Traffic Trace Info


DumpFile: 201306161400.dump
FileSize: 2592.68MB
Id: 201306161400
StartTime: Sun Jun 16 14:00:01 2013
EndTime: Sun Jun 16 14:15:01 2013
TotalTime: 900.09 seconds
TotalCapSize: 1978.55MB CapLen: 96 bytes
# of packets: 40246826 (17039.23MB)
AvgRate: 158.77Mbps stddev:40.54M

IP flow (unique src/dst pair) Information

# of flows: 19439834 (avg. 2.07 pkts/flow)
Top 10 big flow size (bytes/total in %):
7.1% 5.2% 3.4% 3.3% 2.1% 1.9% 1.7% 1.5% 1.3% 1.1%

IP address Information

# of IPv4 addresses: 15479946
Top 10 bandwidth usage (bytes/total in %):
16.7% 15.4% 7.7% 7.2% 7.2% 5.5% 3.7% 3.7% 3.5% 3.5%
# of IPv6 addresses: 8128
Top 10 bandwidth usage (bytes/total in %):
25.5% 18.5% 6.0% 5.7% 4.8% 3.9% 3.9% 3.9% 3.9% 3.7%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:   22193491
 [   64-  127]:    6031990
 [  128-  255]:     578025
 [  256-  511]:     431061
 [  512- 1023]:     554280
 [ 1024- 2047]:   10457979


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         40246826 (100.00%)      17866922963 (100.00%)    443.93
 ip            39449979 ( 98.02%)      17010322556 ( 95.21%)    431.19
  tcp          16470767 ( 40.92%)      14731475570 ( 82.45%)    894.40
   http(s)      8854232 ( 22.00%)      11707412207 ( 65.53%)   1322.24
   http(c)      4875894 ( 12.11%)       1301932066 (  7.29%)    267.01
   squid          25705 (  0.06%)         21006215 (  0.12%)    817.20
   smtp           53893 (  0.13%)          8301985 (  0.05%)    154.05
   ftp            12939 (  0.03%)           845789 (  0.00%)     65.37
   pop3            1572 (  0.00%)           515118 (  0.00%)    327.68
   imap            4258 (  0.01%)          2549249 (  0.01%)    598.70
   telnet          1524 (  0.00%)           103087 (  0.00%)     67.64
   ssh           826416 (  2.05%)        135340437 (  0.76%)    163.77
   dns             6253 (  0.02%)          4440694 (  0.02%)    710.17
   bgp              524 (  0.00%)           103460 (  0.00%)    197.44
   icecast          237 (  0.00%)            17847 (  0.00%)     75.30
   hotline            1 (  0.00%)               60 (  0.00%)     60.00
   other        1807319 (  4.49%)       1548907356 (  8.67%)    857.02
  udp           2217479 (  5.51%)        839379204 (  4.70%)    378.53
   dns           876841 (  2.18%)        247162723 (  1.38%)    281.88
   rip               14 (  0.00%)              944 (  0.00%)     67.43
   realaud            2 (  0.00%)              212 (  0.00%)    106.00
   halflif            7 (  0.00%)              573 (  0.00%)     81.86
   starcra           10 (  0.00%)             1279 (  0.00%)    127.90
   everque           91 (  0.00%)            12521 (  0.00%)    137.59
   unreal          1216 (  0.00%)            74324 (  0.00%)     61.12
   quake            128 (  0.00%)            10854 (  0.00%)     84.80
   cuseeme            1 (  0.00%)               90 (  0.00%)     90.00
   other        1330910 (  3.31%)        591559271 (  3.31%)    444.48
  icmp         20406445 ( 50.70%)       1275117762 (  7.14%)     62.49
  ipip              185 (  0.00%)            19270 (  0.00%)    104.16
  ipsec           11730 (  0.03%)          4507340 (  0.03%)    384.26
  ip6            277676 (  0.69%)        142072369 (  0.80%)    511.65
  other           65697 (  0.16%)         17751041 (  0.10%)    270.20
  frag           111979 (  0.28%)        104767930 (  0.59%)    935.60
 ip6             796847 (  1.98%)        856600407 (  4.79%)   1074.99
  tcp6           706705 (  1.76%)        831163225 (  4.65%)   1176.11
   http(s)       469149 (  1.17%)        605964345 (  3.39%)   1291.62
   http(c)        58522 (  0.15%)          5860756 (  0.03%)    100.15
   squid             36 (  0.00%)             8164 (  0.00%)    226.78
   smtp              57 (  0.00%)             9261 (  0.00%)    162.47
   ftp              405 (  0.00%)            50129 (  0.00%)    123.78
   ssh               72 (  0.00%)            12450 (  0.00%)    172.92
   dns              172 (  0.00%)            44036 (  0.00%)    256.02
   bgp               99 (  0.00%)            25057 (  0.00%)    253.10
   other         178193 (  0.44%)        219189027 (  1.23%)   1230.07
  udp6            66480 (  0.17%)         22301695 (  0.12%)    335.46
   dns            64438 (  0.16%)         22080127 (  0.12%)    342.66
   everque            2 (  0.00%)              219 (  0.00%)    109.50
   other           2040 (  0.01%)           221349 (  0.00%)    108.50
  icmp6           23203 (  0.06%)          2696486 (  0.02%)    116.21
  pim6               30 (  0.00%)             4080 (  0.00%)    136.00
  other6            429 (  0.00%)           434921 (  0.00%)   1013.80


tcpdump file: 201306161400.dump.gz (821.95 MB)