Traffic Trace Info


DumpFile: 201302081400.dump
FileSize: 2563.18MB
Id: 201302081400
StartTime: Fri Feb 8 14:00:00 2013
EndTime: Fri Feb 8 14:15:00 2013
TotalTime: 900.18 seconds
TotalCapSize: 1982.56MB CapLen: 96 bytes
# of packets: 38050509 (17056.83MB)
AvgRate: 158.97Mbps stddev:51.73M

IP flow (unique src/dst pair) Information

# of flows: 11132853 (avg. 3.42 pkts/flow)
Top 10 big flow size (bytes/total in %):
9.5% 5.1% 2.5% 2.5% 1.8% 1.6% 1.5% 1.4% 1.1% 1.0%

IP address Information

# of IPv4 addresses: 8604351
Top 10 bandwidth usage (bytes/total in %):
15.4% 10.5% 10.5% 10.2% 5.7% 5.7% 5.4% 4.9% 2.8% 2.8%
# of IPv6 addresses: 14078
Top 10 bandwidth usage (bytes/total in %):
20.7% 6.8% 5.3% 5.1% 5.0% 4.8% 4.5% 4.4% 4.2% 3.9%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:   17059529
 [   64-  127]:    8108311
 [  128-  255]:     704982
 [  256-  511]:     701174
 [  512- 1023]:     973572
 [ 1024- 2047]:   10502941


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         38050509 (100.00%)      17885379122 (100.00%)    470.04
 ip            36439093 ( 95.77%)      16513961364 ( 92.33%)    453.19
  tcp          18206993 ( 47.85%)      14027510942 ( 78.43%)    770.45
   http(s)      7978435 ( 20.97%)       9359787090 ( 52.33%)   1173.14
   http(c)      5801377 ( 15.25%)        783890861 (  4.38%)    135.12
   squid          25165 (  0.07%)         13300256 (  0.07%)    528.52
   smtp           59476 (  0.16%)         26071400 (  0.15%)    438.35
   nntp               4 (  0.00%)              240 (  0.00%)     60.00
   ftp             1275 (  0.00%)            93231 (  0.00%)     73.12
   pop3           10722 (  0.03%)          3611747 (  0.02%)    336.85
   imap            2559 (  0.01%)           557146 (  0.00%)    217.72
   telnet          3750 (  0.01%)          1684390 (  0.01%)    449.17
   ssh            55355 (  0.15%)          8705600 (  0.05%)    157.27
   dns             4108 (  0.01%)          2466224 (  0.01%)    600.35
   bgp              653 (  0.00%)           125894 (  0.00%)    192.79
   napster           22 (  0.00%)             1873 (  0.00%)     85.14
   realaud           20 (  0.00%)             2304 (  0.00%)    115.20
   rtsp             113 (  0.00%)            56467 (  0.00%)    499.71
   icecast        18361 (  0.05%)         15494539 (  0.09%)    843.88
   hotline            1 (  0.00%)               60 (  0.00%)     60.00
   other        4245596 ( 11.16%)       3811661560 ( 21.31%)    897.79
  udp           2232367 (  5.87%)       1015850675 (  5.68%)    455.06
   dns           828367 (  2.18%)        386314228 (  2.16%)    466.36
   rip                8 (  0.00%)              522 (  0.00%)     65.25
   realaud            9 (  0.00%)              574 (  0.00%)     63.78
   halflif           27 (  0.00%)             2289 (  0.00%)     84.78
   starcra           35 (  0.00%)             2281 (  0.00%)     65.17
   everque           25 (  0.00%)             4639 (  0.00%)    185.56
   unreal             1 (  0.00%)               62 (  0.00%)     62.00
   quake             24 (  0.00%)             2443 (  0.00%)    101.79
   cuseeme            2 (  0.00%)              395 (  0.00%)    197.50
   other        1403003 (  3.69%)        628664385 (  3.51%)    448.08
  icmp         15265504 ( 40.12%)        976216177 (  5.46%)     63.95
  ipip              184 (  0.00%)            19160 (  0.00%)    104.13
  ipsec           36274 (  0.10%)         19215344 (  0.11%)    529.73
  ip6            645283 (  1.70%)        460447015 (  2.57%)    713.56
  other           52488 (  0.14%)         14702051 (  0.08%)    280.10
  frag           192185 (  0.51%)        211109190 (  1.18%)   1098.47
 ip6            1611416 (  4.23%)       1371417758 (  7.67%)    851.06
  tcp6          1076478 (  2.83%)        883326445 (  4.94%)    820.57
   http(s)       713645 (  1.88%)        732176125 (  4.09%)   1025.97
   http(c)       210561 (  0.55%)         19833813 (  0.11%)     94.20
   squid             40 (  0.00%)             4989 (  0.00%)    124.72
   smtp             118 (  0.00%)            40959 (  0.00%)    347.11
   ftp               66 (  0.00%)             5916 (  0.00%)     89.64
   dns              288 (  0.00%)           129435 (  0.00%)    449.43
   bgp               96 (  0.00%)            25800 (  0.00%)    268.75
   other         151664 (  0.40%)        131109408 (  0.73%)    864.47
  udp6           168384 (  0.44%)         85842485 (  0.48%)    509.80
   dns            65431 (  0.17%)         19355402 (  0.11%)    295.81
   other         102953 (  0.27%)         66487083 (  0.37%)    645.80
  icmp6           34493 (  0.09%)          4878926 (  0.03%)    141.45
  pim6               31 (  0.00%)             4216 (  0.00%)    136.00
  other6         332030 (  0.87%)        397365686 (  2.22%)   1196.78


tcpdump file: 201302081400.dump.gz (837.02 MB)