Traffic Trace Info


DumpFile: 201004161400.dump
FileSize: 2331.39MB
Id: 201004161400
StartTime: Fri Apr 16 14:00:00 2010
EndTime: Fri Apr 16 14:15:01 2010
TotalTime: 900.24 seconds
TotalCapSize: 1829.38MB CapLen: 96 bytes
# of packets: 32899087 (19353.41MB)
AvgRate: 180.34Mbps stddev:14.32M

IP flow (unique src/dst pair) Information

# of flows: 1110731 (avg. 29.62 pkts/flow)
Top 10 big flow size (bytes/total in %):
2.0% 1.6% 1.1% 0.9% 0.9% 0.8% 0.8% 0.6% 0.6% 0.6%

IP address Information

# of IPv4 addresses: 622664
Top 10 bandwidth usage (bytes/total in %):
15.7% 11.7% 5.2% 3.2% 3.1% 3.1% 3.0% 2.6% 2.1% 2.1%
# of IPv6 addresses: 1083
Top 10 bandwidth usage (bytes/total in %):
19.9% 10.9% 8.5% 6.4% 5.5% 5.3% 5.1% 4.5% 3.6% 3.1%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:    5771052
 [   64-  127]:    9211987
 [  128-  255]:    2677032
 [  256-  511]:    2053976
 [  512- 1023]:     977923
 [ 1024- 2047]:   12207117


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         32899087 (100.00%)      20293519801 (100.00%)    616.84
 ip            32843092 ( 99.83%)      20284161855 ( 99.95%)    617.61
  tcp          19502932 ( 59.28%)      13389383713 ( 65.98%)    686.53
   http(s)      7533096 ( 22.90%)      10002363816 ( 49.29%)   1327.79
   http(c)      6420429 ( 19.52%)        820290218 (  4.04%)    127.76
   squid         283534 (  0.86%)         71737148 (  0.35%)    253.01
   smtp          367925 (  1.12%)        150812048 (  0.74%)    409.90
   ftp            26472 (  0.08%)          2880388 (  0.01%)    108.81
   pop3           20604 (  0.06%)          9481168 (  0.05%)    460.16
   imap            4094 (  0.01%)          1388389 (  0.01%)    339.13
   telnet           432 (  0.00%)            64228 (  0.00%)    148.68
   ssh           594089 (  1.81%)         82818951 (  0.41%)    139.40
   dns            53302 (  0.16%)          3676876 (  0.02%)     68.98
   bgp              162 (  0.00%)            65806 (  0.00%)    406.21
   napster          114 (  0.00%)             8943 (  0.00%)     78.45
   realaud          267 (  0.00%)            31926 (  0.00%)    119.57
   rtsp          297276 (  0.90%)        104576608 (  0.52%)    351.78
   icecast        28005 (  0.09%)          9026158 (  0.04%)    322.31
   hotline           76 (  0.00%)            86279 (  0.00%)   1135.25
   other        3873052 ( 11.77%)       2130074583 ( 10.50%)    549.97
  udp           8945059 ( 27.19%)       4405558023 ( 21.71%)    492.51
   dns           952355 (  2.89%)        174498252 (  0.86%)    183.23
   realaud           31 (  0.00%)             3839 (  0.00%)    123.84
   halflif           78 (  0.00%)             8826 (  0.00%)    113.15
   starcra          304 (  0.00%)            34053 (  0.00%)    112.02
   everque          746 (  0.00%)           148729 (  0.00%)    199.37
   unreal            64 (  0.00%)             9069 (  0.00%)    141.70
   quake             27 (  0.00%)             2589 (  0.00%)     95.89
   cuseeme           27 (  0.00%)             3495 (  0.00%)    129.44
   other        7989619 ( 24.29%)       4230511748 ( 20.85%)    529.50
  icmp           639745 (  1.94%)        100114956 (  0.49%)    156.49
  ipip              347 (  0.00%)            41614 (  0.00%)    119.93
  ipsec            2261 (  0.01%)          1207646 (  0.01%)    534.12
  ip6           3745045 ( 11.38%)       2386851602 ( 11.76%)    637.34
  other            7703 (  0.02%)          1004301 (  0.00%)    130.38
  frag             4482 (  0.01%)          3825685 (  0.02%)    853.57
 ip6              55995 (  0.17%)          9357946 (  0.05%)    167.12
  tcp6            19937 (  0.06%)          2513899 (  0.01%)    126.09
   http(s)          156 (  0.00%)           157911 (  0.00%)   1012.25
   http(c)         3901 (  0.01%)           352814 (  0.00%)     90.44
   smtp             382 (  0.00%)           159165 (  0.00%)    416.66
   ftp             4154 (  0.01%)           426474 (  0.00%)    102.67
   imap             379 (  0.00%)            44604 (  0.00%)    117.69
   ssh             3628 (  0.01%)           343712 (  0.00%)     94.74
   dns               65 (  0.00%)            19192 (  0.00%)    295.26
   bgp              114 (  0.00%)            14815 (  0.00%)    129.96
   hotline            4 (  0.00%)              356 (  0.00%)     89.00
   other           7154 (  0.02%)           994856 (  0.00%)    139.06
  udp6            29764 (  0.09%)          6021347 (  0.03%)    202.30
   dns            29546 (  0.09%)          5987746 (  0.03%)    202.66
   other            218 (  0.00%)            33601 (  0.00%)    154.13
  icmp6            6195 (  0.02%)           758746 (  0.00%)    122.48
  pim6               31 (  0.00%)             4216 (  0.00%)    136.00
  other6             68 (  0.00%)            59738 (  0.00%)    878.50


tcpdump file: 201004161400.dump.gz (848.11 MB)