Traffic Trace Info


DumpFile: 200908041400.dump
FileSize: 1694.48MB
Id: 200908041400
StartTime: Tue Aug 4 14:00:01 2009
EndTime: Tue Aug 4 14:15:01 2009
TotalTime: 900.36 seconds
TotalCapSize: 1318.20MB CapLen: 96 bytes
# of packets: 24659545 (15104.33MB)
AvgRate: 140.72Mbps stddev:15.80M

IP flow (unique src/dst pair) Information

# of flows: 1287566 (avg. 19.15 pkts/flow)
Top 10 big flow size (bytes/total in %):
3.7% 2.4% 2.2% 1.9% 1.8% 1.6% 1.1% 1.0% 0.8% 0.7%

IP address Information

# of IPv4 addresses: 807226
Top 10 bandwidth usage (bytes/total in %):
21.8% 9.6% 7.6% 5.7% 4.6% 4.6% 3.7% 3.4% 2.5% 2.2%
# of IPv6 addresses: 917
Top 10 bandwidth usage (bytes/total in %):
21.7% 21.7% 15.4% 12.6% 8.4% 8.4% 6.1% 6.1% 6.1% 5.1%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:    6198497
 [   64-  127]:    5453216
 [  128-  255]:    1639359
 [  256-  511]:     743812
 [  512- 1023]:     986215
 [ 1024- 2047]:    9638446


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         24659545 (100.00%)      15838042681 (100.00%)    642.27
 ip            24634414 ( 99.90%)      15830473096 ( 99.95%)    642.62
  tcp          19638737 ( 79.64%)      14025984296 ( 88.56%)    714.20
   http(s)      6276494 ( 25.45%)       7990021677 ( 50.45%)   1273.01
   http(c)      4114695 ( 16.69%)        739926080 (  4.67%)    179.83
   squid         601680 (  2.44%)        209799692 (  1.32%)    348.69
   smtp          245404 (  1.00%)         71173312 (  0.45%)    290.03
   ftp            55179 (  0.22%)         18543376 (  0.12%)    336.06
   pop3           13533 (  0.05%)          4993918 (  0.03%)    369.02
   imap            3170 (  0.01%)           724638 (  0.00%)    228.59
   telnet           675 (  0.00%)           503649 (  0.00%)    746.15
   ssh          1212625 (  4.92%)        505444210 (  3.19%)    416.82
   dns             5982 (  0.02%)          6701700 (  0.04%)   1120.31
   bgp              218 (  0.00%)            99265 (  0.00%)    455.34
   napster          248 (  0.00%)            67407 (  0.00%)    271.80
   realaud          267 (  0.00%)            34872 (  0.00%)    130.61
   rtsp          250550 (  1.02%)         23221678 (  0.15%)     92.68
   icecast        45698 (  0.19%)         33691233 (  0.21%)    737.26
   hotline            6 (  0.00%)              390 (  0.00%)     65.00
   other        6812059 ( 27.62%)       4421018699 ( 27.91%)    649.00
  udp           4179272 ( 16.95%)       1712101458 ( 10.81%)    409.66
   dns          1109621 (  4.50%)        215011380 (  1.36%)    193.77
   rip                2 (  0.00%)              426 (  0.00%)    213.00
   realaud         9507 (  0.04%)          4929790 (  0.03%)    518.54
   halflif          183 (  0.00%)            18901 (  0.00%)    103.28
   starcra          339 (  0.00%)            73773 (  0.00%)    217.62
   everque          316 (  0.00%)            60951 (  0.00%)    192.88
   unreal            84 (  0.00%)            16529 (  0.00%)    196.77
   quake             44 (  0.00%)             6735 (  0.00%)    153.07
   cuseeme           22 (  0.00%)             4083 (  0.00%)    185.59
   other        3058679 ( 12.40%)       1491748304 (  9.42%)    487.71
  icmp           693422 (  2.81%)         55232235 (  0.35%)     79.65
  ipip              304 (  0.00%)            37392 (  0.00%)    123.00
  ipsec              64 (  0.00%)            10112 (  0.00%)    158.00
  ip6             20805 (  0.08%)          5380813 (  0.03%)    258.63
  other          101810 (  0.41%)         31726790 (  0.20%)    311.63
  frag             8409 (  0.03%)          6234428 (  0.04%)    741.40
 ip6              25131 (  0.10%)          7569585 (  0.05%)    301.21
  tcp6            10994 (  0.04%)          4282070 (  0.03%)    389.49
   http(s)          990 (  0.00%)          1389218 (  0.01%)   1403.25
   http(c)         2149 (  0.01%)           195191 (  0.00%)     90.83
   smtp             995 (  0.00%)           474462 (  0.00%)    476.85
   ftp             2580 (  0.01%)           264127 (  0.00%)    102.37
   dns                9 (  0.00%)             1408 (  0.00%)    156.44
   bgp               82 (  0.00%)             9456 (  0.00%)    115.32
   other           4189 (  0.02%)          1948208 (  0.01%)    465.08
  udp6             9734 (  0.04%)          1906301 (  0.01%)    195.84
   dns             9723 (  0.04%)          1905091 (  0.01%)    195.94
   other             11 (  0.00%)             1210 (  0.00%)    110.00
  icmp6            4357 (  0.02%)          1363253 (  0.01%)    312.89
  pim6               30 (  0.00%)             4080 (  0.00%)    136.00
  other6             16 (  0.00%)            13881 (  0.00%)    867.56


tcpdump file: 200908041400.dump.gz (636.33 MB)