Traffic Trace Info


DumpFile: 201308231400.dump
FileSize: 3930.72MB
Id: 201308231400
StartTime: Fri Aug 23 14:00:01 2013
EndTime: Fri Aug 23 14:15:00 2013
TotalTime: 899.47 seconds
TotalCapSize: -1112.06MB CapLen: 96 bytes
# of packets: 62047819 (22362.66MB)
AvgRate: 208.55Mbps stddev:50.39M

IP flow (unique src/dst pair) Information

# of flows: 30402865 (avg. 2.04 pkts/flow)
Top 10 big flow size (bytes/total in %):
3.1% 2.2% 2.1% 1.8% 1.7% 1.7% 1.3% 1.2% 1.2% 1.2%

IP address Information

# of IPv4 addresses: 24318437
Top 10 bandwidth usage (bytes/total in %):
12.2% 9.7% 7.5% 4.0% 3.9% 3.3% 2.3% 2.3% 2.3% 2.3%
# of IPv6 addresses: 12099
Top 10 bandwidth usage (bytes/total in %):
20.1% 9.2% 5.8% 5.6% 5.3% 4.7% 3.9% 3.8% 3.8% 3.2%

Packet Size Distribution (including MAC headers)

[packet size distribution]
detailed numbers
 [   32-   63]:   38481148
 [   64-  127]:    7661050
 [  128-  255]:     790106
 [  256-  511]:    1128561
 [  512- 1023]:     814234
 [ 1024- 2047]:   13172720


Protocol Breakdown

[protocol breakdown chart]

     protocol		packets			bytes		bytes/pkt
------------------------------------------------------------------------
 total         62047819 (100.00%)      23448950777 (100.00%)    377.92
 ip            60260006 ( 97.12%)      21946061076 ( 93.59%)    364.19
  tcp          20700496 ( 33.36%)      18206494036 ( 77.64%)    879.52
   http(s)     11928773 ( 19.23%)      15257742257 ( 65.07%)   1279.07
   http(c)      6707023 ( 10.81%)       1707083181 (  7.28%)    254.52
   squid         104924 (  0.17%)         15063385 (  0.06%)    143.56
   smtp          107104 (  0.17%)         40552627 (  0.17%)    378.63
   nntp              52 (  0.00%)             3120 (  0.00%)     60.00
   ftp            60928 (  0.10%)         33452298 (  0.14%)    549.05
   pop3            4144 (  0.01%)          2516425 (  0.01%)    607.25
   imap           10906 (  0.02%)          8067836 (  0.03%)    739.76
   telnet         34564 (  0.06%)          3788414 (  0.02%)    109.61
   ssh           241806 (  0.39%)        331793375 (  1.41%)   1372.15
   dns            35870 (  0.06%)          2407090 (  0.01%)     67.11
   bgp              765 (  0.00%)           147583 (  0.00%)    192.92
   realaud           16 (  0.00%)             2768 (  0.00%)    173.00
   icecast        32441 (  0.05%)          2101373 (  0.01%)     64.78
   hotline            8 (  0.00%)              490 (  0.00%)     61.25
   other        1431171 (  2.31%)        801771754 (  3.42%)    560.22
  udp           2269819 (  3.66%)        970051737 (  4.14%)    427.37
   dns           820496 (  1.32%)        321752330 (  1.37%)    392.14
   rip                3 (  0.00%)              261 (  0.00%)     87.00
   realaud           10 (  0.00%)             1262 (  0.00%)    126.20
   halflif           43 (  0.00%)             4991 (  0.00%)    116.07
   starcra           45 (  0.00%)             5262 (  0.00%)    116.93
   everque           40 (  0.00%)             6488 (  0.00%)    162.20
   unreal          1381 (  0.00%)          2044790 (  0.01%)   1480.66
   quake             32 (  0.00%)             2611 (  0.00%)     81.59
   cuseeme            9 (  0.00%)             1100 (  0.00%)    122.22
   other        1447013 (  2.33%)        645595147 (  2.75%)    446.16
  icmp         36542818 ( 58.89%)       2231801957 (  9.52%)     61.07
  ipip              184 (  0.00%)            19160 (  0.00%)    104.13
  ipsec           51296 (  0.08%)         18136452 (  0.08%)    353.56
  ip6            597417 (  0.96%)        498045678 (  2.12%)    833.67
  other           97976 (  0.16%)         21512056 (  0.09%)    219.56
  frag           271772 (  0.44%)        337148090 (  1.44%)   1240.55
 ip6            1787813 (  2.88%)       1502889701 (  6.41%)    840.63
  tcp6          1550676 (  2.50%)       1336702870 (  5.70%)    862.01
   http(s)      1078285 (  1.74%)       1277012862 (  5.45%)   1184.30
   http(c)       322835 (  0.52%)         28756713 (  0.12%)     89.08
   smtp             183 (  0.00%)            63763 (  0.00%)    348.43
   ftp             5292 (  0.01%)           525912 (  0.00%)     99.38
   pop3              80 (  0.00%)             9199 (  0.00%)    114.99
   ssh               72 (  0.00%)            12450 (  0.00%)    172.92
   dns              366 (  0.00%)            53039 (  0.00%)    144.92
   bgp               99 (  0.00%)            30426 (  0.00%)    307.33
   other         143464 (  0.23%)         30238506 (  0.13%)    210.77
  udp6           105448 (  0.17%)         25384939 (  0.11%)    240.73
   dns           102741 (  0.17%)         25090208 (  0.11%)    244.21
   realaud            3 (  0.00%)              314 (  0.00%)    104.67
   halflif            1 (  0.00%)              108 (  0.00%)    108.00
   everque            4 (  0.00%)              435 (  0.00%)    108.75
   unreal             1 (  0.00%)              108 (  0.00%)    108.00
   quake              2 (  0.00%)              198 (  0.00%)     99.00
   other           2696 (  0.00%)           293568 (  0.00%)    108.89
  icmp6           15230 (  0.02%)          1987783 (  0.01%)    130.52
  pim6               30 (  0.00%)             4080 (  0.00%)    136.00
  other6         116429 (  0.19%)        138810029 (  0.59%)   1192.23


tcpdump file: 201308231400.dump.gz (1285.34 MB)