Traffic Trace Info


DumpFile: 201201101400.dump
FileSize: 2513.97MB
Id: 201201101400
StartTime: Tue Jan 10 14:00:01 2012
EndTime: Tue Jan 10 14:15:00 2012
TotalTime: 899.41 seconds
TotalCapSize: 1977.50MB CapLen: 96 bytes
# of packets: 35158160 (19601.20MB)
AvgRate: 182.82Mbps stddev:36.68M

IP flow (unique src/dst pair) Information

# of flows: 2085644 (avg. 16.86 pkts/flow)
Top 10 big flow size (bytes/total in %):
2.8% 2.2% 1.6% 1.6% 1.5% 1.4% 1.4% 1.4% 1.2% 1.1%

IP address Information

# of IPv4 addresses: 1555747
Top 10 bandwidth usage (bytes/total in %):
18.3% 9.7% 5.5% 5.0% 4.1% 3.5% 2.9% 2.5% 2.4% 2.3%
# of IPv6 addresses: 5367
Top 10 bandwidth usage (bytes/total in %):
27.8% 18.3% 16.1% 11.8% 10.7% 9.7% 9.2% 7.7% 7.0% 4.1%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:    9498791
 [   64-  127]:   10639839
 [  128-  255]:    1167654
 [  256-  511]:     800568
 [  512- 1023]:     692502
 [ 1024- 2047]:   12358806


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         35158160 (100.00%)      20553351152 (100.00%)    584.60
 ip            34789883 ( 98.95%)      20355109916 ( 99.04%)    585.09
  tcp          29159249 ( 82.94%)      18627295245 ( 90.63%)    638.81
   http(s)     11615248 ( 33.04%)      15422400542 ( 75.04%)   1327.77
   http(c)     10341917 ( 29.42%)       1336459338 (  6.50%)    129.23
   squid         315213 (  0.90%)        218152906 (  1.06%)    692.08
   smtp          124176 (  0.35%)         73674935 (  0.36%)    593.31
   nntp             103 (  0.00%)             6390 (  0.00%)     62.04
   ftp             7357 (  0.02%)          1379456 (  0.01%)    187.50
   pop3            9949 (  0.03%)          8705261 (  0.04%)    874.99
   imap            2279 (  0.01%)           440141 (  0.00%)    193.13
   telnet         20057 (  0.06%)          1510452 (  0.01%)     75.31
   ssh            65112 (  0.19%)         10156725 (  0.05%)    155.99
   dns            20924 (  0.06%)          2115721 (  0.01%)    101.11
   bgp              740 (  0.00%)           132551 (  0.00%)    179.12
   napster         5915 (  0.02%)           370789 (  0.00%)     62.69
   realaud           47 (  0.00%)             2962 (  0.00%)     63.02
   rtsp           63794 (  0.18%)         80840384 (  0.39%)   1267.21
   icecast         4495 (  0.01%)          3820198 (  0.02%)    849.88
   hotline           36 (  0.00%)             2784 (  0.00%)     77.33
   other        6561887 ( 18.66%)       1467123710 (  7.14%)    223.58
  udp           3449567 (  9.81%)       1128990934 (  5.49%)    327.28
   dns           634289 (  1.80%)        147113237 (  0.72%)    231.93
   realaud           21 (  0.00%)             2629 (  0.00%)    125.19
   halflif          108 (  0.00%)            10107 (  0.00%)     93.58
   starcra          370 (  0.00%)           124019 (  0.00%)    335.19
   everque          396 (  0.00%)            75391 (  0.00%)    190.38
   unreal             7 (  0.00%)              931 (  0.00%)    133.00
   quake             45 (  0.00%)             4931 (  0.00%)    109.58
   cuseeme            3 (  0.00%)              262 (  0.00%)     87.33
   other        2812930 (  8.00%)        981555972 (  4.78%)    348.94
  icmp          1488985 (  4.24%)        138583746 (  0.67%)     93.07
  ipip              184 (  0.00%)            19160 (  0.00%)    104.13
  ipsec           40159 (  0.11%)         32821226 (  0.16%)    817.28
  ip6            642917 (  1.83%)        424566172 (  2.07%)    660.37
  other            8822 (  0.03%)          2833433 (  0.01%)    321.18
  frag             3356 (  0.01%)          2697453 (  0.01%)    803.77
 ip6             368277 (  1.05%)        198241236 (  0.96%)    538.29
  tcp6           198670 (  0.57%)        120494551 (  0.59%)    606.51
   http(s)        27367 (  0.08%)         35561154 (  0.17%)   1299.42
   http(c)        48350 (  0.14%)          4128637 (  0.02%)     85.39
   smtp             169 (  0.00%)            65350 (  0.00%)    386.69
   ftp               98 (  0.00%)            10479 (  0.00%)    106.93
   dns              329 (  0.00%)            65125 (  0.00%)    197.95
   bgp               89 (  0.00%)            12910 (  0.00%)    145.06
   other         122268 (  0.35%)         80650896 (  0.39%)    659.62
  udp6            86174 (  0.25%)         29259339 (  0.14%)    339.54
   dns            54839 (  0.16%)         16239236 (  0.08%)    296.13
   realaud            1 (  0.00%)              106 (  0.00%)    106.00
   halflif            2 (  0.00%)              207 (  0.00%)    103.50
   other          31332 (  0.09%)         13019790 (  0.06%)    415.54
  icmp6           24424 (  0.07%)          6971631 (  0.03%)    285.44
  ip6                84 (  0.00%)            11412 (  0.00%)    135.86
  pim6               30 (  0.00%)             4080 (  0.00%)    136.00
  other6          58895 (  0.17%)         41500223 (  0.20%)    704.65


tcpdump file: 201201101400.dump.gz (866.33 MB)