Traffic Trace Info


DumpFile: 200910271400.dump
FileSize: 2623.45MB
Id: 200910271400
StartTime: Tue Oct 27 14:00:00 2009
EndTime: Tue Oct 27 14:15:01 2009
TotalTime: 900.62 seconds
TotalCapSize: 2025.93MB CapLen: 96 bytes
# of packets: 39143294 (23817.27MB)
AvgRate: 221.85Mbps stddev:31.67M

IP flow (unique src/dst pair) Information

# of flows: 1291091 (avg. 30.32 pkts/flow)
Top 10 big flow size (bytes/total in %):
8.9% 5.8% 1.2% 1.1% 1.0% 0.7% 0.7% 0.7% 0.6% 0.5%

IP address Information

# of IPv4 addresses: 770460
Top 10 bandwidth usage (bytes/total in %):
18.0% 9.3% 8.9% 8.9% 7.7% 6.5% 6.0% 3.1% 2.0% 1.9%
# of IPv6 addresses: 966
Top 10 bandwidth usage (bytes/total in %):
13.9% 12.2% 9.6% 7.7% 7.7% 6.4% 5.1% 5.1% 4.7% 4.2%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:   10758116
 [   64-  127]:    9291680
 [  128-  255]:    1671198
 [  256-  511]:    1043266
 [  512- 1023]:     961420
 [ 1024- 2047]:   15417614


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         39143294 (100.00%)      24974217307 (100.00%)    638.02
 ip            39116666 ( 99.93%)      24966344039 ( 99.97%)    638.25
  tcp          27750578 ( 70.89%)      19168396553 ( 76.75%)    690.74
   http(s)      8837734 ( 22.58%)      10643762698 ( 42.62%)   1204.35
   http(c)      8295104 ( 21.19%)       2461495720 (  9.86%)    296.74
   squid        1102606 (  2.82%)        298065864 (  1.19%)    270.33
   smtp          277414 (  0.71%)        111572487 (  0.45%)    402.19
   ftp            49666 (  0.13%)          4594414 (  0.02%)     92.51
   pop3           19679 (  0.05%)          9802579 (  0.04%)    498.12
   imap            4996 (  0.01%)           769251 (  0.00%)    153.97
   telnet          4516 (  0.01%)           478890 (  0.00%)    106.04
   ssh            20586 (  0.05%)          4417401 (  0.02%)    214.58
   dns             2705 (  0.01%)           543289 (  0.00%)    200.85
   bgp              189 (  0.00%)            56722 (  0.00%)    300.12
   napster          167 (  0.00%)            24734 (  0.00%)    148.11
   realaud         1837 (  0.00%)           186621 (  0.00%)    101.59
   rtsp          348517 (  0.89%)        178889977 (  0.72%)    513.29
   icecast        33277 (  0.09%)         22095901 (  0.09%)    664.00
   hotline            3 (  0.00%)              186 (  0.00%)     62.00
   other        8751576 ( 22.36%)       5431639459 ( 21.75%)    620.65
  udp          10788947 ( 27.56%)       5740468687 ( 22.99%)    532.07
   dns          1521601 (  3.89%)        238388748 (  0.95%)    156.67
   rip                6 (  0.00%)              869 (  0.00%)    144.83
   realaud        16292 (  0.04%)          5930415 (  0.02%)    364.01
   halflif          115 (  0.00%)            16919 (  0.00%)    147.12
   starcra        63614 (  0.16%)         90266205 (  0.36%)   1418.97
   everque          579 (  0.00%)           175458 (  0.00%)    303.04
   unreal           150 (  0.00%)            26006 (  0.00%)    173.37
   quake             43 (  0.00%)             5278 (  0.00%)    122.74
   cuseeme           15 (  0.00%)             2606 (  0.00%)    173.73
   other        7777253 ( 19.87%)       5320830149 ( 21.31%)    684.15
  icmp           532536 (  1.36%)         47043942 (  0.19%)     88.34
  ipip              317 (  0.00%)            39734 (  0.00%)    125.34
  ipsec              64 (  0.00%)            10112 (  0.00%)    158.00
  ip6             31351 (  0.08%)          7831562 (  0.03%)    249.80
  other           12873 (  0.03%)          2553449 (  0.01%)    198.36
  frag          2845496 (  7.27%)       2241350626 (  8.97%)    787.68
 ip6              26628 (  0.07%)          7873268 (  0.03%)    295.68
  tcp6             9831 (  0.03%)          4327082 (  0.02%)    440.15
   http(s)         2073 (  0.01%)          2433451 (  0.01%)   1173.88
   http(c)         3418 (  0.01%)           350310 (  0.00%)    102.49
   smtp            1706 (  0.00%)           847436 (  0.00%)    496.74
   ssh              218 (  0.00%)           102592 (  0.00%)    470.61
   dns               10 (  0.00%)             1470 (  0.00%)    147.00
   bgp              105 (  0.00%)            13272 (  0.00%)    126.40
   other           2301 (  0.01%)           578551 (  0.00%)    251.43
  udp6            12195 (  0.03%)          2897224 (  0.01%)    237.57
   dns            10923 (  0.03%)          2479898 (  0.01%)    227.03
   quake              1 (  0.00%)              118 (  0.00%)    118.00
   other           1271 (  0.00%)           417208 (  0.00%)    328.25
  icmp6            4239 (  0.01%)           494583 (  0.00%)    116.67
  rtopt6            277 (  0.00%)            92518 (  0.00%)    334.00
  pim6               30 (  0.00%)             4080 (  0.00%)    136.00
  other6             56 (  0.00%)            57781 (  0.00%)   1031.80


tcpdump file: 200910271400.dump.gz (945.91 MB)