Traffic Trace Info


DumpFile: 200909081400.dump
FileSize: 1455.25MB
Id: 200909081400
StartTime: Tue Sep 8 14:00:01 2009
EndTime: Tue Sep 8 14:15:01 2009
TotalTime: 899.83 seconds
TotalCapSize: 1128.38MB CapLen: 96 bytes
# of packets: 21421342 (12433.96MB)
AvgRate: 115.92Mbps stddev:12.50M

IP flow (unique src/dst pair) Information

# of flows: 1283700 (avg. 16.69 pkts/flow)
Top 10 big flow size (bytes/total in %):
3.4% 1.2% 1.2% 1.1% 0.8% 0.7% 0.7% 0.7% 0.7% 0.7%

IP address Information

# of IPv4 addresses: 779280
Top 10 bandwidth usage (bytes/total in %):
20.2% 7.9% 4.9% 4.5% 3.9% 3.4% 3.3% 3.2% 2.1% 2.0%
# of IPv6 addresses: 984
Top 10 bandwidth usage (bytes/total in %):
20.9% 18.1% 12.6% 12.4% 11.7% 7.8% 6.7% 6.1% 4.4% 3.5%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:    5327121
 [   64-  127]:    5386713
 [  128-  255]:    1221765
 [  256-  511]:     823249
 [  512- 1023]:     752470
 [ 1024- 2047]:    7910024


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         21421342 (100.00%)      13037950127 (100.00%)    608.64
 ip            21379468 ( 99.80%)      13028244141 ( 99.93%)    609.38
  tcp          15687318 ( 73.23%)      10867848213 ( 83.36%)    692.78
   http(s)      4995701 ( 23.32%)       6453602760 ( 49.50%)   1291.83
   http(c)      3395233 ( 15.85%)        464271675 (  3.56%)    136.74
   squid         709582 (  3.31%)        261524065 (  2.01%)    368.56
   smtp          292037 (  1.36%)         78021433 (  0.60%)    267.16
   ftp            20470 (  0.10%)          5672229 (  0.04%)    277.10
   pop3           15690 (  0.07%)          5237582 (  0.04%)    333.82
   imap            1952 (  0.01%)           259453 (  0.00%)    132.92
   telnet           357 (  0.00%)            97171 (  0.00%)    272.19
   ssh            31094 (  0.15%)         22917906 (  0.18%)    737.05
   dns             6049 (  0.03%)          6785982 (  0.05%)   1121.84
   bgp              611 (  0.00%)           404679 (  0.00%)    662.32
   napster         1556 (  0.01%)          1167406 (  0.01%)    750.26
   realaud          454 (  0.00%)            56324 (  0.00%)    124.06
   rtsp           63857 (  0.30%)         41864200 (  0.32%)    655.59
   icecast         4850 (  0.02%)           377413 (  0.00%)     77.82
   hotline           23 (  0.00%)             2864 (  0.00%)    124.52
   other        6147730 ( 28.70%)       3525497119 ( 27.04%)    573.46
  udp           4923122 ( 22.98%)       2091492829 ( 16.04%)    424.83
   dns          1108893 (  5.18%)        202620233 (  1.55%)    182.72
   realaud         1035 (  0.00%)            74904 (  0.00%)     72.37
   halflif           90 (  0.00%)            12732 (  0.00%)    141.47
   starcra          226 (  0.00%)            42532 (  0.00%)    188.19
   everque          608 (  0.00%)           197520 (  0.00%)    324.87
   unreal            95 (  0.00%)            19743 (  0.00%)    207.82
   quake             36 (  0.00%)             5119 (  0.00%)    142.19
   cuseeme           23 (  0.00%)             3587 (  0.00%)    155.96
   other        3803933 ( 17.76%)       1887670979 ( 14.48%)    496.24
  icmp           736146 (  3.44%)         59938937 (  0.46%)     81.42
  ipip              314 (  0.00%)            37604 (  0.00%)    119.76
  ipsec            1075 (  0.01%)           265954 (  0.00%)    247.40
  ip6             24186 (  0.11%)          6664450 (  0.05%)    275.55
  other            7307 (  0.03%)          1996154 (  0.02%)    273.18
  frag            38170 (  0.18%)         30627244 (  0.23%)    802.39
 ip6              41874 (  0.20%)          9705986 (  0.07%)    231.79
  tcp6             8470 (  0.04%)          2193584 (  0.02%)    258.98
   http(s)         1044 (  0.00%)           397803 (  0.00%)    381.04
   http(c)         1602 (  0.01%)           147467 (  0.00%)     92.05
   smtp            1516 (  0.01%)           769622 (  0.01%)    507.67
   ftp                3 (  0.00%)              305 (  0.00%)    101.67
   ssh             2713 (  0.01%)           715250 (  0.01%)    263.64
   dns               14 (  0.00%)             2151 (  0.00%)    153.64
   bgp              129 (  0.00%)            20958 (  0.00%)    162.47
   other           1449 (  0.01%)           140028 (  0.00%)     96.64
  udp6            29638 (  0.14%)          7060044 (  0.05%)    238.21
   dns            29611 (  0.14%)          7056802 (  0.05%)    238.32
   other             27 (  0.00%)             3242 (  0.00%)    120.07
  icmp6            3726 (  0.02%)           437154 (  0.00%)    117.33
  pim6               30 (  0.00%)             4080 (  0.00%)    136.00
  other6             10 (  0.00%)            11124 (  0.00%)   1112.40


tcpdump file: 200909081400.dump.gz (548.99 MB)