Traffic Trace Info


DumpFile: 201410020100.dump
FileSize: 5791.69MB
Id: 201410020100
StartTime: Thu Oct 2 01:00:00 2014
EndTime: Thu Oct 2 01:15:00 2014
TotalTime: 899.94 seconds
TotalCapSize: 4449.54MB CapLen: 96 bytes
# of packets: 87958797 (34021.49MB)
AvgRate: 317.17Mbps stddev:64.64M

IP flow (unique src/dst pair) Information

# of flows: 37858433 (avg. 2.32 pkts/flow)
Top 10 big flow size (bytes/total in %):
5.0% 4.5% 2.9% 2.8% 2.6% 2.5% 2.2% 1.9% 1.4% 1.2%

IP address Information

# of IPv4 addresses: 26775841
Top 10 bandwidth usage (bytes/total in %):
14.0% 8.0% 6.7% 5.9% 5.3% 5.3% 4.8% 3.0% 3.0% 2.9%
# of IPv6 addresses: 13066
Top 10 bandwidth usage (bytes/total in %):
29.0% 9.3% 8.3% 8.2% 7.0% 6.1% 5.8% 5.7% 4.5% 4.5%

Aggregated Flow Summary (using agurim)

[agurim byte plot] [agurim packets plot]

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers

Protocol Breakdown

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         87958797 (100.00%)      35674122578 (100.00%)    405.58
 ip            85019007 ( 96.66%)      34169412224 ( 95.78%)    401.90
  tcp          41112461 ( 46.74%)      28616781643 ( 80.22%)    696.06
   http        24593631 ( 27.96%)      15246763964 ( 42.74%)    619.95
   https        6411376 (  7.29%)       6467344734 ( 18.13%)   1008.73
   smtp           58291 (  0.07%)         17000081 (  0.05%)    291.64
   ftp            18800 (  0.02%)          1248066 (  0.00%)     66.39
   ssh           887640 (  1.01%)         81681988 (  0.23%)     92.02
   dns             8691 (  0.01%)          1488961 (  0.00%)    171.32
   bgp             2101 (  0.00%)           339799 (  0.00%)    161.73
   other        9131931 ( 10.38%)       6800914050 ( 19.06%)    744.74
  udp           3801832 (  4.32%)       1946996145 (  5.46%)    512.12
   dns           410243 (  0.47%)        102126205 (  0.29%)    248.94
   other        3390866 (  3.86%)       1844583187 (  5.17%)    543.99
  icmp         38440704 ( 43.70%)       2385476598 (  6.69%)     62.06
  ipip              183 (  0.00%)            19062 (  0.00%)    104.16
  gre           1251308 (  1.42%)        891964106 (  2.50%)    712.83
  ipsec          133808 (  0.15%)        196778260 (  0.55%)   1470.60
  ip6            278709 (  0.32%)        131396150 (  0.37%)    471.45
  other               2 (  0.00%)              260 (  0.00%)    130.00
  frag            43013 (  0.05%)         59814363 (  0.17%)   1390.61
 ip6            2939790 (  3.34%)       1504710354 (  4.22%)    511.84
  tcp6          2830686 (  3.22%)       1483658703 (  4.16%)    524.13
   http          655603 (  0.75%)        640871845 (  1.80%)    977.53
   https         367611 (  0.42%)        382925646 (  1.07%)   1041.66
   smtp             681 (  0.00%)           259497 (  0.00%)    381.05
   ftp              271 (  0.00%)            24181 (  0.00%)     89.23
   ssh            31716 (  0.04%)         45802129 (  0.13%)   1444.13
   dns             2278 (  0.00%)           415090 (  0.00%)    182.22
   bgp             1066 (  0.00%)           190199 (  0.00%)    178.42
   other        1771460 (  2.01%)        413170116 (  1.16%)    233.24
  udp6            58770 (  0.07%)         14037288 (  0.04%)    238.85
   dns            50033 (  0.06%)         12734990 (  0.04%)    254.53
   other           8737 (  0.01%)          1302298 (  0.00%)    149.06
  icmp6           49289 (  0.06%)          6059579 (  0.02%)    122.94
  ip                 84 (  0.00%)            11412 (  0.00%)    135.86
  pim6               30 (  0.00%)             4080 (  0.00%)    136.00
  other6            931 (  0.00%)           939292 (  0.00%)   1008.91


tcpdump file: 201410020100.dump.gz (1799.63 MB)