Traffic Trace Info


DumpFile: -
Id: 200803200630
StartTime: Thu Mar 20 06:30:01 2008
EndTime: Thu Mar 20 06:45:00 2008
TotalTime: 899.47 seconds
TotalCapSize: 613.29MB CapLen: 96 bytes
# of packets: 11190010 (6839.91MB)
AvgRate: 63.79Mbps stddev:9.97M

IP flow (unique src/dst pair) Information

# of flows: 620821 (avg. 18.02 pkts/flow)
Top 10 big flow size (bytes/total in %):
14.8% 4.6% 1.6% 1.3% 1.0% 1.0% 0.8% 0.8% 0.7% 0.7%

IP address Information

# of IPv4 addresses: 325704
Top 10 bandwidth usage (bytes/total in %):
17.7% 14.8% 10.5% 10.1% 6.5% 6.4% 5.8% 4.7% 3.4% 2.7%
# of IPv6 addresses: 1725
Top 10 bandwidth usage (bytes/total in %):
48.7% 44.5% 8.7% 7.3% 6.9% 4.4% 3.0% 2.6% 2.4% 2.2%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:    2316447
 [   64-  127]:    2838858
 [  128-  255]:     672115
 [  256-  511]:     350105
 [  512- 1023]:     884171
 [ 1024- 2047]:    4128314


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         11190010 (100.00%)       7172170537 (100.00%)    640.94
 ip            11160893 ( 99.74%)       7163806733 ( 99.88%)    641.87
  tcp           8976514 ( 80.22%)       6679169728 ( 93.13%)    744.07
   http(s)      3143859 ( 28.10%)       3765076438 ( 52.50%)   1197.60
   http(c)      1627337 ( 14.54%)        126152109 (  1.76%)     77.52
   squid         777034 (  6.94%)        603374235 (  8.41%)    776.51
   smtp          817571 (  7.31%)        113191302 (  1.58%)    138.45
   nntp               1 (  0.00%)               60 (  0.00%)     60.00
   ftp            14535 (  0.13%)          1659961 (  0.02%)    114.20
   pop3            3308 (  0.03%)          1958981 (  0.03%)    592.19
   imap            1236 (  0.01%)           319895 (  0.00%)    258.81
   telnet          1984 (  0.02%)           127255 (  0.00%)     64.14
   ssh           367418 (  3.28%)        344000905 (  4.80%)    936.27
   dns             3788 (  0.03%)          1878249 (  0.03%)    495.84
   bgp              206 (  0.00%)            63501 (  0.00%)    308.26
   napster          175 (  0.00%)            11252 (  0.00%)     64.30
   realaud           11 (  0.00%)              943 (  0.00%)     85.73
   rtsp              98 (  0.00%)            21548 (  0.00%)    219.88
   icecast         6384 (  0.06%)          3086582 (  0.04%)    483.49
   other        2211555 ( 19.76%)       1718245672 ( 23.96%)    776.94
  udp           1761012 ( 15.74%)        446132068 (  6.22%)    253.34
   dns           982306 (  8.78%)        148843883 (  2.08%)    151.52
   realaud         8692 (  0.08%)          5448908 (  0.08%)    626.89
   halflif           14 (  0.00%)             2095 (  0.00%)    149.64
   starcra           21 (  0.00%)             3513 (  0.00%)    167.29
   everque           58 (  0.00%)             9397 (  0.00%)    162.02
   unreal            12 (  0.00%)             1757 (  0.00%)    146.42
   quake              6 (  0.00%)             1544 (  0.00%)    257.33
   cuseeme            3 (  0.00%)              458 (  0.00%)    152.67
   other         769817 (  6.88%)        291768148 (  4.07%)    379.01
  icmp           416746 (  3.72%)         37574827 (  0.52%)     90.16
  ipip              373 (  0.00%)            45082 (  0.00%)    120.86
  ip6              1048 (  0.01%)           145985 (  0.00%)    139.30
  other            5200 (  0.05%)           739043 (  0.01%)    142.12
  frag            21007 (  0.19%)         15086200 (  0.21%)    718.15
 ip6              29117 (  0.26%)          8363804 (  0.12%)    287.25
  tcp6             3883 (  0.03%)           657060 (  0.01%)    169.21
   http(s)           53 (  0.00%)            60540 (  0.00%)   1142.26
   http(c)          893 (  0.01%)           103579 (  0.00%)    115.99
   smtp             611 (  0.01%)           227840 (  0.00%)    372.90
   pop3              42 (  0.00%)             3766 (  0.00%)     89.67
   bgp              112 (  0.00%)            14216 (  0.00%)    126.93
   other           2172 (  0.02%)           247119 (  0.00%)    113.77
  udp6            16977 (  0.15%)          3235773 (  0.05%)    190.60
   dns            15308 (  0.14%)          2693203 (  0.04%)    175.93
   everque            2 (  0.00%)             1104 (  0.00%)    552.00
   other           1667 (  0.01%)           541466 (  0.01%)    324.81
  icmp6            5458 (  0.05%)           789845 (  0.01%)    144.71
  pim6               30 (  0.00%)             4080 (  0.00%)    136.00
  other6           2769 (  0.02%)          3677046 (  0.05%)   1327.93


tcpdump file: 200803200630.dump.gz (280.30 MB)