(C) 1998-2007 - Luca Deri  
 About  Summary  All Protocols  IP  Utils  Plugins  Admin 
What is ntop?
Credits
Make a Donation
ntop World
Online Documentation
Show Configuration
Report a Problem
ntop-based Solutions
nMon.net Products
Man Page
Help
FAQ
Risk Flags
Traffic
Hosts
Network Load
Network Flows
Traffic
Throughput
Activity
Summary
Traffic Directions
Local
Traffic
Multicast
Internet Domain
Networks
ASs
Host Clusters
Distribution
Local to Local
Local to Remote
Remote to Local
Remote to Remote
Ports Used
Active TCP/UDP Sessions
Host Fingerprint
Host Characterization
Network Traffic Map
Local Matrix
Data Dump
View Log
Host Last Seen
ICMP Watch
NetFlow
PDA
Remote
Round-Robin Databases
sFlow
All
Activate
Describe
Activate
Describe
Activate
View/Configure
Describe
Statistics
Activate
Describe
Activate
Describe
Deactivate
Configure
Describe
Statistics
Arbitrary Graphs
Activate
View/Configure
Describe
Configure
Shutdown
Startup Options
Preferences
Packet Filter
Reset Stats
Web Users
Protect URLs

 

 

Global Traffic Statistics

Network Interface(s)
NameDeviceTypeSpeedSampling RateMTUHeaderAddressIPv6 Addresses
eth0 Change nameeth0Ethernet  0151414192.168.1.3::/0
Sampling SinceFri Mar 11 07:44:11 2011 [2:57:42]
Active End Nodes3

 

Traffic Report for 'eth0' [switch]

Packets
Dropped (libpcap)0.0%0
Dropped (ntop)0.0%0
Total Received (ntop)7,138
Total Packets Processed7,138
Unicast79.1%5,643
Broadcast5.4%382
Multicast15.6%1,113
Shortest42 bytes
Average Size484 bytes
Longest1,506 bytes
Size <= 64 bytes8.6%611
64 < Size <= 128 bytes32.6%2,325
128 < Size <= 256 bytes9.1%652
256 < Size <= 512 bytes19.5%1,395
512 < Size <= 1024 bytes4.5%324
1024 < Size <= 1518 bytes25.7%1,831
Size > 1518 bytes0.0%0
Packets too long [> 1514]0.0%0
Bad Packets (Checksum)0.0%0
Traffic
Total3.6 MBytes [7,138 Pkts]
IP Traffic3.6 MBytes [7,014 Pkts]
Fragmented IP Traffic0 [0.0%]
Non IP Traffic6.5 KBytes
Average TTL58
TTL <= 3215.5%1,107
32 < TTL <= 6474.9%5,348
64 < TTL <= 960.0%0
96 < TTL <= 1280.0%0
128 < TTL <= 1600.0%0
160 < TTL <= 1920.0%0
192 < TTL <= 2240.0%0
224 < TTL <= 2567.8%559
Remote Hosts Distance
Network Load
Actual826.8 bit/s0.3 Pkt/s
Last Minute56.8 bit/s0.0 Pkt/s
Last 5 Minutes455.9 bit/s0.2 Pkt/s
Peak101.9 Kbit/s16.5 Pkt/s
Average2.8 Kbit/s0.7 Pkt/s

 

Global Protocol Distribution

ProtocolDataPercentage
IP3.6 MBytes99.8%
TCP3.1 MBytes 85.0%
85.0%

 

UDP553.5 KBytes 15.0%
15.0%

 

(R)ARP4.5 KBytes 0% 
IPv60.3 KBytes 0% 

 

Global TCP/UDP Protocol Distribution

TCP/UDP ProtocolDataFlowsAccumulated Percentage / Historical Protocol View
HTTP3.0 MBytes 19983.7%
83.7%

 

DNS105.1 KBytes 6422.9%
2.9%

 

NBios-IP9.6 KBytes 380% 
Mail45.4 KBytes 1011.2%
1.2%

 

Other TCP/UDP-based Protocols438.1 KBytes 1,75511.9%
11.9%

 

Accumulated View
Note:
  • What is a flow?
    • TCP: a flows is a TCP connection.
    • UDP: a flow is a set of packets with the same protocol/peers/port.
  • TCP flows are not accounted for fully (sender and recipient) remote peers.

 

TCP/UDP Traffic Port Distribution:
Last Minute View

TCP/UDP PortTotalSentRcvd
190019003.6 KBytes03.6 KBytes
327032709819810
ipp631852426426
327232726776770
327132716576570
327432743803800
327332733743740
327532753623620
327632762772770
Notes:
  • sum(total traffic per port) = 2*(total IP traffic)
    because the traffic per port is counted twice (sent and received)
  • This report includes broadcast packets


Report created on Fri Mar 11 10:41:53 2011 [ntop uptime: 2:57:42]
Generated by ntop v.3.3 [i686-pc-linux-gnu]
© 1998-2007 by Luca Deri, built: Jun 15 2010 06:02:06.
Listening on [eth0] for all packets (i.e. without a filtering expression)
Web reports include all interfaces (merged)