Traffic Trace Info


DumpFile: 201205201400.dump
FileSize: 2658.49MB
Id: 201205201400
StartTime: Sun May 20 14:00:00 2012
EndTime: Sun May 20 14:15:00 2012
TotalTime: 899.58 seconds
TotalCapSize: -2000.45MB CapLen: 96 bytes
# of packets: 36892398 (31059.21MB)
AvgRate: 289.63Mbps stddev:45.95M

IP flow (unique src/dst pair) Information

# of flows: 1778389 (avg. 20.74 pkts/flow)
Top 10 big flow size (bytes/total in %):
3.7% 3.4% 2.6% 2.3% 1.7% 1.6% 1.5% 1.4% 1.1% 1.1%

IP address Information

# of IPv4 addresses: 1368820
Top 10 bandwidth usage (bytes/total in %):
24.0% 20.1% 6.0% 3.9% 3.6% 3.6% 3.6% 3.3% 2.7% 2.5%
# of IPv6 addresses: 6082
Top 10 bandwidth usage (bytes/total in %):
51.6% 51.6% 12.7% 11.1% 10.9% 8.8% 6.2% 5.1% 4.9% 3.3%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:    6961048
 [   64-  127]:    6948646
 [  128-  255]:     744558
 [  256-  511]:     656569
 [  512- 1023]:     856544
 [ 1024- 2047]:   20725033


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         36892398 (100.00%)      32567940008 (100.00%)    882.78
 ip            35999634 ( 97.58%)      31684922812 ( 97.29%)    880.15
  tcp          29971251 ( 81.24%)      28828006298 ( 88.52%)    961.86
   http(s)     16714454 ( 45.31%)      23247988825 ( 71.38%)   1390.89
   http(c)      6587082 ( 17.85%)        936179820 (  2.87%)    142.12
   squid        1136124 (  3.08%)       1158924818 (  3.56%)   1020.07
   smtp           40994 (  0.11%)          5819711 (  0.02%)    141.96
   nntp               5 (  0.00%)              306 (  0.00%)     61.20
   ftp             7318 (  0.02%)           770953 (  0.00%)    105.35
   pop3           28854 (  0.08%)          2426660 (  0.01%)     84.10
   imap            4623 (  0.01%)          1674285 (  0.01%)    362.16
   telnet          2178 (  0.01%)           170550 (  0.00%)     78.31
   ssh            15424 (  0.04%)          2740541 (  0.01%)    177.68
   dns             1336 (  0.00%)           225528 (  0.00%)    168.81
   bgp              693 (  0.00%)           140023 (  0.00%)    202.05
   napster          118 (  0.00%)             8041 (  0.00%)     68.14
   realaud           18 (  0.00%)             1130 (  0.00%)     62.78
   rtsp            6646 (  0.02%)          7710339 (  0.02%)   1160.15
   icecast        15333 (  0.04%)          9108007 (  0.03%)    594.01
   hotline           11 (  0.00%)             1075 (  0.00%)     97.73
   other        5410039 ( 14.66%)       3454115626 ( 10.61%)    638.46
  udp           3391778 (  9.19%)       1834506643 (  5.63%)    540.87
   dns           479707 (  1.30%)        107788578 (  0.33%)    224.70
   rip                1 (  0.00%)               69 (  0.00%)     69.00
   realaud          766 (  0.00%)           389111 (  0.00%)    507.98
   halflif           58 (  0.00%)             9513 (  0.00%)    164.02
   starcra           17 (  0.00%)             3356 (  0.00%)    197.41
   everque          263 (  0.00%)           136342 (  0.00%)    518.41
   unreal            17 (  0.00%)             5857 (  0.00%)    344.53
   quake             10 (  0.00%)              881 (  0.00%)     88.10
   cuseeme            3 (  0.00%)              526 (  0.00%)    175.33
   other        2909724 (  7.89%)       1726082625 (  5.30%)    593.21
  icmp          1417595 (  3.84%)        147249009 (  0.45%)    103.87
  ipip              185 (  0.00%)            19270 (  0.00%)    104.16
  ipsec           26549 (  0.07%)         11683398 (  0.04%)    440.07
  ip6           1176369 (  3.19%)        858894518 (  2.64%)    730.12
  pim                24 (  0.00%)             1440 (  0.00%)     60.00
  other           15883 (  0.04%)          4562236 (  0.01%)    287.24
  frag             2235 (  0.01%)          1463124 (  0.00%)    654.64
 ip6             892764 (  2.42%)        883017196 (  2.71%)    989.08
  tcp6           387173 (  1.05%)        319145446 (  0.98%)    824.30
   http(s)       128186 (  0.35%)        137855534 (  0.42%)   1075.43
   http(c)        51000 (  0.14%)          4694069 (  0.01%)     92.04
   smtp              29 (  0.00%)            11323 (  0.00%)    390.45
   ftp               17 (  0.00%)             1605 (  0.00%)     94.41
   dns              430 (  0.00%)            77891 (  0.00%)    181.14
   bgp               90 (  0.00%)            20364 (  0.00%)    226.27
   other         207421 (  0.56%)        176484660 (  0.54%)    850.85
  udp6           471118 (  1.28%)        552891446 (  1.70%)   1173.57
   dns            40941 (  0.11%)          9509587 (  0.03%)    232.28
   halflif            1 (  0.00%)              119 (  0.00%)    119.00
   starcra            1 (  0.00%)              129 (  0.00%)    129.00
   everque            1 (  0.00%)              106 (  0.00%)    106.00
   quake              3 (  0.00%)              314 (  0.00%)    104.67
   other         430171 (  1.17%)        543381191 (  1.67%)   1263.17
  icmp6           22967 (  0.06%)          2860069 (  0.01%)    124.53
  ip6                85 (  0.00%)            11580 (  0.00%)    136.24
  pim6               31 (  0.00%)             4216 (  0.00%)    136.00
  other6          11390 (  0.03%)          8104439 (  0.02%)    711.54


tcpdump file: 201205201400.dump.gz (823.21 MB)