Traffic Trace Info


DumpFile: 200909201400.dump
FileSize: 1563.96MB
Id: 200909201400
StartTime: Sun Sep 20 14:00:00 2009
EndTime: Sun Sep 20 14:15:01 2009
TotalTime: 900.63 seconds
TotalCapSize: 1207.24MB CapLen: 96 bytes
# of packets: 23377471 (13696.81MB)
AvgRate: 127.56Mbps stddev:12.61M

IP flow (unique src/dst pair) Information

# of flows: 1494912 (avg. 15.64 pkts/flow)
Top 10 big flow size (bytes/total in %):
7.6% 2.4% 2.1% 2.1% 1.4% 1.3% 1.1% 1.0% 0.9% 0.9%

IP address Information

# of IPv4 addresses: 877010
Top 10 bandwidth usage (bytes/total in %):
32.8% 10.1% 9.6% 7.6% 3.0% 2.5% 2.4% 2.2% 2.1% 2.1%
# of IPv6 addresses: 855
Top 10 bandwidth usage (bytes/total in %):
36.1% 9.3% 9.2% 9.2% 8.9% 8.8% 5.9% 4.0% 3.9% 3.7%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:    5639058
 [   64-  127]:    5968356
 [  128-  255]:    1446393
 [  256-  511]:     912536
 [  512- 1023]:     575731
 [ 1024- 2047]:    8835397


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         23377471 (100.00%)      14362149579 (100.00%)    614.36
 ip            23360243 ( 99.93%)      14358408820 ( 99.97%)    614.65
  tcp          16365599 ( 70.01%)      11995157536 ( 83.52%)    732.95
   http(s)      4218840 ( 18.05%)       5490813370 ( 38.23%)   1301.50
   http(c)      2402990 ( 10.28%)        274676375 (  1.91%)    114.31
   squid         979254 (  4.19%)        204954796 (  1.43%)    209.30
   smtp          264130 (  1.13%)         50967925 (  0.35%)    192.97
   ftp            22707 (  0.10%)          2436016 (  0.02%)    107.28
   pop3            6177 (  0.03%)          3434623 (  0.02%)    556.03
   imap            1024 (  0.00%)           511881 (  0.00%)    499.88
   telnet         11389 (  0.05%)           853554 (  0.01%)     74.95
   ssh           282178 (  1.21%)        303864569 (  2.12%)   1076.85
   dns             5778 (  0.02%)          6804560 (  0.05%)   1177.67
   bgp              143 (  0.00%)            42900 (  0.00%)    300.00
   napster          628 (  0.00%)           352301 (  0.00%)    560.99
   realaud          418 (  0.00%)            51549 (  0.00%)    123.32
   rtsp           19920 (  0.09%)         24106463 (  0.17%)   1210.16
   icecast         2098 (  0.01%)           537324 (  0.00%)    256.11
   hotline           33 (  0.00%)             6337 (  0.00%)    192.03
   other        8147787 ( 34.85%)       5630588909 ( 39.20%)    691.06
  udp           6049158 ( 25.88%)       2252593199 ( 15.68%)    372.38
   dns          1018989 (  4.36%)        174852601 (  1.22%)    171.59
   realaud         1908 (  0.01%)           124827 (  0.00%)     65.42
   halflif         5079 (  0.02%)           318904 (  0.00%)     62.79
   starcra         1462 (  0.01%)           202392 (  0.00%)    138.44
   everque          611 (  0.00%)           187491 (  0.00%)    306.86
   unreal           111 (  0.00%)            22254 (  0.00%)    200.49
   quake             66 (  0.00%)            11802 (  0.00%)    178.82
   cuseeme           19 (  0.00%)             2776 (  0.00%)    146.11
   other        5020046 ( 21.47%)       2076492442 ( 14.46%)    413.64
  icmp           919395 (  3.93%)        103804978 (  0.72%)    112.91
  ipip              321 (  0.00%)            40050 (  0.00%)    124.77
  ipsec              84 (  0.00%)            13272 (  0.00%)    158.00
  ip6             23099 (  0.10%)          6434828 (  0.04%)    278.58
  other            2587 (  0.01%)           364957 (  0.00%)    141.07
  frag             8006 (  0.03%)          9137285 (  0.06%)   1141.30
 ip6              17226 (  0.07%)          3740639 (  0.03%)    217.15
  tcp6             5585 (  0.02%)          1665185 (  0.01%)    298.15
   http(s)           19 (  0.00%)            10708 (  0.00%)    563.58
   http(c)         1565 (  0.01%)           143865 (  0.00%)     91.93
   smtp            2795 (  0.01%)          1390406 (  0.01%)    497.46
   dns               31 (  0.00%)             6490 (  0.00%)    209.35
   bgp               94 (  0.00%)            11227 (  0.00%)    119.44
   other           1081 (  0.00%)           102489 (  0.00%)     94.81
  udp6             8373 (  0.04%)          1674099 (  0.01%)    199.94
   dns             8343 (  0.04%)          1670799 (  0.01%)    200.26
   other             30 (  0.00%)             3300 (  0.00%)    110.00
  icmp6            3219 (  0.01%)           379626 (  0.00%)    117.93
  pim6               31 (  0.00%)             4216 (  0.00%)    136.00
  other6             18 (  0.00%)            17513 (  0.00%)    972.94


tcpdump file: 200909201400.dump.gz (595.69 MB)