Goose Attack Report

Users: 7

Target Host: http://trustify:8080/

goose v0.18.0

Plan overview

Action Started Stopped Elapsed Users
Increasing25-12-25 02:18:1225-12-25 02:18:1900:00:070 → 7
Maintaining25-12-25 02:18:1925-12-25 02:23:1900:05:007
Decreasing25-12-25 02:23:1925-12-25 02:23:3700:00:180 ← 7

Request Metrics

Method Name # Requests # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
DELETE delete_sbom_from_pool_sequential[100 SBOMs] 37 (-2) 0 1263.81 (+423.12) 203 (+5) 3968 (+1762) 0.12 (-0.01) 0.00 (+0.00)
GET download_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 10 (0) 10 24.90 (+8.00) 1 (-1) 129 (+28) 0.03 (+0.00) 0.03 (+0.00)
GET get_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 10 (0) 10 18.20 (+4.10) 1 (0) 58 (-1) 0.03 (+0.00) 0.03 (+0.00)
GET get_advisory_by_doc_id 10 (0) 0 15.00 (-2.10) 3 (-3) 58 (-1) 0.03 (+0.00) 0.00 (+0.00)
GET get_analysis_latest_cpe 15 (0) 0 259.60 (-20.27) 102 (-15) 428 (-159) 0.05 (+0.00) 0.00 (+0.00)
GET get_analysis_status 15 (0) 0 14.87 (-16.07) 3 (+2) 55 (-292) 0.05 (+0.00) 0.00 (+0.00)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 10 (0) 0 866.20 (+277.30) 284 (+8) 1658 (+598) 0.03 (+0.00) 0.00 (+0.00)
GET get_sbom[sha256:720e4451…a939656247164447] 15 (0) 0 1407.60 (+193.00) 489 (+73) 2912 (+522) 0.05 (+0.00) 0.00 (+0.00)
GET get_sbom_advisories[sha256:87fd06bc…9d7b8304c0d2d9b2] 15 (0) 0 58591.13 (+261.13) 51004 (+4688) 67929 (+1529) 0.05 (+0.00) 0.00 (+0.00)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 15 (+5) 0 8340.87 (+753.27) 6203 (+3440) 13120 (+1810) 0.05 (+0.02) 0.00 (+0.00)
GET list_advisory 10 (0) 0 1016.70 (-116.00) 401 (+145) 1604 (+112) 0.03 (+0.00) 0.00 (+0.00)
GET list_advisory_labels 15 (0) 0 15082.13 (+982.93) 12360 (+1754) 23211 (+4603) 0.05 (+0.00) 0.00 (+0.00)
GET list_advisory_paginated 10 (0) 0 539.70 (-282.50) 308 (+114) 702 (-415) 0.03 (+0.00) 0.00 (+0.00)
GET list_importer 11 (0) 0 5.55 (-2.45) 1 (0) 15 (-29) 0.04 (+0.00) 0.00 (+0.00)
GET list_organizations 10 (0) 0 23.90 (+3.50) 2 (-1) 52 (-91) 0.03 (+0.00) 0.00 (+0.00)
GET list_packages 11 (0) 0 456.55 (+43.27) 161 (+32) 851 (+236) 0.04 (+0.00) 0.00 (+0.00)
GET list_packages_paginated 11 (0) 0 325.64 (-28.18) 142 (-23) 502 (-86) 0.04 (+0.00) 0.00 (+0.00)
GET list_products 15 (0) 0 42.00 (+14.00) 5 (+2) 98 (+9) 0.05 (+0.00) 0.00 (+0.00)
GET list_sboms 15 (0) 0 940.93 (-542.60) 620 (+215) 1858 (-1474) 0.05 (+0.00) 0.00 (+0.00)
GET list_sboms_paginated 15 (0) 0 3615.20 (+1783.93) 970 (+589) 6988 (-4246) 0.05 (+0.00) 0.00 (+0.00)
GET list_vulnerabilities 11 (0) 0 423.45 (+71.27) 87 (+14) 781 (+175) 0.04 (+0.00) 0.00 (+0.00)
GET list_vulnerabilities_paginated 11 (0) 0 246.00 (-4.45) 83 (+1) 333 (-64) 0.04 (+0.00) 0.00 (+0.00)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 15 (+5) 0 66.60 (-2.40) 8 (+1) 197 (+28) 0.05 (+0.02) 0.00 (+0.00)
GET search_advisory 10 (-1) 0 1870.50 (+446.86) 319 (+19) 2800 (+398) 0.03 (-0.00) 0.00 (+0.00)
GET search_exact_purl 15 (0) 0 151.67 (+121.67) 4 (0) 520 (+365) 0.05 (+0.00) 0.00 (+0.00)
GET search_licenses 1 (0) 0 98475.00 (-3812.00) 98475 (-3812) 98475 (-3812) 0.00 (+0.00) 0.00 (+0.00)
GET search_purls 15 (0) 0 9650.07 (-9776.13) 2308 (-9344) 11799 (-14636) 0.05 (+0.00) 0.00 (+0.00)
GET search_purls_by_license 1 (0) 0 160173.00 (-1274.00) 160173 (-1274) 160173 (-1274) 0.00 (+0.00) 0.00 (+0.00)
GET search_sboms_by_license 1 (0) 0 61951.00 (+3672.00) 61951 (+3672) 61951 (+3672) 0.00 (+0.00) 0.00 (+0.00)
POST get_recommendations[pkg:rpm/redhat/…e-metrics@2.13.8] 10 (0) 0 30.80 (-68.40) 3 (-5) 85 (-147) 0.03 (+0.00) 0.00 (+0.00)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 10 (0) 0 435.40 (+88.20) 80 (-29) 973 (+133) 0.03 (+0.00) 0.00 (+0.00)
Aggregated 375 (+7) 20 5077.98 (-204.83) 1 (0) 160173 (-1274) 1.25 (+0.02) 0.07 (+0.00)

Response Time Metrics

Method Name 50%ile (ms) 60%ile (ms) 70%ile (ms) 80%ile (ms) 90%ile (ms) 95%ile (ms) 99%ile (ms) 100%ile (ms)
DELETE delete_sbom_from_pool_sequential[100 SBOMs] 1,000 (+400) 1,000 (+200) 2,000 (+1,000) 2,000 (+1,000) 2,000 (0) 3,000 (+1,000) 3,968 (+1,968) 3,968 (+1,968)
GET download_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 8 (+3) 9 (+2) 14 (+4) 20 (+4) 57 (+38) 129 (+29) 129 (+29) 129 (+29)
GET get_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 5 (+1) 6 (+2) 26 (+22) 28 (+14) 51 (+3) 58 (-1) 58 (-1) 58 (-1)
GET get_advisory_by_doc_id 8 (-1) 10 (-1) 11 (-9) 12 (-8) 28 (+2) 58 (-1) 58 (-1) 58 (-1)
GET get_analysis_latest_cpe 320 (+40) 320 (+40) 320 (+30) 320 (+10) 420 (-167) 420 (-167) 428 (-159) 428 (-159)
GET get_analysis_status 6 (+1) 7 (0) 7 (-1) 8 (-1) 54 (+1) 54 (+1) 55 (-292) 55 (-292)
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 600 (+210) 800 (+380) 1,000 (+300) 1,000 (0) 1,658 (+658) 1,658 (+658) 1,658 (+658) 1,658 (+658)
GET get_sbom[sha256:720e4451…a939656247164447] 1,000 (0) 1,000 (0) 2,000 (0) 2,000 (0) 2,912 (+912) 2,912 (+912) 2,912 (+912) 2,912 (+912)
GET get_sbom_advisories[sha256:87fd06bc…9d7b8304c0d2d9b2] 58,000 (-2,000) 58,000 (-4,000) 63,000 (-1,000) 64,000 (0) 66,000 (0) 66,000 (0) 67,929 (+1,929) 67,929 (+1,929)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 8,000 (0) 8,000 (0) 9,000 (+1,000) 9,000 (0) 12,000 (+3,000) 12,000 (+1,000) 13,000 (+2,000) 13,000 (+2,000)
GET list_advisory 1,000 (0) 1,000 (0) 1,000 (0) 1,604 (+604) 1,604 (+604) 1,604 (+604) 1,604 (+604) 1,604 (+604)
GET list_advisory_labels 13,000 (-1,000) 14,000 (0) 17,000 (+2,000) 17,000 (0) 19,000 (+1,000) 19,000 (+1,000) 23,000 (+4,392) 23,000 (+4,392)
GET list_advisory_paginated 500 (-300) 600 (-300) 700 (-300) 700 (-300) 700 (-300) 700 (-300) 700 (-300) 700 (-300)
GET list_importer 4 (+1) 6 (+2) 8 (+4) 9 (-1) 13 (+1) 13 (+1) 15 (-29) 15 (-29)
GET list_organizations 31 (+27) 32 (+27) 32 (+26) 33 (+25) 42 (+19) 52 (-88) 52 (-88) 52 (-88)
GET list_packages 490 (0) 490 (-10) 500 (0) 600 (0) 800 (+200) 800 (+200) 851 (+251) 851 (+251)
GET list_packages_paginated 390 (-10) 400 (-20) 410 (-10) 410 (-60) 420 (-50) 420 (-50) 500 (-88) 500 (-88)
GET list_products 17 (+8) 54 (+34) 76 (+23) 92 (+38) 97 (+41) 97 (+41) 98 (+9) 98 (+9)
GET list_sboms 1,000 (+300) 1,000 (+300) 1,000 (-2,000) 1,000 (-2,000) 1,000 (-2,000) 1,000 (-2,000) 1,858 (-1,142) 1,858 (-1,142)
GET list_sboms_paginated 4,000 (+3,000) 4,000 (+3,000) 5,000 (+4,000) 6,000 (+5,000) 6,000 (+3,000) 6,000 (+3,000) 6,988 (-4,012) 6,988 (-4,012)
GET list_vulnerabilities 460 (+120) 600 (+170) 600 (+120) 600 (+120) 700 (+210) 700 (+210) 781 (+181) 781 (+181)
GET list_vulnerabilities_paginated 300 (+30) 300 (+30) 320 (+40) 330 (-60) 330 (-60) 330 (-60) 330 (-67) 330 (-67)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 51 (-3) 59 (+4) 97 (+35) 110 (-40) 180 (+11) 180 (+11) 197 (+28) 197 (+28)
GET search_advisory 2,000 (0) 2,000 (0) 2,000 (0) 2,800 (+800) 2,800 (+800) 2,800 (+800) 2,800 (+800) 2,800 (+800)
GET search_exact_purl 44 (+35) 44 (+33) 140 (+100) 450 (+409) 470 (+381) 470 (+381) 500 (+345) 500 (+345)
GET search_licenses 98,475 (-3,812) 98,475 (-3,812) 98,475 (-3,812) 98,475 (-3,812) 98,475 (-3,812) 98,475 (-3,812) 98,475 (-3,812) 98,475 (-3,812)
GET search_purls 11,000 (-8,000) 11,000 (-8,000) 11,000 (-9,000) 11,000 (-13,000) 11,799 (-12,201) 11,799 (-12,201) 11,799 (-14,201) 11,799 (-14,201)
GET search_purls_by_license 160,173 (-1,274) 160,173 (-1,274) 160,173 (-1,274) 160,173 (-1,274) 160,173 (-1,274) 160,173 (-1,274) 160,173 (-1,274) 160,173 (-1,274)
GET search_sboms_by_license 61,951 (+3,672) 61,951 (+3,672) 61,951 (+3,672) 61,951 (+3,672) 61,951 (+3,672) 61,951 (+3,672) 61,951 (+3,672) 61,951 (+3,672)
POST get_recommendations[pkg:rpm/redhat/…e-metrics@2.13.8] 9 (-79) 15 (-74) 44 (-50) 58 (-37) 81 (-139) 85 (-145) 85 (-145) 85 (-145)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 190 (-30) 210 (-130) 600 (+210) 900 (+420) 900 (+300) 973 (+173) 973 (+173) 973 (+173)
Aggregated 470 (+50) 800 (+200) 1,000 (0) 3,000 (+1,000) 12,000 (-2,000) 19,000 (-7,000) 66,000 (+2,000) 160,000 (-1,000)

Status Code Metrics

Method Name Status Codes
DELETE delete_sbom_from_pool_sequential[100 SBOMs] 37 [200]
GET download_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 10 [404]
GET get_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 10 [404]
GET get_advisory_by_doc_id 10 [200]
GET get_analysis_latest_cpe 15 [200]
GET get_analysis_status 15 [200]
GET get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 10 [200]
GET get_sbom[sha256:720e4451…a939656247164447] 15 [200]
GET get_sbom_advisories[sha256:87fd06bc…9d7b8304c0d2d9b2] 15 [200]
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 15 [200]
GET list_advisory 10 [200]
GET list_advisory_labels 15 [200]
GET list_advisory_paginated 10 [200]
GET list_importer 11 [200]
GET list_organizations 10 [200]
GET list_packages 11 [200]
GET list_packages_paginated 11 [200]
GET list_products 15 [200]
GET list_sboms 15 [200]
GET list_sboms_paginated 15 [200]
GET list_vulnerabilities 11 [200]
GET list_vulnerabilities_paginated 11 [200]
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 15 [200]
GET search_advisory 10 [200]
GET search_exact_purl 15 [200]
GET search_licenses 1 [200]
GET search_purls 15 [200]
GET search_purls_by_license 1 [200]
GET search_sboms_by_license 1 [200]
POST get_recommendations[pkg:rpm/redhat/…e-metrics@2.13.8] 10 [200]
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 10 [200]
Aggregated 20 [404], 355 [200]

Transaction Metrics

Transaction # Times Run # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
WebsiteUser
0.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.1 website_index 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.2 website_openapi 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.3 website_sboms 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.4 website_packages 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.5 website_advisories 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.6 website_importers 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser
1.0 logon 10 (0) 0 (0) 13.60 (-0.40) 6 (-2) 20 (+1) 0.03 (+0.00) 0.00 (+0.00)
1.1 list_organizations 10 (0) 0 (0) 23.90 (+3.40) 2 (-1) 52 (-92) 0.03 (+0.00) 0.00 (+0.00)
1.2 list_advisory 10 (0) 0 (0) 1016.80 (-115.90) 401 (+145) 1604 (+112) 0.03 (+0.00) 0.00 (+0.00)
1.3 list_advisory_paginated 10 (0) 0 (0) 539.70 (-282.60) 308 (+114) 702 (-415) 0.03 (+0.00) 0.00 (+0.00)
1.4 get_advisory_by_doc_id 10 (0) 0 (0) 15.00 (-2.30) 3 (-3) 58 (-2) 0.03 (+0.00) 0.00 (+0.00)
1.5 search_advisory 10 (-1) 0 (0) 1870.50 (+446.86) 319 (+19) 2800 (+398) 0.03 (-0.00) 0.00 (+0.00)
1.6 list_vulnerabilities 11 (0) 0 (0) 423.45 (+71.27) 87 (+14) 781 (+175) 0.04 (+0.00) 0.00 (+0.00)
1.7 list_vulnerabilities_paginated 11 (0) 0 (0) 246.18 (-4.36) 83 (+1) 333 (-64) 0.04 (+0.00) 0.00 (+0.00)
1.8 list_importer 11 (0) 0 (0) 5.55 (-2.45) 1 (0) 15 (-29) 0.04 (+0.00) 0.00 (+0.00)
1.9 list_packages 11 (0) 0 (0) 456.55 (+43.18) 161 (+32) 851 (+236) 0.04 (+0.00) 0.00 (+0.00)
1.10 list_packages_paginated 11 (0) 0 (0) 325.64 (-28.36) 142 (-23) 502 (-86) 0.04 (+0.00) 0.00 (+0.00)
1.11 search_purls 15 (0) 0 (0) 9650.13 (-9776.13) 2308 (-9344) 11799 (-14636) 0.05 (+0.00) 0.00 (+0.00)
1.12 search_exact_purl 15 (0) 0 (0) 151.73 (+121.53) 4 (0) 520 (+364) 0.05 (+0.00) 0.00 (+0.00)
1.13 list_products 15 (0) 0 (0) 42.07 (+14.00) 5 (+2) 98 (+9) 0.05 (+0.00) 0.00 (+0.00)
1.14 list_sboms 15 (0) 0 (0) 940.93 (-542.60) 620 (+215) 1858 (-1474) 0.05 (+0.00) 0.00 (+0.00)
1.15 list_sboms_paginated 15 (0) 0 (0) 3615.27 (+1783.80) 970 (+589) 6989 (-4245) 0.05 (+0.00) 0.00 (+0.00)
1.16 get_analysis_status 15 (0) 0 (0) 14.93 (-16.00) 3 (+2) 55 (-292) 0.05 (+0.00) 0.00 (+0.00)
1.17 get_analysis_latest_cpe 15 (0) 0 (0) 259.67 (-20.20) 102 (-15) 428 (-159) 0.05 (+0.00) 0.00 (+0.00)
1.18 list_advisory_labels 15 (0) 0 (0) 15082.27 (+983.00) 12360 (+1754) 23211 (+4603) 0.05 (+0.00) 0.00 (+0.00)
1.19 get_sbom[sha256:720e4451…a939656247164447] 15 (0) 0 (0) 1407.87 (+192.93) 489 (+73) 2913 (+523) 0.05 (+0.00) 0.00 (+0.00)
1.20 get_sbom_advisories[sha256:87fd06bc…9d7b8304c0d2d9b2] 15 (0) 0 (0) 58591.13 (+261.00) 51004 (+4688) 67929 (+1529) 0.05 (+0.00) 0.00 (+0.00)
1.21 sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 15 (+5) 0 (0) 66.87 (-2.33) 8 (+1) 197 (+28) 0.05 (+0.02) 0.00 (+0.00)
1.22 get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 15 (+5) 0 (0) 8341.00 (+753.40) 6203 (+3440) 13121 (+1811) 0.05 (+0.02) 0.00 (+0.00)
1.23 post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 10 (0) 0 (0) 435.50 (+88.20) 80 (-29) 973 (+133) 0.03 (+0.00) 0.00 (+0.00)
1.24 get_purl_details[b00df2ca-df21-5…874-304e9c54e2bd] 10 (0) 0 (0) 866.20 (+277.30) 284 (+8) 1658 (+598) 0.03 (+0.00) 0.00 (+0.00)
1.25 get_recommendations[pkg:rpm/redhat/…e-metrics@2.13.8] 10 (0) 0 (0) 30.80 (-68.50) 3 (-5) 85 (-147) 0.03 (+0.00) 0.00 (+0.00)
1.26 download_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 10 (0) 0 (0) 24.90 (+8.00) 1 (-1) 129 (+28) 0.03 (+0.00) 0.00 (+0.00)
1.27 get_advisory[24ae57c3-4b57-4…2c1-83ae26059a89] 10 (0) 0 (0) 18.20 (+4.10) 1 (0) 58 (-1) 0.03 (+0.00) 0.00 (+0.00)
RestAPIUserSlow
2.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
2.1 search_licenses 1 (0) 0 (0) 98475.00 (-3812.00) 98475 (-3812) 98475 (-3812) 0.00 (+0.00) 0.00 (+0.00)
2.2 search_sboms_by_license 1 (0) 0 (0) 61951.00 (+3672.00) 61951 (+3672) 61951 (+3672) 0.00 (+0.00) 0.00 (+0.00)
2.3 search_purls_by_license 1 (0) 0 (0) 160173.00 (-1274.00) 160173 (-1274) 160173 (-1274) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUserDelete
3.0 logon 36 (-2) 0 (0) 8.69 (-1.54) 6 (0) 16 (-2) 0.12 (-0.01) 0.00 (+0.00)
3.1 delete_sbom_from_pool_sequential[100 SBOMs] 37 (-2) 0 (0) 1263.97 (+423.13) 203 (+5) 3968 (+1761) 0.12 (-0.01) 0.00 (+0.00)
Aggregated 421 (+5) 0 (0) 4523.14 (-150.11) 1 (0) 160173 (-1274) 1.40 (+0.02) 0.00 (+0.00)

Scenario Metrics

Scenario # Users # Times Run Average (ms) Min (ms) Max (ms) Scenarios/s Iterations
WebsiteUser 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser 5 (0) 10 (0) 96837.10 (-15606.00) 87523 (-12740) 102964 (-25488) 0.03 (+0.00) 2.00 (+0.00)
RestAPIUserSlow 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUserDelete 1 (0) 36 (-2) 8200.64 (+307.98) 6665 (+95) 11253 (+1213) 0.12 (-0.01) 36.00 (-2.00)
Aggregated 6 (0) 46 (-2) 27469.44 (-2204.56) 6665 (+95) 102964 (-25488) 0.15 (-0.01) 38.00 (-2.00)

User Metrics

Errors

# Error
10 (0) 404 Not Found: download_advisory[24ae57c3-4b57-4…2c1-83ae26059a89]
10 (0) 404 Not Found: get_advisory[24ae57c3-4b57-4…2c1-83ae26059a89]