Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-02 16:58:51.547 00:00:11.804 TCP 12.102.0.1:57498 -> 1.101.0.1:3000 11 1507 1 2025-08-02 16:59:53.392 00:00:11.801 TCP 12.102.0.1:36210 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:00:55.235 00:00:11.767 TCP 12.102.0.1:44580 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:01:57.060 00:00:11.760 TCP 12.102.0.1:42824 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:02:17.776 00:00:00.025 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-02 17:02:18.109 00:00:00.033 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 17:02:17.965 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-02 17:02:17.792 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-02 17:02:18.045 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-02 17:02:17.852 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-02 17:02:17.754 00:00:00.025 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-02 16:59:08.452 00:05:00.701 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-08-02 17:02:58.859 00:00:11.802 TCP 12.102.0.1:43894 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:00:08.456 00:05:00.695 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-08-02 17:04:00.700 00:00:11.811 TCP 12.102.0.1:51476 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:05:02.545 00:00:11.758 TCP 12.102.0.1:42192 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:06:04.342 00:00:11.853 TCP 12.102.0.1:32872 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:07:06.231 00:00:11.804 TCP 12.102.0.1:32952 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:07:17.738 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-02 17:07:17.946 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 17:07:18.030 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-02 17:07:17.926 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-02 17:07:18.089 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-02 17:07:17.833 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-02 17:07:17.717 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-02 17:08:08.082 00:00:11.761 TCP 12.102.0.1:57200 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:05:08.454 00:05:00.699 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-08-02 17:09:09.885 00:00:11.760 TCP 12.102.0.1:36500 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:06:08.458 00:05:00.694 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-08-02 17:10:11.682 00:00:11.851 TCP 12.102.0.1:47446 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:11:13.575 00:00:11.794 TCP 12.102.0.1:35246 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:12:18.334 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-02 17:12:18.356 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-02 17:12:17.944 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 17:12:18.071 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-02 17:12:17.856 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-02 17:12:18.353 00:00:00.025 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-02 17:12:17.652 00:00:00.031 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-02 17:12:15.410 00:00:11.800 TCP 12.102.0.1:46516 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:13:17.258 00:00:11.807 TCP 12.102.0.1:60184 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:14:19.108 00:00:11.800 TCP 12.102.0.1:48182 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:11:08.456 00:05:00.699 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-08-02 17:15:20.956 00:00:11.815 TCP 12.102.0.1:45850 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:12:08.459 00:05:00.695 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-08-02 17:16:22.808 00:00:11.806 TCP 12.102.0.1:58674 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:17:18.159 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-02 17:17:18.184 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 17:17:18.054 00:00:00.025 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-02 17:17:18.281 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-02 17:17:18.294 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-02 17:17:18.085 00:00:00.048 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-02 17:17:18.136 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-02 17:17:24.653 00:00:11.821 TCP 12.102.0.1:40656 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:18:26.518 00:00:11.770 TCP 12.102.0.1:39716 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:19:28.330 00:00:11.860 TCP 12.102.0.1:42624 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:20:30.234 00:00:11.809 TCP 12.102.0.1:50046 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:17:08.458 00:05:00.698 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-08-02 17:21:32.082 00:00:11.825 TCP 12.102.0.1:57220 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:18:08.460 00:05:00.692 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-08-02 17:22:18.183 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-02 17:22:18.185 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 17:22:18.312 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-02 17:22:18.093 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-02 17:22:18.375 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-02 17:22:18.186 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-02 17:22:18.160 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-02 17:22:33.917 00:00:11.813 TCP 12.102.0.1:34766 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:23:35.774 00:00:12.238 TCP 12.102.0.1:40182 -> 1.101.0.1:3000 15 1926 1 2025-08-02 17:24:38.079 00:00:11.799 TCP 12.102.0.1:59216 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:25:39.921 00:00:11.815 TCP 12.102.0.1:47870 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:26:41.777 00:00:11.805 TCP 12.102.0.1:48586 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:23:08.462 00:05:00.696 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-08-02 17:27:17.955 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-02 17:27:17.977 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-02 17:27:18.296 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 17:27:18.357 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-02 17:27:18.328 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-02 17:27:18.202 00:00:00.046 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-02 17:27:18.291 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-02 17:27:43.621 00:00:11.855 TCP 12.102.0.1:54976 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:24:08.463 00:05:00.691 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-08-02 17:28:45.518 00:00:11.762 TCP 12.102.0.1:54024 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:29:47.319 00:00:11.810 TCP 12.102.0.1:38158 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:30:49.170 00:00:11.798 TCP 12.102.0.1:51018 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:31:51.006 00:00:11.796 TCP 12.102.0.1:46770 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:32:18.404 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-02 17:32:18.185 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 17:32:18.279 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-02 17:32:18.375 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-02 17:32:18.468 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-02 17:32:18.341 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-02 17:32:18.380 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-02 17:32:52.834 00:00:11.801 TCP 12.102.0.1:53076 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:29:08.462 00:05:00.696 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-08-02 17:33:54.673 00:00:11.805 TCP 12.102.0.1:35962 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:30:08.465 00:05:00.690 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-08-02 17:34:56.518 00:00:11.809 TCP 12.102.0.1:39274 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:35:58.362 00:00:11.825 TCP 12.102.0.1:48460 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:37:00.220 00:00:11.819 TCP 12.102.0.1:51568 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:37:18.620 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-02 17:37:18.643 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-02 17:37:18.680 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 17:37:18.605 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-02 17:37:18.581 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-02 17:37:18.397 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-02 17:37:18.559 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-02 17:38:02.087 00:00:11.760 TCP 12.102.0.1:49794 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:35:08.469 00:05:00.690 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-08-02 17:39:03.886 00:00:11.762 TCP 12.102.0.1:40674 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:36:08.472 00:05:00.686 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-08-02 17:40:05.692 00:00:11.811 TCP 12.102.0.1:34924 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:41:07.544 00:00:11.808 TCP 12.102.0.1:53504 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:42:18.471 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-02 17:42:09.393 00:00:11.805 TCP 12.102.0.1:55874 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:42:18.495 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-02 17:42:18.749 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 17:42:18.663 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-02 17:42:19.082 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-02 17:42:18.883 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-02 17:42:18.990 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-02 17:43:11.238 00:00:11.805 TCP 12.102.0.1:58920 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:44:13.086 00:00:11.820 TCP 12.102.0.1:42864 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:41:08.469 00:05:00.691 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-08-02 17:45:14.947 00:00:11.804 TCP 12.102.0.1:41142 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:42:08.471 00:05:00.686 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-08-02 17:46:16.793 00:00:11.764 TCP 12.102.0.1:57096 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:47:18.691 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-02 17:47:18.543 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 17:47:18.669 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-02 17:47:18.773 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-02 17:47:18.622 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-02 17:47:18.605 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-02 17:47:18.668 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-02 17:47:18.594 00:00:11.807 TCP 12.102.0.1:60724 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:48:20.442 00:00:11.806 TCP 12.102.0.1:46378 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:49:22.289 00:00:11.799 TCP 12.102.0.1:49212 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:50:24.125 00:00:11.801 TCP 12.102.0.1:43450 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:47:08.470 00:05:00.694 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-08-02 17:51:25.965 00:00:11.856 TCP 12.102.0.1:51608 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:48:08.480 00:05:00.684 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-08-02 17:52:20.021 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-02 17:52:20.138 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 17:52:20.010 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-02 17:52:20.025 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-02 17:52:20.313 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-02 17:52:20.205 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-02 17:52:19.999 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-02 17:52:27.863 00:00:11.807 TCP 12.102.0.1:55822 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:53:29.708 00:00:11.834 TCP 12.102.0.1:59268 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:54:31.581 00:00:11.803 TCP 12.102.0.1:48868 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:55:33.418 00:00:11.842 TCP 12.102.0.1:47496 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:56:35.305 00:00:11.804 TCP 12.102.0.1:54282 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:53:08.477 00:05:00.690 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-08-02 17:57:18.849 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-02 17:57:19.003 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-02 17:57:18.926 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-02 17:57:18.977 00:00:00.040 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 17:57:18.776 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-02 17:57:18.960 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-02 17:57:18.901 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-02 17:57:37.149 00:00:11.826 TCP 12.102.0.1:42602 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:54:08.480 00:05:00.685 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-08-02 17:58:39.020 00:00:12.249 TCP 12.102.0.1:51968 -> 1.101.0.1:3000 15 1926 1 Summary: total flows: 163, total bytes: 125679, total packets: 1149, avg bps: 277, avg pps: 0, avg bpp: 109 Time window: 2025-08-02 16:58:51 - 2025-08-02 17:59:09 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0033s User: 0.0008s Wall: 0.0026s flows/second: 63550.1 Runtime: 0.0026s