Traffic Trace Info


DumpFile: 200709081400.dump
FileSize: 1255.50MB
Id: 200709081400
StartTime: Sat Sep 8 14:00:00 2007
EndTime: Sat Sep 8 14:15:00 2007
TotalTime: 899.64 seconds
TotalCapSize: 980.01MB CapLen: 96 bytes
# of packets: 18049311 (10757.69MB)
AvgRate: 100.32Mbps stddev:18.47M

IP flow (unique src/dst pair) Information

# of flows: 614082 (avg. 29.39 pkts/flow)
Top 10 big flow size (bytes/total in %):
4.7% 1.6% 1.0% 0.8% 0.8% 0.8% 0.8% 0.6% 0.6% 0.6%

IP address Information

# of IPv4 addresses: 312712
Top 10 bandwidth usage (bytes/total in %):
14.8% 14.4% 5.6% 4.9% 4.3% 3.7% 2.1% 1.8% 1.7% 1.7%
# of IPv6 addresses: 2406
Top 10 bandwidth usage (bytes/total in %):
25.5% 25.5% 21.3% 14.6% 14.6% 6.5% 5.7% 4.8% 3.1% 2.9%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:    4665077
 [   64-  127]:    5083892
 [  128-  255]:     651388
 [  256-  511]:     417787
 [  512- 1023]:     479076
 [ 1024- 2047]:    6752091


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         18049311 (100.00%)      11280252497 (100.00%)    624.97
 ip            17930470 ( 99.34%)      11254604026 ( 99.77%)    627.68
  tcp          14737925 ( 81.65%)      10641620891 ( 94.34%)    722.06
   http(s)      6180522 ( 34.24%)       8403869798 ( 74.50%)   1359.73
   http(c)      5267209 ( 29.18%)        847062533 (  7.51%)    160.82
   squid         384765 (  2.13%)        205769580 (  1.82%)    534.79
   smtp          483610 (  2.68%)         92613310 (  0.82%)    191.50
   nntp             196 (  0.00%)            26653 (  0.00%)    135.98
   ftp           110235 (  0.61%)        109555633 (  0.97%)    993.84
   pop3           16723 (  0.09%)         11607925 (  0.10%)    694.13
   imap            1963 (  0.01%)           425772 (  0.00%)    216.90
   telnet           310 (  0.00%)            20296 (  0.00%)     65.47
   ssh            81108 (  0.45%)         30356885 (  0.27%)    374.28
   dns            10034 (  0.06%)          2446394 (  0.02%)    243.81
   bgp              240 (  0.00%)            76439 (  0.00%)    318.50
   napster          880 (  0.00%)           292740 (  0.00%)    332.66
   realaud           19 (  0.00%)             2665 (  0.00%)    140.26
   rtsp          345461 (  1.91%)         21307498 (  0.19%)     61.68
   icecast        17062 (  0.09%)         15660575 (  0.14%)    917.86
   hotline            9 (  0.00%)              614 (  0.00%)     68.22
   other        1837576 ( 10.18%)        900525401 (  7.98%)    490.06
  udp           2334354 ( 12.93%)        504063615 (  4.47%)    215.93
   dns          1449619 (  8.03%)        184425452 (  1.63%)    127.22
   realaud          361 (  0.00%)            25359 (  0.00%)     70.25
   halflif           33 (  0.00%)             2995 (  0.00%)     90.76
   starcra           17 (  0.00%)             2987 (  0.00%)    175.71
   everque         1091 (  0.01%)           195092 (  0.00%)    178.82
   unreal            13 (  0.00%)             1036 (  0.00%)     79.69
   quake             15 (  0.00%)             2020 (  0.00%)    134.67
   cuseeme            8 (  0.00%)             1132 (  0.00%)    141.50
   other         882878 (  4.89%)        319370196 (  2.83%)    361.74
  icmp           605899 (  3.36%)         53371709 (  0.47%)     88.09
  ipip              350 (  0.00%)            41540 (  0.00%)    118.69
  ipsec             180 (  0.00%)            19800 (  0.00%)    110.00
  ip6              7552 (  0.04%)          3996401 (  0.04%)    529.18
  other          244210 (  1.35%)         51490070 (  0.46%)    210.84
  frag             2168 (  0.01%)          1784273 (  0.02%)    823.00
 ip6             118841 (  0.66%)         25648471 (  0.23%)    215.82
  tcp6            70710 (  0.39%)         17598913 (  0.16%)    248.89
   http(s)          199 (  0.00%)           154597 (  0.00%)    776.87
   http(c)        52027 (  0.29%)          5699903 (  0.05%)    109.56
   squid              6 (  0.00%)             1393 (  0.00%)    232.17
   smtp             471 (  0.00%)           125176 (  0.00%)    265.77
   ftp               55 (  0.00%)             6378 (  0.00%)    115.96
   pop3              49 (  0.00%)             6060 (  0.00%)    123.67
   ssh               66 (  0.00%)            10722 (  0.00%)    162.45
   dns               12 (  0.00%)             1122 (  0.00%)     93.50
   bgp              115 (  0.00%)            12819 (  0.00%)    111.47
   other          17710 (  0.10%)         11580743 (  0.10%)    653.91
  udp6            35636 (  0.20%)          6525378 (  0.06%)    183.11
   dns            33482 (  0.19%)          6117408 (  0.05%)    182.71
   starcra            5 (  0.00%)              965 (  0.00%)    193.00
   everque            1 (  0.00%)              139 (  0.00%)    139.00
   other           2148 (  0.01%)           406866 (  0.00%)    189.42
  icmp6           10455 (  0.06%)          1238837 (  0.01%)    118.49
  ip6              2005 (  0.01%)           277293 (  0.00%)    138.30
  pim6               31 (  0.00%)             4216 (  0.00%)    136.00
  other6              4 (  0.00%)             3834 (  0.00%)    958.50


tcpdump file: 200709081400.dump.gz (470.95 MB)