Goose Attack Report

Users: 5

Target Host: http://trustify:8080/

goose v0.18.0

Plan overview

Action Started Stopped Elapsed Users
Increasing25-07-20 03:49:4125-07-20 03:49:4600:00:050 → 5
Maintaining25-07-20 03:49:4625-07-20 03:54:4600:05:005
Decreasing25-07-20 03:54:4625-07-20 03:54:4700:00:010 ← 5

Request Metrics

Method Name # Requests # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
GET get_advisory_by_doc_id 94 (+29) 0 12.29 (+0.90) 3 (0) 62 (+5) 0.31 (+0.10) 0.00 (+0.00)
GET get_analysis_latest_cpe 95 (+25) 0 117.71 (-23.87) 39 (+6) 309 (-15) 0.32 (+0.08) 0.00 (+0.00)
GET get_analysis_status 95 (+25) 0 5.22 (-5.72) 1 (0) 60 (+2) 0.32 (+0.08) 0.00 (+0.00)
GET get_sbom[sha256:720e4451…a939656247164447] 95 (+25) 0 1614.73 (+541.94) 383 (+54) 4686 (+2317) 0.32 (+0.08) 0.00 (+0.00)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 94 (+27) 0 950.20 (+102.66) 626 (+186) 1486 (+379) 0.31 (+0.09) 0.00 (+0.00)
GET list_advisory 94 (+29) 0 457.11 (+4.24) 202 (-72) 852 (+94) 0.31 (+0.10) 0.00 (+0.00)
GET list_advisory_paginated 94 (+29) 0 386.31 (-18.23) 139 (-51) 609 (-79) 0.31 (+0.10) 0.00 (+0.00)
GET list_importer 93 (+28) 0 5.22 (+2.83) 1 (0) 54 (+43) 0.31 (+0.09) 0.00 (+0.00)
GET list_organizations 94 (+29) 0 13.40 (+3.84) 1 (0) 52 (+9) 0.31 (+0.10) 0.00 (+0.00)
GET list_packages 93 (+28) 0 362.23 (-40.17) 105 (+13) 951 (+190) 0.31 (+0.09) 0.00 (+0.00)
GET list_packages_paginated 93 (+28) 0 336.25 (-28.80) 98 (-8) 567 (-121) 0.31 (+0.09) 0.00 (+0.00)
GET list_products 98 (+28) 0 11.19 (+3.15) 3 (-1) 59 (+8) 0.33 (+0.09) 0.00 (+0.00)
GET list_sboms 98 (+28) 0 1440.91 (+304.28) 782 (-11) 2166 (+707) 0.33 (+0.09) 0.00 (+0.00)
GET list_sboms_paginated 97 (+27) 0 3703.62 (+1562.18) 555 (-62) 9478 (+5785) 0.32 (+0.09) 0.00 (+0.00)
GET list_vulnerabilities 93 (+28) 0 247.46 (-50.15) 56 (0) 613 (-50) 0.31 (+0.09) 0.00 (+0.00)
GET list_vulnerabilities_paginated 93 (+28) 0 182.44 (-2.47) 43 (+2) 303 (-12) 0.31 (+0.09) 0.00 (+0.00)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 94 (+27) 0 76.36 (-0.18) 14 (-1) 206 (-62) 0.31 (+0.09) 0.00 (+0.00)
GET search_advisory 94 (+29) 0 894.80 (-16.97) 174 (-20) 1990 (-155) 0.31 (+0.10) 0.00 (+0.00)
GET search_exact_purl 98 (+28) 0 11.62 (+3.35) 2 (-1) 62 (+13) 0.33 (+0.09) 0.00 (+0.00)
GET search_purls 98 (+28) 0 4223.39 (-8587.53) 1464 (-4986) 14309 (-1827) 0.33 (+0.09) 0.00 (+0.00)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 94 (+29) 0 686.06 (+70.06) 400 (+116) 1216 (+79) 0.31 (+0.10) 0.00 (+0.00)
Aggregated 1991 (+582) 0 760.36 (-313.35) 1 (0) 14309 (-1827) 6.64 (+1.94) 0.00 (+0.00)

Response Time Metrics

Method Name 50%ile (ms) 60%ile (ms) 70%ile (ms) 80%ile (ms) 90%ile (ms) 95%ile (ms) 99%ile (ms) 100%ile (ms)
GET get_advisory_by_doc_id 6 (0) 7 (0) 9 (0) 11 (-2) 42 (+9) 56 (+5) 58 (+6) 62 (+5)
GET get_analysis_latest_cpe 100 (-20) 120 (-60) 130 (-70) 160 (-40) 180 (-40) 190 (-110) 260 (-60) 309 (-11)
GET get_analysis_status 2 (-1) 3 (-1) 3 (-2) 4 (-3) 8 (-40) 33 (-20) 55 (-2) 60 (+2)
GET get_sbom[sha256:720e4451…a939656247164447] 1,000 (+100) 1,000 (0) 1,000 (0) 3,000 (+2,000) 4,000 (+2,000) 4,000 (+2,000) 4,000 (+2,000) 4,686 (+2,686)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 1,000 (+100) 1,000 (+100) 1,000 (+100) 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (0)
GET list_advisory 440 (-10) 460 (-10) 490 (0) 500 (0) 600 (+100) 600 (0) 800 (+100) 852 (+94)
GET list_advisory_paginated 390 (-20) 400 (-30) 410 (-40) 460 (0) 500 (0) 500 (0) 600 (0) 600 (-88)
GET list_importer 2 (0) 2 (0) 3 (+1) 3 (0) 7 (+3) 34 (+29) 54 (+44) 54 (+43)
GET list_organizations 4 (0) 5 (0) 8 (+1) 33 (+18) 42 (+8) 44 (+5) 50 (+11) 52 (+9)
GET list_packages 360 (-40) 370 (-40) 380 (-80) 390 (-90) 430 (-170) 490 (-210) 700 (-61) 951 (+190)
GET list_packages_paginated 330 (-50) 360 (-40) 380 (-30) 390 (-90) 420 (-80) 420 (-80) 500 (0) 567 (-121)
GET list_products 7 (0) 8 (0) 8 (-1) 10 (+1) 15 (+4) 56 (+44) 58 (+46) 59 (+8)
GET list_sboms 1,000 (0) 2,000 (+1,000) 2,000 (+1,000) 2,000 (+1,000) 2,000 (+1,000) 2,000 (+1,000) 2,000 (+1,000) 2,000 (+1,000)
GET list_sboms_paginated 4,000 (+2,000) 4,000 (+2,000) 5,000 (+2,000) 5,000 (+2,000) 5,000 (+2,000) 7,000 (+4,000) 9,000 (+5,307) 9,000 (+5,307)
GET list_vulnerabilities 230 (-60) 270 (-50) 280 (-60) 290 (-80) 320 (-170) 360 (-140) 600 (+100) 600 (-63)
GET list_vulnerabilities_paginated 180 (-10) 190 (-10) 200 (-10) 210 (0) 260 (-10) 270 (-10) 290 (0) 300 (-15)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 72 (-3) 77 (-9) 110 (+16) 120 (+10) 170 (+40) 180 (0) 200 (-10) 206 (-62)
GET search_advisory 800 (0) 900 (0) 1,000 (0) 1,000 (0) 1,990 (-10) 1,990 (-10) 1,990 (-10) 1,990 (-10)
GET search_exact_purl 6 (-1) 6 (-1) 7 (-1) 8 (0) 44 (+35) 55 (+44) 57 (+8) 62 (+13)
GET search_purls 2,000 (-12,000) 2,000 (-12,000) 5,000 (-10,000) 8,000 (-7,000) 10,000 (-5,000) 13,000 (-2,000) 14,000 (-1,000) 14,000 (-2,000)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 700 (+100) 700 (+100) 700 (0) 800 (+100) 900 (+100) 900 (-100) 1,000 (0) 1,000 (0)
Aggregated 310 (-10) 400 (-40) 600 (0) 1,000 (+100) 2,000 (0) 4,000 (0) 8,000 (-7,000) 14,000 (-2,000)

Status Code Metrics

Method Name Status Codes
GET get_advisory_by_doc_id 94 [200]
GET get_analysis_latest_cpe 95 [200]
GET get_analysis_status 95 [200]
GET get_sbom[sha256:720e4451…a939656247164447] 95 [200]
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 94 [200]
GET list_advisory 94 [200]
GET list_advisory_paginated 94 [200]
GET list_importer 93 [200]
GET list_organizations 94 [200]
GET list_packages 93 [200]
GET list_packages_paginated 93 [200]
GET list_products 98 [200]
GET list_sboms 98 [200]
GET list_sboms_paginated 97 [200]
GET list_vulnerabilities 93 [200]
GET list_vulnerabilities_paginated 93 [200]
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 94 [200]
GET search_advisory 94 [200]
GET search_exact_purl 98 [200]
GET search_purls 98 [200]
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 94 [200]
Aggregated 1,991 [200]

Transaction Metrics

Transaction # Times Run # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
WebsiteUser
0.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.1 website_index 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.2 website_openapi 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.3 website_sboms 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.4 website_packages 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.5 website_advisories 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.6 website_importers 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser
1.0 logon 94 (+29) 0 (0) 13.46 (-0.93) 7 (0) 21 (-12) 0.31 (+0.10) 0.00 (+0.00)
1.1 list_organizations 94 (+29) 0 (0) 13.61 (+3.90) 1 (-1) 52 (+9) 0.31 (+0.10) 0.00 (+0.00)
1.2 list_advisory 94 (+29) 0 (0) 457.21 (+4.32) 202 (-72) 852 (+94) 0.31 (+0.10) 0.00 (+0.00)
1.3 list_advisory_paginated 94 (+29) 0 (0) 386.40 (-18.20) 139 (-52) 609 (-79) 0.31 (+0.10) 0.00 (+0.00)
1.4 get_advisory_by_doc_id 94 (+29) 0 (0) 12.31 (+0.88) 3 (0) 62 (+5) 0.31 (+0.10) 0.00 (+0.00)
1.5 search_advisory 94 (+29) 0 (0) 894.84 (-16.96) 174 (-20) 1990 (-155) 0.31 (+0.10) 0.00 (+0.00)
1.6 list_vulnerabilities 93 (+28) 0 (0) 247.49 (-50.17) 56 (0) 613 (-50) 0.31 (+0.09) 0.00 (+0.00)
1.7 list_vulnerabilities_paginated 93 (+28) 0 (0) 182.55 (-2.42) 43 (+2) 303 (-12) 0.31 (+0.09) 0.00 (+0.00)
1.8 list_importer 93 (+28) 0 (0) 5.26 (+2.87) 1 (0) 54 (+43) 0.31 (+0.09) 0.00 (+0.00)
1.9 list_packages 93 (+28) 0 (0) 362.31 (-40.17) 105 (+13) 951 (+189) 0.31 (+0.09) 0.00 (+0.00)
1.10 list_packages_paginated 93 (+28) 0 (0) 336.31 (-28.83) 99 (-7) 567 (-121) 0.31 (+0.09) 0.00 (+0.00)
1.11 search_purls 98 (+28) 0 (0) 4223.48 (-8587.49) 1464 (-4986) 14309 (-1827) 0.33 (+0.09) 0.00 (+0.00)
1.12 search_exact_purl 98 (+28) 0 (0) 11.71 (+3.43) 2 (-1) 62 (+13) 0.33 (+0.09) 0.00 (+0.00)
1.13 list_products 98 (+28) 0 (0) 11.21 (+3.14) 3 (-1) 59 (+8) 0.33 (+0.09) 0.00 (+0.00)
1.14 list_sboms 98 (+28) 0 (0) 1441.00 (+304.34) 782 (-11) 2166 (+707) 0.33 (+0.09) 0.00 (+0.00)
1.15 list_sboms_paginated 97 (+27) 0 (0) 3703.78 (+1562.31) 555 (-62) 9478 (+5785) 0.32 (+0.09) 0.00 (+0.00)
1.16 get_analysis_status 95 (+25) 0 (0) 5.24 (-5.77) 1 (0) 60 (+2) 0.32 (+0.08) 0.00 (+0.00)
1.17 get_analysis_latest_cpe 95 (+25) 0 (0) 117.77 (-23.82) 39 (+6) 309 (-15) 0.32 (+0.08) 0.00 (+0.00)
1.18 get_sbom[sha256:720e4451…a939656247164447] 95 (+25) 0 (0) 1614.79 (+541.96) 383 (+54) 4686 (+2317) 0.32 (+0.08) 0.00 (+0.00)
1.19 sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 94 (+27) 0 (0) 76.49 (-0.15) 14 (-1) 206 (-62) 0.31 (+0.09) 0.00 (+0.00)
1.20 get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 94 (+27) 0 (0) 950.34 (+102.77) 626 (+186) 1486 (+379) 0.31 (+0.09) 0.00 (+0.00)
1.21 post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 94 (+29) 0 (0) 686.13 (+70.13) 400 (+116) 1216 (+79) 0.31 (+0.10) 0.00 (+0.00)
Aggregated 2,085 (+611) 0 (0) 726.08 (-300.28) 1 (0) 14309 (-1827) 6.95 (+2.04) 0.00 (+0.00)

Scenario Metrics

Scenario # Users # Times Run Average (ms) Min (ms) Max (ms) Scenarios/s Iterations
WebsiteUser 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser 5 (0) 94 (+29) 15745.83 (-6191.66) 9440 (-1518) 25729 (-1728) 0.31 (+0.10) 18.80 (+5.80)
Aggregated 5 (0) 94 (+29) 15745.83 (-6191.66) 9440 (-1518) 25729 (-1728) 0.31 (+0.10) 18.80 (+5.80)

User Metrics