Rut Row - bad mojo Scooby!
(C) 1998-2005 - Luca Deri  

 

 

Global Traffic Statistics

Network Interface(s)
NameDeviceTypeSpeedSampling RateMTUHeaderAddressIPv6 Addresses
eth0eth0Ethernet  0151414208.75.85.99::/0
Local Domain Namecc 
Sampling SinceThu Jun 19 10:23:20 2008 [20 days 3:01:47]
Active End Nodes632

 

Traffic Report for 'eth0' [switch]

Packets
Dropped (libpcap)0.0%146,407
Dropped (ntop)0.0%0
Total Received (ntop)420,917,342
Total Packets Processed420,917,342
Unicast99.9%420,661,778
Broadcast0.1%255,564
Multicast0.0%0
pktCast distribution chart
Shortest42 bytes
Average Size308 bytes
Longest8,231 bytes
<= 64 bytes35.6%149,937,690
64 to 128 bytes29.1%122,281,706
129 to 256 bytes0.7%2,847,459
257 to 512 bytes2.7%11,567,421
513 to 1024 bytes5.4%22,853,512
1025 to 1518 bytes17.9%75,175,631
> 1518 bytes8.6%36,253,923
pktSize distribution chart
Packets too long [> 1514]8.6%36,253,965
Bad Packets (Checksum)0.0%0
Traffic
Total282.0 GB [420,917,342 Pkts]
IP Traffic189.5 GB [189.5 GB Pkts]
Fragmented IP Traffic0 [0.0%]
Non IP Traffic92.5 GB
ipTraffic chart
Average TTL66
TTL <= 320.1%369,606
32 < TTL <= 6471.3%300,282,790
64 < TTL <= 960.0%105,426
96 < TTL <= 12828.1%118,102,672
128 < TTL <= 1600.0%2,976
160 < TTL <= 1920.0%96,936
192 < TTL <= 2240.0%12,458
224 < TTL <= 2560.4%1,841,304
pktTTD distribution chart
Remote Hosts Distancehosts distance chart
Network Load
Actual2.7 Mbps389.6 Pkts/sec
Last Minute1.5 Mbps259.1 Pkts/sec
Last 5 Minutes1.6 Mbps263.1 Pkts/sec
Peak7.4 Mbps1264.7 Pkts/sec
Average1.3 Mbps242.1 Pkts/sec
Historical Data [ View rrd charts of historical data for this interface ]

 

Global Protocol Distribution

ProtocolDataPercentage
IP189.5 GB67.2%
TCP189.2 GB 99.8%
99.8%

 

UDP358.5 MB 0% 
ICMP14.2 MB 0% 
Other IP9.8 KB 0% 
(R)ARP3.6 MB 0% 
global protocol distribution chart

 

Global TCP/UDP Protocol Distribution

TCP/UDP ProtocolDataFlowsAccumulated Percentage / Historical Protocol View
FTP8.8 KB 300% 

PROXY7.5 KB 240% 

HTTP189.1 GB 20,966,46299.8%
99.8%

 

DNS355.3 MB 2,543,5180% 

Telnet3.1 KB 260% 

NBios-IP335.0 KB 3,2430% 

Mail3.2 MB 12,8620% 

DHCP-BOOTP1.5 KB 10% 

X1145.8 KB 4280% 

SSH77.0 MB 20,7470% 

Gnutella0.1 KB 20% 

Kazaa0.3 KB 10% 

eDonkey0.4 KB 20% 

Other TCP/UDP-based Protocols17.5 MB 21,019,9340% 
Accumulated ViewGlobal ipProtocol distribution chart
Historical View

Note:
  • What is a flow?
    • TCP: a flows is a TCP connection.
    • UDP: a flow is a packet.
  • TCP flows are not accounted for fully (sender and recipient) remote peers.

 

TCP/UDP Traffic Port Distribution:
Last Minute View

TCP/UDP PortTotalSentRcvd
www8010.2 MB9.2 MB990.0 KB
4982749827204.5 KB6.7 KB197.8 KB
4981949819164.0 KB4.8 KB159.3 KB
4982649826144.1 KB4.1 KB140.0 KB
4983049830112.2 KB4.6 KB107.6 KB
4981049810110.8 KB4.9 KB106.0 KB
1982019820103.5 KB6.6 KB96.9 KB
29152915102.1 KB5.1 KB96.9 KB
580575805796.6 KB7.1 KB89.5 KB
2916291696.4 KB4.7 KB91.8 KB
466344663493.0 KB5.2 KB87.9 KB
2487248790.6 KB6.5 KB84.1 KB
1781178190.1 KB7.5 KB82.6 KB
580445804485.4 KB6.6 KB78.8 KB
2539253984.5 KB4.4 KB80.1 KB
498094980982.8 KB3.2 KB79.6 KB
111251112582.4 KB4.9 KB77.5 KB
466354663582.0 KB4.6 KB77.4 KB
2493249381.4 KB5.7 KB75.6 KB
498154981579.5 KB3.3 KB76.2 KB
3162316278.8 KB8.6 KB70.2 KB
621026210277.7 KB1.5 KB76.2 KB
466364663677.4 KB3.9 KB73.5 KB
111261112671.6 KB4.6 KB67.0 KB
623006230069.5 KB2.0 KB67.5 KB
2921292169.0 KB3.7 KB65.2 KB
3046304668.9 KB5.4 KB63.5 KB
498224982267.8 KB3.5 KB64.3 KB
2494249467.5 KB4.5 KB62.9 KB
1774177466.9 KB4.9 KB62.0 KB
1779177964.9 KB4.6 KB60.3 KB
649266492664.3 KB2.3 KB62.0 KB
Notes:
  • sum(total traffic per port) = 2*(total IP traffic)
    because the traffic per port is counted twice (sent and received)
  • This report includes broadcast packets

This extract is just a sample of the packets ntop has seen.


Report created on Wed Jul 9 13:25:07 2008 [ntop uptime: 20 days 3:01:47]
Generated by ntop v.3.2 SourceForge .tgz [x86_64-unknown-linux-gnu]
© 1998-2005 by Luca Deri, built: Mar 6 2007 09:15:10.
Listening on [eth0] for all packets (i.e. without a filtering expression)
Web reports include all interfaces (merged)