Traffic Trace Info


DumpFile: -
Id: 200803202315
StartTime: Thu Mar 20 23:15:01 2008
EndTime: Thu Mar 20 23:30:00 2008
TotalTime: 899.47 seconds
TotalCapSize: 699.25MB CapLen: 96 bytes
# of packets: 12866063 (6843.40MB)
AvgRate: 63.82Mbps stddev:9.24M

IP flow (unique src/dst pair) Information

# of flows: 854791 (avg. 15.05 pkts/flow)
Top 10 big flow size (bytes/total in %):
3.5% 2.6% 2.5% 2.4% 2.2% 1.3% 1.3% 1.2% 1.1% 1.1%

IP address Information

# of IPv4 addresses: 485251
Top 10 bandwidth usage (bytes/total in %):
12.2% 12.1% 11.3% 10.0% 3.5% 2.7% 2.7% 2.6% 2.5% 2.4%
# of IPv6 addresses: 1544
Top 10 bandwidth usage (bytes/total in %):
29.8% 22.6% 8.1% 6.1% 5.5% 4.8% 4.0% 3.9% 3.8% 3.3%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:    3558776
 [   64-  127]:    3363358
 [  128-  255]:     845442
 [  256-  511]:     624333
 [  512- 1023]:     334112
 [ 1024- 2047]:    4140042


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         12866063 (100.00%)       7175827919 (100.00%)    557.73
 ip            12843497 ( 99.82%)       7170698714 ( 99.93%)    558.31
  tcp          10002773 ( 77.75%)       6677320842 ( 93.05%)    667.55
   http(s)      2655231 ( 20.64%)       3595425972 ( 50.10%)   1354.09
   http(c)      1931169 ( 15.01%)        171235178 (  2.39%)     88.67
   squid         878576 (  6.83%)        581142058 (  8.10%)    661.46
   smtp          891999 (  6.93%)        150895625 (  2.10%)    169.17
   nntp               1 (  0.00%)               60 (  0.00%)     60.00
   ftp            36916 (  0.29%)          3752782 (  0.05%)    101.66
   pop3           34003 (  0.26%)         29234105 (  0.41%)    859.75
   imap            3634 (  0.03%)           868260 (  0.01%)    238.93
   telnet            30 (  0.00%)             2165 (  0.00%)     72.17
   ssh            38836 (  0.30%)          6918559 (  0.10%)    178.15
   dns             1950 (  0.02%)           162053 (  0.00%)     83.10
   bgp              211 (  0.00%)            64857 (  0.00%)    307.38
   napster         1347 (  0.01%)           864055 (  0.01%)    641.47
   realaud            5 (  0.00%)              563 (  0.00%)    112.60
   rtsp           29812 (  0.23%)         25494771 (  0.36%)    855.18
   icecast        12565 (  0.10%)         15210591 (  0.21%)   1210.55
   hotline            1 (  0.00%)               60 (  0.00%)     60.00
   other        3486485 ( 27.10%)       2096049008 ( 29.21%)    601.19
  udp           2098541 ( 16.31%)        431487953 (  6.01%)    205.61
   dns          1137066 (  8.84%)        166390058 (  2.32%)    146.33
   realaud        10540 (  0.08%)          5561114 (  0.08%)    527.62
   halflif           27 (  0.00%)             2929 (  0.00%)    108.48
   starcra          219 (  0.00%)            22210 (  0.00%)    101.42
   everque           32 (  0.00%)             4982 (  0.00%)    155.69
   unreal            49 (  0.00%)             5925 (  0.00%)    120.92
   quake              7 (  0.00%)              607 (  0.00%)     86.71
   cuseeme            8 (  0.00%)             1200 (  0.00%)    150.00
   other         950541 (  7.39%)        259475119 (  3.62%)    272.98
  icmp           732076 (  5.69%)         60300086 (  0.84%)     82.37
  ipip              315 (  0.00%)            36870 (  0.00%)    117.05
  ip6              1056 (  0.01%)           143547 (  0.00%)    135.93
  other            8736 (  0.07%)          1409416 (  0.02%)    161.33
  frag             1601 (  0.01%)          1375588 (  0.02%)    859.21
 ip6              22564 (  0.18%)          5129085 (  0.07%)    227.31
  tcp6             4612 (  0.04%)           924946 (  0.01%)    200.55
   http(s)           98 (  0.00%)           108872 (  0.00%)   1110.94
   http(c)          838 (  0.01%)            82044 (  0.00%)     97.90
   smtp            1184 (  0.01%)           457316 (  0.01%)    386.25
   pop3              78 (  0.00%)             7876 (  0.00%)    100.97
   bgp              104 (  0.00%)            12246 (  0.00%)    117.75
   other           2310 (  0.02%)           256592 (  0.00%)    111.08
  udp6            11580 (  0.09%)          2362423 (  0.03%)    204.01
   dns            10241 (  0.08%)          1974757 (  0.03%)    192.83
   everque            1 (  0.00%)              576 (  0.00%)    576.00
   other           1338 (  0.01%)           387090 (  0.01%)    289.30
  icmp6            5300 (  0.04%)           706338 (  0.01%)    133.27
  pim6               30 (  0.00%)             4080 (  0.00%)    136.00
  other6           1042 (  0.01%)          1131298 (  0.02%)   1085.70


tcpdump file: 200803202315.dump.gz (332.85 MB)