Traffic Trace Info


DumpFile: 201203301915.dump
FileSize: 2992.81MB
Id: 201203301915
StartTime: Fri Mar 30 19:15:01 2012
EndTime: Fri Mar 30 19:30:00 2012
TotalTime: 899.77 seconds
TotalCapSize: -1717.17MB CapLen: 96 bytes
# of packets: 40237371 (31164.74MB)
AvgRate: 290.50Mbps stddev:77.09M

IP flow (unique src/dst pair) Information

# of flows: 1995322 (avg. 20.17 pkts/flow)
Top 10 big flow size (bytes/total in %):
8.7% 4.1% 3.9% 3.5% 2.7% 2.2% 2.2% 1.9% 1.7% 1.3%

IP address Information

# of IPv4 addresses: 1508454
Top 10 bandwidth usage (bytes/total in %):
18.1% 13.2% 12.0% 4.6% 4.4% 4.0% 3.8% 3.1% 3.1% 2.8%
# of IPv6 addresses: 6283
Top 10 bandwidth usage (bytes/total in %):
84.9% 73.6% 14.0% 14.0% 11.0% 0.3% 0.3% 0.2% 0.1% 0.1%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:    6999840
 [   64-  127]:    9592574
 [  128-  255]:    1303979
 [  256-  511]:    1005484
 [  512- 1023]:     871280
 [ 1024- 2047]:   20464214


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         40237371 (100.00%)      32678594546 (100.00%)    812.15
 ip            37556317 ( 93.34%)      28803165136 ( 88.14%)    766.93
  tcp          28254780 ( 70.22%)      25471323783 ( 77.94%)    901.49
   http(s)     13518203 ( 33.60%)      18816683032 ( 57.58%)   1391.95
   http(c)      7371101 ( 18.32%)       1671639098 (  5.12%)    226.78
   squid          73055 (  0.18%)         50544082 (  0.15%)    691.86
   smtp           49616 (  0.12%)         11440619 (  0.04%)    230.58
   nntp               8 (  0.00%)              512 (  0.00%)     64.00
   ftp             7399 (  0.02%)           723235 (  0.00%)     97.75
   pop3            1937 (  0.00%)           594374 (  0.00%)    306.85
   imap            2438 (  0.01%)           379370 (  0.00%)    155.61
   telnet          8456 (  0.02%)          4766083 (  0.01%)    563.63
   ssh            56742 (  0.14%)         13039447 (  0.04%)    229.80
   dns            29896 (  0.07%)         27355406 (  0.08%)    915.02
   bgp              657 (  0.00%)           132377 (  0.00%)    201.49
   napster           37 (  0.00%)             3542 (  0.00%)     95.73
   realaud          423 (  0.00%)            27613 (  0.00%)     65.28
   icecast          353 (  0.00%)            76535 (  0.00%)    216.81
   hotline           42 (  0.00%)             3403 (  0.00%)     81.02
   other        7134417 ( 17.73%)       4873915055 ( 14.91%)    683.16
  udp           4507392 ( 11.20%)       2175019771 (  6.66%)    482.55
   dns           418044 (  1.04%)         93900303 (  0.29%)    224.62
   rip                1 (  0.00%)               69 (  0.00%)     69.00
   realaud           51 (  0.00%)             8176 (  0.00%)    160.31
   halflif           29 (  0.00%)             2959 (  0.00%)    102.03
   starcra           27 (  0.00%)             4076 (  0.00%)    150.96
   everque          306 (  0.00%)            95594 (  0.00%)    312.40
   unreal            94 (  0.00%)            22549 (  0.00%)    239.88
   quake             19 (  0.00%)             3549 (  0.00%)    186.79
   cuseeme           35 (  0.00%)            10838 (  0.00%)    309.66
   other        3654346 (  9.08%)       2054855832 (  6.29%)    562.30
  icmp          2165266 (  5.38%)        212651560 (  0.65%)     98.21
  ipip              184 (  0.00%)            19160 (  0.00%)    104.13
  ipsec            2074 (  0.01%)           720108 (  0.00%)    347.21
  ip6           2606149 (  6.48%)        940274126 (  2.88%)    360.79
  pim               244 (  0.00%)            14640 (  0.00%)     60.00
  other           20228 (  0.05%)          3141988 (  0.01%)    155.33
  frag           931879 (  2.32%)        711079664 (  2.18%)    763.06
 ip6            2681054 (  6.66%)       3875429410 ( 11.86%)   1445.49
  tcp6          2598670 (  6.46%)       3857369180 ( 11.80%)   1484.36
   http(s)         6931 (  0.02%)          8634462 (  0.03%)   1245.77
   http(c)        15745 (  0.04%)          1391859 (  0.00%)     88.40
   smtp             218 (  0.00%)           111843 (  0.00%)    513.04
   ftp                1 (  0.00%)               74 (  0.00%)     74.00
   ssh            27543 (  0.07%)          4329619 (  0.01%)    157.19
   dns              164 (  0.00%)            29874 (  0.00%)    182.16
   bgp               87 (  0.00%)            14765 (  0.00%)    169.71
   icecast            3 (  0.00%)              230 (  0.00%)     76.67
   other        2547978 (  6.33%)       3842856454 ( 11.76%)   1508.20
  udp6            54754 (  0.14%)         13907604 (  0.04%)    254.00
   dns            50606 (  0.13%)         13168389 (  0.04%)    260.21
   realaud            2 (  0.00%)              216 (  0.00%)    108.00
   halflif            1 (  0.00%)              108 (  0.00%)    108.00
   quake              1 (  0.00%)              100 (  0.00%)    100.00
   other           4144 (  0.01%)           738791 (  0.00%)    178.28
  icmp6           26941 (  0.07%)          3574428 (  0.01%)    132.68
  ip6                82 (  0.00%)            11176 (  0.00%)    136.29
  pim6               30 (  0.00%)             4080 (  0.00%)    136.00
  other6            577 (  0.00%)           562942 (  0.00%)    975.64


tcpdump file: 201203301915.dump.gz (902.32 MB)