Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-02 13:59:24.671 00:00:11.804 TCP 12.102.0.1:52202 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:00:26.514 00:00:11.806 TCP 12.102.0.1:49458 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:01:28.361 00:00:11.831 TCP 12.102.0.1:46226 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:02:14.668 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-02 14:02:14.732 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-02 14:02:14.820 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-02 14:02:14.370 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-02 14:02:14.692 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-02 14:02:14.441 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 14:02:14.680 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-02 14:02:30.225 00:00:11.803 TCP 12.102.0.1:44712 -> 1.101.0.1:3000 11 1507 1 2025-08-02 13:59:08.384 00:05:00.711 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-08-02 14:03:32.077 00:00:11.798 TCP 12.102.0.1:45632 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:00:08.387 00:05:00.705 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-08-02 14:04:33.911 00:00:11.821 TCP 12.102.0.1:59592 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:05:35.769 00:00:11.814 TCP 12.102.0.1:36904 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:06:37.620 00:00:11.802 TCP 12.102.0.1:47378 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:07:14.330 00:00:00.031 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-02 14:07:14.401 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 14:07:14.623 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-02 14:07:14.312 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-02 14:07:14.328 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-02 14:07:14.395 00:00:00.019 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-02 14:07:14.307 00:00:00.032 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-02 14:07:39.460 00:00:11.802 TCP 12.102.0.1:59000 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:08:41.301 00:00:11.763 TCP 12.102.0.1:41792 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:05:08.385 00:05:00.714 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-08-02 14:09:43.101 00:00:11.763 TCP 12.102.0.1:58840 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:06:08.387 00:05:00.709 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-08-02 14:10:44.900 00:00:11.798 TCP 12.102.0.1:42966 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:11:46.731 00:00:11.799 TCP 12.102.0.1:40410 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:12:14.128 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-02 14:12:14.278 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 14:12:14.144 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-02 14:12:14.274 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-02 14:12:14.515 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-02 14:12:14.253 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-02 14:12:14.104 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-02 14:12:48.565 00:00:11.761 TCP 12.102.0.1:54684 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:13:50.355 00:00:11.805 TCP 12.102.0.1:48630 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:14:52.200 00:00:11.822 TCP 12.102.0.1:41226 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:11:08.384 00:05:00.714 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-08-02 14:15:54.080 00:00:11.799 TCP 12.102.0.1:52912 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:12:08.389 00:05:00.708 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-08-02 14:16:55.917 00:00:11.826 TCP 12.102.0.1:38700 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:17:14.523 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-02 14:17:14.545 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-02 14:17:14.527 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 14:17:14.486 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-02 14:17:14.472 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-02 14:17:14.567 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-02 14:17:14.364 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-02 14:17:57.781 00:00:11.759 TCP 12.102.0.1:56554 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:18:59.578 00:00:11.805 TCP 12.102.0.1:39688 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:20:01.423 00:00:11.825 TCP 12.102.0.1:48076 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:17:08.386 00:05:00.717 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-08-02 14:21:03.286 00:00:11.785 TCP 12.102.0.1:46268 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:22:14.640 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-02 14:18:08.388 00:05:00.712 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-08-02 14:22:05.093 00:00:11.813 TCP 12.102.0.1:39366 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:22:14.663 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-02 14:22:14.780 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 14:22:14.606 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-02 14:22:14.478 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-02 14:22:14.668 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-02 14:22:14.455 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-02 14:23:06.942 00:00:11.761 TCP 12.102.0.1:37366 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:24:08.740 00:00:11.804 TCP 12.102.0.1:59424 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:25:10.584 00:00:11.815 TCP 12.102.0.1:55150 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:26:12.444 00:00:11.803 TCP 12.102.0.1:50538 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:23:08.389 00:05:00.726 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-08-02 14:27:14.762 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-02 14:27:14.600 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 14:27:14.824 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-02 14:27:14.715 00:00:00.020 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-02 14:27:14.719 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-02 14:27:14.564 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-02 14:27:14.740 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-02 14:27:14.287 00:00:11.803 TCP 12.102.0.1:55738 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:24:08.391 00:05:00.721 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-08-02 14:28:16.129 00:00:11.764 TCP 12.102.0.1:42308 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:29:17.933 00:00:11.813 TCP 12.102.0.1:50854 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:30:19.789 00:00:11.771 TCP 12.102.0.1:56850 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:31:21.601 00:00:11.806 TCP 12.102.0.1:34788 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:32:14.800 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-02 14:32:14.701 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-02 14:32:14.879 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 14:32:14.961 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-02 14:32:14.582 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-02 14:32:14.968 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-02 14:32:14.678 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-02 14:32:23.458 00:00:11.807 TCP 12.102.0.1:38608 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:29:08.389 00:05:00.727 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-08-02 14:33:25.301 00:00:11.761 TCP 12.102.0.1:54008 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:30:08.391 00:05:00.722 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-08-02 14:34:27.104 00:00:11.819 TCP 12.102.0.1:33750 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:35:28.951 00:00:11.812 TCP 12.102.0.1:33426 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:36:30.801 00:00:11.757 TCP 12.102.0.1:57540 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:37:15.235 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-02 14:37:15.257 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-02 14:37:15.346 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 14:37:15.054 00:00:00.025 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-02 14:37:15.194 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-02 14:37:14.789 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-02 14:37:15.158 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-02 14:37:32.598 00:00:11.760 TCP 12.102.0.1:60300 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:38:34.393 00:00:11.805 TCP 12.102.0.1:59498 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:35:08.391 00:05:00.725 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-08-02 14:39:36.236 00:00:11.807 TCP 12.102.0.1:53434 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:36:08.394 00:05:00.720 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-08-02 14:40:38.085 00:00:11.798 TCP 12.102.0.1:34058 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:41:39.920 00:00:11.824 TCP 12.102.0.1:47468 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:42:14.820 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-02 14:42:14.843 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-02 14:42:14.936 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 14:42:14.981 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-02 14:42:14.953 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-02 14:42:14.738 00:00:00.028 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-02 14:42:14.933 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-02 14:42:41.785 00:00:11.801 TCP 12.102.0.1:53586 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:43:43.627 00:00:12.027 TCP 12.102.0.1:53468 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:44:45.697 00:00:11.800 TCP 12.102.0.1:41850 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:41:08.393 00:05:00.725 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-08-02 14:45:47.533 00:00:12.183 TCP 12.102.0.1:46008 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:42:08.397 00:05:00.718 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-08-02 14:46:49.750 00:00:11.812 TCP 12.102.0.1:53644 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:47:15.375 00:00:00.025 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-02 14:47:15.094 00:00:00.026 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 14:47:15.842 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-02 14:47:15.276 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-02 14:47:15.404 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-02 14:47:15.662 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-02 14:47:15.352 00:00:00.025 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-02 14:47:51.601 00:00:11.801 TCP 12.102.0.1:60246 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:48:53.442 00:00:11.813 TCP 12.102.0.1:42024 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:49:55.288 00:00:11.810 TCP 12.102.0.1:52556 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:50:57.128 00:00:11.804 TCP 12.102.0.1:54974 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:47:08.396 00:05:00.723 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-08-02 14:48:08.398 00:05:00.718 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-08-02 14:51:58.973 00:00:11.800 TCP 12.102.0.1:57542 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:52:15.154 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-02 14:52:15.386 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 14:52:15.420 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-02 14:52:15.319 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-02 14:52:15.158 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-02 14:52:14.939 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-02 14:52:15.132 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-02 14:53:00.815 00:00:11.805 TCP 12.102.0.1:58222 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:54:02.655 00:00:11.809 TCP 12.102.0.1:59572 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:55:04.505 00:00:11.805 TCP 12.102.0.1:56782 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:56:06.351 00:00:11.763 TCP 12.102.0.1:58744 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:53:08.397 00:05:00.722 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-08-02 14:57:15.198 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-02 14:57:15.220 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-02 14:57:15.136 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 14:57:15.146 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-02 14:57:15.126 00:00:00.034 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-02 14:57:15.291 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-02 14:57:14.998 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-02 14:57:08.150 00:00:11.803 TCP 12.102.0.1:43386 -> 1.101.0.1:3000 11 1507 1 2025-08-02 14:54:08.403 00:05:00.715 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-08-02 14:58:09.990 00:00:11.798 TCP 12.102.0.1:39444 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 162, total bytes: 123334, total packets: 1130, avg bps: 274, avg pps: 0, avg bpp: 109 Time window: 2025-08-02 13:59:08 - 2025-08-02 14:59:09 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0043s User: 0.0000s Wall: 0.0024s flows/second: 67335.0 Runtime: 0.0024s