Traffic Trace Info


DumpFile: -
Id: 200803180915
StartTime: Tue Mar 18 09:15:00 2008
EndTime: Tue Mar 18 09:30:00 2008
TotalTime: 899.56 seconds
TotalCapSize: 658.07MB CapLen: 96 bytes
# of packets: 11667224 (6765.61MB)
AvgRate: 63.09Mbps stddev:14.03M

IP flow (unique src/dst pair) Information

# of flows: 893632 (avg. 13.06 pkts/flow)
Top 10 big flow size (bytes/total in %):
7.4% 5.7% 2.5% 1.5% 1.5% 1.4% 1.3% 1.2% 1.2% 1.2%

IP address Information

# of IPv4 addresses: 614004
Top 10 bandwidth usage (bytes/total in %):
14.6% 7.6% 7.5% 6.8% 6.4% 6.1% 6.0% 5.8% 2.6% 2.3%
# of IPv6 addresses: 1851
Top 10 bandwidth usage (bytes/total in %):
15.1% 12.4% 10.2% 8.3% 7.6% 5.1% 4.1% 4.1% 3.9% 3.7%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:    2382378
 [   64-  127]:    3764768
 [  128-  255]:     700691
 [  256-  511]:     366657
 [  512- 1023]:     228781
 [ 1024- 2047]:    4223949


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         11667224 (100.00%)       7094252425 (100.00%)    608.05
 ip            11645498 ( 99.81%)       7090420802 ( 99.95%)    608.86
  tcp           9873600 ( 84.63%)       6803580300 ( 95.90%)    689.07
   http(s)      2481602 ( 21.27%)       3190747662 ( 44.98%)   1285.76
   http(c)      1595974 ( 13.68%)        242645690 (  3.42%)    152.04
   squid         358795 (  3.08%)        257604176 (  3.63%)    717.97
   smtp          584369 (  5.01%)        107338418 (  1.51%)    183.68
   ftp           160462 (  1.38%)         57749914 (  0.81%)    359.90
   pop3            8721 (  0.07%)          4322187 (  0.06%)    495.61
   imap           24497 (  0.21%)          5315725 (  0.07%)    216.99
   telnet           340 (  0.00%)            21803 (  0.00%)     64.13
   ssh          1402264 ( 12.02%)        611864047 (  8.62%)    436.34
   dns             2094 (  0.02%)           147500 (  0.00%)     70.44
   bgp              338 (  0.00%)           173448 (  0.00%)    513.16
   napster           26 (  0.00%)             2796 (  0.00%)    107.54
   realaud           17 (  0.00%)             2013 (  0.00%)    118.41
   rtsp            1548 (  0.01%)           102446 (  0.00%)     66.18
   icecast          348 (  0.00%)            23322 (  0.00%)     67.02
   hotline           12 (  0.00%)             1320 (  0.00%)    110.00
   other        3252190 ( 27.87%)       2325517653 ( 32.78%)    715.06
  udp           1319832 ( 11.31%)        246096665 (  3.47%)    186.46
   dns           844624 (  7.24%)        127221238 (  1.79%)    150.62
   realaud           11 (  0.00%)             1104 (  0.00%)    100.36
   halflif           16 (  0.00%)             2147 (  0.00%)    134.19
   starcra           34 (  0.00%)             6519 (  0.00%)    191.74
   everque           35 (  0.00%)             7416 (  0.00%)    211.89
   unreal            11 (  0.00%)             4046 (  0.00%)    367.82
   quake             11 (  0.00%)             3528 (  0.00%)    320.73
   cuseeme            5 (  0.00%)              388 (  0.00%)     77.60
   other         475034 (  4.07%)        118838485 (  1.68%)    250.17
  icmp           437493 (  3.75%)         38700060 (  0.55%)     88.46
  ipip              308 (  0.00%)            38512 (  0.00%)    125.04
  ip6              1066 (  0.01%)           145620 (  0.00%)    136.60
  other           13199 (  0.11%)          1859645 (  0.03%)    140.89
  frag             7616 (  0.07%)          6101982 (  0.09%)    801.21
 ip6              21726 (  0.19%)          3831623 (  0.05%)    176.36
  tcp6             4238 (  0.04%)           603225 (  0.01%)    142.34
   http(s)           43 (  0.00%)            56840 (  0.00%)   1321.86
   http(c)         2176 (  0.02%)           226115 (  0.00%)    103.91
   smtp             363 (  0.00%)           121259 (  0.00%)    334.05
   pop3              33 (  0.00%)             3042 (  0.00%)     92.18
   bgp               71 (  0.00%)             7773 (  0.00%)    109.48
   other           1552 (  0.01%)           188196 (  0.00%)    121.26
  udp6            12483 (  0.11%)          2536807 (  0.04%)    203.22
   dns            10554 (  0.09%)          1968428 (  0.03%)    186.51
   other           1929 (  0.02%)           568379 (  0.01%)    294.65
  icmp6            4973 (  0.04%)           686390 (  0.01%)    138.02
  pim6               30 (  0.00%)             4080 (  0.00%)    136.00
  other6              2 (  0.00%)             1121 (  0.00%)    560.50


tcpdump file: 200803180915.dump.gz (296.69 MB)