Traffic Trace Info


DumpFile: 200807121400.dump
FileSize: 1272.65MB
Id: 200807121400
StartTime: Sat Jul 12 14:00:00 2008
EndTime: Sat Jul 12 14:15:01 2008
TotalTime: 900.20 seconds
TotalCapSize: 987.64MB CapLen: 96 bytes
# of packets: 18678191 (11653.37MB)
AvgRate: 108.60Mbps stddev:15.60M

IP flow (unique src/dst pair) Information

# of flows: 642791 (avg. 29.06 pkts/flow)
Top 10 big flow size (bytes/total in %):
2.6% 2.3% 1.3% 1.2% 1.1% 1.1% 1.1% 0.9% 0.9% 0.9%

IP address Information

# of IPv4 addresses: 352675
Top 10 bandwidth usage (bytes/total in %):
9.7% 7.6% 7.5% 3.5% 3.3% 2.7% 2.6% 2.5% 2.4% 2.4%
# of IPv6 addresses: 784
Top 10 bandwidth usage (bytes/total in %):
15.8% 15.5% 9.4% 7.8% 7.1% 5.4% 5.4% 4.8% 4.5% 4.2%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:    4185700
 [   64-  127]:    5099046
 [  128-  255]:     833993
 [  256-  511]:     611782
 [  512- 1023]:     567084
 [ 1024- 2047]:    7380586


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         18678191 (100.00%)      12219441515 (100.00%)    654.21
 ip            18655289 ( 99.88%)      12215337830 ( 99.97%)    654.79
  tcp          14195358 ( 76.00%)      10432434253 ( 85.38%)    734.92
   http(s)      5762502 ( 30.85%)       7472652145 ( 61.15%)   1296.77
   http(c)      3687111 ( 19.74%)        473543229 (  3.88%)    128.43
   squid         719354 (  3.85%)        366171081 (  3.00%)    509.03
   smtp          488218 (  2.61%)         88910887 (  0.73%)    182.11
   nntp              34 (  0.00%)             2879 (  0.00%)     84.68
   ftp           131216 (  0.70%)        103818148 (  0.85%)    791.20
   pop3           18186 (  0.10%)          5402484 (  0.04%)    297.07
   imap            9786 (  0.05%)          7254700 (  0.06%)    741.33
   telnet          1100 (  0.01%)           134264 (  0.00%)    122.06
   ssh           423559 (  2.27%)        183872127 (  1.50%)    434.11
   dns             5214 (  0.03%)           467834 (  0.00%)     89.73
   bgp              259 (  0.00%)            62323 (  0.00%)    240.63
   napster           18 (  0.00%)             2308 (  0.00%)    128.22
   realaud            9 (  0.00%)             1767 (  0.00%)    196.33
   rtsp           98861 (  0.53%)         93683136 (  0.77%)    947.62
   icecast        72326 (  0.39%)        101606261 (  0.83%)   1404.84
   hotline            9 (  0.00%)              818 (  0.00%)     90.89
   other        2777595 ( 14.87%)       1534847802 ( 12.56%)    552.58
  udp           3551656 ( 19.01%)       1663970656 ( 13.62%)    468.51
   dns           977656 (  5.23%)        147343301 (  1.21%)    150.71
   realaud         8941 (  0.05%)          2849835 (  0.02%)    318.74
   halflif            4 (  0.00%)              318 (  0.00%)     79.50
   starcra           32 (  0.00%)             5495 (  0.00%)    171.72
   everque         4527 (  0.02%)          1634116 (  0.01%)    360.97
   unreal             1 (  0.00%)               84 (  0.00%)     84.00
   quake              3 (  0.00%)              294 (  0.00%)     98.00
   other        2543845 ( 13.62%)       1510377739 ( 12.36%)    593.74
  icmp           563805 (  3.02%)         47424442 (  0.39%)     84.11
  ipip              312 (  0.00%)            38512 (  0.00%)    123.44
  ipsec            3634 (  0.02%)           488700 (  0.00%)    134.48
  ip6              1188 (  0.01%)           340971 (  0.00%)    287.01
  other          339336 (  1.82%)         70640296 (  0.58%)    208.17
  frag            49658 (  0.27%)         37825104 (  0.31%)    761.71
 ip6              22902 (  0.12%)          4103685 (  0.03%)    179.18
  tcp6             7646 (  0.04%)          1567154 (  0.01%)    204.96
   http(s)          433 (  0.00%)           638002 (  0.01%)   1473.45
   http(c)         2255 (  0.01%)           251943 (  0.00%)    111.73
   smtp             332 (  0.00%)           239317 (  0.00%)    720.83
   pop3             129 (  0.00%)            12447 (  0.00%)     96.49
   ssh               95 (  0.00%)            11514 (  0.00%)    121.20
   bgp              909 (  0.00%)            76201 (  0.00%)     83.83
   other           3493 (  0.02%)           337730 (  0.00%)     96.69
  udp6            10490 (  0.06%)          1878242 (  0.02%)    179.05
   dns            10468 (  0.06%)          1875826 (  0.02%)    179.20
   quake              1 (  0.00%)              106 (  0.00%)    106.00
   other             21 (  0.00%)             2310 (  0.00%)    110.00
  icmp6            4735 (  0.03%)           654073 (  0.01%)    138.14
  pim6               31 (  0.00%)             4216 (  0.00%)    136.00


tcpdump file: 200807121400.dump.gz (451.89 MB)