Traffic Trace Info


DumpFile: -
Id: 200803201230
StartTime: Thu Mar 20 12:30:00 2008
EndTime: Thu Mar 20 12:45:01 2008
TotalTime: 900.40 seconds
TotalCapSize: 660.11MB CapLen: 96 bytes
# of packets: 11893167 (7149.11MB)
AvgRate: 66.61Mbps stddev:10.36M

IP flow (unique src/dst pair) Information

# of flows: 608865 (avg. 19.53 pkts/flow)
Top 10 big flow size (bytes/total in %):
10.3% 5.3% 3.6% 2.3% 1.6% 1.5% 1.3% 1.2% 1.2% 1.1%

IP address Information

# of IPv4 addresses: 360679
Top 10 bandwidth usage (bytes/total in %):
10.3% 10.3% 6.4% 6.2% 5.5% 5.3% 5.3% 4.1% 3.6% 3.5%
# of IPv6 addresses: 1584
Top 10 bandwidth usage (bytes/total in %):
57.4% 50.0% 6.2% 4.3% 4.0% 3.5% 2.4% 2.2% 2.2% 2.2%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:    2721445
 [   64-  127]:    3263690
 [  128-  255]:     696326
 [  256-  511]:     457334
 [  512- 1023]:     311988
 [ 1024- 2047]:    4442384


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         11893167 (100.00%)       7496383824 (100.00%)    630.31
 ip            11865434 ( 99.77%)       7487535948 ( 99.88%)    631.04
  tcp           9983774 ( 83.95%)       7107050323 ( 94.81%)    711.86
   http(s)      2657638 ( 22.35%)       3526432132 ( 47.04%)   1326.90
   http(c)      1767831 ( 14.86%)        165661370 (  2.21%)     93.71
   squid         626982 (  5.27%)        354867997 (  4.73%)    565.99
   smtp          623634 (  5.24%)         93557931 (  1.25%)    150.02
   ftp           110977 (  0.93%)         71956378 (  0.96%)    648.39
   pop3            5122 (  0.04%)          2591614 (  0.03%)    505.98
   imap            5098 (  0.04%)          1276534 (  0.02%)    250.40
   telnet           593 (  0.00%)            38461 (  0.00%)     64.86
   ssh          1347018 ( 11.33%)       1266584935 ( 16.90%)    940.29
   dns             3554 (  0.03%)          1855661 (  0.02%)    522.13
   bgp              217 (  0.00%)            61749 (  0.00%)    284.56
   napster          198 (  0.00%)            12011 (  0.00%)     60.66
   realaud           15 (  0.00%)             2161 (  0.00%)    144.07
   rtsp           66290 (  0.56%)         79143790 (  1.06%)   1193.90
   icecast         1837 (  0.02%)           353239 (  0.00%)    192.29
   hotline            5 (  0.00%)             1320 (  0.00%)    264.00
   other        2765966 ( 23.26%)       1542605100 ( 20.58%)    557.71
  udp           1555179 ( 13.08%)        348845516 (  4.65%)    224.31
   dns           817310 (  6.87%)        120235542 (  1.60%)    147.11
   realaud        10461 (  0.09%)          5559366 (  0.07%)    531.44
   halflif           21 (  0.00%)             5427 (  0.00%)    258.43
   starcra           23 (  0.00%)             4500 (  0.00%)    195.65
   everque           43 (  0.00%)             5713 (  0.00%)    132.86
   unreal            11 (  0.00%)             1001 (  0.00%)     91.00
   quake              9 (  0.00%)              708 (  0.00%)     78.67
   cuseeme            1 (  0.00%)              344 (  0.00%)    344.00
   other         727227 (  6.11%)        222997280 (  2.97%)    306.64
  icmp           316655 (  2.66%)         30279758 (  0.40%)     95.62
  ipip              328 (  0.00%)            38320 (  0.00%)    116.83
  ip6              1054 (  0.01%)           146396 (  0.00%)    138.90
  other            8444 (  0.07%)          1175635 (  0.02%)    139.23
  frag             3647 (  0.03%)          2943412 (  0.04%)    807.08
 ip6              27733 (  0.23%)          8847876 (  0.12%)    319.04
  tcp6             3230 (  0.03%)           735451 (  0.01%)    227.69
   http(s)          466 (  0.00%)           365470 (  0.00%)    784.27
   http(c)          680 (  0.01%)            68454 (  0.00%)    100.67
   smtp             316 (  0.00%)            90555 (  0.00%)    286.57
   ftp               27 (  0.00%)             2415 (  0.00%)     89.44
   pop3              33 (  0.00%)             2850 (  0.00%)     86.36
   dns                7 (  0.00%)              635 (  0.00%)     90.71
   bgp              103 (  0.00%)            12155 (  0.00%)    118.01
   other           1598 (  0.01%)           192917 (  0.00%)    120.72
  udp6            15586 (  0.13%)          2896843 (  0.04%)    185.86
   dns            13891 (  0.12%)          2380995 (  0.03%)    171.41
   everque            1 (  0.00%)              552 (  0.00%)    552.00
   other           1694 (  0.01%)           515296 (  0.01%)    304.19
  icmp6            5489 (  0.05%)           787479 (  0.01%)    143.46
  pim6               30 (  0.00%)             4080 (  0.00%)    136.00
  other6           3398 (  0.03%)          4424023 (  0.06%)   1301.95


tcpdump file: 200803201230.dump.gz (306.60 MB)