Traffic Trace Info


DumpFile: 200908311400.dump
FileSize: 1541.08MB
Id: 200908311400
StartTime: Mon Aug 31 14:00:00 2009
EndTime: Mon Aug 31 14:15:00 2009
TotalTime: 900.11 seconds
TotalCapSize: 1201.32MB CapLen: 96 bytes
# of packets: 22265880 (11886.21MB)
AvgRate: 110.78Mbps stddev:10.19M

IP flow (unique src/dst pair) Information

# of flows: 1310338 (avg. 16.99 pkts/flow)
Top 10 big flow size (bytes/total in %):
4.2% 2.1% 1.7% 1.6% 1.3% 1.0% 1.0% 1.0% 0.9% 0.7%

IP address Information

# of IPv4 addresses: 776116
Top 10 bandwidth usage (bytes/total in %):
16.0% 8.5% 6.4% 4.4% 4.4% 4.0% 3.6% 3.0% 2.2% 2.1%
# of IPv6 addresses: 1721
Top 10 bandwidth usage (bytes/total in %):
30.2% 29.9% 12.1% 9.3% 6.4% 5.0% 4.9% 4.1% 3.2% 3.0%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:    5966359
 [   64-  127]:    5910463
 [  128-  255]:    1533260
 [  256-  511]:     884824
 [  512- 1023]:     715482
 [ 1024- 2047]:    7255492


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         22265880 (100.00%)      12463594245 (100.00%)    559.76
 ip            22230301 ( 99.84%)      12455495507 ( 99.94%)    560.29
  tcp          17178710 ( 77.15%)      11170099024 ( 89.62%)    650.23
   http(s)      5908766 ( 26.54%)       7546228129 ( 60.55%)   1277.12
   http(c)      4141310 ( 18.60%)        546911090 (  4.39%)    132.06
   squid        1150469 (  5.17%)        416518683 (  3.34%)    362.04
   smtp          292431 (  1.31%)         88191765 (  0.71%)    301.58
   ftp            17639 (  0.08%)          6631869 (  0.05%)    375.98
   pop3           12039 (  0.05%)          6358123 (  0.05%)    528.13
   imap           57095 (  0.26%)         79822477 (  0.64%)   1398.06
   telnet           146 (  0.00%)            14036 (  0.00%)     96.14
   ssh            50089 (  0.22%)         10797092 (  0.09%)    215.56
   dns             9162 (  0.04%)          7129675 (  0.06%)    778.18
   bgp              141 (  0.00%)            46610 (  0.00%)    330.57
   napster          560 (  0.00%)           229953 (  0.00%)    410.63
   realaud          385 (  0.00%)            46911 (  0.00%)    121.85
   rtsp           37612 (  0.17%)         45200996 (  0.36%)   1201.77
   icecast        13874 (  0.06%)          8314927 (  0.07%)    599.32
   hotline           49 (  0.00%)            11953 (  0.00%)    243.94
   other        5486896 ( 24.64%)       2407585199 ( 19.32%)    438.79
  udp           4174419 ( 18.75%)       1177764383 (  9.45%)    282.14
   dns          1714032 (  7.70%)        271729206 (  2.18%)    158.53
   rip                4 (  0.00%)              791 (  0.00%)    197.75
   realaud           94 (  0.00%)            13274 (  0.00%)    141.21
   halflif         3390 (  0.02%)           217195 (  0.00%)     64.07
   starcra         9946 (  0.04%)          1072984 (  0.01%)    107.88
   everque          437 (  0.00%)            86825 (  0.00%)    198.68
   unreal            99 (  0.00%)            17605 (  0.00%)    177.83
   quake            101 (  0.00%)            10676 (  0.00%)    105.70
   cuseeme           22 (  0.00%)             2506 (  0.00%)    113.91
   other        2443990 ( 10.98%)        904376302 (  7.26%)    370.04
  icmp           806507 (  3.62%)         65826459 (  0.53%)     81.62
  ipip              310 (  0.00%)            36436 (  0.00%)    117.54
  ipsec             100 (  0.00%)            15800 (  0.00%)    158.00
  ip6             42784 (  0.19%)         26937121 (  0.22%)    629.61
  other           27471 (  0.12%)         14816284 (  0.12%)    539.34
  frag            24387 (  0.11%)         19667278 (  0.16%)    806.47
 ip6              35579 (  0.16%)          8098738 (  0.06%)    227.63
  tcp6            18876 (  0.08%)          4806223 (  0.04%)    254.62
   http(s)         2697 (  0.01%)          2764328 (  0.02%)   1024.96
   http(c)        11743 (  0.05%)          1042502 (  0.01%)     88.78
   smtp            1100 (  0.00%)           540743 (  0.00%)    491.58
   ftp               31 (  0.00%)             2809 (  0.00%)     90.61
   dns               10 (  0.00%)             3075 (  0.00%)    307.50
   bgp              124 (  0.00%)            18125 (  0.00%)    146.17
   other           3171 (  0.01%)           434641 (  0.00%)    137.07
  udp6            12721 (  0.06%)          2777187 (  0.02%)    218.32
   dns            11286 (  0.05%)          2430195 (  0.02%)    215.33
   other           1435 (  0.01%)           346992 (  0.00%)    241.81
  icmp6            3903 (  0.02%)           480779 (  0.00%)    123.18
  pim6               30 (  0.00%)             4080 (  0.00%)    136.00
  other6             49 (  0.00%)            30469 (  0.00%)    621.82


tcpdump file: 200908311400.dump.gz (585.11 MB)