Traffic Trace Info


DumpFile: 201301251400.dump
FileSize: 2416.75MB
Id: 201301251400
StartTime: Fri Jan 25 14:00:01 2013
EndTime: Fri Jan 25 14:15:01 2013
TotalTime: 900.24 seconds
TotalCapSize: 1847.45MB CapLen: 96 bytes
# of packets: 37309636 (14416.75MB)
AvgRate: 134.34Mbps stddev:25.05M

IP flow (unique src/dst pair) Information

# of flows: 16919923 (avg. 2.21 pkts/flow)
Top 10 big flow size (bytes/total in %):
5.0% 2.4% 1.7% 1.1% 0.8% 0.8% 0.8% 0.7% 0.7% 0.6%

IP address Information

# of IPv4 addresses: 13217994
Top 10 bandwidth usage (bytes/total in %):
11.8% 7.8% 7.6% 6.4% 3.5% 3.0% 3.0% 2.7% 2.2% 1.9%
# of IPv6 addresses: 15745
Top 10 bandwidth usage (bytes/total in %):
7.5% 5.7% 4.9% 4.3% 4.3% 4.3% 3.6% 3.4% 3.0% 2.8%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:   19816878
 [   64-  127]:    6495293
 [  128-  255]:     676892
 [  256-  511]:     741860
 [  512- 1023]:     929493
 [ 1024- 2047]:    8649220


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         37309636 (100.00%)      15117053418 (100.00%)    405.18
 ip            35686206 ( 95.65%)      13718927595 ( 90.75%)    384.43
  tcp          13449527 ( 36.05%)      10602070398 ( 70.13%)    788.29
   http(s)      7422707 ( 19.89%)       8724835693 ( 57.72%)   1175.43
   http(c)      4110224 ( 11.02%)        756974238 (  5.01%)    184.17
   squid          29647 (  0.08%)         15448686 (  0.10%)    521.09
   smtp           66494 (  0.18%)         31472228 (  0.21%)    473.31
   nntp             116 (  0.00%)             6972 (  0.00%)     60.10
   ftp             4297 (  0.01%)           344392 (  0.00%)     80.15
   pop3           18828 (  0.05%)          2634224 (  0.02%)    139.91
   imap           77212 (  0.21%)         76217817 (  0.50%)    987.12
   telnet          3727 (  0.01%)          1777157 (  0.01%)    476.83
   ssh            26900 (  0.07%)          5686430 (  0.04%)    211.39
   dns            15611 (  0.04%)          1097836 (  0.01%)     70.32
   bgp              894 (  0.00%)           454717 (  0.00%)    508.63
   napster           63 (  0.00%)            13110 (  0.00%)    208.10
   realaud           25 (  0.00%)             5957 (  0.00%)    238.28
   rtsp               1 (  0.00%)               60 (  0.00%)     60.00
   icecast        52449 (  0.14%)         36124827 (  0.24%)    688.76
   hotline            6 (  0.00%)              535 (  0.00%)     89.17
   other        1620326 (  4.34%)        948975519 (  6.28%)    585.67
  udp           2819491 (  7.56%)       1608607763 ( 10.64%)    570.53
   dns           688288 (  1.84%)        307286616 (  2.03%)    446.45
   realaud           17 (  0.00%)             1099 (  0.00%)     64.65
   halflif           44 (  0.00%)             7361 (  0.00%)    167.30
   starcra           50 (  0.00%)            13758 (  0.00%)    275.16
   everque           86 (  0.00%)            11667 (  0.00%)    135.66
   unreal            12 (  0.00%)             1977 (  0.00%)    164.75
   quake             18 (  0.00%)             1499 (  0.00%)     83.28
   other        2130784 (  5.71%)       1301092665 (  8.61%)    610.62
  icmp         18839403 ( 50.49%)       1215652458 (  8.04%)     64.53
  ipip              185 (  0.00%)            19270 (  0.00%)    104.16
  ipsec           55078 (  0.15%)         12277252 (  0.08%)    222.91
  ip6            471789 (  1.26%)        266225733 (  1.76%)    564.29
  other           50733 (  0.14%)         14074721 (  0.09%)    277.43
  frag           109885 (  0.29%)        125622596 (  0.83%)   1143.22
 ip6            1623430 (  4.35%)       1398125823 (  9.25%)    861.22
  tcp6          1113588 (  2.98%)        956080417 (  6.32%)    858.56
   http(s)       827778 (  2.22%)        812266977 (  5.37%)    981.26
   http(c)       106275 (  0.28%)         13784021 (  0.09%)    129.70
   smtp             215 (  0.00%)            96995 (  0.00%)    451.14
   ftp              125 (  0.00%)            11444 (  0.00%)     91.55
   ssh               15 (  0.00%)             1770 (  0.00%)    118.00
   dns              239 (  0.00%)            50096 (  0.00%)    209.61
   bgp               98 (  0.00%)            31541 (  0.00%)    321.85
   other         178843 (  0.48%)        129837573 (  0.86%)    725.99
  udp6           222359 (  0.60%)        131738043 (  0.87%)    592.46
   dns            66872 (  0.18%)         19864980 (  0.13%)    297.06
   realaud            1 (  0.00%)              109 (  0.00%)    109.00
   halflif            1 (  0.00%)              105 (  0.00%)    105.00
   starcra           54 (  0.00%)             9543 (  0.00%)    176.72
   everque            2 (  0.00%)              222 (  0.00%)    111.00
   quake              1 (  0.00%)              101 (  0.00%)    101.00
   other         155428 (  0.42%)        111862983 (  0.74%)    719.71
  icmp6           35075 (  0.09%)          4699605 (  0.03%)    133.99
  ip6                85 (  0.00%)            11580 (  0.00%)    136.24
  pim6               30 (  0.00%)             4080 (  0.00%)    136.00
  other6         252293 (  0.68%)        305592098 (  2.02%)   1211.26


tcpdump file: 201301251400.dump.gz (807.07 MB)