Traffic Trace Info


DumpFile: 201301131400.dump
FileSize: 1583.14MB
Id: 201301131400
StartTime: Sun Jan 13 14:00:00 2013
EndTime: Sun Jan 13 14:15:00 2013
TotalTime: 900.52 seconds
TotalCapSize: 1243.51MB CapLen: 96 bytes
# of packets: 22257777 (16146.92MB)
AvgRate: 150.39Mbps stddev:26.29M

IP flow (unique src/dst pair) Information

# of flows: 1612033 (avg. 13.81 pkts/flow)
Top 10 big flow size (bytes/total in %):
4.5% 3.4% 3.4% 3.0% 2.8% 2.4% 2.0% 2.0% 2.0% 1.9%

IP address Information

# of IPv4 addresses: 1290857
Top 10 bandwidth usage (bytes/total in %):
19.2% 14.6% 5.8% 5.0% 4.1% 3.8% 3.7% 3.4% 3.2% 2.8%
# of IPv6 addresses: 9386
Top 10 bandwidth usage (bytes/total in %):
20.0% 6.1% 5.5% 4.6% 3.9% 3.9% 3.5% 3.0% 2.7% 2.6%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:    4730093
 [   64-  127]:    5091213
 [  128-  255]:     503166
 [  256-  511]:     487013
 [  512- 1023]:     918828
 [ 1024- 2047]:   10527464


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         22257777 (100.00%)      16931271231 (100.00%)    760.69
 ip            20683074 ( 92.93%)      15532290090 ( 91.74%)    750.97
  tcp          15414961 ( 69.26%)      13347942004 ( 78.84%)    865.91
   http(s)      8488491 ( 38.14%)      10972022803 ( 64.80%)   1292.58
   http(c)      4824138 ( 21.67%)       1111327196 (  6.56%)    230.37
   squid          20962 (  0.09%)         10322116 (  0.06%)    492.42
   smtp           51504 (  0.23%)          7919413 (  0.05%)    153.76
   nntp             120 (  0.00%)             7200 (  0.00%)     60.00
   ftp            25848 (  0.12%)         20717656 (  0.12%)    801.52
   pop3            2375 (  0.01%)           496984 (  0.00%)    209.26
   imap           84634 (  0.38%)         84698000 (  0.50%)   1000.76
   telnet          4312 (  0.02%)          1805625 (  0.01%)    418.74
   ssh            60067 (  0.27%)          8915913 (  0.05%)    148.43
   dns             3184 (  0.01%)          2087167 (  0.01%)    655.52
   bgp              502 (  0.00%)            95739 (  0.00%)    190.72
   napster            4 (  0.00%)              244 (  0.00%)     61.00
   realaud           10 (  0.00%)              939 (  0.00%)     93.90
   icecast         8088 (  0.04%)          3351204 (  0.02%)    414.34
   hotline           11 (  0.00%)             1407 (  0.00%)    127.91
   other        1840710 (  8.27%)       1124172338 (  6.64%)    610.73
  udp           3084709 ( 13.86%)       1702468628 ( 10.06%)    551.91
   dns          1443440 (  6.49%)        659053053 (  3.89%)    456.59
   rip               15 (  0.00%)             1075 (  0.00%)     71.67
   realaud           50 (  0.00%)             3522 (  0.00%)     70.44
   halflif           15 (  0.00%)             1091 (  0.00%)     72.73
   starcra           15 (  0.00%)             1722 (  0.00%)    114.80
   everque           85 (  0.00%)            10146 (  0.00%)    119.36
   unreal            20 (  0.00%)             1989 (  0.00%)     99.45
   quake             29 (  0.00%)             2498 (  0.00%)     86.14
   cuseeme            1 (  0.00%)              134 (  0.00%)    134.00
   other        1638363 (  7.36%)       1042894267 (  6.16%)    636.55
  icmp          1630531 (  7.33%)        158563056 (  0.94%)     97.25
  ipip              184 (  0.00%)            19160 (  0.00%)    104.13
  ipsec           19564 (  0.09%)          8534364 (  0.05%)    436.23
  ip6            446633 (  2.01%)        268215262 (  1.58%)    600.53
  other           86492 (  0.39%)         46547616 (  0.27%)    538.17
  frag           446863 (  2.01%)        494800088 (  2.92%)   1107.27
 ip6            1574703 (  7.07%)       1398981141 (  8.26%)    888.41
  tcp6           922226 (  4.14%)        751727707 (  4.44%)    815.12
   http(s)       587320 (  2.64%)        597921995 (  3.53%)   1018.05
   http(c)       155620 (  0.70%)         19202533 (  0.11%)    123.39
   smtp            1409 (  0.01%)           494641 (  0.00%)    351.06
   ftp               66 (  0.00%)             5876 (  0.00%)     89.03
   ssh               12 (  0.00%)             1008 (  0.00%)     84.00
   dns              364 (  0.00%)            67891 (  0.00%)    186.51
   bgp               99 (  0.00%)            32330 (  0.00%)    326.57
   other         177336 (  0.80%)        134001433 (  0.79%)    755.64
  udp6           148491 (  0.67%)         83520229 (  0.49%)    562.46
   dns            44264 (  0.20%)         14247589 (  0.08%)    321.88
   other         104227 (  0.47%)         69272640 (  0.41%)    664.63
  icmp6           36145 (  0.16%)          3635486 (  0.02%)    100.58
  ip6                85 (  0.00%)            11580 (  0.00%)    136.24
  pim6               30 (  0.00%)             4080 (  0.00%)    136.00
  other6         467726 (  2.10%)        560082059 (  3.31%)   1197.46


tcpdump file: 201301131400.dump.gz (488.12 MB)