Traffic Trace Info


DumpFile: 200808151400.dump
FileSize: 1316.87MB
Id: 200808151400
StartTime: Fri Aug 15 14:00:01 2008
EndTime: Fri Aug 15 14:15:00 2008
TotalTime: 899.42 seconds
TotalCapSize: 1025.33MB CapLen: 96 bytes
# of packets: 19105531 (13431.33MB)
AvgRate: 125.30Mbps stddev:22.49M

IP flow (unique src/dst pair) Information

# of flows: 580070 (avg. 32.94 pkts/flow)
Top 10 big flow size (bytes/total in %):
2.8% 1.4% 1.3% 1.0% 1.0% 0.8% 0.8% 0.8% 0.7% 0.7%

IP address Information

# of IPv4 addresses: 308333
Top 10 bandwidth usage (bytes/total in %):
19.2% 10.8% 6.6% 5.2% 3.2% 3.1% 2.9% 2.2% 2.2% 2.0%
# of IPv6 addresses: 929
Top 10 bandwidth usage (bytes/total in %):
34.3% 34.3% 18.8% 16.9% 8.3% 8.3% 3.8% 3.4% 3.0% 2.8%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:    3135377
 [   64-  127]:    5227004
 [  128-  255]:     960162
 [  256-  511]:     476634
 [  512- 1023]:     503313
 [ 1024- 2047]:    8803041


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         19105531 (100.00%)      14083770887 (100.00%)    737.16
 ip            19012556 ( 99.51%)      14072468185 ( 99.92%)    740.17
  tcp          14474324 ( 75.76%)      12503572522 ( 88.78%)    863.85
   http(s)      7339995 ( 38.42%)       9729798355 ( 69.09%)   1325.59
   http(c)      2981890 ( 15.61%)        270935589 (  1.92%)     90.86
   squid         499562 (  2.61%)        364583334 (  2.59%)    729.81
   smtp          780551 (  4.09%)        165498383 (  1.18%)    212.03
   nntp              84 (  0.00%)             8320 (  0.00%)     99.05
   ftp            58996 (  0.31%)         18183750 (  0.13%)    308.22
   pop3            6724 (  0.04%)          2630284 (  0.02%)    391.18
   imap            6134 (  0.03%)          2083715 (  0.01%)    339.70
   telnet          2214 (  0.01%)           226977 (  0.00%)    102.52
   ssh            56216 (  0.29%)         12255160 (  0.09%)    218.00
   dns             4193 (  0.02%)           363701 (  0.00%)     86.74
   bgp              158 (  0.00%)            55025 (  0.00%)    348.26
   napster           74 (  0.00%)             6872 (  0.00%)     92.86
   realaud           32 (  0.00%)             3963 (  0.00%)    123.84
   rtsp          339582 (  1.78%)        350467233 (  2.49%)   1032.05
   icecast         2249 (  0.01%)           159644 (  0.00%)     70.98
   hotline          110 (  0.00%)             7214 (  0.00%)     65.58
   other        2395559 ( 12.54%)       1586304943 ( 11.26%)    662.19
  udp           3401617 ( 17.80%)       1448490458 ( 10.28%)    425.82
   dns          1132887 (  5.93%)        204877904 (  1.45%)    180.85
   realaud         2769 (  0.01%)           166682 (  0.00%)     60.20
   halflif           16 (  0.00%)             1779 (  0.00%)    111.19
   starcra           32 (  0.00%)             6045 (  0.00%)    188.91
   everque           57 (  0.00%)             8295 (  0.00%)    145.53
   unreal            10 (  0.00%)             1640 (  0.00%)    164.00
   quake             13 (  0.00%)             1142 (  0.00%)     87.85
   cuseeme            6 (  0.00%)              776 (  0.00%)    129.33
   other        2265798 ( 11.86%)       1243412102 (  8.83%)    548.77
  icmp           943017 (  4.94%)         84993273 (  0.60%)     90.13
  ipip              311 (  0.00%)            38170 (  0.00%)    122.73
  ipsec            3145 (  0.02%)           408110 (  0.00%)    129.76
  ip6               921 (  0.00%)           113002 (  0.00%)    122.69
  other          189221 (  0.99%)         34852650 (  0.25%)    184.19
  frag             7874 (  0.04%)          6114045 (  0.04%)    776.49
 ip6              92975 (  0.49%)         11302702 (  0.08%)    121.57
  tcp6            74422 (  0.39%)          8241080 (  0.06%)    110.73
   http(s)          359 (  0.00%)           453866 (  0.00%)   1264.25
   http(c)         3643 (  0.02%)           345027 (  0.00%)     94.71
   squid              1 (  0.00%)               74 (  0.00%)     74.00
   smtp             313 (  0.00%)            85347 (  0.00%)    272.67
   ftp            10563 (  0.06%)           936501 (  0.01%)     88.66
   ssh             3040 (  0.02%)          2120096 (  0.02%)    697.40
   bgp              832 (  0.00%)            71393 (  0.00%)     85.81
   other          55671 (  0.29%)          4228776 (  0.03%)     75.96
  udp6            12704 (  0.07%)          2245808 (  0.02%)    176.78
   dns            12690 (  0.07%)          2244271 (  0.02%)    176.85
   quake              1 (  0.00%)              107 (  0.00%)    107.00
   other             13 (  0.00%)             1430 (  0.00%)    110.00
  icmp6            5801 (  0.03%)           798143 (  0.01%)    137.59
  pim6               30 (  0.00%)             4080 (  0.00%)    136.00
  other6             18 (  0.00%)            13591 (  0.00%)    755.06


tcpdump file: 200808151400.dump.gz (462.08 MB)