Goose Attack Report

Users: 5

Target Host: http://trustify:8080/

goose v0.18.0

Plan overview

Action Started Stopped Elapsed Users
Increasing25-08-23 03:08:4125-08-23 03:08:4600:00:050 → 5
Maintaining25-08-23 03:08:4625-08-23 03:13:4600:05:005
Decreasing25-08-23 03:13:4625-08-23 03:13:4800:00:020 ← 5

Request Metrics

Method Name # Requests # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
GET get_advisory_by_doc_id 95 (+15) 0 15.25 (+2.90) 3 (0) 68 (+9) 0.32 (+0.05) 0.00 (+0.00)
GET get_analysis_latest_cpe 95 (+14) 0 142.18 (+17.24) 35 (-1) 302 (+15) 0.32 (+0.05) 0.00 (+0.00)
GET get_analysis_status 95 (+14) 0 4.62 (-0.97) 1 (0) 56 (-2) 0.32 (+0.05) 0.00 (+0.00)
GET get_sbom[sha256:720e4451…a939656247164447] 95 (+15) 0 836.94 (-424.56) 209 (-22) 1999 (-1500) 0.32 (+0.05) 0.00 (+0.00)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 95 (+15) 0 830.58 (-100.06) 486 (+145) 1196 (-119) 0.32 (+0.05) 0.00 (+0.00)
GET list_advisory 95 (+15) 0 477.22 (+43.32) 197 (+75) 973 (+206) 0.32 (+0.05) 0.00 (+0.00)
GET list_advisory_paginated 95 (+15) 0 401.00 (+22.48) 155 (+47) 660 (+75) 0.32 (+0.05) 0.00 (+0.00)
GET list_importer 95 (+18) 0 4.47 (+0.10) 1 (0) 55 (+4) 0.32 (+0.06) 0.00 (+0.00)
GET list_organizations 95 (+15) 0 10.09 (-2.74) 1 (0) 55 (0) 0.32 (+0.05) 0.00 (+0.00)
GET list_packages 95 (+18) 0 396.17 (+51.79) 110 (+18) 922 (+17) 0.32 (+0.06) 0.00 (+0.00)
GET list_packages_paginated 95 (+18) 0 346.44 (+34.31) 108 (+2) 579 (+104) 0.32 (+0.06) 0.00 (+0.00)
GET list_products 95 (+13) 0 5.93 (-4.94) 3 (0) 11 (-71) 0.32 (+0.04) 0.00 (+0.00)
GET list_sboms 95 (+13) 0 1172.18 (-142.08) 522 (-33) 1680 (-292) 0.32 (+0.04) 0.00 (+0.00)
GET list_sboms_paginated 95 (+14) 0 1645.23 (-1134.77) 485 (0) 3515 (-2948) 0.32 (+0.05) 0.00 (+0.00)
GET list_vulnerabilities 95 (+18) 0 216.12 (+2.84) 63 (+11) 394 (+33) 0.32 (+0.06) 0.00 (+0.00)
GET list_vulnerabilities_paginated 95 (+18) 0 171.15 (+13.84) 41 (+7) 323 (-36) 0.32 (+0.06) 0.00 (+0.00)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 95 (+15) 0 61.33 (-5.94) 10 (-1) 191 (-60) 0.32 (+0.05) 0.00 (+0.00)
GET search_advisory 95 (+15) 0 938.48 (+161.32) 139 (+6) 2317 (+127) 0.32 (+0.05) 0.00 (+0.00)
GET search_exact_purl 95 (+13) 0 36.39 (+27.88) 3 (+1) 52 (-5) 0.32 (+0.04) 0.00 (+0.00)
GET search_purls 100 (+18) 0 7255.70 (-1577.07) 3885 (+2173) 10088 (-5921) 0.33 (+0.06) 0.00 (+0.00)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 95 (+15) 0 621.55 (-47.45) 260 (+8) 1113 (-115) 0.32 (+0.05) 0.00 (+0.00)
Aggregated 2000 (+324) 0 758.62 (-143.69) 1 (0) 10088 (-5921) 6.67 (+1.08) 0.00 (+0.00)

Response Time Metrics

Method Name 50%ile (ms) 60%ile (ms) 70%ile (ms) 80%ile (ms) 90%ile (ms) 95%ile (ms) 99%ile (ms) 100%ile (ms)
GET get_advisory_by_doc_id 7 (+1) 8 (+1) 11 (+3) 14 (+2) 52 (+3) 55 (-2) 62 (+4) 68 (+9)
GET get_analysis_latest_cpe 130 (+20) 160 (+40) 190 (+60) 190 (+30) 200 (+10) 220 (+10) 290 (+70) 300 (+13)
GET get_analysis_status 2 (0) 2 (-1) 3 (0) 3 (-1) 6 (0) 8 (-40) 52 (+1) 56 (-2)
GET get_sbom[sha256:720e4451…a939656247164447] 700 (+200) 800 (+100) 1,000 (0) 1,000 (-2,000) 1,999 (-1,001) 1,999 (-1,001) 1,999 (-1,001) 1,999 (-1,001)
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 800 (-100) 900 (-100) 900 (-100) 900 (-100) 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (0)
GET list_advisory 450 (+30) 480 (+20) 500 (+20) 500 (0) 600 (0) 700 (+100) 800 (+100) 973 (+206)
GET list_advisory_paginated 410 (+20) 420 (+20) 450 (+40) 480 (+50) 500 (+10) 500 (0) 600 (+15) 660 (+75)
GET list_importer 2 (0) 2 (0) 3 (0) 3 (0) 5 (-1) 8 (-18) 49 (-2) 55 (+4)
GET list_organizations 4 (0) 4 (-1) 6 (-6) 12 (-16) 37 (-4) 40 (-2) 50 (-3) 55 (0)
GET list_packages 400 (+30) 410 (+30) 430 (+40) 480 (+80) 500 (+80) 600 (+140) 900 (+300) 900 (0)
GET list_packages_paginated 350 (+30) 390 (+30) 400 (+20) 420 (+20) 470 (+60) 480 (+60) 579 (+109) 579 (+104)
GET list_products 5 (-2) 5 (-3) 7 (-1) 8 (-2) 9 (-3) 9 (-43) 10 (-51) 11 (-71)
GET list_sboms 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (-972) 1,680 (-292) 1,680 (-292) 1,680 (-292)
GET list_sboms_paginated 2,000 (-1,000) 2,000 (-1,000) 2,000 (-2,000) 2,000 (-2,000) 3,000 (-2,000) 3,000 (-2,000) 3,000 (-2,000) 3,515 (-2,485)
GET list_vulnerabilities 210 (-10) 230 (0) 240 (-20) 260 (-20) 290 (0) 290 (-20) 390 (+30) 390 (+30)
GET list_vulnerabilities_paginated 180 (+10) 190 (+10) 190 (0) 200 (0) 220 (+20) 250 (+40) 270 (0) 320 (-39)
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 63 (-1) 68 (-9) 76 (-20) 89 (-21) 130 (+10) 160 (0) 180 (0) 190 (-60)
GET search_advisory 700 (0) 900 (+200) 1,000 (+200) 1,000 (0) 2,000 (+1,000) 2,000 (0) 2,000 (0) 2,000 (0)
GET search_exact_purl 46 (+40) 47 (+40) 47 (+40) 47 (+39) 48 (+38) 50 (+35) 52 (-3) 52 (-5)
GET search_purls 7,000 (-3,000) 8,000 (-5,000) 8,000 (-6,000) 9,000 (-6,000) 9,000 (-6,000) 9,000 (-7,000) 10,000 (-6,000) 10,000 (-6,000)
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 600 (0) 700 (0) 700 (-100) 800 (0) 900 (0) 900 (-100) 1,000 (0) 1,000 (0)
Aggregated 290 (+20) 410 (+20) 500 (0) 900 (0) 1,000 (-1,000) 4,000 (+1,000) 9,000 (-6,000) 10,000 (-6,000)

Status Code Metrics

Method Name Status Codes
GET get_advisory_by_doc_id 95 [200]
GET get_analysis_latest_cpe 95 [200]
GET get_analysis_status 95 [200]
GET get_sbom[sha256:720e4451…a939656247164447] 95 [200]
GET get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 95 [200]
GET list_advisory 95 [200]
GET list_advisory_paginated 95 [200]
GET list_importer 95 [200]
GET list_organizations 95 [200]
GET list_packages 95 [200]
GET list_packages_paginated 95 [200]
GET list_products 95 [200]
GET list_sboms 95 [200]
GET list_sboms_paginated 95 [200]
GET list_vulnerabilities 95 [200]
GET list_vulnerabilities_paginated 95 [200]
GET sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 95 [200]
GET search_advisory 95 [200]
GET search_exact_purl 95 [200]
GET search_purls 100 [200]
POST post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 95 [200]
Aggregated 2,000 [200]

Transaction Metrics

Transaction # Times Run # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
WebsiteUser
0.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.1 website_index 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.2 website_openapi 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.3 website_sboms 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.4 website_packages 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.5 website_advisories 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.6 website_importers 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser
1.0 logon 95 (+15) 0 (0) 14.27 (+1.00) 7 (0) 25 (+2) 0.32 (+0.05) 0.00 (+0.00)
1.1 list_organizations 95 (+15) 0 (0) 10.32 (-2.61) 1 (0) 56 (+1) 0.32 (+0.05) 0.00 (+0.00)
1.2 list_advisory 95 (+15) 0 (0) 477.24 (+43.27) 197 (+75) 973 (+206) 0.32 (+0.05) 0.00 (+0.00)
1.3 list_advisory_paginated 95 (+15) 0 (0) 401.06 (+22.48) 155 (+47) 660 (+75) 0.32 (+0.05) 0.00 (+0.00)
1.4 get_advisory_by_doc_id 95 (+15) 0 (0) 15.27 (+2.87) 3 (0) 68 (+9) 0.32 (+0.05) 0.00 (+0.00)
1.5 search_advisory 95 (+15) 0 (0) 938.58 (+161.35) 139 (+6) 2317 (+127) 0.32 (+0.05) 0.00 (+0.00)
1.6 list_vulnerabilities 95 (+18) 0 (0) 216.18 (+2.85) 63 (+11) 394 (+33) 0.32 (+0.06) 0.00 (+0.00)
1.7 list_vulnerabilities_paginated 95 (+18) 0 (0) 171.18 (+13.83) 41 (+7) 323 (-37) 0.32 (+0.06) 0.00 (+0.00)
1.8 list_importer 95 (+18) 0 (0) 4.48 (+0.08) 1 (0) 55 (+4) 0.32 (+0.06) 0.00 (+0.00)
1.9 list_packages 95 (+18) 0 (0) 396.23 (+51.73) 110 (+18) 922 (+17) 0.32 (+0.06) 0.00 (+0.00)
1.10 list_packages_paginated 95 (+18) 0 (0) 346.48 (+34.32) 108 (+1) 579 (+104) 0.32 (+0.06) 0.00 (+0.00)
1.11 search_purls 100 (+18) 0 (0) 7255.75 (-1577.08) 3885 (+2173) 10088 (-5921) 0.33 (+0.06) 0.00 (+0.00)
1.12 search_exact_purl 95 (+13) 0 (0) 36.41 (+27.89) 3 (+1) 52 (-5) 0.32 (+0.04) 0.00 (+0.00)
1.13 list_products 95 (+13) 0 (0) 5.99 (-4.89) 3 (0) 11 (-71) 0.32 (+0.04) 0.00 (+0.00)
1.14 list_sboms 95 (+13) 0 (0) 1172.22 (-142.06) 522 (-34) 1680 (-292) 0.32 (+0.04) 0.00 (+0.00)
1.15 list_sboms_paginated 95 (+14) 0 (0) 1645.31 (-1134.73) 485 (0) 3515 (-2948) 0.32 (+0.05) 0.00 (+0.00)
1.16 get_analysis_status 95 (+14) 0 (0) 4.67 (-0.97) 1 (0) 56 (-2) 0.32 (+0.05) 0.00 (+0.00)
1.17 get_analysis_latest_cpe 95 (+14) 0 (0) 142.22 (+17.20) 35 (-1) 302 (+15) 0.32 (+0.05) 0.00 (+0.00)
1.18 get_sbom[sha256:720e4451…a939656247164447] 95 (+15) 0 (0) 836.97 (-424.61) 209 (-22) 1999 (-1500) 0.32 (+0.05) 0.00 (+0.00)
1.19 sbom_by_package[pkg:maven/io.qu…dhat.com%2fga%2f] 95 (+15) 0 (0) 61.41 (-5.99) 10 (-2) 191 (-60) 0.32 (+0.05) 0.00 (+0.00)
1.20 get_sbom_license_ids[urn:uuid:019731…104-331632a21144] 95 (+15) 0 (0) 830.69 (-100.02) 486 (+144) 1196 (-119) 0.32 (+0.05) 0.00 (+0.00)
1.21 post_vulnerability_analyze[pkg:rpm/redhat/…h=noarch&epoch=1] 95 (+15) 0 (0) 621.60 (-47.46) 260 (+8) 1113 (-115) 0.32 (+0.05) 0.00 (+0.00)
Aggregated 2,095 (+339) 0 (0) 724.22 (-136.99) 1 (0) 10088 (-5921) 6.98 (+1.13) 0.00 (+0.00)

Scenario Metrics

Scenario # Users # Times Run Average (ms) Min (ms) Max (ms) Scenarios/s Iterations
WebsiteUser 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser 5 (0) 95 (+15) 15530.47 (-3226.31) 7730 (-1672) 21308 (-7096) 0.32 (+0.05) 19.00 (+3.00)
Aggregated 5 (0) 95 (+15) 15530.47 (-3226.31) 7730 (-1672) 21308 (-7096) 0.32 (+0.05) 19.00 (+3.00)

User Metrics