Traffic Trace Info


DumpFile: 201208141400.dump
FileSize: 3137.54MB
Id: 201208141400
StartTime: Tue Aug 14 14:00:00 2012
EndTime: Tue Aug 14 14:15:00 2012
TotalTime: 899.58 seconds
TotalCapSize: -1675.91MB CapLen: 96 bytes
# of packets: 47018470 (33918.40MB)
AvgRate: 316.30Mbps stddev:55.50M

IP flow (unique src/dst pair) Information

# of flows: 950103 (avg. 49.49 pkts/flow)
Top 10 big flow size (bytes/total in %):
5.3% 2.8% 2.0% 2.0% 1.9% 1.9% 1.7% 1.7% 1.6% 1.4%

IP address Information

# of IPv4 addresses: 615198
Top 10 bandwidth usage (bytes/total in %):
19.0% 16.9% 12.2% 8.2% 6.7% 6.7% 3.6% 2.9% 2.7% 2.7%
# of IPv6 addresses: 7338
Top 10 bandwidth usage (bytes/total in %):
57.8% 55.4% 20.4% 6.5% 6.5% 3.1% 3.1% 2.7% 2.5% 2.1%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:    3820185
 [   64-  127]:    7066012
 [  128-  255]:    1786187
 [  256-  511]:     687206
 [  512- 1023]:   16736406
 [ 1024- 2047]:   16922474


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         47018470 (100.00%)      35566021886 (100.00%)    756.43
 ip            45866683 ( 97.55%)      34269669758 ( 96.36%)    747.16
  tcp          22653629 ( 48.18%)      21758073103 ( 61.18%)    960.47
   http(s)     13739459 ( 29.22%)      18325685161 ( 51.53%)   1333.80
   http(c)      5720367 ( 12.17%)       1088422884 (  3.06%)    190.27
   squid          86996 (  0.19%)        102459540 (  0.29%)   1177.75
   smtp           90773 (  0.19%)         11299228 (  0.03%)    124.48
   nntp               1 (  0.00%)               60 (  0.00%)     60.00
   ftp            13576 (  0.03%)          1718080 (  0.00%)    126.55
   pop3            7140 (  0.02%)          6373670 (  0.02%)    892.67
   imap            1425 (  0.00%)           444640 (  0.00%)    312.03
   telnet          5554 (  0.01%)           432663 (  0.00%)     77.90
   ssh            60045 (  0.13%)         50064596 (  0.14%)    833.78
   dns             4137 (  0.01%)          2087170 (  0.01%)    504.51
   bgp              540 (  0.00%)           114877 (  0.00%)    212.74
   napster          138 (  0.00%)            10322 (  0.00%)     74.80
   realaud          385 (  0.00%)           133696 (  0.00%)    347.26
   icecast          830 (  0.00%)            89720 (  0.00%)    108.10
   hotline           74 (  0.00%)             5585 (  0.00%)     75.47
   other        2922189 (  6.21%)       2168731211 (  6.10%)    742.16
  udp          20921753 ( 44.50%)      11653516860 ( 32.77%)    557.00
   dns           427320 (  0.91%)         99109415 (  0.28%)    231.93
   rip         16594347 ( 35.29%)       8768106984 ( 24.65%)    528.38
   realaud           18 (  0.00%)             1373 (  0.00%)     76.28
   halflif           48 (  0.00%)             7145 (  0.00%)    148.85
   starcra           74 (  0.00%)             8247 (  0.00%)    111.45
   everque          244 (  0.00%)            36069 (  0.00%)    147.82
   unreal            11 (  0.00%)             1720 (  0.00%)    156.36
   quake             20 (  0.00%)             2009 (  0.00%)    100.45
   cuseeme            5 (  0.00%)              404 (  0.00%)     80.80
   other        3899592 (  8.29%)       2786187420 (  7.83%)    714.48
  icmp           570854 (  1.21%)        111966631 (  0.31%)    196.14
  ipip              185 (  0.00%)            19270 (  0.00%)    104.16
  ipsec            3224 (  0.01%)          1172080 (  0.00%)    363.55
  ip6           1673421 (  3.56%)        733232433 (  2.06%)    438.16
  pim                90 (  0.00%)             5400 (  0.00%)     60.00
  other           43527 (  0.09%)         11683981 (  0.03%)    268.43
  frag             6359 (  0.01%)          7731193 (  0.02%)   1215.79
 ip6            1151787 (  2.45%)       1296352128 (  3.64%)   1125.51
  tcp6          1065070 (  2.27%)       1261253614 (  3.55%)   1184.20
   http(s)       429453 (  0.91%)        511147813 (  1.44%)   1190.23
   http(c)        40590 (  0.09%)          4946125 (  0.01%)    121.86
   smtp             393 (  0.00%)           260966 (  0.00%)    664.04
   ftp              166 (  0.00%)            17846 (  0.00%)    107.51
   ssh               78 (  0.00%)             7032 (  0.00%)     90.15
   dns              130 (  0.00%)            48064 (  0.00%)    369.72
   bgp              220 (  0.00%)           173662 (  0.00%)    789.37
   other         594040 (  1.26%)        744652106 (  2.09%)   1253.54
  udp6            65798 (  0.14%)         31153064 (  0.09%)    473.47
   dns            47309 (  0.10%)         14159526 (  0.04%)    299.30
   realaud            1 (  0.00%)              104 (  0.00%)    104.00
   everque            1 (  0.00%)              108 (  0.00%)    108.00
   quake              1 (  0.00%)              108 (  0.00%)    108.00
   other          18486 (  0.04%)         16993218 (  0.05%)    919.25
  icmp6           19840 (  0.04%)          2988429 (  0.01%)    150.63
  ip6                84 (  0.00%)            11412 (  0.00%)    135.86
  pim6               31 (  0.00%)             4216 (  0.00%)    136.00
  other6            964 (  0.00%)           941393 (  0.00%)    976.55


tcpdump file: 201208141400.dump.gz (903.48 MB)