Goose Attack Report

Users: 5

Target Host: http://trustify:8080/

goose v0.18.0

Plan overview

Action Started Stopped Elapsed Users
Increasing25-08-11 03:47:5925-08-11 03:48:0400:00:050 → 5
Maintaining25-08-11 03:48:0425-08-11 03:53:0500:05:015
Decreasing25-08-11 03:53:0525-08-11 03:53:1400:00:090 ← 5

Request Metrics

Method Name # Requests # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
GET get_advisory_by_doc_id 70 (0) 0 11.11 (+0.11) 3 (0) 67 (+9) 0.23 (+0.00) 0.00 (+0.00)
GET get_analysis_latest_cpe 70 (0) 0 124.51 (-0.81) 32 (-7) 382 (+82) 0.23 (+0.00) 0.00 (+0.00)
GET get_analysis_status 70 (0) 0 6.60 (+2.90) 1 (0) 55 (+18) 0.23 (+0.00) 0.00 (+0.00)
GET get_sbom[sha256:720e4451…a939656247164447] 70 (0) 0 882.04 (-6.27) 251 (+35) 2125 (+97) 0.23 (+0.00) 0.00 (+0.00)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 70 (0) 0 850.96 (+10.37) 363 (-128) 1216 (+149) 0.23 (+0.00) 0.00 (+0.00)
GET list_advisory 70 (0) 0 472.27 (+8.11) 190 (-30) 795 (+11) 0.23 (+0.00) 0.00 (+0.00)
GET list_advisory_paginated 70 (0) 0 399.26 (+0.10) 120 (-75) 574 (-121) 0.23 (+0.00) 0.00 (+0.00)
GET list_importer 70 (0) 0 2.16 (-3.70) 1 (0) 6 (-51) 0.23 (+0.00) 0.00 (+0.00)
GET list_organizations 70 (0) 0 6.59 (-0.99) 1 (0) 46 (0) 0.23 (+0.00) 0.00 (+0.00)
GET list_packages 70 (0) 0 480.56 (+120.53) 373 (+289) 841 (+13) 0.23 (+0.00) 0.00 (+0.00)
GET list_packages_paginated 70 (0) 0 419.41 (+98.13) 114 (+17) 581 (+82) 0.23 (+0.00) 0.00 (+0.00)
GET list_products 70 (-5) 0 9.61 (+2.04) 4 (0) 47 (+24) 0.23 (-0.02) 0.00 (+0.00)
GET list_sboms 70 (-5) 0 1299.40 (+94.92) 701 (+156) 2090 (+294) 0.23 (-0.02) 0.00 (+0.00)
GET list_sboms_paginated 70 (-2) 0 1639.49 (+129.42) 583 (+160) 3485 (+479) 0.23 (-0.01) 0.00 (+0.00)
GET list_vulnerabilities 70 (0) 0 366.93 (+152.63) 103 (+64) 476 (+98) 0.23 (+0.00) 0.00 (+0.00)
GET list_vulnerabilities_paginated 70 (0) 0 197.66 (+36.47) 148 (+114) 245 (-41) 0.23 (+0.00) 0.00 (+0.00)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 70 (0) 0 62.07 (+0.36) 11 (0) 191 (+13) 0.23 (+0.00) 0.00 (+0.00)
GET search_advisory 70 (0) 0 922.26 (+26.21) 213 (+67) 2190 (+9) 0.23 (+0.00) 0.00 (+0.00)
GET search_exact_purl 70 (-5) 0 10.89 (-10.94) 2 (-17) 53 (+25) 0.23 (-0.02) 0.00 (+0.00)
GET search_purls 75 (0) 0 12584.73 (+123.00) 7685 (-2507) 20109 (+5033) 0.25 (+0.00) 0.00 (+0.00)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 70 (0) 0 561.24 (-44.41) 273 (-91) 945 (-94) 0.23 (+0.00) 0.00 (+0.00)
Aggregated 1475 (-17) 0 1053.97 (+40.90) 1 (0) 20109 (+5033) 4.92 (-0.06) 0.00 (+0.00)

Response Time Metrics

Method Name 50%ile (ms) 60%ile (ms) 70%ile (ms) 80%ile (ms) 90%ile (ms) 95%ile (ms) 99%ile (ms) 100%ile (ms)
GET get_advisory_by_doc_id 6 (+1) 7 (+1) 9 (+1) 13 (+2) 23 (-3) 43 (-7) 59 (+1) 67 (+9)
GET get_analysis_latest_cpe 110 (0) 120 (0) 150 (0) 160 (-10) 210 (+30) 220 (+30) 280 (+70) 380 (+80)
GET get_analysis_status 3 (+1) 3 (0) 4 (+1) 5 (+1) 8 (+2) 49 (+42) 51 (+16) 55 (+18)
GET get_sbom[sha256:720e4451…a939656247164447] 700 (+100) 900 (+100) 1,000 (0) 1,000 (-1,000) 2,000 (0) 2,000 (0) 2,000 (0) 2,000 (0)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 900 (0) 900 (0) 1,000 (+100) 1,000 (+100) 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (0)
GET list_advisory 470 (0) 500 (+20) 500 (+10) 600 (+100) 600 (0) 700 (+100) 795 (+95) 795 (+11)
GET list_advisory_paginated 430 (+30) 450 (+40) 460 (+20) 480 (+30) 490 (-10) 500 (0) 574 (-26) 574 (-121)
GET list_importer 2 (0) 2 (0) 2 (-1) 3 (0) 3 (-3) 4 (-38) 4 (-45) 6 (-51)
GET list_organizations 3 (-1) 4 (0) 6 (0) 8 (+1) 13 (-4) 27 (-11) 43 (0) 46 (0)
GET list_packages 440 (+40) 450 (+40) 450 (+30) 500 (+40) 600 (+110) 800 (+300) 800 (+200) 800 (0)
GET list_packages_paginated 420 (+40) 460 (+70) 480 (+80) 490 (+80) 500 (+80) 581 (+111) 581 (+101) 581 (+82)
GET list_products 7 (+1) 8 (+1) 9 (+1) 11 (+2) 13 (+3) 43 (+22) 46 (+23) 47 (+24)
GET list_sboms 1,000 (0) 1,000 (0) 2,000 (+1,000) 2,000 (+1,000) 2,000 (+204) 2,000 (+204) 2,000 (+204) 2,000 (+204)
GET list_sboms_paginated 2,000 (+1,000) 2,000 (0) 2,000 (0) 2,000 (0) 3,000 (+1,000) 3,000 (0) 3,000 (0) 3,000 (0)
GET list_vulnerabilities 380 (+160) 390 (+160) 400 (+150) 430 (+160) 440 (+140) 460 (+150) 470 (+150) 476 (+98)
GET list_vulnerabilities_paginated 200 (+30) 210 (+30) 220 (+30) 220 (+10) 230 (-10) 240 (-30) 240 (-40) 245 (-41)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 53 (-15) 67 (-5) 80 (+2) 95 (+7) 120 (+24) 170 (+50) 180 (+10) 190 (+12)
GET search_advisory 800 (0) 900 (0) 1,000 (0) 1,000 (0) 2,000 (0) 2,000 (0) 2,000 (0) 2,000 (0)
GET search_exact_purl 7 (-14) 8 (-13) 8 (-15) 9 (-15) 12 (-14) 47 (+21) 48 (+20) 53 (+25)
GET search_purls 11,000 (-1,000) 11,000 (-1,000) 18,000 (+5,000) 19,000 (+5,000) 20,000 (+6,000) 20,000 (+5,000) 20,000 (+5,000) 20,000 (+5,000)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 600 (0) 600 (0) 600 (-100) 700 (0) 800 (0) 800 (-100) 800 (-200) 900 (-100)
Aggregated 380 (+100) 450 (+40) 600 (+100) 800 (-100) 2,000 (+1,000) 8,000 (+5,000) 19,000 (+5,000) 20,000 (+5,000)

Status Code Metrics

Method Name Status Codes
GET get_advisory_by_doc_id 70 [200]
GET get_analysis_latest_cpe 70 [200]
GET get_analysis_status 70 [200]
GET get_sbom[sha256:720e4451…a939656247164447] 70 [200]
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 70 [200]
GET list_advisory 70 [200]
GET list_advisory_paginated 70 [200]
GET list_importer 70 [200]
GET list_organizations 70 [200]
GET list_packages 70 [200]
GET list_packages_paginated 70 [200]
GET list_products 70 [200]
GET list_sboms 70 [200]
GET list_sboms_paginated 70 [200]
GET list_vulnerabilities 70 [200]
GET list_vulnerabilities_paginated 70 [200]
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 70 [200]
GET search_advisory 70 [200]
GET search_exact_purl 70 [200]
GET search_purls 75 [200]
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 70 [200]
Aggregated 1,475 [200]

Transaction Metrics

Transaction # Times Run # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
WebsiteUser
0.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.1 website_index 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.2 website_openapi 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.3 website_sboms 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.4 website_packages 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.5 website_advisories 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.6 website_importers 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser
1.0 logon 70 (0) 0 (0) 14.29 (-0.37) 10 (+2) 26 (+1) 0.23 (+0.00) 0.00 (+0.00)
1.1 list_organizations 70 (0) 0 (0) 6.83 (-1.00) 1 (0) 46 (-3) 0.23 (+0.00) 0.00 (+0.00)
1.2 list_advisory 70 (0) 0 (0) 472.33 (+8.07) 190 (-30) 795 (+11) 0.23 (+0.00) 0.00 (+0.00)
1.3 list_advisory_paginated 70 (0) 0 (0) 399.33 (+0.09) 120 (-75) 574 (-121) 0.23 (+0.00) 0.00 (+0.00)
1.4 get_advisory_by_doc_id 70 (0) 0 (0) 11.14 (+0.09) 3 (0) 67 (+9) 0.23 (+0.00) 0.00 (+0.00)
1.5 search_advisory 70 (0) 0 (0) 922.33 (+26.23) 213 (+67) 2190 (+9) 0.23 (+0.00) 0.00 (+0.00)
1.6 list_vulnerabilities 70 (0) 0 (0) 366.96 (+152.66) 103 (+64) 476 (+98) 0.23 (+0.00) 0.00 (+0.00)
1.7 list_vulnerabilities_paginated 70 (0) 0 (0) 197.67 (+36.49) 148 (+114) 245 (-41) 0.23 (+0.00) 0.00 (+0.00)
1.8 list_importer 70 (0) 0 (0) 2.16 (-3.71) 1 (0) 6 (-51) 0.23 (+0.00) 0.00 (+0.00)
1.9 list_packages 70 (0) 0 (0) 480.60 (+120.50) 373 (+289) 841 (+13) 0.23 (+0.00) 0.00 (+0.00)
1.10 list_packages_paginated 70 (0) 0 (0) 419.44 (+98.09) 114 (+17) 581 (+82) 0.23 (+0.00) 0.00 (+0.00)
1.11 search_purls 75 (0) 0 (0) 12584.76 (+122.95) 7685 (-2507) 20109 (+5032) 0.25 (+0.00) 0.00 (+0.00)
1.12 search_exact_purl 70 (-5) 0 (0) 10.91 (-10.95) 2 (-17) 53 (+25) 0.23 (-0.02) 0.00 (+0.00)
1.13 list_products 70 (-5) 0 (0) 9.67 (+2.06) 4 (0) 47 (+24) 0.23 (-0.02) 0.00 (+0.00)
1.14 list_sboms 70 (-5) 0 (0) 1299.44 (+94.92) 701 (+156) 2090 (+294) 0.23 (-0.02) 0.00 (+0.00)
1.15 list_sboms_paginated 70 (-2) 0 (0) 1639.59 (+129.47) 583 (+160) 3485 (+479) 0.23 (-0.01) 0.00 (+0.00)
1.16 get_analysis_status 70 (0) 0 (0) 6.69 (+2.96) 1 (0) 56 (+19) 0.23 (+0.00) 0.00 (+0.00)
1.17 get_analysis_latest_cpe 70 (0) 0 (0) 124.61 (-0.76) 32 (-7) 382 (+82) 0.23 (+0.00) 0.00 (+0.00)
1.18 get_sbom[sha256:720e4451…a939656247164447] 70 (0) 0 (0) 882.11 (-6.29) 251 (+35) 2125 (+97) 0.23 (+0.00) 0.00 (+0.00)
1.19 sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 70 (0) 0 (0) 62.13 (+0.33) 11 (0) 191 (+13) 0.23 (+0.00) 0.00 (+0.00)
1.20 get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 70 (0) 0 (0) 851.03 (+10.40) 363 (-128) 1216 (+149) 0.23 (+0.00) 0.00 (+0.00)
1.21 post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 70 (0) 0 (0) 561.36 (-44.43) 273 (-91) 945 (-94) 0.23 (+0.00) 0.00 (+0.00)
Aggregated 1,545 (-17) 0 (0) 1006.22 (+38.54) 1 (0) 20109 (+5032) 5.15 (-0.06) 0.00 (+0.00)

Scenario Metrics

Scenario # Users # Times Run Average (ms) Min (ms) Max (ms) Scenarios/s Iterations
WebsiteUser 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser 5 (0) 70 (0) 21427.24 (+822.79) 16342 (+1453) 30697 (+5960) 0.23 (+0.00) 14.00 (+0.00)
Aggregated 5 (0) 70 (0) 21427.24 (+822.79) 16342 (+1453) 30697 (+5960) 0.23 (+0.00) 14.00 (+0.00)

User Metrics