Traffic Trace Info


DumpFile: 201303081400.dump
FileSize: 2114.61MB
Id: 201303081400
StartTime: Fri Mar 8 14:00:00 2013
EndTime: Fri Mar 8 14:15:00 2013
TotalTime: 900.22 seconds
TotalCapSize: 1669.74MB CapLen: 96 bytes
# of packets: 29154518 (21112.68MB)
AvgRate: 196.76Mbps stddev:36.55M

IP flow (unique src/dst pair) Information

# of flows: 2112080 (avg. 13.80 pkts/flow)
Top 10 big flow size (bytes/total in %):
7.8% 4.8% 4.8% 3.2% 3.1% 2.4% 1.8% 1.7% 1.7% 1.6%

IP address Information

# of IPv4 addresses: 1456791
Top 10 bandwidth usage (bytes/total in %):
12.5% 10.3% 8.7% 8.6% 5.3% 5.3% 5.2% 4.8% 3.6% 3.5%
# of IPv6 addresses: 11266
Top 10 bandwidth usage (bytes/total in %):
13.4% 12.6% 12.6% 6.1% 5.0% 4.9% 3.6% 3.4% 3.3% 3.2%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:    4528658
 [   64-  127]:    8222859
 [  128-  255]:     776514
 [  256-  511]:     641267
 [  512- 1023]:    1122952
 [ 1024- 2047]:   13862268


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         29154518 (100.00%)      22138250672 (100.00%)    759.34
 ip            27338889 ( 93.77%)      20591911394 ( 93.02%)    753.21
  tcp          22359553 ( 76.69%)      18659565833 ( 84.29%)    834.52
   http(s)      9699368 ( 33.27%)      12069341520 ( 54.52%)   1244.34
   http(c)      6110085 ( 20.96%)       1609859173 (  7.27%)    263.48
   squid          63051 (  0.22%)         11432687 (  0.05%)    181.32
   smtp           87818 (  0.30%)         77270258 (  0.35%)    879.89
   ftp            38772 (  0.13%)         29352021 (  0.13%)    757.04
   pop3            4466 (  0.02%)          1811773 (  0.01%)    405.68
   imap            4364 (  0.01%)           710879 (  0.00%)    162.90
   telnet        211587 (  0.73%)         17105223 (  0.08%)     80.84
   ssh           825957 (  2.83%)        157297240 (  0.71%)    190.44
   dns             2113 (  0.01%)           284480 (  0.00%)    134.63
   bgp              503 (  0.00%)           100243 (  0.00%)    199.29
   napster          135 (  0.00%)            13693 (  0.00%)    101.43
   realaud            6 (  0.00%)              738 (  0.00%)    123.00
   icecast          425 (  0.00%)            42726 (  0.00%)    100.53
   hotline           12 (  0.00%)             1143 (  0.00%)     95.25
   other        5310890 ( 18.22%)       4684941976 ( 21.16%)    882.14
  udp           2808967 (  9.63%)       1326294242 (  5.99%)    472.16
   dns           705360 (  2.42%)        230128618 (  1.04%)    326.26
   realaud           10 (  0.00%)              974 (  0.00%)     97.40
   halflif           24 (  0.00%)             1801 (  0.00%)     75.04
   starcra           35 (  0.00%)             4259 (  0.00%)    121.69
   everque          116 (  0.00%)            26086 (  0.00%)    224.88
   unreal            55 (  0.00%)            23111 (  0.00%)    420.20
   quake             33 (  0.00%)             5954 (  0.00%)    180.42
   cuseeme           18 (  0.00%)             1636 (  0.00%)     90.89
   other        2102806 (  7.21%)       1095536311 (  4.95%)    520.99
  icmp          1575893 (  5.41%)        162573988 (  0.73%)    103.16
  ipip              185 (  0.00%)            19270 (  0.00%)    104.16
  ipsec           84472 (  0.29%)         29419144 (  0.13%)    348.27
  ip6            467454 (  1.60%)        407618366 (  1.84%)    872.00
  other           42365 (  0.15%)          6420551 (  0.03%)    151.55
  frag            50452 (  0.17%)         68087635 (  0.31%)   1349.55
 ip6            1815627 (  6.23%)       1546339158 (  6.98%)    851.68
  tcp6          1315335 (  4.51%)       1056044191 (  4.77%)    802.87
   http(s)       779930 (  2.68%)        726116408 (  3.28%)    931.00
   http(c)       427439 (  1.47%)        222636856 (  1.01%)    520.86
   squid              4 (  0.00%)              300 (  0.00%)     75.00
   smtp             156 (  0.00%)            89647 (  0.00%)    574.66
   ftp              233 (  0.00%)            20819 (  0.00%)     89.35
   dns              459 (  0.00%)           202681 (  0.00%)    441.57
   bgp              103 (  0.00%)            25563 (  0.00%)    248.18
   other         107011 (  0.37%)        106951917 (  0.48%)    999.45
  udp6           106320 (  0.36%)         46290664 (  0.21%)    435.39
   dns            73901 (  0.25%)         25484472 (  0.12%)    344.85
   realaud            1 (  0.00%)              101 (  0.00%)    101.00
   everque            1 (  0.00%)              110 (  0.00%)    110.00
   quake              1 (  0.00%)              109 (  0.00%)    109.00
   other          32416 (  0.11%)         20805872 (  0.09%)    641.84
  icmp6           24823 (  0.09%)          2501080 (  0.01%)    100.76
  pim6               30 (  0.00%)             4080 (  0.00%)    136.00
  other6         369119 (  1.27%)        441499143 (  1.99%)   1196.09


tcpdump file: 201303081400.dump.gz (651.20 MB)