Traffic Trace Info


DumpFile: 200809121400.dump
FileSize: 1202.35MB
Id: 200809121400
StartTime: Fri Sep 12 14:00:00 2008
EndTime: Fri Sep 12 14:15:00 2008
TotalTime: 899.94 seconds
TotalCapSize: 937.39MB CapLen: 96 bytes
# of packets: 17363326 (12209.73MB)
AvgRate: 113.80Mbps stddev:22.34M

IP flow (unique src/dst pair) Information

# of flows: 536407 (avg. 32.37 pkts/flow)
Top 10 big flow size (bytes/total in %):
1.9% 1.8% 1.6% 1.4% 1.2% 1.0% 1.0% 1.0% 0.9% 0.9%

IP address Information

# of IPv4 addresses: 280933
Top 10 bandwidth usage (bytes/total in %):
12.4% 6.5% 4.4% 3.7% 3.2% 3.1% 2.5% 2.5% 2.5% 2.2%
# of IPv6 addresses: 853
Top 10 bandwidth usage (bytes/total in %):
34.2% 34.0% 8.5% 8.2% 7.7% 7.7% 4.3% 3.9% 3.1% 2.5%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:    3832624
 [   64-  127]:    3861915
 [  128-  255]:     838063
 [  256-  511]:     429616
 [  512- 1023]:     478350
 [ 1024- 2047]:    7922758


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         17363326 (100.00%)      12802830812 (100.00%)    737.35
 ip            17334742 ( 99.84%)      12795051887 ( 99.94%)    738.12
  tcp          14403787 ( 82.96%)      11907782420 ( 93.01%)    826.71
   http(s)      6266677 ( 36.09%)       8457270633 ( 66.06%)   1349.56
   http(c)      3856809 ( 22.21%)        410613741 (  3.21%)    106.46
   squid         258878 (  1.49%)        217677616 (  1.70%)    840.85
   smtp          881106 (  5.07%)        246684342 (  1.93%)    279.97
   ftp            20092 (  0.12%)          7428121 (  0.06%)    369.71
   pop3           31879 (  0.18%)         18619598 (  0.15%)    584.07
   imap            6278 (  0.04%)          3252603 (  0.03%)    518.10
   telnet           427 (  0.00%)            40765 (  0.00%)     95.47
   ssh           142412 (  0.82%)         94057403 (  0.73%)    660.46
   dns             9704 (  0.06%)          1012815 (  0.01%)    104.37
   bgp              191 (  0.00%)            55058 (  0.00%)    288.26
   napster          373 (  0.00%)            61918 (  0.00%)    166.00
   realaud          105 (  0.00%)             8404 (  0.00%)     80.04
   rtsp          907606 (  5.23%)        947378029 (  7.40%)   1043.82
   icecast        19691 (  0.11%)          9462173 (  0.07%)    480.53
   other        2001558 ( 11.53%)       1494159141 ( 11.67%)    746.50
  udp           2453218 ( 14.13%)        777464758 (  6.07%)    316.92
   dns          1369107 (  7.89%)        262703343 (  2.05%)    191.88
   realaud         1799 (  0.01%)           108504 (  0.00%)     60.31
   halflif           25 (  0.00%)             2528 (  0.00%)    101.12
   starcra           38 (  0.00%)             8203 (  0.00%)    215.87
   everque           88 (  0.00%)            12670 (  0.00%)    143.98
   unreal            18 (  0.00%)             2814 (  0.00%)    156.33
   quake             26 (  0.00%)             2521 (  0.00%)     96.96
   cuseeme           11 (  0.00%)              989 (  0.00%)     89.91
   other        1082079 (  6.23%)        514606886 (  4.02%)    475.57
  icmp           302623 (  1.74%)         77841152 (  0.61%)    257.22
  ipip              315 (  0.00%)            38089 (  0.00%)    120.92
  ipsec            4347 (  0.03%)           731938 (  0.01%)    168.38
  ip6               960 (  0.01%)           118418 (  0.00%)    123.35
  other          169492 (  0.98%)         31075112 (  0.24%)    183.34
  frag            66557 (  0.38%)         62820829 (  0.49%)    943.87
 ip6              28584 (  0.16%)          7778925 (  0.06%)    272.14
  tcp6            10860 (  0.06%)          4829099 (  0.04%)    444.67
   http(s)          500 (  0.00%)           691370 (  0.01%)   1382.74
   http(c)         3257 (  0.02%)           300722 (  0.00%)     92.33
   smtp             370 (  0.00%)           211156 (  0.00%)    570.69
   ssh             4659 (  0.03%)          3338942 (  0.03%)    716.66
   dns                8 (  0.00%)             1624 (  0.00%)    203.00
   bgp              395 (  0.00%)            35032 (  0.00%)     88.69
   other           1671 (  0.01%)           250253 (  0.00%)    149.76
  udp6            13351 (  0.08%)          2386804 (  0.02%)    178.77
   dns            13311 (  0.08%)          2382740 (  0.02%)    179.01
   other             40 (  0.00%)             4064 (  0.00%)    101.60
  icmp6            4330 (  0.02%)           548354 (  0.00%)    126.64
  pim6               31 (  0.00%)             4216 (  0.00%)    136.00
  other6             12 (  0.00%)            10452 (  0.00%)    871.00


tcpdump file: 200809121400.dump.gz (421.37 MB)