Traffic Trace Info


DumpFile: -
Id: 200803191800
StartTime: Wed Mar 19 18:00:01 2008
EndTime: Wed Mar 19 18:15:01 2008
TotalTime: 899.67 seconds
TotalCapSize: 873.73MB CapLen: 96 bytes
# of packets: 16066393 (10446.88MB)
AvgRate: 97.34Mbps stddev:15.44M

IP flow (unique src/dst pair) Information

# of flows: 725913 (avg. 22.13 pkts/flow)
Top 10 big flow size (bytes/total in %):
8.1% 3.7% 2.1% 1.9% 1.8% 1.1% 1.1% 1.1% 1.0% 1.0%

IP address Information

# of IPv4 addresses: 383359
Top 10 bandwidth usage (bytes/total in %):
15.8% 8.2% 8.1% 7.9% 5.6% 4.9% 4.8% 3.8% 2.5% 2.2%
# of IPv6 addresses: 1792
Top 10 bandwidth usage (bytes/total in %):
47.5% 43.1% 8.4% 7.4% 6.2% 4.1% 3.3% 2.4% 2.3% 2.3%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:    3234591
 [   64-  127]:    4456488
 [  128-  255]:     909720
 [  256-  511]:     454093
 [  512- 1023]:     299507
 [ 1024- 2047]:    6711994


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         16066393 (100.00%)      10954350049 (100.00%)    681.82
 ip            16031355 ( 99.78%)      10944083774 ( 99.91%)    682.67
  tcp          12337059 ( 76.79%)       9924656834 ( 90.60%)    804.46
   http(s)      4484224 ( 27.91%)       5948158933 ( 54.30%)   1326.46
   http(c)      2879576 ( 17.92%)        523027212 (  4.77%)    181.63
   squid         683710 (  4.26%)        492343141 (  4.49%)    720.11
   smtp          795738 (  4.95%)        175043383 (  1.60%)    219.98
   nntp               6 (  0.00%)              378 (  0.00%)     63.00
   ftp            25395 (  0.16%)          2652768 (  0.02%)    104.46
   pop3           19834 (  0.12%)         13519148 (  0.12%)    681.61
   imap            4983 (  0.03%)          1609889 (  0.01%)    323.08
   telnet           442 (  0.00%)            28503 (  0.00%)     64.49
   ssh           471197 (  2.93%)        423461863 (  3.87%)    898.69
   dns             2665 (  0.02%)           250518 (  0.00%)     94.00
   bgp              250 (  0.00%)            96258 (  0.00%)    385.03
   napster           23 (  0.00%)             2140 (  0.00%)     93.04
   realaud            3 (  0.00%)              202 (  0.00%)     67.33
   rtsp           49084 (  0.31%)         58822455 (  0.54%)   1198.40
   icecast         3551 (  0.02%)           392480 (  0.00%)    110.53
   hotline           19 (  0.00%)             2772 (  0.00%)    145.89
   other        2916359 ( 18.15%)       2285244791 ( 20.86%)    783.60
  udp           2811408 ( 17.50%)        923142728 (  8.43%)    328.36
   dns          1214754 (  7.56%)        179737722 (  1.64%)    147.96
   realaud        13472 (  0.08%)          8061595 (  0.07%)    598.40
   halflif           21 (  0.00%)             2317 (  0.00%)    110.33
   starcra           62 (  0.00%)             7921 (  0.00%)    127.76
   everque           26 (  0.00%)             3378 (  0.00%)    129.92
   unreal            16 (  0.00%)             4614 (  0.00%)    288.38
   quake             11 (  0.00%)              985 (  0.00%)     89.55
   cuseeme            2 (  0.00%)              135 (  0.00%)     67.50
   other        1583014 (  9.85%)        735312133 (  6.71%)    464.50
  icmp           666476 (  4.15%)         56574098 (  0.52%)     84.89
  ipip              383 (  0.00%)            45827 (  0.00%)    119.65
  ip6              1099 (  0.01%)           153973 (  0.00%)    140.10
  other          214930 (  1.34%)         39510314 (  0.36%)    183.83
  frag             2819 (  0.02%)          2259054 (  0.02%)    801.37
 ip6              35038 (  0.22%)         10266275 (  0.09%)    293.00
  tcp6             5061 (  0.03%)           981949 (  0.01%)    194.02
   http(s)          181 (  0.00%)           196973 (  0.00%)   1088.25
   http(c)         1686 (  0.01%)           168478 (  0.00%)     99.93
   smtp             791 (  0.00%)           338928 (  0.00%)    428.48
   ssh               59 (  0.00%)             8562 (  0.00%)    145.12
   bgp               89 (  0.00%)            15758 (  0.00%)    177.06
   other           2255 (  0.01%)           253250 (  0.00%)    112.31
  udp6            21038 (  0.13%)          4108000 (  0.04%)    195.27
   dns            19524 (  0.12%)          3688996 (  0.03%)    188.95
   everque            1 (  0.00%)              137 (  0.00%)    137.00
   other           1513 (  0.01%)           418867 (  0.00%)    276.85
  icmp6            5511 (  0.03%)           748587 (  0.01%)    135.84
  pim6               30 (  0.00%)             4080 (  0.00%)    136.00
  other6           3398 (  0.02%)          4423659 (  0.04%)   1301.84


tcpdump file: 200803191800.dump.gz (400.85 MB)