Traffic Trace Info


DumpFile: 201004132330.dump
FileSize: 2249.77MB
Id: 201004132330
StartTime: Tue Apr 13 23:30:01 2010
EndTime: Tue Apr 13 23:45:01 2010
TotalTime: 900.36 seconds
TotalCapSize: 1752.43MB CapLen: 96 bytes
# of packets: 32592617 (20613.53MB)
AvgRate: 192.06Mbps stddev:12.45M

IP flow (unique src/dst pair) Information

# of flows: 1140650 (avg. 28.57 pkts/flow)
Top 10 big flow size (bytes/total in %):
2.3% 1.7% 1.6% 1.6% 0.9% 0.8% 0.7% 0.6% 0.6% 0.5%

IP address Information

# of IPv4 addresses: 625317
Top 10 bandwidth usage (bytes/total in %):
14.2% 7.4% 7.0% 6.1% 6.0% 6.0% 5.6% 3.6% 3.1% 3.0%
# of IPv6 addresses: 1001
Top 10 bandwidth usage (bytes/total in %):
26.7% 7.9% 5.8% 5.8% 5.7% 5.0% 4.5% 4.2% 4.2% 3.9%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:    6222431
 [   64-  127]:    8366583
 [  128-  255]:    2432738
 [  256-  511]:    1721535
 [  512- 1023]:     746678
 [ 1024- 2047]:   13102652


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         32592617 (100.00%)      21614856076 (100.00%)    663.18
 ip            32543124 ( 99.85%)      21606647595 ( 99.96%)    663.94
  tcp          20217130 ( 62.03%)      16108277410 ( 74.52%)    796.76
   http(s)      9863851 ( 30.26%)      13687383497 ( 63.32%)   1387.63
   http(c)      5765611 ( 17.69%)        536672784 (  2.48%)     93.08
   squid         393948 (  1.21%)        127414711 (  0.59%)    323.43
   smtp          434926 (  1.33%)        109420167 (  0.51%)    251.58
   ftp            28569 (  0.09%)          2865429 (  0.01%)    100.30
   pop3           16702 (  0.05%)         13707141 (  0.06%)    820.69
   imap            4357 (  0.01%)          1574838 (  0.01%)    361.45
   telnet           447 (  0.00%)            64422 (  0.00%)    144.12
   ssh            81676 (  0.25%)         14058764 (  0.07%)    172.13
   dns            53214 (  0.16%)          3631433 (  0.02%)     68.24
   bgp              159 (  0.00%)            50990 (  0.00%)    320.69
   napster           51 (  0.00%)             6270 (  0.00%)    122.94
   realaud           11 (  0.00%)             1088 (  0.00%)     98.91
   rtsp              50 (  0.00%)             3684 (  0.00%)     73.68
   icecast          320 (  0.00%)            20720 (  0.00%)     64.75
   hotline            9 (  0.00%)              560 (  0.00%)     62.22
   other        3573228 ( 10.96%)       1611400852 (  7.46%)    450.97
  udp           8058956 ( 24.73%)       3664652478 ( 16.95%)    454.73
   dns           789753 (  2.42%)        135343237 (  0.63%)    171.37
   realaud           34 (  0.00%)             3154 (  0.00%)     92.76
   halflif           87 (  0.00%)             8932 (  0.00%)    102.67
   starcra          208 (  0.00%)            20926 (  0.00%)    100.61
   everque          599 (  0.00%)           100615 (  0.00%)    167.97
   unreal           100 (  0.00%)            16853 (  0.00%)    168.53
   quake             45 (  0.00%)             4040 (  0.00%)     89.78
   cuseeme            5 (  0.00%)              763 (  0.00%)    152.60
   other        7268030 ( 22.30%)       3529066259 ( 16.33%)    485.56
  icmp          1036247 (  3.18%)        168674292 (  0.78%)    162.77
  ipip              375 (  0.00%)            44712 (  0.00%)    119.23
  ipsec            1723 (  0.01%)           578202 (  0.00%)    335.58
  ip6           2793263 (  8.57%)       1523287773 (  7.05%)    545.34
  other          435430 (  1.34%)        141132728 (  0.65%)    324.12
  frag              926 (  0.00%)          1048818 (  0.00%)   1132.63
 ip6              49493 (  0.15%)          8208481 (  0.04%)    165.85
  tcp6            12900 (  0.04%)          1521727 (  0.01%)    117.96
   http(s)           59 (  0.00%)            30962 (  0.00%)    524.78
   http(c)         2791 (  0.01%)           266257 (  0.00%)     95.40
   smtp             252 (  0.00%)           102634 (  0.00%)    407.28
   ftp             2678 (  0.01%)           276657 (  0.00%)    103.31
   imap             350 (  0.00%)            41275 (  0.00%)    117.93
   ssh             1660 (  0.01%)           146200 (  0.00%)     88.07
   dns              117 (  0.00%)            25487 (  0.00%)    217.84
   bgp              113 (  0.00%)            14751 (  0.00%)    130.54
   other           4880 (  0.01%)           617504 (  0.00%)    126.54
  udp6            30229 (  0.09%)          5893667 (  0.03%)    194.97
   dns            29600 (  0.09%)          5782947 (  0.03%)    195.37
   realaud            1 (  0.00%)              118 (  0.00%)    118.00
   halflif            1 (  0.00%)              105 (  0.00%)    105.00
   other            627 (  0.00%)           110497 (  0.00%)    176.23
  icmp6            6288 (  0.02%)           750801 (  0.00%)    119.40
  pim6               30 (  0.00%)             4080 (  0.00%)    136.00
  other6             46 (  0.00%)            38206 (  0.00%)    830.57


tcpdump file: 201004132330.dump.gz (835.28 MB)