Traffic Trace Info


DumpFile: 201004130415.dump
FileSize: 1994.96MB
Id: 201004130415
StartTime: Tue Apr 13 04:15:01 2010
EndTime: Tue Apr 13 04:30:01 2010
TotalTime: 900.01 seconds
TotalCapSize: 1557.86MB CapLen: 96 bytes
# of packets: 28644961 (18280.04MB)
AvgRate: 170.38Mbps stddev:15.36M

IP flow (unique src/dst pair) Information

# of flows: 1098475 (avg. 26.08 pkts/flow)
Top 10 big flow size (bytes/total in %):
2.3% 1.6% 1.1% 0.9% 0.8% 0.8% 0.7% 0.7% 0.6% 0.6%

IP address Information

# of IPv4 addresses: 615184
Top 10 bandwidth usage (bytes/total in %):
20.6% 7.7% 7.4% 6.3% 6.3% 6.0% 3.9% 2.9% 2.9% 2.8%
# of IPv6 addresses: 960
Top 10 bandwidth usage (bytes/total in %):
27.9% 11.4% 7.6% 7.3% 6.5% 6.4% 6.2% 4.7% 3.1% 3.0%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:    4690010
 [   64-  127]:    7671217
 [  128-  255]:    2323926
 [  256-  511]:    1582622
 [  512- 1023]:     666218
 [ 1024- 2047]:   11710968


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         28644961 (100.00%)      19168007575 (100.00%)    669.16
 ip            28592891 ( 99.82%)      19160163513 ( 99.96%)    670.10
  tcp          17154134 ( 59.89%)      13109584361 ( 68.39%)    764.22
   http(s)      7704520 ( 26.90%)      10739750581 ( 56.03%)   1393.95
   http(c)      4149561 ( 14.49%)        406643111 (  2.12%)     98.00
   squid         322028 (  1.12%)        145844827 (  0.76%)    452.89
   smtp          403427 (  1.41%)         83266276 (  0.43%)    206.40
   ftp            15357 (  0.05%)          1324826 (  0.01%)     86.27
   pop3            6620 (  0.02%)          4173081 (  0.02%)    630.37
   imap            1055 (  0.00%)           383026 (  0.00%)    363.06
   telnet          2221 (  0.01%)           161021 (  0.00%)     72.50
   ssh          1202007 (  4.20%)        156266388 (  0.82%)    130.00
   dns            59780 (  0.21%)          4096934 (  0.02%)     68.53
   bgp              141 (  0.00%)            45862 (  0.00%)    325.26
   napster          651 (  0.00%)           352976 (  0.00%)    542.21
   rtsp              99 (  0.00%)            10940 (  0.00%)    110.51
   icecast          262 (  0.00%)            16592 (  0.00%)     63.33
   other        3286399 ( 11.47%)       1567247470 (  8.18%)    476.89
  udp           7841615 ( 27.38%)       4421607846 ( 23.07%)    563.86
   dns           683199 (  2.39%)        118705968 (  0.62%)    173.75
   realaud           40 (  0.00%)             4903 (  0.00%)    122.58
   halflif          139 (  0.00%)            18448 (  0.00%)    132.72
   starcra          339 (  0.00%)            44538 (  0.00%)    131.38
   everque          423 (  0.00%)            77469 (  0.00%)    183.14
   unreal            75 (  0.00%)             9554 (  0.00%)    127.39
   quake             33 (  0.00%)             3531 (  0.00%)    107.00
   cuseeme            4 (  0.00%)              454 (  0.00%)    113.50
   other        7157105 ( 24.99%)       4302614664 ( 22.45%)    601.17
  icmp           867585 (  3.03%)        129863201 (  0.68%)    149.68
  ipip              333 (  0.00%)            40530 (  0.00%)    121.71
  ipsec            5213 (  0.02%)          1880458 (  0.01%)    360.72
  ip6           2666298 (  9.31%)       1432858414 (  7.48%)    537.40
  other           57713 (  0.20%)         64328703 (  0.34%)   1114.63
  frag             1719 (  0.01%)          1741427 (  0.01%)   1013.05
 ip6              52070 (  0.18%)          7844062 (  0.04%)    150.64
  tcp6            16747 (  0.06%)          1684604 (  0.01%)    100.59
   http(s)           37 (  0.00%)            18456 (  0.00%)    498.81
   http(c)         5850 (  0.02%)           546498 (  0.00%)     93.42
   smtp             140 (  0.00%)            57893 (  0.00%)    413.52
   ftp             2538 (  0.01%)           263831 (  0.00%)    103.95
   imap              71 (  0.00%)             9426 (  0.00%)    132.76
   ssh             3227 (  0.01%)           267958 (  0.00%)     83.04
   dns              140 (  0.00%)            38025 (  0.00%)    271.61
   bgp              112 (  0.00%)            14520 (  0.00%)    129.64
   other           4632 (  0.02%)           467997 (  0.00%)    101.04
  udp6            28312 (  0.10%)          5271599 (  0.03%)    186.20
   dns            27806 (  0.10%)          5182288 (  0.03%)    186.37
   other            506 (  0.00%)            89311 (  0.00%)    176.50
  icmp6            6927 (  0.02%)           835001 (  0.00%)    120.54
  pim6               30 (  0.00%)             4080 (  0.00%)    136.00
  other6             54 (  0.00%)            48778 (  0.00%)    903.30


tcpdump file: 201004130415.dump.gz (748.73 MB)