Traffic Trace Info


DumpFile: 201004141400.dump
FileSize: 3215.82MB
Id: 201004141400
StartTime: Wed Apr 14 14:00:00 2010
EndTime: Wed Apr 14 14:15:01 2010
TotalTime: 900.68 seconds
TotalCapSize: -1560.73MB CapLen: 96 bytes
# of packets: 44599795 (30550.25MB)
AvgRate: 284.51Mbps stddev:25.32M

IP flow (unique src/dst pair) Information

# of flows: 1052546 (avg. 42.37 pkts/flow)
Top 10 big flow size (bytes/total in %):
32.1% 1.4% 1.2% 1.1% 0.9% 0.8% 0.6% 0.5% 0.5% 0.5%

IP address Information

# of IPv4 addresses: 610138
Top 10 bandwidth usage (bytes/total in %):
33.4% 32.9% 11.7% 6.7% 2.4% 2.3% 2.2% 2.0% 1.6% 1.6%
# of IPv6 addresses: 1052
Top 10 bandwidth usage (bytes/total in %):
80.6% 80.5% 4.7% 1.8% 1.3% 1.2% 1.2% 1.0% 1.0% 0.8%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:    5755380
 [   64-  127]:   13219624
 [  128-  255]:    2761027
 [  256-  511]:    2142102
 [  512- 1023]:    1038402
 [ 1024- 2047]:   19683260


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         44599795 (100.00%)      32034254427 (100.00%)    718.26
 ip            44524616 ( 99.83%)      31988106219 ( 99.86%)    718.44
  tcp          30472094 ( 68.32%)      24282506539 ( 75.80%)    796.88
   http(s)      7496179 ( 16.81%)       9754881625 ( 30.45%)   1301.31
   http(c)      6556566 ( 14.70%)       1112453149 (  3.47%)    169.67
   squid         255699 (  0.57%)         84214681 (  0.26%)    329.35
   smtp          333478 (  0.75%)        111417456 (  0.35%)    334.11
   ftp            36057 (  0.08%)         10012047 (  0.03%)    277.67
   pop3           21578 (  0.05%)         10199427 (  0.03%)    472.68
   imap            2864 (  0.01%)          1025527 (  0.00%)    358.08
   telnet           753 (  0.00%)            60379 (  0.00%)     80.18
   ssh           715888 (  1.61%)        118048292 (  0.37%)    164.90
   dns            50896 (  0.11%)          3534913 (  0.01%)     69.45
   bgp              178 (  0.00%)            71162 (  0.00%)    399.79
   napster           23 (  0.00%)             1737 (  0.00%)     75.52
   realaud           28 (  0.00%)             2983 (  0.00%)    106.54
   rtsp          568833 (  1.28%)        474413122 (  1.48%)    834.01
   icecast         5377 (  0.01%)           409200 (  0.00%)     76.10
   other       14427693 ( 32.35%)      12601760599 ( 39.34%)    873.44
  udp           9946928 ( 22.30%)       5458769699 ( 17.04%)    548.79
   dns           861255 (  1.93%)        163011303 (  0.51%)    189.27
   realaud          173 (  0.00%)            25361 (  0.00%)    146.60
   halflif          302 (  0.00%)            25815 (  0.00%)     85.48
   starcra          240 (  0.00%)            23554 (  0.00%)     98.14
   everque         1012 (  0.00%)           169994 (  0.00%)    167.98
   unreal            93 (  0.00%)            11733 (  0.00%)    126.16
   quake          13979 (  0.03%)          9723110 (  0.03%)    695.55
   cuseeme            5 (  0.00%)              470 (  0.00%)     94.00
   other        9069451 ( 20.34%)       5285571799 ( 16.50%)    582.79
  icmp           522253 (  1.17%)         68294237 (  0.21%)    130.77
  ipip              342 (  0.00%)            41212 (  0.00%)    120.50
  ipsec            1678 (  0.00%)           500260 (  0.00%)    298.13
  ip6           3505658 (  7.86%)       2168814083 (  6.77%)    618.66
  other           75663 (  0.17%)          9180189 (  0.03%)    121.33
  frag             2185 (  0.00%)          2140945 (  0.01%)    979.84
 ip6              75179 (  0.17%)         46148208 (  0.14%)    613.84
  tcp6            39270 (  0.09%)         39189322 (  0.12%)    997.95
   http(s)          326 (  0.00%)           294297 (  0.00%)    902.75
   http(c)         3815 (  0.01%)           351397 (  0.00%)     92.11
   smtp             224 (  0.00%)           102653 (  0.00%)    458.27
   ftp             2686 (  0.01%)           280685 (  0.00%)    104.50
   imap             286 (  0.00%)            32734 (  0.00%)    114.45
   ssh            28083 (  0.06%)         37465670 (  0.12%)   1334.10
   dns               89 (  0.00%)            24619 (  0.00%)    276.62
   bgp              111 (  0.00%)            14080 (  0.00%)    126.85
   other           3650 (  0.01%)           623187 (  0.00%)    170.74
  udp6            29504 (  0.07%)          6118895 (  0.02%)    207.39
   dns            29403 (  0.07%)          6103891 (  0.02%)    207.59
   cuseeme            1 (  0.00%)              116 (  0.00%)    116.00
   other            100 (  0.00%)            14888 (  0.00%)    148.88
  icmp6            6291 (  0.01%)           767098 (  0.00%)    121.94
  pim6               30 (  0.00%)             4080 (  0.00%)    136.00
  other6             84 (  0.00%)            68813 (  0.00%)    819.20


tcpdump file: 201004141400.dump.gz (1099.88 MB)