (0) 0 14375.53 (-1232.73) 9004 (-2687) 22836 (+2825) 0.05 (+0.00) 0.00 (+0.00)
GET list_advisory_paginated 10 (0) 0 484.20 (-112.00) 205 (+16) 928 (-71) 0.03 (+0.00) 0.00 (+0.00)
GET list_importer 11 (0) 0 13.18 (+9.64) 1 (0) 64 (+53) 0.04 (+0.00) 0.00 (+0.00)
GET list_organizations 10 (0) 0 15.00 (-3.60) 1 (0) 54 (-6) 0.03 (+0.00) 0.00 (+0.00)
GET list_packages 11 (0) 0 389.00 (-36.55) 88 (-96) 705 (+52) 0.04 (+0.00) 0.00 (+0.00)
GET list_packages_paginated 11 (0) 0 327.45 (-49.91) 113 (-33) 666 (+73) 0.04 (+0.00) 0.00 (+0.00)
GET list_products 15 (0) 0 18.93 (-8.73) 3 (0) 82 (+23) 0.05 (+0.00) 0.00 (+0.00)
GET list_sboms 15 (0) 0 1370.87 (+394.60) 568 (+322) 3221 (+508) 0.05 (+0.00) 0.00 (+0.00)
GET list_sboms_paginated 15 (0) 0 2826.33 (+1585.47) 433 (-83) 11380 (+8580) 0.05 (+0.00) 0.00 (+0.00)
GET list_vulnerabilities 11 (0) 0 317.45 (-93.55) 120 (+72) 578 (-151) 0.04 (+0.00) 0.00 (+0.00)
GET list_vulnerabilities_paginated 11 (0) 0 205.18 (-31.55) 74 (+12) 312 (-69) 0.04 (+0.00) 0.00 (+0.00)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 10 (-4) 0 57.10 (-26.54) 9 (+3) 104 (-152) 0.03 (-0.01) 0.00 (+0.00)
GET search_advisory 10 (0) 0 989.00 (-556.00) 338 (+150) 1719 (-982) 0.03 (+0.00) 0.00 (+0.00)
GET search_exact_purl 15 (0) 0 36.33 (+4.40) 3 (0) 107 (+27) 0.05 (+0.00) 0.00 (+0.00)
GET search_licenses 1 (0) 0 99913.00 (+14717.00) 99913 (+14717) 99913 (+14717) 0.00 (+0.00) 0.00 (+0.00)
GET search_purls 15 (0) 0 16728.80 (+1376.40) 7041 (-1972) 24194 (+2412) 0.05 (+0.00) 0.00 (+0.00)
GET search_purls_by_license 1 (0) 0 143398.00 (-47051.00) 143398 (-47051) 143398 (-47051) 0.00 (+0.00) 0.00 (+0.00)
GET search_sboms_by_license 1 (0) 0 73020.00 (+35063.00) 73020 (+35063) 73020 (+35063) 0.00 (+0.00) 0.00 (+0.00)
POST get_recommendations[pkg:rpm/redhat/…e-metrics@2.13.8] 10 (0) 0 67.80 (-40.60) 8 (+1) 167 (-23) 0.03 (+0.00) 0.00 (+0.00)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 10 (0) 0 384.20 (-47.40) 134 (+78) 1008 (+186) 0.03 (+0.00) 0.00 (+0.00)
Aggregated 367 (-7) 20 5122.66 (+59.01) 1 (0) 143398 (-47051) 1.22 (-0.02) 0.07 (+0.00)

Response Time Metrics

Method Name 50%ile (ms) 60%ile (ms) 70%ile (ms) 80%ile (ms) 90%ile (ms) 95%ile (ms) 99%ile (ms) 100%ile (ms)
DELETE delete_sbom_from_pool_sequential[100 SBOMs] 700 (0) 800 (0) 1,000 (0) 1,000 (0) 1,000 (-1,000) 1,000 (-1,000) 1,903 (-805) 1,903 (-805)
GET download_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 5 (0) 5 (-3) 5 (-4) 20 (+7) 62 (+46) 62 (-5) 62 (-5) 62 (-5)
GET get_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 5 (0) 5 (-2) 6 (-11) 11 (-31) 70 (+26) 120 (+61) 120 (+61) 120 (+61)
GET get_advisory_by_doc_id 9 (+2) 10 (+1) 10 (-1) 14 (+2) 46 (+20) 65 (+31) 65 (+31) 65 (+31)
GET get_analysis_latest_cpe 270 (+50) 290 (+60) 320 (+50) 320 (+30) 420 (+90) 420 (+90) 575 (+186) 575 (+186)
GET get_analysis_status 4 (-1) 9 (+4) 10 (+4) 10 (+3) 58 (+50) 58 (+50) 63 (+5) 63 (+5)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 400 (-300) 500 (-200) 500 (-200) 600 (-400) 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (0)
GET get_sbom[sha256:720e4451…a939656247164447] 1,000 (0) 1,000 (-1,000) 2,000 (0) 3,000 (0) 4,000 (+1,000) 4,000 (+1,000) 5,651 (+1,942) 5,651 (+1,942)
GET get_sbom_advisories[sha256:87fd06bc…9d7b8304c0d2d9b2] 57,000 (+1,000) 58,000 (+1,000) 61,000 (+1,000) 61,000 (-2,000) 62,000 (-5,000) 62,000 (-5,000) 65,812 (-1,837) 65,812 (-1,837)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 7,000 (-1,000) 7,000 (-1,000) 8,000 (0) 8,000 (0) 10,000 (-1,000) 13,708 (+2,708) 13,708 (+2,708) 13,708 (+2,708)
GET list_advisory 420 (-480) 700 (-200) 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (0)
GET list_advisory_labels 15,000 (+1,000) 15,000 (-2,000) 15,000 (-4,000) 16,000 (-3,000) 19,000 (0) 19,000 (0) 22,836 (+2,836) 22,836 (+2,836)
GET list_advisory_paginated 400 (-100) 410 (-190) 480 (-120) 700 (-200) 800 (-100) 900 (-99) 900 (-99) 900 (-99)
GET list_importer 5 (+3) 5 (+1) 6 (+2) 6 (+1) 47 (+42) 47 (+42) 64 (+53) 64 (+53)
GET list_organizations 5 (0) 8 (+3) 11 (-3) 14 (-28) 51 (0) 54 (-6) 54 (-6) 54 (-6)
GET list_packages 390 (-80) 410 (-90) 420 (-80) 490 (-10) 600 (0) 600 (0) 700 (+47) 700 (+47)
GET list_packages_paginated 310 (-120) 330 (-140) 340 (-160) 390 (-110) 500 (0) 500 (0) 666 (+73) 666 (+73)
GET list_products 12 (-2) 12 (-3) 12 (-40) 12 (-41) 77 (+20) 77 (+20) 82 (+23) 82 (+23)
GET list_sboms 700 (0) 800 (+100) 3,000 (+2,100) 3,000 (+2,000) 3,000 (+1,000) 3,000 (+1,000) 3,000 (+287) 3,000 (+287)
GET list_sboms_paginated 2,000 (+1,200) 3,000 (+2,100) 3,000 (+1,000) 3,000 (+1,000) 8,000 (+5,200) 8,000 (+5,200) 11,000 (+8,200) 11,000 (+8,200)
GET list_vulnerabilities 300 (-110) 320 (-160) 370 (-110) 410 (-290) 500 (-200) 500 (-200) 578 (-122) 578 (-122)
GET list_vulnerabilities_paginated 210 (-20) 210 (-20) 220 (-80) 290 (-80) 300 (-80) 300 (-80) 310 (-70) 310 (-70)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 61 (+14) 62 (+11) 76 (+17) 87 (-53) 95 (-155) 100 (-150) 100 (-156) 100 (-156)
GET search_advisory 1,000 (0) 1,000 (0) 1,000 (-1,701) 1,000 (-1,701) 1,719 (-982) 1,719 (-982) 1,719 (-982) 1,719 (-982)
GET search_exact_purl 25 (+15) 26 (+15) 54 (-23) 56 (-22) 74 (-6) 74 (-6) 107 (+27) 107 (+27)
GET search_licenses 99,913 (+14,717) 99,913 (+14,717) 99,913 (+14,717) 99,913 (+14,717) 99,913 (+14,717) 99,913 (+14,717) 99,913 (+14,717) 99,913 (+14,717)
GET search_purls 16,000 (+2,000) 16,000 (+1,000) 22,000 (+1,000) 22,000 (+218) 23,000 (+1,218) 23,000 (+1,218) 24,000 (+2,218) 24,000 (+2,218)
GET search_purls_by_license 143,398 (-47,051) 143,398 (-47,051) 143,398 (-47,051) 143,398 (-47,051) 143,398 (-47,051) 143,398 (-47,051) 143,398 (-47,051) 143,398 (-47,051)
GET search_sboms_by_license 73,020 (+35,063) 73,020 (+35,063) 73,020 (+35,063) 73,020 (+35,063) 73,020 (+35,063) 73,020 (+35,063) 73,020 (+35,063) 73,020 (+35,063)
POST get_recommendations[pkg:rpm/redhat/…e-metrics@2.13.8] 68 (-32) 68 (-42) 81 (-29) 110 (-30) 130 (-60) 167 (-23) 167 (-23) 167 (-23)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 300 (-10) 310 (-190) 400 (-300) 460 (-240) 600 (-100) 1,000 (+200) 1,000 (+200) 1,000 (+200)
Aggregated 360 (-110) 600 (-100) 900 (0) 3,000 (+1,000) 14,000 (+1,000) 24,000 (+2,000) 62,000 (-4,000) 143,000 (-47,000)

Status Code Metrics

Method Name Status Codes
DELETE delete_sbom_from_pool_sequential[100 SBOMs] 39 [200]
GET download_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 10 [404]
GET get_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 10 [404]
GET get_advisory_by_doc_id 10 [200]
GET get_analysis_latest_cpe 15 [200]
GET get_analysis_status 15 [200]
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 10 [200]
GET get_sbom[sha256:720e4451…a939656247164447] 15 [200]
GET get_sbom_advisories[sha256:87fd06bc…9d7b8304c0d2d9b2] 15 [200]
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 10 [200]
GET list_advisory 10 [200]
GET list_advisory_labels 15 [200]
GET list_advisory_paginated 10 [200]
GET list_importer 11 [200]
GET list_organizations 10 [200]
GET list_packages 11 [200]
GET list_packages_paginated 11 [200]
GET list_products 15 [200]
GET list_sboms 15 [200]
GET list_sboms_paginated 15 [200]
GET list_vulnerabilities 11 [200]
GET list_vulnerabilities_paginated 11 [200]
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 10 [200]
GET search_advisory 10 [200]
GET search_exact_purl 15 [200]
GET search_licenses 1 [200]
GET search_purls 15 [200]
GET search_purls_by_license 1 [200]
GET search_sboms_by_license 1 [200]
POST get_recommendations[pkg:rpm/redhat/…e-metrics@2.13.8] 10 [200]
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 10 [200]
Aggregated 20 [404], 347 [200]

Transaction Metrics

Transaction # Times Run # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
WebsiteUser
0.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.1 website_index 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.2 website_openapi 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.3 website_sboms 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.4 website_packages 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.5 website_advisories 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.6 website_importers 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser
1.0 logon 10 (0) 0 (0) 11.90 (-1.20) 8 (+1) 15 (-4) 0.03 (+0.00) 0.00 (+0.00)
1.1 list_organizations 10 (0) 0 (0) 15.10 (-3.70) 1 (0) 54 (-6) 0.03 (+0.00) 0.00 (+0.00)
1.2 list_advisory 10 (0) 0 (0) 713.90 (-238.60) 295 (+133) 1396 (-25) 0.03 (+0.00) 0.00 (+0.00)
1.3 list_advisory_paginated 10 (0) 0 (0) 484.20 (-112.00) 205 (+16) 928 (-71) 0.03 (+0.00) 0.00 (+0.00)
1.4 get_advisory_by_doc_id 10 (0) 0 (0) 18.30 (+6.90) 6 (+3) 65 (+31) 0.03 (+0.00) 0.00 (+0.00)
1.5 search_advisory 10 (0) 0 (0) 989.10 (-555.90) 338 (+150) 1719 (-982) 0.03 (+0.00) 0.00 (+0.00)
1.6 list_vulnerabilities 11 (0) 0 (0) 317.45 (-93.64) 120 (+72) 578 (-151) 0.04 (+0.00) 0.00 (+0.00)
1.7 list_vulnerabilities_paginated 11 (0) 0 (0) 205.36 (-31.45) 74 (+12) 312 (-69) 0.04 (+0.00) 0.00 (+0.00)
1.8 list_importer 11 (0) 0 (0) 13.27 (+9.64) 1 (0) 64 (+53) 0.04 (+0.00) 0.00 (+0.00)
1.9 list_packages 11 (0) 0 (0) 389.00 (-36.64) 88 (-96) 705 (+52) 0.04 (+0.00) 0.00 (+0.00)
1.10 list_packages_paginated 11 (0) 0 (0) 327.45 (-49.91) 113 (-33) 666 (+73) 0.04 (+0.00) 0.00 (+0.00)
1.11 search_purls 15 (0) 0 (0) 16728.80 (+1376.40) 7041 (-1972) 24194 (+2412) 0.05 (+0.00) 0.00 (+0.00)
1.12 search_exact_purl 15 (0) 0 (0) 36.47 (+4.53) 3 (0) 107 (+27) 0.05 (+0.00) 0.00 (+0.00)
1.13 list_products 15 (0) 0 (0) 18.93 (-8.80) 3 (0) 82 (+23) 0.05 (+0.00) 0.00 (+0.00)
1.14 list_sboms 15 (0) 0 (0) 1370.93 (+394.60) 568 (+322) 3221 (+508) 0.05 (+0.00) 0.00 (+0.00)
1.15 list_sboms_paginated 15 (0) 0 (0) 2826.53 (+1585.47) 434 (-82) 11380 (+8580) 0.05 (+0.00) 0.00 (+0.00)
1.16 get_analysis_status 15 (0) 0 (0) 15.80 (+7.60) 1 (-1) 63 (+5) 0.05 (+0.00) 0.00 (+0.00)
1.17 get_analysis_latest_cpe 15 (0) 0 (0) 288.80 (+52.27) 195 (+87) 575 (+186) 0.05 (+0.00) 0.00 (+0.00)
1.18 list_advisory_labels 15 (0) 0 (0) 14375.67 (-1232.60) 9004 (-2687) 22836 (+2825) 0.05 (+0.00) 0.00 (+0.00)
1.19 get_sbom[sha256:720e4451…a939656247164447] 15 (0) 0 (0) 1813.87 (+76.67) 395 (-105) 5651 (+1942) 0.05 (+0.00) 0.00 (+0.00)
1.20 get_sbom_advisories[sha256:87fd06bc…9d7b8304c0d2d9b2] 15 (0) 0 (0) 56588.00 (+534.54) 49222 (+3619) 65812 (-1837) 0.05 (+0.00) 0.00 (+0.00)
1.21 sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 10 (-4) 0 (0) 57.20 (-26.66) 9 (+3) 104 (-152) 0.03 (-0.01) 0.00 (+0.00)
1.22 get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 10 (-4) 0 (0) 7543.90 (-695.17) 4105 (-2407) 13708 (+2612) 0.03 (-0.01) 0.00 (+0.00)
1.23 post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 10 (0) 0 (0) 384.30 (-47.50) 134 (+78) 1008 (+185) 0.03 (+0.00) 0.00 (+0.00)
1.24 get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 10 (0) 0 (0) 525.00 (-198.60) 195 (-7) 1110 (-154) 0.03 (+0.00) 0.00 (+0.00)
1.25 get_recommendations[pkg:rpm/redhat/…e-metrics@2.13.8] 10 (0) 0 (0) 67.90 (-40.50) 8 (+1) 167 (-23) 0.03 (+0.00) 0.00 (+0.00)
1.26 download_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 10 (0) 0 (0) 16.80 (+3.50) 2 (+1) 62 (-5) 0.03 (+0.00) 0.00 (+0.00)
1.27 get_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 10 (0) 0 (0) 22.60 (+4.40) 1 (0) 124 (+64) 0.03 (+0.00) 0.00 (+0.00)
RestAPIUserSlow
2.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
2.1 search_licenses 1 (0) 0 (0) 99914.00 (+14718.00) 99914 (+14718) 99914 (+14718) 0.00 (+0.00) 0.00 (+0.00)
2.2 search_sboms_by_license 1 (0) 0 (0) 73020.00 (+35063.00) 73020 (+35063) 73020 (+35063) 0.00 (+0.00) 0.00 (+0.00)
2.3 search_purls_by_license 1 (0) 0 (0) 143398.00 (-47051.00) 143398 (-47051) 143398 (-47051) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUserDelete
3.0 logon 38 (0) 0 (0) 10.21 (+1.00) 6 (0) 19 (+1) 0.13 (+0.00) 0.00 (+0.00)
3.1 delete_sbom_from_pool_sequential[100 SBOMs] 39 (+1) 0 (0) 784.59 (-121.23) 75 (+2) 1903 (-805) 0.13 (+0.00) 0.00 (+0.00)
Aggregated 415 (-7) 0 (0) 4530.16 (+42.47) 1 (0) 143398 (-47051) 1.38 (-0.02) 0.00 (+0.00)

Scenario Metrics

Scenario # Users # Times Run Average (ms) Min (ms) Max (ms) Scenarios/s Iterations
WebsiteUser 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser 5 (0) 10 (0) 99834.90 (-10861.20) 86409 (-8660) 105614 (-22358) 0.03 (+0.00) 2.00 (+0.00)
RestAPIUserSlow 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUserDelete 1 (0) 38 (0) 7883.16 (-104.90) 6873 (+389) 9228 (-438) 0.13 (+0.00) 38.00 (+0.00)
Aggregated 6 (0) 48 (0) 27039.77 (-2345.79) 6873 (+389) 105614 (-22358) 0.16 (+0.00) 40.00 (+0.00)

User Metrics

Errors

# Error
10 (0) 404 Not Found: download_advisory[24ae57c3-4b57-4…2c1-83ae26059a89]
10 (0) 404 Not Found: get_advisory[24ae57c3-4b57-4…2c1-83ae26059a89]