Traffic Trace Info


DumpFile: 200712131400.dump
FileSize: 1883.42MB
Id: 200712131400
StartTime: Thu Dec 13 14:00:01 2007
EndTime: Thu Dec 13 14:15:01 2007
TotalTime: 900.07 seconds
TotalCapSize: 1477.03MB CapLen: 96 bytes
# of packets: 26632729 (17820.89MB)
AvgRate: 166.06Mbps stddev:22.11M

IP flow (unique src/dst pair) Information

# of flows: 778571 (avg. 34.21 pkts/flow)
Top 10 big flow size (bytes/total in %):
4.1% 3.9% 1.3% 1.2% 0.9% 0.8% 0.7% 0.7% 0.7% 0.7%

IP address Information

# of IPv4 addresses: 382776
Top 10 bandwidth usage (bytes/total in %):
15.0% 10.5% 4.4% 4.1% 4.0% 4.0% 3.5% 3.4% 2.9% 2.3%
# of IPv6 addresses: 1196
Top 10 bandwidth usage (bytes/total in %):
31.4% 31.4% 11.6% 10.4% 5.3% 5.3% 4.2% 3.8% 3.6% 3.5%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:    6381086
 [   64-  127]:    6605536
 [  128-  255]:     768116
 [  256-  511]:     612359
 [  512- 1023]:     760734
 [ 1024- 2047]:   11504898


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         26632729 (100.00%)      18686556857 (100.00%)    701.64
 ip            26588832 ( 99.84%)      18674284045 ( 99.93%)    702.34
  tcp          22703038 ( 85.24%)      17937684085 ( 95.99%)    790.10
   http(s)     10562498 ( 39.66%)      14358269610 ( 76.84%)   1359.36
   http(c)      6753778 ( 25.36%)        780506538 (  4.18%)    115.57
   squid         869049 (  3.26%)        665275332 (  3.56%)    765.52
   smtp          710888 (  2.67%)        200526889 (  1.07%)    282.08
   nntp               1 (  0.00%)               74 (  0.00%)     74.00
   ftp            17655 (  0.07%)          1601774 (  0.01%)     90.73
   pop3           24198 (  0.09%)         11195313 (  0.06%)    462.65
   imap            5749 (  0.02%)          3222028 (  0.02%)    560.45
   telnet           103 (  0.00%)            11078 (  0.00%)    107.55
   ssh           760998 (  2.86%)        155710943 (  0.83%)    204.61
   dns             3298 (  0.01%)          2079324 (  0.01%)    630.48
   bgp              333 (  0.00%)           140443 (  0.00%)    421.75
   napster           13 (  0.00%)             2023 (  0.00%)    155.62
   realaud         1992 (  0.01%)          1374262 (  0.01%)    689.89
   rtsp          209651 (  0.79%)         45284762 (  0.24%)    216.00
   icecast        10634 (  0.04%)          8703157 (  0.05%)    818.43
   hotline           12 (  0.00%)             1858 (  0.00%)    154.83
   other        2772187 ( 10.41%)       1703778617 (  9.12%)    614.60
  udp           2993950 ( 11.24%)        648684077 (  3.47%)    216.66
   dns          1777464 (  6.67%)        229789963 (  1.23%)    129.28
   realaud          222 (  0.00%)            23513 (  0.00%)    105.91
   halflif           14 (  0.00%)             1396 (  0.00%)     99.71
   starcra           24 (  0.00%)             2928 (  0.00%)    122.00
   everque           47 (  0.00%)             9344 (  0.00%)    198.81
   unreal            24 (  0.00%)             2195 (  0.00%)     91.46
   quake             19 (  0.00%)             4250 (  0.00%)    223.68
   cuseeme            3 (  0.00%)              282 (  0.00%)     94.00
   other        1216116 (  4.57%)        418839630 (  2.24%)    344.41
  icmp           826453 (  3.10%)         70712751 (  0.38%)     85.56
  ipip              336 (  0.00%)            40740 (  0.00%)    121.25
  ipsec            3696 (  0.01%)          3162344 (  0.02%)    855.61
  ip6              9930 (  0.04%)          7017883 (  0.04%)    706.74
  other           51429 (  0.19%)          6982165 (  0.04%)    135.76
  frag             1677 (  0.01%)          1339447 (  0.01%)    798.72
 ip6              43897 (  0.16%)         12272812 (  0.07%)    279.58
  tcp6            14002 (  0.05%)          7826232 (  0.04%)    558.94
   http(s)         1947 (  0.01%)          2355647 (  0.01%)   1209.89
   http(c)         3106 (  0.01%)           287804 (  0.00%)     92.66
   smtp             712 (  0.00%)           289274 (  0.00%)    406.28
   ftp               28 (  0.00%)             5769 (  0.00%)    206.04
   pop3              35 (  0.00%)             3220 (  0.00%)     92.00
   ssh              777 (  0.00%)           367085 (  0.00%)    472.44
   dns                7 (  0.00%)              635 (  0.00%)     90.71
   bgp              128 (  0.00%)            20026 (  0.00%)    156.45
   other           7262 (  0.03%)          4496772 (  0.02%)    619.22
  udp6            22703 (  0.09%)          3399617 (  0.02%)    149.74
   dns            22525 (  0.08%)          3376127 (  0.02%)    149.88
   other            178 (  0.00%)            23490 (  0.00%)    131.97
  icmp6            7158 (  0.03%)          1039751 (  0.01%)    145.26
  pim6               30 (  0.00%)             4080 (  0.00%)    136.00
  other6              4 (  0.00%)             3132 (  0.00%)    783.00


tcpdump file: 200712131400.dump.gz (664.11 MB)