Traffic Trace Info


DumpFile: 200903302200.dump
FileSize: 1428.89MB
Id: 200903302200
StartTime: Mon Mar 30 22:00:01 2009
EndTime: Mon Mar 30 22:15:01 2009
TotalTime: 899.98 seconds
TotalCapSize: 1113.22MB CapLen: 96 bytes
# of packets: 20672528 (14087.93MB)
AvgRate: 131.34Mbps stddev:14.80M

IP flow (unique src/dst pair) Information

# of flows: 1024156 (avg. 20.18 pkts/flow)
Top 10 big flow size (bytes/total in %):
6.3% 3.4% 1.3% 1.1% 0.9% 0.9% 0.9% 0.8% 0.8% 0.8%

IP address Information

# of IPv4 addresses: 644266
Top 10 bandwidth usage (bytes/total in %):
13.4% 13.0% 8.3% 6.8% 6.6% 5.5% 5.3% 3.5% 3.2% 2.2%
# of IPv6 addresses: 3306
Top 10 bandwidth usage (bytes/total in %):
23.3% 20.2% 13.6% 12.0% 11.6% 8.6% 8.6% 8.4% 8.4% 7.7%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:    4507989
 [   64-  127]:    4925388
 [  128-  255]:    1073234
 [  256-  511]:     475758
 [  512- 1023]:     429210
 [ 1024- 2047]:    9260949


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         20672528 (100.00%)      14772262460 (100.00%)    714.58
 ip            20625565 ( 99.77%)      14761405899 ( 99.93%)    715.68
  tcp          15836439 ( 76.61%)      12705733836 ( 86.01%)    802.31
   http(s)      7082292 ( 34.26%)       9715165752 ( 65.77%)   1371.75
   http(c)      3298133 ( 15.95%)        293391244 (  1.99%)     88.96
   squid         350105 (  1.69%)        184842860 (  1.25%)    527.96
   smtp          483853 (  2.34%)         87035205 (  0.59%)    179.88
   ftp           192616 (  0.93%)        185760957 (  1.26%)    964.41
   pop3           17866 (  0.09%)         15271998 (  0.10%)    854.81
   imap            5653 (  0.03%)           951296 (  0.01%)    168.28
   telnet           632 (  0.00%)            87365 (  0.00%)    138.24
   ssh           966593 (  4.68%)        153583470 (  1.04%)    158.89
   dns            20571 (  0.10%)          5533443 (  0.04%)    268.99
   bgp              227 (  0.00%)           123934 (  0.00%)    545.96
   napster          469 (  0.00%)           321912 (  0.00%)    686.38
   realaud           19 (  0.00%)             1338 (  0.00%)     70.42
   rtsp           59814 (  0.29%)         78255991 (  0.53%)   1308.32
   icecast        36277 (  0.18%)         16754063 (  0.11%)    461.84
   hotline            3 (  0.00%)              186 (  0.00%)     62.00
   other        3321293 ( 16.07%)       1968651442 ( 13.33%)    592.74
  udp           3582645 ( 17.33%)       1871518629 ( 12.67%)    522.38
   dns          1280310 (  6.19%)        268185918 (  1.82%)    209.47
   realaud          304 (  0.00%)            19166 (  0.00%)     63.05
   halflif          229 (  0.00%)            44513 (  0.00%)    194.38
   starcra           29 (  0.00%)             4177 (  0.00%)    144.03
   everque           86 (  0.00%)            22928 (  0.00%)    266.60
   unreal           577 (  0.00%)           270917 (  0.00%)    469.53
   quake             21 (  0.00%)             2502 (  0.00%)    119.14
   cuseeme          124 (  0.00%)            74517 (  0.00%)    600.94
   other        2300660 ( 11.13%)       1602770174 ( 10.85%)    696.66
  icmp          1115043 (  5.39%)        133870366 (  0.91%)    120.06
  ipip              300 (  0.00%)            36380 (  0.00%)    121.27
  ipsec             112 (  0.00%)            17696 (  0.00%)    158.00
  ip6             70897 (  0.34%)         43707553 (  0.30%)    616.49
  other           20129 (  0.10%)          6521439 (  0.04%)    323.98
  frag            77999 (  0.38%)         77904947 (  0.53%)    998.79
 ip6              46963 (  0.23%)         10856561 (  0.07%)    231.17
  tcp6            22526 (  0.11%)          6207599 (  0.04%)    275.57
   http(s)         2590 (  0.01%)          1590430 (  0.01%)    614.07
   http(c)        16589 (  0.08%)          1840664 (  0.01%)    110.96
   smtp             170 (  0.00%)            79438 (  0.00%)    467.28
   imap               2 (  0.00%)              225 (  0.00%)    112.50
   bgp              356 (  0.00%)            30119 (  0.00%)     84.60
   other           2819 (  0.01%)          2666723 (  0.02%)    945.98
  udp6            19693 (  0.10%)          3438485 (  0.02%)    174.60
   dns            14886 (  0.07%)          2230792 (  0.02%)    149.86
   halflif            1 (  0.00%)              110 (  0.00%)    110.00
   starcra            1 (  0.00%)              116 (  0.00%)    116.00
   quake              1 (  0.00%)              106 (  0.00%)    106.00
   other           4804 (  0.02%)          1207361 (  0.01%)    251.32
  icmp6            4033 (  0.02%)           567713 (  0.00%)    140.77
  pim6               31 (  0.00%)             4216 (  0.00%)    136.00
  other6            680 (  0.00%)           638548 (  0.00%)    939.04


tcpdump file: 200903302200.dump.gz (508.50 MB)