Traffic Trace Info


DumpFile: 200810201400.dump
FileSize: 1842.44MB
Id: 200810201400
StartTime: Mon Oct 20 14:00:01 2008
EndTime: Mon Oct 20 14:15:00 2008
TotalTime: 899.34 seconds
TotalCapSize: 1440.80MB CapLen: 96 bytes
# of packets: 26321241 (18644.66MB)
AvgRate: 173.91Mbps stddev:24.25M

IP flow (unique src/dst pair) Information

# of flows: 564508 (avg. 46.63 pkts/flow)
Top 10 big flow size (bytes/total in %):
7.4% 4.3% 4.1% 2.8% 0.9% 0.8% 0.8% 0.8% 0.7% 0.7%

IP address Information

# of IPv4 addresses: 303227
Top 10 bandwidth usage (bytes/total in %):
10.3% 7.6% 7.2% 4.9% 4.4% 4.2% 4.2% 4.2% 3.7% 3.7%
# of IPv6 addresses: 781
Top 10 bandwidth usage (bytes/total in %):
32.4% 32.4% 19.4% 17.7% 9.1% 8.6% 7.8% 5.0% 3.6% 3.3%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:    6467474
 [   64-  127]:    5393218
 [  128-  255]:    1043384
 [  256-  511]:     573820
 [  512- 1023]:     735027
 [ 1024- 2047]:   12108318


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         26321241 (100.00%)      19550343313 (100.00%)    742.76
 ip            26251156 ( 99.73%)      19541291206 ( 99.95%)    744.40
  tcp          23047201 ( 87.56%)      18618386395 ( 95.23%)    807.84
   http(s)      9376996 ( 35.63%)      12133638338 ( 62.06%)   1293.98
   http(c)      5801944 ( 22.04%)        800309072 (  4.09%)    137.94
   squid         232468 (  0.88%)        159358319 (  0.82%)    685.51
   smtp          422002 (  1.60%)        174273767 (  0.89%)    412.97
   nntp              25 (  0.00%)             1941 (  0.00%)     77.64
   ftp            50629 (  0.19%)         11265700 (  0.06%)    222.51
   pop3           45015 (  0.17%)         25435460 (  0.13%)    565.04
   imap           11967 (  0.05%)          4977687 (  0.03%)    415.95
   telnet          1444 (  0.01%)           167754 (  0.00%)    116.17
   ssh           725823 (  2.76%)        109585366 (  0.56%)    150.98
   dns             5189 (  0.02%)           606750 (  0.00%)    116.93
   bgp              180 (  0.00%)            53468 (  0.00%)    297.04
   napster           42 (  0.00%)            12748 (  0.00%)    303.52
   realaud         1515 (  0.01%)          1268563 (  0.01%)    837.34
   rtsp         2252445 (  8.56%)       2262265003 ( 11.57%)   1004.36
   icecast        23408 (  0.09%)         16117726 (  0.08%)    688.56
   hotline           11 (  0.00%)             1966 (  0.00%)    178.73
   other        4096086 ( 15.56%)       2919046047 ( 14.93%)    712.64
  udp           2552624 (  9.70%)        822675996 (  4.21%)    322.29
   dns          1260224 (  4.79%)        212919401 (  1.09%)    168.95
   realaud         7786 (  0.03%)          3022074 (  0.02%)    388.14
   halflif           16 (  0.00%)             1417 (  0.00%)     88.56
   starcra           26 (  0.00%)             4392 (  0.00%)    168.92
   everque           81 (  0.00%)            11311 (  0.00%)    139.64
   unreal            76 (  0.00%)            22821 (  0.00%)    300.28
   quake             21 (  0.00%)             2144 (  0.00%)    102.10
   cuseeme            8 (  0.00%)              558 (  0.00%)     69.75
   other        1284242 (  4.88%)        606557016 (  3.10%)    472.31
  icmp           480865 (  1.83%)         57992756 (  0.30%)    120.60
  ipip              335 (  0.00%)            41840 (  0.00%)    124.90
  ipsec            4877 (  0.02%)           885826 (  0.00%)    181.63
  ip6               871 (  0.00%)           108212 (  0.00%)    124.24
  other          164383 (  0.62%)         41200181 (  0.21%)    250.64
  frag            20542 (  0.08%)         18051346 (  0.09%)    878.75
 ip6              70085 (  0.27%)          9052107 (  0.05%)    129.16
  tcp6            56692 (  0.22%)          6696333 (  0.03%)    118.12
   http(s)         1364 (  0.01%)          1689635 (  0.01%)   1238.74
   http(c)        52988 (  0.20%)          4722142 (  0.02%)     89.12
   smtp             224 (  0.00%)            63506 (  0.00%)    283.51
   pop3              32 (  0.00%)             2768 (  0.00%)     86.50
   ssh              105 (  0.00%)            12566 (  0.00%)    119.68
   bgp              361 (  0.00%)            30586 (  0.00%)     84.73
   other           1618 (  0.01%)           175130 (  0.00%)    108.24
  udp6             8875 (  0.03%)          1779818 (  0.01%)    200.54
   dns             8842 (  0.03%)          1774146 (  0.01%)    200.65
   halflif            1 (  0.00%)              113 (  0.00%)    113.00
   cuseeme            1 (  0.00%)              109 (  0.00%)    109.00
   other             31 (  0.00%)             5450 (  0.00%)    175.81
  icmp6            4487 (  0.02%)           571740 (  0.00%)    127.42
  pim6               31 (  0.00%)             4216 (  0.00%)    136.00


tcpdump file: 200810201400.dump.gz (637.36 MB)