Traffic Trace Info


DumpFile: -
Id: 200803201915
StartTime: Thu Mar 20 19:15:00 2008
EndTime: Thu Mar 20 19:30:00 2008
TotalTime: 900.59 seconds
TotalCapSize: 721.04MB CapLen: 96 bytes
# of packets: 13066153 (6655.37MB)
AvgRate: 62.00Mbps stddev:11.70M

IP flow (unique src/dst pair) Information

# of flows: 937033 (avg. 13.94 pkts/flow)
Top 10 big flow size (bytes/total in %):
3.5% 2.1% 2.1% 2.1% 1.8% 1.6% 1.5% 1.3% 1.1% 1.0%

IP address Information

# of IPv4 addresses: 547286
Top 10 bandwidth usage (bytes/total in %):
10.3% 8.8% 8.7% 8.6% 3.6% 3.5% 3.2% 3.0% 2.6% 2.1%
# of IPv6 addresses: 1374
Top 10 bandwidth usage (bytes/total in %):
43.4% 36.8% 7.7% 5.5% 4.5% 3.8% 3.4% 3.2% 3.2% 3.2%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:    3096453
 [   64-  127]:    4157440
 [  128-  255]:     910126
 [  256-  511]:     562641
 [  512- 1023]:     370816
 [ 1024- 2047]:    3968677


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         13066153 (100.00%)       6978663847 (100.00%)    534.10
 ip            13039136 ( 99.79%)       6971526604 ( 99.90%)    534.66
  tcp           9854329 ( 75.42%)       6441666621 ( 92.31%)    653.69
   http(s)      2747463 ( 21.03%)       3722051122 ( 53.33%)   1354.72
   http(c)      1747716 ( 13.38%)        158739498 (  2.27%)     90.83
   squid         772218 (  5.91%)        521458407 (  7.47%)    675.27
   smtp          724736 (  5.55%)        123628963 (  1.77%)    170.58
   nntp               4 (  0.00%)              248 (  0.00%)     62.00
   ftp            67837 (  0.52%)         28790808 (  0.41%)    424.41
   pop3            6785 (  0.05%)          3444424 (  0.05%)    507.65
   imap            6502 (  0.05%)          3169810 (  0.05%)    487.51
   telnet          6127 (  0.05%)          4227697 (  0.06%)    690.01
   ssh           610277 (  4.67%)        112832077 (  1.62%)    184.89
   dns             1792 (  0.01%)           140721 (  0.00%)     78.53
   bgp              210 (  0.00%)            67635 (  0.00%)    322.07
   napster          187 (  0.00%)            20145 (  0.00%)    107.73
   realaud            5 (  0.00%)              693 (  0.00%)    138.60
   rtsp            9349 (  0.07%)          7922482 (  0.11%)    847.41
   icecast         5477 (  0.04%)          4175592 (  0.06%)    762.39
   hotline            9 (  0.00%)             1596 (  0.00%)    177.33
   other        3147633 ( 24.09%)       1750994583 ( 25.09%)    556.29
  udp           2140729 ( 16.38%)        434502149 (  6.23%)    202.97
   dns          1265980 (  9.69%)        195193470 (  2.80%)    154.18
   realaud        10551 (  0.08%)          5567929 (  0.08%)    527.72
   halflif           23 (  0.00%)             2486 (  0.00%)    108.09
   starcra          204 (  0.00%)            19946 (  0.00%)     97.77
   everque           46 (  0.00%)             6120 (  0.00%)    133.04
   unreal            20 (  0.00%)             4408 (  0.00%)    220.40
   quake             12 (  0.00%)             1583 (  0.00%)    131.92
   cuseeme            3 (  0.00%)              597 (  0.00%)    199.00
   other         863837 (  6.61%)        233692362 (  3.35%)    270.53
  icmp           968295 (  7.41%)         78841947 (  1.13%)     81.42
  ipip              360 (  0.00%)            44116 (  0.00%)    122.54
  ip6              1077 (  0.01%)           145265 (  0.00%)    134.88
  other           74346 (  0.57%)         16326506 (  0.23%)    219.60
  frag             2526 (  0.02%)          1988825 (  0.03%)    787.34
 ip6              27013 (  0.21%)          7137003 (  0.10%)    264.21
  tcp6             5815 (  0.04%)          1054187 (  0.02%)    181.29
   http(c)         2590 (  0.02%)           323392 (  0.00%)    124.86
   smtp            1054 (  0.01%)           484623 (  0.01%)    459.79
   pop3             103 (  0.00%)            10238 (  0.00%)     99.40
   bgp              109 (  0.00%)            13001 (  0.00%)    119.28
   other           1959 (  0.01%)           222933 (  0.00%)    113.80
  udp6            14436 (  0.11%)          2786306 (  0.04%)    193.01
   dns            13358 (  0.10%)          2547099 (  0.04%)    190.68
   other           1078 (  0.01%)           239207 (  0.00%)    221.90
  icmp6            4972 (  0.04%)           820378 (  0.01%)    165.00
  pim6               30 (  0.00%)             4080 (  0.00%)    136.00
  other6           1760 (  0.01%)          2472052 (  0.04%)   1404.58


tcpdump file: 200803201915.dump.gz (344.12 MB)