Traffic Trace Info


DumpFile: 201308151400.dump
FileSize: 2332.37MB
Id: 201308151400
StartTime: Thu Aug 15 14:00:00 2013
EndTime: Thu Aug 15 14:15:00 2013
TotalTime: 900.09 seconds
TotalCapSize: 1781.86MB CapLen: 96 bytes
# of packets: 36077352 (15006.82MB)
AvgRate: 139.89Mbps stddev:27.45M

IP flow (unique src/dst pair) Information

# of flows: 16616346 (avg. 2.17 pkts/flow)
Top 10 big flow size (bytes/total in %):
6.6% 6.5% 2.8% 1.9% 1.3% 1.2% 1.1% 1.1% 1.0% 1.0%

IP address Information

# of IPv4 addresses: 13497287
Top 10 bandwidth usage (bytes/total in %):
10.4% 8.9% 6.9% 6.9% 6.8% 6.3% 5.0% 3.8% 3.6% 3.0%
# of IPv6 addresses: 11268
Top 10 bandwidth usage (bytes/total in %):
43.3% 7.6% 7.1% 6.7% 6.7% 6.6% 5.1% 3.8% 3.4% 3.1%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:   18931887
 [   64-  127]:    5793495
 [  128-  255]:     632313
 [  256-  511]:    1001911
 [  512- 1023]:     702655
 [ 1024- 2047]:    9015091


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         36077352 (100.00%)      15735793658 (100.00%)    436.17
 ip            34851128 ( 96.60%)      14981406769 ( 95.21%)    429.87
  tcp          12119459 ( 33.59%)      10092834119 ( 64.14%)    832.78
   http(s)      6600709 ( 18.30%)       7969624319 ( 50.65%)   1207.39
   http(c)      3874164 ( 10.74%)       1108412421 (  7.04%)    286.10
   squid         203005 (  0.56%)         26368939 (  0.17%)    129.89
   smtp           49230 (  0.14%)          9558921 (  0.06%)    194.17
   nntp               6 (  0.00%)              360 (  0.00%)     60.00
   ftp            11882 (  0.03%)          1686362 (  0.01%)    141.93
   pop3            1730 (  0.00%)          1498714 (  0.01%)    866.31
   imap            3792 (  0.01%)          1574019 (  0.01%)    415.09
   telnet          8735 (  0.02%)          2107856 (  0.01%)    241.31
   ssh            14953 (  0.04%)          5196212 (  0.03%)    347.50
   dns             7205 (  0.02%)          4117228 (  0.03%)    571.44
   bgp              557 (  0.00%)           138467 (  0.00%)    248.59
   napster           11 (  0.00%)              668 (  0.00%)     60.73
   realaud            6 (  0.00%)              360 (  0.00%)     60.00
   rtsp              12 (  0.00%)              748 (  0.00%)     62.33
   icecast         2040 (  0.01%)           209070 (  0.00%)    102.49
   hotline            9 (  0.00%)              906 (  0.00%)    100.67
   other        1341388 (  3.72%)        962337049 (  6.12%)    717.42
  udp           4528604 ( 12.55%)       2741545200 ( 17.42%)    605.38
   dns          1245423 (  3.45%)        698618986 (  4.44%)    560.95
   rip               13 (  0.00%)              963 (  0.00%)     74.08
   realaud           12 (  0.00%)             5200 (  0.00%)    433.33
   halflif           38 (  0.00%)            10345 (  0.00%)    272.24
   starcra            8 (  0.00%)              810 (  0.00%)    101.25
   everque         1609 (  0.00%)          1496761 (  0.01%)    930.24
   unreal            16 (  0.00%)             1462 (  0.00%)     91.38
   quake             44 (  0.00%)             6279 (  0.00%)    142.70
   cuseeme            1 (  0.00%)              393 (  0.00%)    393.00
   other        3278420 (  9.09%)       2040260975 ( 12.97%)    622.33
  icmp         17041622 ( 47.24%)       1086395886 (  6.90%)     63.75
  ipip              185 (  0.00%)            19270 (  0.00%)    104.16
  ipsec            4942 (  0.01%)          3038512 (  0.02%)    614.83
  ip6           1054639 (  2.92%)       1035257644 (  6.58%)    981.62
  other          101677 (  0.28%)         22316138 (  0.14%)    219.48
  frag          1038129 (  2.88%)       1166415024 (  7.41%)   1123.57
 ip6            1226222 (  3.40%)        754386769 (  4.79%)    615.21
  tcp6          1071837 (  2.97%)        674072765 (  4.28%)    628.89
   http(s)       480192 (  1.33%)        561095516 (  3.57%)   1168.48
   http(c)       210838 (  0.58%)         19376055 (  0.12%)     91.90
   squid             35 (  0.00%)             8090 (  0.00%)    231.14
   smtp             322 (  0.00%)            88967 (  0.00%)    276.30
   ftp               25 (  0.00%)             2209 (  0.00%)     88.36
   ssh               72 (  0.00%)            12450 (  0.00%)    172.92
   dns              397 (  0.00%)            58584 (  0.00%)    147.57
   bgp              104 (  0.00%)            26647 (  0.00%)    256.22
   other         379852 (  1.05%)         93404247 (  0.59%)    245.90
  udp6           133435 (  0.37%)         77091472 (  0.49%)    577.75
   dns            89297 (  0.25%)         23056801 (  0.15%)    258.20
   realaud            1 (  0.00%)              115 (  0.00%)    115.00
   halflif            3 (  0.00%)              313 (  0.00%)    104.33
   starcra            2 (  0.00%)              203 (  0.00%)    101.50
   quake              2 (  0.00%)              210 (  0.00%)    105.00
   other          44130 (  0.12%)         54033830 (  0.34%)   1224.42
  icmp6           20190 (  0.06%)          2526143 (  0.02%)    125.12
  pim6               31 (  0.00%)             4216 (  0.00%)    136.00
  other6            729 (  0.00%)           692173 (  0.00%)    949.48


tcpdump file: 201308151400.dump.gz (741.35 MB)