Traffic Trace Info


DumpFile: 201410020345.dump
FileSize: 4647.75MB
Id: 201410020345
StartTime: Thu Oct 2 03:45:00 2014
EndTime: Thu Oct 2 04:00:00 2014
TotalTime: 899.97 seconds
TotalCapSize: 3531.28MB CapLen: 96 bytes
# of packets: 73168631 (20610.90MB)
AvgRate: 192.11Mbps stddev:53.20M

IP flow (unique src/dst pair) Information

# of flows: 42614677 (avg. 1.72 pkts/flow)
Top 10 big flow size (bytes/total in %):
5.1% 4.4% 2.9% 2.8% 2.7% 2.6% 2.6% 2.3% 1.9% 1.7%

IP address Information

# of IPv4 addresses: 30515736
Top 10 bandwidth usage (bytes/total in %):
18.6% 13.0% 11.7% 6.6% 5.4% 5.3% 4.8% 4.7% 4.2% 4.0%
# of IPv6 addresses: 11651
Top 10 bandwidth usage (bytes/total in %):
29.1% 28.0% 22.0% 9.9% 9.2% 9.0% 8.2% 7.1% 6.5% 5.3%

Aggregated Flow Summary (using agurim)

[agurim byte plot] [agurim packets plot]

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers

Protocol Breakdown

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         73168631 (100.00%)      21612095222 (100.00%)    295.37
 ip            70342323 ( 96.14%)      20286744576 ( 93.87%)    288.40
  tcp          21436983 ( 29.30%)      14765280477 ( 68.32%)    688.78
   http        12733691 ( 17.40%)       8621517485 ( 39.89%)    677.06
   https        2381889 (  3.26%)       2361945148 ( 10.93%)    991.63
   smtp           36391 (  0.05%)          7670815 (  0.04%)    210.79
   ftp            22628 (  0.03%)          1566632 (  0.01%)     69.23
   ssh          1156022 (  1.58%)        140706855 (  0.65%)    121.72
   dns             8335 (  0.01%)          1329733 (  0.01%)    159.54
   bgp             2120 (  0.00%)           330776 (  0.00%)    156.03
   other        5095907 (  6.96%)       3630213033 ( 16.80%)    712.38
  udp           3147878 (  4.30%)       1963213231 (  9.08%)    623.66
   dns           496918 (  0.68%)        218533763 (  1.01%)    439.78
   other        2650514 (  3.62%)       1744217463 (  8.07%)    658.07
  icmp         44178584 ( 60.38%)       2732824057 ( 12.64%)     61.86
  ipip              185 (  0.00%)            19240 (  0.00%)    104.00
  gre            838071 (  1.15%)        630790929 (  2.92%)    752.67
  ipsec           16115 (  0.02%)         20860846 (  0.10%)   1294.50
  ip6            724505 (  0.99%)        173755536 (  0.80%)    239.83
  other               2 (  0.00%)              260 (  0.00%)    130.00
  frag           128882 (  0.18%)        179687459 (  0.83%)   1394.20
 ip6            2826308 (  3.86%)       1325350646 (  6.13%)    468.93
  tcp6          2725525 (  3.72%)       1304991655 (  6.04%)    478.80
   http          502304 (  0.69%)        425272354 (  1.97%)    846.64
   https         201247 (  0.28%)        203730422 (  0.94%)   1012.34
   smtp             234 (  0.00%)            85141 (  0.00%)    363.85
   ftp            12034 (  0.02%)          1194071 (  0.01%)     99.22
   ssh            26009 (  0.04%)         37647530 (  0.17%)   1447.48
   dns             2090 (  0.00%)           343402 (  0.00%)    164.31
   bgp              986 (  0.00%)           168043 (  0.00%)    170.43
   other        1980621 (  2.71%)        636550692 (  2.95%)    321.39
  udp6            51136 (  0.07%)         13682684 (  0.06%)    267.57
   dns            43961 (  0.06%)         12001815 (  0.06%)    273.01
   other           7175 (  0.01%)          1680869 (  0.01%)    234.27
  icmp6           48870 (  0.07%)          6005217 (  0.03%)    122.88
  ip                 85 (  0.00%)            11530 (  0.00%)    135.65
  pim6               30 (  0.00%)             4080 (  0.00%)    136.00
  other6            662 (  0.00%)           655480 (  0.00%)    990.15


tcpdump file: 201410020345.dump.gz (1418.67 MB)