Traffic Trace Info


DumpFile: 200908091400.dump
FileSize: 1056.43MB
Id: 200908091400
StartTime: Sun Aug 9 14:00:00 2009
EndTime: Sun Aug 9 14:15:01 2009
TotalTime: 900.40 seconds
TotalCapSize: 815.87MB CapLen: 96 bytes
# of packets: 15764909 (8345.98MB)
AvgRate: 77.74Mbps stddev:13.73M

IP flow (unique src/dst pair) Information

# of flows: 1270666 (avg. 12.41 pkts/flow)
Top 10 big flow size (bytes/total in %):
2.4% 2.1% 2.0% 1.8% 1.8% 1.7% 1.5% 1.4% 1.3% 1.1%

IP address Information

# of IPv4 addresses: 784644
Top 10 bandwidth usage (bytes/total in %):
15.2% 8.0% 5.8% 5.4% 2.8% 2.7% 2.7% 2.6% 2.5% 2.5%
# of IPv6 addresses: 804
Top 10 bandwidth usage (bytes/total in %):
35.8% 35.8% 9.9% 9.9% 7.5% 6.5% 4.6% 4.0% 3.2% 2.4%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:    3868975
 [   64-  127]:    4206145
 [  128-  255]:    1269333
 [  256-  511]:     706423
 [  512- 1023]:     479914
 [ 1024- 2047]:    5234119


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         15764909 (100.00%)       8751396541 (100.00%)    555.12
 ip            15744414 ( 99.87%)       8746776669 ( 99.95%)    555.55
  tcp          10435663 ( 66.20%)       7032202782 ( 80.36%)    673.86
   http(s)      3627820 ( 23.01%)       4752224246 ( 54.30%)   1309.94
   http(c)      1650621 ( 10.47%)        221534892 (  2.53%)    134.21
   squid         728497 (  4.62%)        181126654 (  2.07%)    248.63
   smtp          257364 (  1.63%)         46498693 (  0.53%)    180.67
   nntp              10 (  0.00%)              600 (  0.00%)     60.00
   ftp            21782 (  0.14%)          9553409 (  0.11%)    438.59
   pop3            9118 (  0.06%)          8557818 (  0.10%)    938.56
   imap            1253 (  0.01%)           628174 (  0.01%)    501.34
   telnet           199 (  0.00%)            25004 (  0.00%)    125.65
   ssh            57307 (  0.36%)          4881251 (  0.06%)     85.18
   dns             5574 (  0.04%)          6676755 (  0.08%)   1197.84
   bgp              128 (  0.00%)            37309 (  0.00%)    291.48
   napster         2583 (  0.02%)           173030 (  0.00%)     66.99
   realaud          133 (  0.00%)            16153 (  0.00%)    121.45
   rtsp           20078 (  0.13%)         28284450 (  0.32%)   1408.73
   icecast         7455 (  0.05%)          3876730 (  0.04%)    520.02
   other        4045707 ( 25.66%)       1768066743 ( 20.20%)    437.02
  udp           4613375 ( 29.26%)       1654928140 ( 18.91%)    358.72
   dns          1068362 (  6.78%)        181807609 (  2.08%)    170.17
   realaud         1889 (  0.01%)           120275 (  0.00%)     63.67
   halflif          140 (  0.00%)            20927 (  0.00%)    149.48
   starcra          348 (  0.00%)            69453 (  0.00%)    199.58
   everque          245 (  0.00%)            50293 (  0.00%)    205.28
   unreal           139 (  0.00%)            21180 (  0.00%)    152.37
   quake             55 (  0.00%)            11498 (  0.00%)    209.05
   cuseeme           11 (  0.00%)             2022 (  0.00%)    183.82
   other        3540760 ( 22.46%)       1472458185 ( 16.83%)    415.86
  icmp           677652 (  4.30%)         53372249 (  0.61%)     78.76
  ipip              293 (  0.00%)            35514 (  0.00%)    121.21
  ipsec              64 (  0.00%)            10112 (  0.00%)    158.00
  ip6             15479 (  0.10%)          5928005 (  0.07%)    382.97
  other            1888 (  0.01%)           299867 (  0.00%)    158.83
  frag             7377 (  0.05%)          6597563 (  0.08%)    894.34
 ip6              20495 (  0.13%)          4619872 (  0.05%)    225.41
  tcp6             9485 (  0.06%)          2781842 (  0.03%)    293.29
   http(s)            5 (  0.00%)              913 (  0.00%)    182.60
   http(c)         1694 (  0.01%)           157200 (  0.00%)     92.80
   smtp             854 (  0.01%)           378975 (  0.00%)    443.76
   ftp             2499 (  0.02%)           259272 (  0.00%)    103.75
   ssh                1 (  0.00%)               86 (  0.00%)     86.00
   dns                6 (  0.00%)             1982 (  0.00%)    330.33
   bgp               89 (  0.00%)            10430 (  0.00%)    117.19
   other           4337 (  0.03%)          1972984 (  0.02%)    454.92
  udp6             7184 (  0.05%)          1386519 (  0.02%)    193.00
   dns             7174 (  0.05%)          1385425 (  0.02%)    193.12
   everque            1 (  0.00%)              104 (  0.00%)    104.00
   other              9 (  0.00%)              990 (  0.00%)    110.00
  icmp6            3792 (  0.02%)           445099 (  0.01%)    117.38
  pim6               31 (  0.00%)             4216 (  0.00%)    136.00
  other6              3 (  0.00%)             2196 (  0.00%)    732.00


tcpdump file: 200908091400.dump.gz (395.89 MB)