Goose Attack Report

Users: 7

Target Host: http://trustify:8080/

goose v0.18.0

Plan overview

Action Started Stopped Elapsed Users
Increasing26-04-01 02:26:3626-04-01 02:26:4300:00:070 → 7
Maintaining26-04-01 02:26:4326-04-01 02:56:4300:30:007
Decreasing26-04-01 02:56:4326-04-01 02:56:4400:00:010 ← 7

Request Metrics

Method Name # Requests # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
GET download_advisory[5b25cdef-428a-4…29e-fbb3415c22ab] 299 (+239) 0 164.83 (-46.40) 21 (-9) 408 (-78) 0.17 (+0.13) 0.00 (+0.00)
GET get_advisory[5b25cdef-428a-4…29e-fbb3415c22ab] 299 (+239) 0 164.91 (-30.75) 22 (-49) 364 (-40) 0.17 (+0.13) 0.00 (+0.00)
GET get_advisory_by_doc_id 299 (+238) 0 17.24 (-16.40) 2 (-1) 76 (-94) 0.17 (+0.13) 0.00 (+0.00)
GET get_analysis_latest_cpe 300 (+240) 0 9.28 (-26.34) 1 (-6) 68 (-79) 0.17 (+0.13) 0.00 (+0.00)
GET get_analysis_status 300 (+240) 0 6.41 (-11.04) 1 (0) 51 (-29) 0.17 (+0.13) 0.00 (+0.00)
GET get_purl_details[0000054a-a69b-5…520-80752db183e6] 299 (+239) 0 223.54 (-92.09) 38 (-59) 608 (-188) 0.17 (+0.13) 0.00 (+0.00)
GET get_sbom[sha256:a3442b37…3040057f79c70669] 299 (+239) 0 192.03 (-11220.23) 33 (-430) 467 (-16214) 0.17 (+0.13) 0.00 (+0.00)
GET get_sbom_license_ids[urn:uuid:019c4a…8ba-3cc0260ef778] 299 (+239) 0 13.29 (-23.19) 1 (-1) 64 (-104) 0.17 (+0.13) 0.00 (+0.00)
GET list_advisory 299 (+239) 0 500.98 (-88.54) 148 (-55) 1348 (+29) 0.17 (+0.13) 0.00 (+0.00)
GET list_advisory_labels 300 (+240) 0 14273.98 (-1223.84) 8038 (+1276) 23827 (+2764) 0.17 (+0.13) 0.00 (+0.00)
GET list_advisory_paginated 299 (+238) 0 479.30 (+4.32) 114 (-15) 1126 (+348) 0.17 (+0.13) 0.00 (+0.00)
GET list_importer 295 (+234) 0 7.09 (-6.58) 1 (0) 61 (-17) 0.16 (+0.13) 0.00 (+0.00)
GET list_organizations 299 (+239) 0 229.82 (-18.08) 35 (-57) 573 (+123) 0.17 (+0.13) 0.00 (+0.00)
GET list_packages 295 (+234) 0 486.64 (-38.51) 111 (-59) 1197 (-8) 0.16 (+0.13) 0.00 (+0.00)
GET list_packages_paginated 295 (+234) 0 452.90 (+5.82) 116 (-55) 1594 (+795) 0.16 (+0.13) 0.00 (+0.00)
GET list_products 300 (+239) 0 14.29 (-0.08) 2 (-2) 82 (+16) 0.17 (+0.13) 0.00 (+0.00)
GET list_sboms 300 (+235) 0 1278.07 (-105214.98) 805 (-91843) 3497 (-118809) 0.17 (+0.13) 0.00 (+0.00)
GET list_sboms_paginated 300 (+240) 0 202.08 (-898.32) 82 (-596) 983 (-803) 0.17 (+0.13) 0.00 (+0.00)
GET list_vulnerabilities 298 (+237) 0 457.62 (-14.96) 67 (-54) 1410 (+720) 0.17 (+0.13) 0.00 (+0.00)
GET list_vulnerabilities_paginated 298 (+237) 0 413.97 (+16.86) 73 (-23) 884 (+66) 0.17 (+0.13) 0.00 (+0.00)
GET sbom_by_package[pkg:oci/web-ter…-bundle&tag=1.11] 299 (+239) 0 75.90 (-136.73) 8 (-23) 269 (-258) 0.17 (+0.13) 0.00 (+0.00)
GET search_advisory 299 (+238) 0 2089.49 (+307.35) 130 (-60) 11399 (+5031) 0.17 (+0.13) 0.00 (+0.00)
GET search_exact_purl 300 (+239) 0 35.74 (-35.26) 7 (-15) 105 (-167) 0.17 (+0.13) 0.00 (+0.00)
GET search_licenses 45304 (+45160) 0 15.86 (-33.52) 2 (-2) 860 (+606) 25.17 (+25.09) 0.00 (+0.00)
GET search_purls 300 (+239) 0 6798.30 (+1255.17) 1603 (-1473) 13847 (-490) 0.17 (+0.13) 0.00 (+0.00)
GET search_purls_by_license 45305 (+45160) 0 5.30 (-12388.20) 1 (-3753) 130 (-28728) 25.17 (+25.09) 0.00 (+0.00)
GET search_sboms_by_license 45304 (+45160) 0 6.00 (-59.82) 1 (-1) 96 (-201) 25.17 (+25.09) 0.00 (+0.00)
POST get_recommendations[pkg:maven/io.ne…8.1.redhat-00033] 299 (+239) 0 1486.94 (+111.96) 208 (-260) 2822 (+626) 0.17 (+0.13) 0.00 (+0.00)
POST post_vulnerability_analyze[pkg:rpm/redhat/squid] 299 (+239) 0 5.90 (-0.03) 1 (0) 50 (-1) 0.17 (+0.13) 0.00 (+0.00)
Aggregated 143681 (+141672) 0 71.29 (-5507.20) 1 (0) 23827 (-98479) 79.82 (+78.71) 0.00 (+0.00)

Response Time Metrics

Method Name 50%ile (ms) 60%ile (ms) 70%ile (ms) 80%ile (ms) 90%ile (ms) 95%ile (ms) 99%ile (ms) 100%ile (ms)
GET download_advisory[5b25cdef-428a-4…29e-fbb3415c22ab] 180 (-30) 190 (-30) 200 (-70) 210 (-70) 230 (-60) 260 (-50) 330 (-150) 408 (-78)
GET get_advisory[5b25cdef-428a-4…29e-fbb3415c22ab] 180 (-20) 190 (-20) 200 (-20) 210 (-20) 240 (-40) 270 (-20) 310 (-10) 360 (-40)
GET get_advisory_by_doc_id 12 (-10) 14 (-22) 16 (-30) 22 (-31) 46 (-19) 55 (-26) 66 (-44) 76 (-94)
GET get_analysis_latest_cpe 6 (-22) 7 (-28) 9 (-33) 11 (-43) 16 (-48) 28 (-50) 50 (-70) 68 (-79)
GET get_analysis_status 3 (-4) 4 (-5) 5 (-11) 6 (-31) 11 (-40) 34 (-25) 46 (-19) 51 (-29)
GET get_purl_details[0000054a-a69b-5…520-80752db183e6] 220 (-70) 240 (-80) 280 (-110) 300 (-100) 340 (-150) 390 (-210) 470 (-130) 600 (-196)
GET get_sbom[sha256:a3442b37…3040057f79c70669] 190 (-12,810) 200 (-13,800) 220 (-13,780) 270 (-13,730) 300 (-14,700) 350 (-15,650) 410 (-15,590) 467 (-16,214)
GET get_sbom_license_ids[urn:uuid:019c4a…8ba-3cc0260ef778] 7 (-13) 8 (-18) 11 (-45) 18 (-53) 44 (-37) 49 (-43) 58 (-62) 64 (-104)
GET list_advisory 500 (-100) 500 (-100) 600 (0) 600 (-100) 700 (-100) 700 (-100) 1,000 (+100) 1,000 (0)
GET list_advisory_labels 14,000 (-1,000) 14,000 (-1,000) 15,000 (-1,000) 16,000 (-1,000) 21,000 (+1,000) 22,000 (+2,000) 23,000 (+2,000) 23,827 (+2,827)
GET list_advisory_paginated 500 (0) 500 (0) 600 (0) 600 (0) 700 (+100) 700 (+100) 900 (+200) 1,000 (+222)
GET list_importer 4 (-1) 4 (-2) 5 (-2) 7 (-7) 13 (-43) 43 (-22) 54 (-18) 61 (-17)
GET list_organizations 250 (-20) 260 (-20) 280 (-10) 290 (0) 320 (-20) 370 (+20) 420 (+50) 573 (+123)
GET list_packages 500 (0) 500 (-100) 600 (0) 600 (0) 700 (-100) 800 (-100) 1,000 (0) 1,000 (0)
GET list_packages_paginated 470 (-10) 500 (0) 500 (-100) 600 (0) 600 (0) 700 (0) 900 (+101) 1,594 (+795)
GET list_products 10 (0) 11 (-1) 13 (-1) 17 (-1) 36 (+6) 45 (+12) 57 (+19) 82 (+16)
GET list_sboms 1,000 (-105,000) 1,000 (-105,000) 1,000 (-107,000) 1,000 (-110,000) 2,000 (-111,000) 2,000 (-111,000) 3,000 (-119,000) 3,000 (-119,000)
GET list_sboms_paginated 160 (-840) 170 (-830) 200 (-800) 270 (-730) 360 (-640) 410 (-590) 500 (-500) 983 (-803)
GET list_vulnerabilities 480 (-20) 500 (-100) 500 (-100) 600 (0) 600 (0) 700 (+100) 900 (+210) 1,000 (+310)
GET list_vulnerabilities_paginated 440 (+20) 480 (+30) 500 (+20) 500 (+10) 600 (0) 600 (0) 800 (0) 884 (+84)
GET sbom_by_package[pkg:oci/web-ter…-bundle&tag=1.11] 68 (-132) 78 (-132) 90 (-140) 110 (-170) 150 (-230) 190 (-210) 250 (-210) 269 (-231)
GET search_advisory 1,000 (0) 2,000 (+1,000) 2,000 (0) 3,000 (0) 5,000 (0) 7,000 (+1,000) 9,000 (+3,000) 11,000 (+5,000)
GET search_exact_purl 22 (-42) 35 (-31) 50 (-24) 62 (-29) 75 (-25) 87 (-13) 97 (-33) 105 (-165)
GET search_licenses 8 (-24) 10 (-35) 13 (-54) 37 (-43) 48 (-48) 53 (-117) 61 (-139) 860 (+610)
GET search_purls 6,000 (+1,000) 8,000 (+3,000) 9,000 (+3,000) 11,000 (+5,000) 12,000 (+5,000) 12,000 (+4,000) 12,000 (-2,000) 13,847 (-153)
GET search_purls_by_license 2 (-11,998) 2 (-12,998) 3 (-14,997) 5 (-15,995) 8 (-17,992) 24 (-22,976) 54 (-28,804) 130 (-28,728)
GET search_sboms_by_license 2 (-40) 3 (-59) 4 (-87) 5 (-95) 10 (-150) 41 (-139) 54 (-236) 96 (-201)
POST get_recommendations[pkg:maven/io.ne…8.1.redhat-00033] 2,000 (+1,000) 2,000 (+1,000) 2,000 (0) 2,000 (0) 2,000 (0) 2,000 (0) 2,822 (+822) 2,822 (+822)
POST post_vulnerability_analyze[pkg:rpm/redhat/squid] 3 (0) 4 (0) 4 (-1) 6 (-1) 12 (+1) 23 (+9) 46 (+5) 50 (-1)
Aggregated 3 (-257) 4 (-446) 7 (-593) 12 (-1,988) 46 (-13,954) 56 (-16,944) 800 (-107,200) 23,827 (-98,173)

Status Code Metrics

Method Name Status Codes
GET download_advisory[5b25cdef-428a-4…29e-fbb3415c22ab] 299 [200]
GET get_advisory[5b25cdef-428a-4…29e-fbb3415c22ab] 299 [200]
GET get_advisory_by_doc_id 299 [200]
GET get_analysis_latest_cpe 300 [200]
GET get_analysis_status 300 [200]
GET get_purl_details[0000054a-a69b-5…520-80752db183e6] 299 [200]
GET get_sbom[sha256:a3442b37…3040057f79c70669] 299 [200]
GET get_sbom_license_ids[urn:uuid:019c4a…8ba-3cc0260ef778] 299 [200]
GET list_advisory 299 [200]
GET list_advisory_labels 300 [200]
GET list_advisory_paginated 299 [200]
GET list_importer 295 [200]
GET list_organizations 299 [200]
GET list_packages 295 [200]
GET list_packages_paginated 295 [200]
GET list_products 300 [200]
GET list_sboms 300 [200]
GET list_sboms_paginated 300 [200]
GET list_vulnerabilities 298 [200]
GET list_vulnerabilities_paginated 298 [200]
GET sbom_by_package[pkg:oci/web-ter…-bundle&tag=1.11] 299 [200]
GET search_advisory 299 [200]
GET search_exact_purl 300 [200]
GET search_licenses 45,304 [200]
GET search_purls 300 [200]
GET search_purls_by_license 45,305 [200]
GET search_sboms_by_license 45,304 [200]
POST get_recommendations[pkg:maven/io.ne…8.1.redhat-00033] 299 [200]
POST post_vulnerability_analyze[pkg:rpm/redhat/squid] 299 [200]
Aggregated 143,681 [200]

Transaction Metrics

Transaction # Times Run # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
WebsiteUser
0.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.1 website_index 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.2 website_openapi 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.3 website_sboms 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.4 website_packages 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.5 website_advisories 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.6 website_importers 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser
1.0 logon 299 (+239) 0 (0) 13.48 (+0.71) 6 (0) 44 (+21) 0.17 (+0.13) 0.00 (+0.00)
1.1 list_organizations 299 (+239) 0 (0) 229.98 (-18.07) 35 (-57) 573 (+123) 0.17 (+0.13) 0.00 (+0.00)
1.2 list_advisory 299 (+239) 0 (0) 501.06 (-88.48) 148 (-55) 1348 (+29) 0.17 (+0.13) 0.00 (+0.00)
1.3 list_advisory_paginated 299 (+238) 0 (0) 479.35 (+4.25) 114 (-16) 1126 (+348) 0.17 (+0.13) 0.00 (+0.00)
1.4 get_advisory_by_doc_id 299 (+238) 0 (0) 17.29 (-16.38) 2 (-1) 76 (-94) 0.17 (+0.13) 0.00 (+0.00)
1.5 search_advisory 299 (+238) 0 (0) 2089.54 (+307.34) 130 (-60) 11399 (+5031) 0.17 (+0.13) 0.00 (+0.00)
1.6 list_vulnerabilities 298 (+237) 0 (0) 457.66 (-15.06) 67 (-54) 1410 (+720) 0.17 (+0.13) 0.00 (+0.00)
1.7 list_vulnerabilities_paginated 298 (+237) 0 (0) 414.03 (+16.77) 73 (-23) 884 (+66) 0.17 (+0.13) 0.00 (+0.00)
1.8 list_importer 295 (+234) 0 (0) 7.14 (-6.59) 1 (0) 61 (-17) 0.16 (+0.13) 0.00 (+0.00)
1.9 list_packages 295 (+234) 0 (0) 486.70 (-38.51) 111 (-59) 1197 (-8) 0.16 (+0.13) 0.00 (+0.00)
1.10 list_packages_paginated 295 (+234) 0 (0) 452.94 (+5.74) 116 (-55) 1594 (+795) 0.16 (+0.13) 0.00 (+0.00)
1.11 search_purls 300 (+239) 0 (0) 6798.36 (+1255.15) 1604 (-1472) 13847 (-490) 0.17 (+0.13) 0.00 (+0.00)
1.12 search_exact_purl 300 (+239) 0 (0) 35.80 (-35.24) 7 (-15) 105 (-167) 0.17 (+0.13) 0.00 (+0.00)
1.13 list_products 300 (+239) 0 (0) 14.33 (-0.08) 2 (-2) 82 (+16) 0.17 (+0.13) 0.00 (+0.00)
1.14 list_sboms 300 (+235) 0 (0) 1278.13 (-105214.91) 805 (-91843) 3497 (-118809) 0.17 (+0.13) 0.00 (+0.00)
1.15 list_sboms_paginated 300 (+240) 0 (0) 202.12 (-898.33) 82 (-596) 983 (-803) 0.17 (+0.13) 0.00 (+0.00)
1.16 get_analysis_status 300 (+240) 0 (0) 6.46 (-11.02) 1 (0) 51 (-29) 0.17 (+0.13) 0.00 (+0.00)
1.17 get_analysis_latest_cpe 300 (+240) 0 (0) 9.30 (-26.33) 1 (-6) 68 (-79) 0.17 (+0.13) 0.00 (+0.00)
1.18 list_advisory_labels 300 (+240) 0 (0) 14274.03 (-1223.87) 8038 (+1276) 23827 (+2764) 0.17 (+0.13) 0.00 (+0.00)
1.19 get_sbom[sha256:a3442b37…3040057f79c70669] 299 (+239) 0 (0) 192.11 (-11220.24) 33 (-430) 467 (-16214) 0.17 (+0.13) 0.00 (+0.00)
1.20 sbom_by_package[pkg:oci/web-ter…-bundle&tag=1.11] 299 (+239) 0 (0) 75.99 (-136.71) 8 (-23) 269 (-258) 0.17 (+0.13) 0.00 (+0.00)
1.21 get_sbom_license_ids[urn:uuid:019c4a…8ba-3cc0260ef778] 299 (+239) 0 (0) 13.34 (-23.19) 1 (-1) 64 (-104) 0.17 (+0.13) 0.00 (+0.00)
1.22 post_vulnerability_analyze[pkg:rpm/redhat/squid] 299 (+239) 0 (0) 5.95 (-0.02) 1 (0) 50 (-1) 0.17 (+0.13) 0.00 (+0.00)
1.23 get_purl_details[0000054a-a69b-5…520-80752db183e6] 299 (+239) 0 (0) 223.63 (-92.04) 38 (-59) 608 (-188) 0.17 (+0.13) 0.00 (+0.00)
1.24 get_recommendations[pkg:maven/io.ne…8.1.redhat-00033] 299 (+239) 0 (0) 1487.05 (+112.00) 208 (-260) 2822 (+625) 0.17 (+0.13) 0.00 (+0.00)
1.25 download_advisory[5b25cdef-428a-4…29e-fbb3415c22ab] 299 (+239) 0 (0) 164.89 (-46.43) 21 (-9) 408 (-78) 0.17 (+0.13) 0.00 (+0.00)
1.26 get_advisory[5b25cdef-428a-4…29e-fbb3415c22ab] 299 (+239) 0 (0) 164.99 (-30.80) 22 (-49) 364 (-40) 0.17 (+0.13) 0.00 (+0.00)
RestAPIUserSlow
2.0 logon 45,304 (+45,160) 0 (0) 10.29 (-0.18) 6 (0) 60 (+32) 25.17 (+25.09) 0.00 (+0.00)
2.1 search_licenses 45,304 (+45,160) 0 (0) 16.03 (-33.50) 2 (-2) 860 (+606) 25.17 (+25.09) 0.00 (+0.00)
2.2 search_sboms_by_license 45,304 (+45,160) 0 (0) 6.04 (-59.83) 1 (-1) 96 (-201) 25.17 (+25.09) 0.00 (+0.00)
2.3 search_purls_by_license 45,305 (+45,160) 0 (0) 5.34 (-12388.22) 1 (-3753) 130 (-28728) 25.17 (+25.09) 0.00 (+0.00)
RestAPIUserDelete
3.0 logon 513 (+2) 0 (0) 11.20 (+1.48) 6 (0) 52 (+29) 0.28 (+0.00) 0.00 (+0.00)
RestAdvisoryLableUser
4.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
Aggregated 189,797 (+187,073) 0 (0) 53.97 (-4060.27) 1 (0) 23827 (-98479) 105.44 (+103.93) 0.00 (+0.00)

Scenario Metrics

Scenario # Users # Times Run Average (ms) Min (ms) Max (ms) Scenarios/s Iterations
WebsiteUser 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser 5 (0) 299 (+239) 30041.15 (-118304.40) 21380 (-106912) 45130 (-123459) 0.17 (+0.13) 59.80 (+47.80)
RestAPIUserSlow 1 (0) 45,304 (+45,160) 39.24 (-12470.50) 12 (-3768) 879 (-28054) 25.17 (+25.09) 45304.00 (+45160.00)
RestAPIUserDelete 1 (0) 513 (+2) 3511.11 (-12.93) 3016 (-5) 4021 (+1) 0.28 (+0.00) 513.00 (+2.00)
RestAdvisoryLableUser 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
Aggregated 7 (0) 46,116 (+45,401) 272.38 (-17214.22) 12 (-3009) 45130 (-123459) 25.62 (+25.22) 45876.80 (+45209.80)

User Metrics