Goose Attack Report

Users: 7

Target Host: http://trustify:8080/

goose v0.18.0

Plan overview

Action Started Stopped Elapsed Users
Increasing26-04-07 02:27:5626-04-07 02:28:0300:00:070 → 7
Maintaining26-04-07 02:28:0326-04-07 02:58:0300:30:007
Decreasing26-04-07 02:58:0326-04-07 02:58:1800:00:150 ← 7

Request Metrics

Method Name # Requests # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
GET download_advisory[5b25cdef-428a-4…29e-fbb3415c22ab] 300 (+4) 0 146.89 (-6.98) 23 (+1) 306 (+15) 0.17 (+0.00) 0.00 (+0.00)
GET get_advisory[5b25cdef-428a-4…29e-fbb3415c22ab] 300 (+4) 0 148.00 (-14.00) 23 (-7) 288 (-98) 0.17 (+0.00) 0.00 (+0.00)
GET get_advisory_by_doc_id 300 (+4) 0 14.92 (-3.09) 2 (0) 101 (+25) 0.17 (+0.00) 0.00 (+0.00)
GET get_analysis_latest_cpe 305 (+4) 0 6.73 (-2.83) 1 (0) 38 (-70) 0.17 (+0.00) 0.00 (+0.00)
GET get_analysis_status 305 (+4) 0 4.18 (-1.02) 1 (0) 34 (-28) 0.17 (+0.00) 0.00 (+0.00)
GET get_purl_details[0000054a-a69b-5…520-80752db183e6] 300 (+4) 0 196.21 (-27.37) 29 (+4) 509 (-64) 0.17 (+0.00) 0.00 (+0.00)
GET get_sbom[sha256:a3442b37…3040057f79c70669] 300 (+4) 0 161.19 (-16.67) 29 (0) 405 (-61) 0.17 (+0.00) 0.00 (+0.00)
GET get_sbom_license_ids[urn:uuid:019c4a…8ba-3cc0260ef778] 300 (+4) 0 11.71 (-0.81) 1 (0) 69 (+2) 0.17 (+0.00) 0.00 (+0.00)
GET list_advisory 300 (+4) 0 437.02 (-51.83) 140 (+21) 891 (-490) 0.17 (+0.00) 0.00 (+0.00)
GET list_advisory_labels 305 (+4) 0 15215.51 (+253.70) 5842 (-1408) 23920 (-86) 0.17 (+0.00) 0.00 (+0.00)
GET list_advisory_paginated 300 (+4) 0 412.06 (-48.15) 121 (+8) 893 (-508) 0.17 (+0.00) 0.00 (+0.00)
GET list_importer 301 (+5) 0 5.90 (-1.92) 1 (0) 56 (-15) 0.17 (+0.00) 0.00 (+0.00)
GET list_organizations 300 (+4) 0 206.61 (-13.66) 50 (+11) 415 (-194) 0.17 (+0.00) 0.00 (+0.00)
GET list_packages 301 (+5) 0 407.52 (-38.20) 115 (+4) 803 (-1002) 0.17 (+0.00) 0.00 (+0.00)
GET list_packages_paginated 301 (+5) 0 373.21 (-31.14) 117 (+1) 690 (-974) 0.17 (+0.00) 0.00 (+0.00)
GET list_products 305 (+4) 0 11.21 (-1.66) 2 (0) 50 (-28) 0.17 (+0.00) 0.00 (+0.00)
GET list_sboms 305 (+4) 0 1002.86 (-173.55) 857 (+101) 1490 (-2627) 0.17 (+0.00) 0.00 (+0.00)
GET list_sboms_paginated 305 (+4) 0 146.32 (-35.75) 62 (+12) 445 (-331) 0.17 (+0.00) 0.00 (+0.00)
GET list_vulnerabilities 300 (+4) 0 392.84 (-49.84) 79 (+10) 738 (-494) 0.17 (+0.00) 0.00 (+0.00)
GET list_vulnerabilities_paginated 301 (+5) 0 369.64 (-35.44) 72 (-15) 833 (-270) 0.17 (+0.00) 0.00 (+0.00)
GET sbom_by_package[pkg:oci/web-ter…-bundle&tag=1.11] 300 (+4) 0 63.07 (-11.85) 9 (+1) 311 (-55) 0.17 (+0.00) 0.00 (+0.00)
GET search_advisory 300 (+4) 0 1310.67 (-299.14) 145 (-11) 5269 (-2662) 0.17 (+0.00) 0.00 (+0.00)
GET search_exact_purl 305 (+4) 0 36.61 (+3.03) 11 (+3) 573 (+94) 0.17 (+0.00) 0.00 (+0.00)
GET search_licenses 47431 (+2580) 0 14.47 (-1.27) 2 (0) 201 (-297) 26.35 (+1.43) 0.00 (+0.00)
GET search_purls 305 (+4) 0 7324.65 (+221.67) 1768 (+77) 23212 (+9898) 0.17 (+0.00) 0.00 (+0.00)
GET search_purls_by_license 47431 (+2580) 0 5.17 (-0.26) 1 (0) 122 (+37) 26.35 (+1.43) 0.00 (+0.00)
GET search_sboms_by_license 47431 (+2580) 0 5.79 (-0.47) 1 (0) 99 (+15) 26.35 (+1.43) 0.00 (+0.00)
POST get_recommendations[pkg:maven/io.ne…8.1.redhat-00033] 300 (+4) 0 1442.28 (-21.91) 235 (+10) 3011 (-241) 0.17 (+0.00) 0.00 (+0.00)
POST post_vulnerability_analyze[pkg:rpm/redhat/squid] 300 (+4) 0 4.95 (-1.13) 1 (0) 57 (-16) 0.17 (+0.00) 0.00 (+0.00)
Aggregated 150137 (+7848) 0 68.48 (-3.94) 1 (0) 23920 (-86) 83.41 (+4.36) 0.00 (+0.00)

Response Time Metrics

Method Name 50%ile (ms) 60%ile (ms) 70%ile (ms) 80%ile (ms) 90%ile (ms) 95%ile (ms) 99%ile (ms) 100%ile (ms)
GET download_advisory[5b25cdef-428a-4…29e-fbb3415c22ab] 160 (-10) 180 (-10) 190 (0) 200 (-10) 210 (-10) 240 (-10) 270 (0) 306 (+16)
GET get_advisory[5b25cdef-428a-4…29e-fbb3415c22ab] 160 (-20) 180 (-10) 190 (-10) 200 (0) 210 (-20) 240 (-20) 270 (-30) 288 (-98)
GET get_advisory_by_doc_id 9 (-2) 10 (-4) 13 (-5) 19 (-11) 42 (-6) 52 (-2) 70 (+9) 100 (+24)
GET get_analysis_latest_cpe 5 (-1) 6 (-1) 7 (-1) 8 (-2) 11 (-7) 17 (-13) 31 (-29) 38 (-70)
GET get_analysis_status 3 (-1) 3 (-1) 4 (-1) 5 (-1) 6 (-1) 10 (-1) 31 (-11) 34 (-28)
GET get_purl_details[0000054a-a69b-5…520-80752db183e6] 200 (-20) 210 (-40) 250 (-30) 290 (-20) 320 (-40) 360 (-40) 410 (-50) 500 (-73)
GET get_sbom[sha256:a3442b37…3040057f79c70669] 160 (-20) 180 (-20) 200 (-10) 210 (-30) 270 (-20) 300 (-30) 360 (-40) 405 (-61)
GET get_sbom_license_ids[urn:uuid:019c4a…8ba-3cc0260ef778] 6 (-1) 7 (-2) 9 (-2) 13 (-2) 41 (0) 48 (-1) 63 (+6) 69 (+2)
GET list_advisory 480 (-20) 500 (0) 500 (-100) 600 (0) 600 (-100) 600 (-100) 800 (-200) 891 (-109)
GET list_advisory_labels 14,000 (0) 15,000 (0) 15,000 (0) 16,000 (-1,000) 21,000 (0) 22,000 (0) 23,000 (0) 23,920 (-80)
GET list_advisory_paginated 450 (-30) 490 (-10) 500 (0) 500 (-100) 600 (0) 600 (-100) 700 (-300) 893 (-107)
GET list_importer 3 (0) 3 (-1) 4 (-2) 7 (-2) 12 (-5) 20 (-23) 51 (+1) 56 (-15)
GET list_organizations 210 (-10) 250 (-10) 270 (0) 280 (0) 290 (-20) 310 (-40) 370 (-30) 415 (-185)
GET list_packages 460 (-10) 500 (0) 500 (0) 600 (0) 600 (0) 600 (-100) 700 (-300) 800 (-1,005)
GET list_packages_paginated 400 (-20) 460 (0) 490 (+10) 500 (0) 600 (0) 600 (0) 690 (-10) 690 (-974)
GET list_products 8 (-1) 9 (-1) 10 (-2) 12 (-3) 32 (+6) 39 (-6) 46 (-5) 50 (-28)
GET list_sboms 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (-1,000) 1,000 (-1,000) 1,000 (-2,000) 1,000 (-3,000)
GET list_sboms_paginated 150 (0) 160 (0) 160 (-20) 170 (-40) 180 (-120) 190 (-210) 220 (-280) 445 (-331)
GET list_vulnerabilities 460 (-30) 490 (-10) 500 (0) 500 (-100) 600 (0) 600 (-100) 700 (-100) 700 (-300)
GET list_vulnerabilities_paginated 420 (0) 450 (-20) 480 (-20) 500 (0) 500 (-100) 600 (0) 600 (-200) 800 (-200)
GET sbom_by_package[pkg:oci/web-ter…-bundle&tag=1.11] 59 (-4) 68 (-8) 73 (-16) 86 (-24) 120 (-30) 170 (-30) 230 (-60) 310 (-56)
GET search_advisory 1,000 (0) 1,000 (0) 2,000 (0) 2,000 (-1,000) 3,000 (-1,000) 3,000 (-1,000) 5,000 (-1,000) 5,000 (-2,931)
GET search_exact_purl 26 (+4) 28 (+3) 32 (-1) 50 (-2) 60 (-5) 65 (-8) 270 (+171) 573 (+94)
GET search_licenses 6 (-2) 8 (-2) 11 (-2) 23 (-12) 47 (-1) 52 (-1) 61 (0) 200 (-298)
GET search_purls 8,000 (+1,000) 9,000 (+1,000) 9,000 (-1,000) 9,000 (-2,000) 9,000 (-3,000) 9,000 (-3,000) 11,000 (-2,000) 23,000 (+10,000)
GET search_purls_by_license 2 (0) 2 (-1) 3 (0) 4 (-1) 8 (-1) 19 (-4) 54 (0) 120 (+35)
GET search_sboms_by_license 2 (0) 2 (-1) 3 (-1) 5 (0) 9 (-2) 40 (-1) 53 (0) 99 (+15)
POST get_recommendations[pkg:maven/io.ne…8.1.redhat-00033] 2,000 (0) 2,000 (0) 2,000 (0) 2,000 (0) 2,000 (0) 2,000 (0) 3,000 (0) 3,000 (0)
POST post_vulnerability_analyze[pkg:rpm/redhat/squid] 2 (0) 3 (0) 4 (0) 5 (0) 10 (+1) 13 (-25) 45 (-3) 57 (-16)
Aggregated 3 (-1) 4 (-1) 6 (-1) 10 (-2) 43 (-2) 55 (-1) 600 (-200) 23,920 (-80)

Status Code Metrics

Method Name Status Codes
GET download_advisory[5b25cdef-428a-4…29e-fbb3415c22ab] 300 [200]
GET get_advisory[5b25cdef-428a-4…29e-fbb3415c22ab] 300 [200]
GET get_advisory_by_doc_id 300 [200]
GET get_analysis_latest_cpe 305 [200]
GET get_analysis_status 305 [200]
GET get_purl_details[0000054a-a69b-5…520-80752db183e6] 300 [200]
GET get_sbom[sha256:a3442b37…3040057f79c70669] 300 [200]
GET get_sbom_license_ids[urn:uuid:019c4a…8ba-3cc0260ef778] 300 [200]
GET list_advisory 300 [200]
GET list_advisory_labels 305 [200]
GET list_advisory_paginated 300 [200]
GET list_importer 301 [200]
GET list_organizations 300 [200]
GET list_packages 301 [200]
GET list_packages_paginated 301 [200]
GET list_products 305 [200]
GET list_sboms 305 [200]
GET list_sboms_paginated 305 [200]
GET list_vulnerabilities 300 [200]
GET list_vulnerabilities_paginated 301 [200]
GET sbom_by_package[pkg:oci/web-ter…-bundle&tag=1.11] 300 [200]
GET search_advisory 300 [200]
GET search_exact_purl 305 [200]
GET search_licenses 47,431 [200]
GET search_purls 305 [200]
GET search_purls_by_license 47,431 [200]
GET search_sboms_by_license 47,431 [200]
POST get_recommendations[pkg:maven/io.ne…8.1.redhat-00033] 300 [200]
POST post_vulnerability_analyze[pkg:rpm/redhat/squid] 300 [200]
Aggregated 150,137 [200]

Transaction Metrics

Transaction # Times Run # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
WebsiteUser
0.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.1 website_index 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.2 website_openapi 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.3 website_sboms 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.4 website_packages 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.5 website_advisories 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.6 website_importers 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser
1.0 logon 300 (+4) 0 (0) 12.74 (-1.00) 6 (0) 26 (-12) 0.17 (+0.00) 0.00 (+0.00)
1.1 list_organizations 300 (+4) 0 (0) 206.72 (-13.66) 50 (+11) 415 (-194) 0.17 (+0.00) 0.00 (+0.00)
1.2 list_advisory 300 (+4) 0 (0) 437.05 (-51.87) 140 (+21) 891 (-490) 0.17 (+0.00) 0.00 (+0.00)
1.3 list_advisory_paginated 300 (+4) 0 (0) 412.09 (-48.16) 121 (+8) 893 (-508) 0.17 (+0.00) 0.00 (+0.00)
1.4 get_advisory_by_doc_id 300 (+4) 0 (0) 14.97 (-3.09) 2 (0) 101 (+25) 0.17 (+0.00) 0.00 (+0.00)
1.5 search_advisory 300 (+4) 0 (0) 1310.72 (-299.16) 145 (-11) 5269 (-2662) 0.17 (+0.00) 0.00 (+0.00)
1.6 list_vulnerabilities 300 (+4) 0 (0) 392.90 (-49.83) 79 (+10) 738 (-494) 0.17 (+0.00) 0.00 (+0.00)
1.7 list_vulnerabilities_paginated 301 (+5) 0 (0) 369.69 (-35.45) 72 (-15) 833 (-270) 0.17 (+0.00) 0.00 (+0.00)
1.8 list_importer 301 (+5) 0 (0) 5.94 (-1.92) 1 (0) 56 (-15) 0.17 (+0.00) 0.00 (+0.00)
1.9 list_packages 301 (+5) 0 (0) 407.56 (-38.22) 115 (+4) 803 (-1002) 0.17 (+0.00) 0.00 (+0.00)
1.10 list_packages_paginated 301 (+5) 0 (0) 373.27 (-31.17) 117 (+1) 692 (-972) 0.17 (+0.00) 0.00 (+0.00)
1.11 search_purls 305 (+4) 0 (0) 7324.70 (+221.68) 1768 (+77) 23212 (+9897) 0.17 (+0.00) 0.00 (+0.00)
1.12 search_exact_purl 305 (+4) 0 (0) 36.63 (+3.00) 11 (+3) 573 (+94) 0.17 (+0.00) 0.00 (+0.00)
1.13 list_products 305 (+4) 0 (0) 11.25 (-1.68) 2 (0) 50 (-28) 0.17 (+0.00) 0.00 (+0.00)
1.14 list_sboms 305 (+4) 0 (0) 1002.90 (-173.57) 857 (+101) 1490 (-2627) 0.17 (+0.00) 0.00 (+0.00)
1.15 list_sboms_paginated 305 (+4) 0 (0) 146.38 (-35.74) 62 (+12) 445 (-331) 0.17 (+0.00) 0.00 (+0.00)
1.16 get_analysis_status 305 (+4) 0 (0) 4.22 (-1.03) 1 (0) 34 (-28) 0.17 (+0.00) 0.00 (+0.00)
1.17 get_analysis_latest_cpe 305 (+4) 0 (0) 6.79 (-2.82) 1 (0) 38 (-70) 0.17 (+0.00) 0.00 (+0.00)
1.18 list_advisory_labels 305 (+4) 0 (0) 15215.56 (+253.69) 5842 (-1408) 23920 (-86) 0.17 (+0.00) 0.00 (+0.00)
1.19 get_sbom[sha256:a3442b37…3040057f79c70669] 300 (+4) 0 (0) 161.25 (-16.64) 29 (0) 405 (-61) 0.17 (+0.00) 0.00 (+0.00)
1.20 sbom_by_package[pkg:oci/web-ter…-bundle&tag=1.11] 300 (+4) 0 (0) 63.13 (-11.88) 9 (+1) 311 (-55) 0.17 (+0.00) 0.00 (+0.00)
1.21 get_sbom_license_ids[urn:uuid:019c4a…8ba-3cc0260ef778] 300 (+4) 0 (0) 11.78 (-0.81) 1 (0) 69 (+2) 0.17 (+0.00) 0.00 (+0.00)
1.22 post_vulnerability_analyze[pkg:rpm/redhat/squid] 300 (+4) 0 (0) 5.02 (-1.16) 1 (0) 57 (-16) 0.17 (+0.00) 0.00 (+0.00)
1.23 get_purl_details[0000054a-a69b-5…520-80752db183e6] 300 (+4) 0 (0) 196.27 (-27.38) 29 (+4) 509 (-64) 0.17 (+0.00) 0.00 (+0.00)
1.24 get_recommendations[pkg:maven/io.ne…8.1.redhat-00033] 300 (+4) 0 (0) 1442.37 (-21.92) 236 (+11) 3011 (-241) 0.17 (+0.00) 0.00 (+0.00)
1.25 download_advisory[5b25cdef-428a-4…29e-fbb3415c22ab] 300 (+4) 0 (0) 146.92 (-7.00) 23 (+1) 306 (+15) 0.17 (+0.00) 0.00 (+0.00)
1.26 get_advisory[5b25cdef-428a-4…29e-fbb3415c22ab] 300 (+4) 0 (0) 148.07 (-14.04) 23 (-7) 288 (-98) 0.17 (+0.00) 0.00 (+0.00)
RestAPIUserSlow
2.0 logon 47,431 (+2,579) 0 (0) 10.38 (-0.13) 6 (0) 54 (-7) 26.35 (+1.43) 0.00 (+0.00)
2.1 search_licenses 47,431 (+2,580) 0 (0) 14.66 (-1.30) 2 (-1) 201 (-297) 26.35 (+1.43) 0.00 (+0.00)
2.2 search_sboms_by_license 47,431 (+2,580) 0 (0) 5.83 (-0.47) 1 (0) 99 (+15) 26.35 (+1.43) 0.00 (+0.00)
2.3 search_purls_by_license 47,431 (+2,580) 0 (0) 5.21 (-0.26) 1 (0) 122 (+37) 26.35 (+1.43) 0.00 (+0.00)
RestAPIUserDelete
3.0 logon 512 (-3) 0 (0) 11.03 (-0.34) 6 (0) 46 (+14) 0.28 (-0.00) 0.00 (+0.00)
RestAdvisoryLableUser
4.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
Aggregated 198,380 (+10,428) 0 (0) 51.83 (-3.00) 1 (0) 23920 (-86) 110.21 (+5.79) 0.00 (+0.00)

Scenario Metrics

Scenario # Users # Times Run Average (ms) Min (ms) Max (ms) Scenarios/s Iterations
WebsiteUser 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser 5 (0) 300 (+4) 29913.88 (-350.60) 19920 (+741) 40172 (-4501) 0.17 (+0.00) 60.00 (+0.80)
RestAPIUserSlow 1 (0) 47,431 (+2,580) 37.46 (-2.18) 12 (-1) 228 (-345) 26.35 (+1.43) 47431.00 (+2580.00)
RestAPIUserDelete 1 (0) 512 (-3) 3516.53 (+20.66) 3020 (-1) 4018 (-1) 0.28 (-0.00) 512.00 (-3.00)
RestAdvisoryLableUser 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
Aggregated 7 (0) 48,243 (+2,581) 260.17 (-14.38) 12 (-1) 40172 (-4501) 26.80 (+1.43) 48003.00 (+2577.80)

User Metrics