-
Notifications
You must be signed in to change notification settings - Fork 278
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Set appsec.blocked in local root span #7251
Merged
Merged
Conversation
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
BenchmarksStartupParameters
See matching parameters
SummaryFound 0 performance improvements and 0 performance regressions! Performance is the same for 51 metrics, 12 unstable metrics. Startup time reports for petclinicgantt
title petclinic - global startup overhead: candidate=1.37.0-SNAPSHOT~ccfb03b59b, baseline=1.37.0-SNAPSHOT~97b5fe71f8
dateFormat X
axisFormat %s
section tracing
Agent [baseline] (1.062 s) : 0, 1062005
Total [baseline] (10.31 s) : 0, 10309623
Agent [candidate] (1.07 s) : 0, 1070255
Total [candidate] (10.338 s) : 0, 10337921
section appsec
Agent [baseline] (1.185 s) : 0, 1185165
Total [baseline] (10.518 s) : 0, 10517724
Agent [candidate] (1.187 s) : 0, 1186730
Total [candidate] (10.544 s) : 0, 10543509
section iast
Agent [baseline] (1.179 s) : 0, 1179053
Total [baseline] (10.818 s) : 0, 10817738
Agent [candidate] (1.172 s) : 0, 1172442
Total [candidate] (10.77 s) : 0, 10769893
section profiling
Agent [baseline] (1.284 s) : 0, 1283763
Total [baseline] (10.668 s) : 0, 10667739
Agent [candidate] (1.265 s) : 0, 1265101
Total [candidate] (10.583 s) : 0, 10583051
gantt
title petclinic - break down per module: candidate=1.37.0-SNAPSHOT~ccfb03b59b, baseline=1.37.0-SNAPSHOT~97b5fe71f8
dateFormat X
axisFormat %s
section tracing
BytebuddyAgent [baseline] (665.07 ms) : 0, 665070
BytebuddyAgent [candidate] (670.201 ms) : 0, 670201
GlobalTracer [baseline] (303.949 ms) : 0, 303949
GlobalTracer [candidate] (306.335 ms) : 0, 306335
AppSec [baseline] (50.118 ms) : 0, 50118
AppSec [candidate] (50.543 ms) : 0, 50543
Remote Config [baseline] (766.143 µs) : 0, 766
Remote Config [candidate] (750.691 µs) : 0, 751
Telemetry [baseline] (7.59 ms) : 0, 7590
Telemetry [candidate] (7.599 ms) : 0, 7599
section appsec
BytebuddyAgent [baseline] (678.423 ms) : 0, 678423
BytebuddyAgent [candidate] (678.567 ms) : 0, 678567
GlobalTracer [baseline] (298.8 ms) : 0, 298800
GlobalTracer [candidate] (299.026 ms) : 0, 299026
AppSec [baseline] (154.097 ms) : 0, 154097
AppSec [candidate] (154.171 ms) : 0, 154171
IAST [baseline] (20.264 ms) : 0, 20264
IAST [candidate] (21.878 ms) : 0, 21878
Remote Config [baseline] (632.508 µs) : 0, 633
Remote Config [candidate] (630.414 µs) : 0, 630
Telemetry [baseline] (8.401 ms) : 0, 8401
Telemetry [candidate] (8.713 ms) : 0, 8713
section iast
BytebuddyAgent [baseline] (784.923 ms) : 0, 784923
BytebuddyAgent [candidate] (780.227 ms) : 0, 780227
GlobalTracer [baseline] (295.98 ms) : 0, 295980
GlobalTracer [candidate] (294.937 ms) : 0, 294937
AppSec [baseline] (48.03 ms) : 0, 48030
AppSec [candidate] (47.266 ms) : 0, 47266
IAST [baseline] (29.033 ms) : 0, 29033
IAST [candidate] (29.008 ms) : 0, 29008
Remote Config [baseline] (609.084 µs) : 0, 609
Remote Config [candidate] (599.248 µs) : 0, 599
Telemetry [baseline] (7.02 ms) : 0, 7020
Telemetry [candidate] (6.945 ms) : 0, 6945
section profiling
BytebuddyAgent [baseline] (675.291 ms) : 0, 675291
BytebuddyAgent [candidate] (663.772 ms) : 0, 663772
GlobalTracer [baseline] (391.776 ms) : 0, 391776
GlobalTracer [candidate] (388.903 ms) : 0, 388903
AppSec [baseline] (52.459 ms) : 0, 52459
AppSec [candidate] (51.651 ms) : 0, 51651
Remote Config [baseline] (666.096 µs) : 0, 666
Remote Config [candidate] (655.563 µs) : 0, 656
Telemetry [baseline] (7.444 ms) : 0, 7444
Telemetry [candidate] (7.341 ms) : 0, 7341
ProfilingAgent [baseline] (97.742 ms) : 0, 97742
ProfilingAgent [candidate] (95.582 ms) : 0, 95582
Profiling [baseline] (97.766 ms) : 0, 97766
Profiling [candidate] (95.607 ms) : 0, 95607
Startup time reports for insecure-bankgantt
title insecure-bank - global startup overhead: candidate=1.37.0-SNAPSHOT~ccfb03b59b, baseline=1.37.0-SNAPSHOT~97b5fe71f8
dateFormat X
axisFormat %s
section tracing
Agent [baseline] (1.064 s) : 0, 1064080
Total [baseline] (8.556 s) : 0, 8555709
Agent [candidate] (1.075 s) : 0, 1074520
Total [candidate] (8.556 s) : 0, 8555754
section iast
Agent [baseline] (1.175 s) : 0, 1175450
Total [baseline] (9.014 s) : 0, 9013771
Agent [candidate] (1.171 s) : 0, 1170752
Total [candidate] (8.978 s) : 0, 8978069
section iast_HARDCODED_SECRET_DISABLED
Agent [baseline] (1.169 s) : 0, 1168703
Total [baseline] (8.956 s) : 0, 8956276
Agent [candidate] (1.176 s) : 0, 1175984
Total [candidate] (8.989 s) : 0, 8989321
section iast_TELEMETRY_OFF
Agent [baseline] (1.182 s) : 0, 1182352
Total [baseline] (8.996 s) : 0, 8996006
Agent [candidate] (1.173 s) : 0, 1173016
Total [candidate] (9.002 s) : 0, 9001515
gantt
title insecure-bank - break down per module: candidate=1.37.0-SNAPSHOT~ccfb03b59b, baseline=1.37.0-SNAPSHOT~97b5fe71f8
dateFormat X
axisFormat %s
section tracing
BytebuddyAgent [baseline] (666.038 ms) : 0, 666038
BytebuddyAgent [candidate] (674.447 ms) : 0, 674447
GlobalTracer [baseline] (304.885 ms) : 0, 304885
GlobalTracer [candidate] (306.26 ms) : 0, 306260
AppSec [baseline] (50.321 ms) : 0, 50321
AppSec [candidate] (50.514 ms) : 0, 50514
Remote Config [baseline] (720.573 µs) : 0, 721
Remote Config [candidate] (764.201 µs) : 0, 764
Telemetry [baseline] (7.603 ms) : 0, 7603
Telemetry [candidate] (7.645 ms) : 0, 7645
section iast
BytebuddyAgent [baseline] (785.31 ms) : 0, 785310
BytebuddyAgent [candidate] (779.875 ms) : 0, 779875
GlobalTracer [baseline] (294.598 ms) : 0, 294598
GlobalTracer [candidate] (294.18 ms) : 0, 294180
AppSec [baseline] (47.639 ms) : 0, 47639
AppSec [candidate] (47.548 ms) : 0, 47548
IAST [baseline] (26.795 ms) : 0, 26795
IAST [candidate] (28.116 ms) : 0, 28116
Remote Config [baseline] (573.433 µs) : 0, 573
Remote Config [candidate] (604.353 µs) : 0, 604
Telemetry [baseline] (7.07 ms) : 0, 7070
Telemetry [candidate] (6.993 ms) : 0, 6993
section iast_HARDCODED_SECRET_DISABLED
BytebuddyAgent [baseline] (778.839 ms) : 0, 778839
BytebuddyAgent [candidate] (783.969 ms) : 0, 783969
GlobalTracer [baseline] (293.721 ms) : 0, 293721
GlobalTracer [candidate] (296.13 ms) : 0, 296130
AppSec [baseline] (47.387 ms) : 0, 47387
AppSec [candidate] (47.52 ms) : 0, 47520
IAST [baseline] (27.749 ms) : 0, 27749
IAST [candidate] (27.208 ms) : 0, 27208
Remote Config [baseline] (619.745 µs) : 0, 620
Remote Config [candidate] (603.13 µs) : 0, 603
Telemetry [baseline] (6.975 ms) : 0, 6975
Telemetry [candidate] (7.017 ms) : 0, 7017
section iast_TELEMETRY_OFF
BytebuddyAgent [baseline] (787.362 ms) : 0, 787362
BytebuddyAgent [candidate] (782.386 ms) : 0, 782386
GlobalTracer [baseline] (297.447 ms) : 0, 297447
GlobalTracer [candidate] (296.615 ms) : 0, 296615
AppSec [baseline] (47.925 ms) : 0, 47925
AppSec [candidate] (47.44 ms) : 0, 47440
IAST [baseline] (27.719 ms) : 0, 27719
IAST [candidate] (25.509 ms) : 0, 25509
Remote Config [baseline] (587.292 µs) : 0, 587
Remote Config [candidate] (596.033 µs) : 0, 596
Telemetry [baseline] (7.718 ms) : 0, 7718
Telemetry [candidate] (6.962 ms) : 0, 6962
LoadParameters
See matching parameters
SummaryFound 0 performance improvements and 0 performance regressions! Performance is the same for 10 metrics, 18 unstable metrics. Request duration reports for petclinicgantt
title petclinic - request duration [CI 0.99] : candidate=1.37.0-SNAPSHOT~ccfb03b59b, baseline=1.37.0-SNAPSHOT~97b5fe71f8
dateFormat X
axisFormat %s
section baseline
no_agent (1.354 ms) : 1334, 1373
. : milestone, 1354,
appsec (1.708 ms) : 1683, 1733
. : milestone, 1708,
appsec_no_iast (1.723 ms) : 1698, 1748
. : milestone, 1723,
iast (1.484 ms) : 1462, 1507
. : milestone, 1484,
profiling (1.479 ms) : 1455, 1503
. : milestone, 1479,
tracing (1.484 ms) : 1460, 1508
. : milestone, 1484,
section candidate
no_agent (1.341 ms) : 1322, 1361
. : milestone, 1341,
appsec (1.736 ms) : 1712, 1760
. : milestone, 1736,
appsec_no_iast (1.7 ms) : 1676, 1723
. : milestone, 1700,
iast (1.478 ms) : 1455, 1501
. : milestone, 1478,
profiling (1.481 ms) : 1457, 1505
. : milestone, 1481,
tracing (1.457 ms) : 1434, 1481
. : milestone, 1457,
Request duration reports for insecure-bankgantt
title insecure-bank - request duration [CI 0.99] : candidate=1.37.0-SNAPSHOT~ccfb03b59b, baseline=1.37.0-SNAPSHOT~97b5fe71f8
dateFormat X
axisFormat %s
section baseline
no_agent (370.375 µs) : 349, 391
. : milestone, 370,
iast (480.552 µs) : 460, 502
. : milestone, 481,
iast_FULL (551.364 µs) : 530, 573
. : milestone, 551,
iast_GLOBAL (498.33 µs) : 478, 519
. : milestone, 498,
iast_HARDCODED_SECRET_DISABLED (461.976 µs) : 440, 484
. : milestone, 462,
iast_INACTIVE (453.932 µs) : 433, 475
. : milestone, 454,
iast_TELEMETRY_OFF (473.714 µs) : 453, 495
. : milestone, 474,
tracing (444.98 µs) : 424, 466
. : milestone, 445,
section candidate
no_agent (369.097 µs) : 350, 388
. : milestone, 369,
iast (482.485 µs) : 461, 504
. : milestone, 482,
iast_FULL (551.498 µs) : 530, 573
. : milestone, 551,
iast_GLOBAL (498.624 µs) : 477, 520
. : milestone, 499,
iast_HARDCODED_SECRET_DISABLED (487.441 µs) : 465, 509
. : milestone, 487,
iast_INACTIVE (455.143 µs) : 434, 476
. : milestone, 455,
iast_TELEMETRY_OFF (477.479 µs) : 456, 499
. : milestone, 477,
tracing (447.25 µs) : 426, 469
. : milestone, 447,
DacapoParameters
See matching parameters
SummaryFound 0 performance improvements and 0 performance regressions! Performance is the same for 12 metrics, 0 unstable metrics. Execution time for tomcatgantt
title tomcat - execution time [CI 0.99] : candidate=1.37.0-SNAPSHOT~ccfb03b59b, baseline=1.37.0-SNAPSHOT~97b5fe71f8
dateFormat X
axisFormat %s
section baseline
no_agent (1.461 ms) : 1449, 1472
. : milestone, 1461,
appsec (2.202 ms) : 2169, 2236
. : milestone, 2202,
iast (1.96 ms) : 1919, 2001
. : milestone, 1960,
iast_GLOBAL (2.005 ms) : 1964, 2046
. : milestone, 2005,
profiling (1.858 ms) : 1824, 1892
. : milestone, 1858,
tracing (1.841 ms) : 1809, 1874
. : milestone, 1841,
section candidate
no_agent (1.458 ms) : 1447, 1469
. : milestone, 1458,
appsec (2.2 ms) : 2166, 2233
. : milestone, 2200,
iast (1.963 ms) : 1922, 2004
. : milestone, 1963,
iast_GLOBAL (2.016 ms) : 1974, 2058
. : milestone, 2016,
profiling (1.862 ms) : 1828, 1896
. : milestone, 1862,
tracing (1.83 ms) : 1798, 1862
. : milestone, 1830,
Execution time for biojavagantt
title biojava - execution time [CI 0.99] : candidate=1.37.0-SNAPSHOT~ccfb03b59b, baseline=1.37.0-SNAPSHOT~97b5fe71f8
dateFormat X
axisFormat %s
section baseline
no_agent (14.95 s) : 14950000, 14950000
. : milestone, 14950000,
appsec (14.997 s) : 14997000, 14997000
. : milestone, 14997000,
iast (18.709 s) : 18709000, 18709000
. : milestone, 18709000,
iast_GLOBAL (17.81 s) : 17810000, 17810000
. : milestone, 17810000,
profiling (15.404 s) : 15404000, 15404000
. : milestone, 15404000,
tracing (14.873 s) : 14873000, 14873000
. : milestone, 14873000,
section candidate
no_agent (15.034 s) : 15034000, 15034000
. : milestone, 15034000,
appsec (14.833 s) : 14833000, 14833000
. : milestone, 14833000,
iast (18.769 s) : 18769000, 18769000
. : milestone, 18769000,
iast_GLOBAL (18.115 s) : 18115000, 18115000
. : milestone, 18115000,
profiling (15.795 s) : 15795000, 15795000
. : milestone, 15795000,
tracing (15.018 s) : 15018000, 15018000
. : milestone, 15018000,
|
ValentinZakharov
approved these changes
Jun 28, 2024
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
What Does This Do
appsec.blocked:true
in the local root span.Motivation
appsec.blocked
to mark local roots, so make sure we always set the tag there.Additional Notes
Jira ticket: APPSEC-53857