Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-28 08:59:25.633 00:00:11.804 TCP 12.102.0.1:35214 -> 1.101.0.1:3000 11 1507 1 2025-09-28 08:59:41.749 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-28 08:59:41.953 00:00:00.027 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 08:59:41.897 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-28 08:59:41.637 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-28 08:59:41.866 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-28 08:59:41.822 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-28 08:59:41.727 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-28 09:00:27.476 00:00:11.799 TCP 12.102.0.1:42800 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:01:29.311 00:00:12.367 TCP 12.102.0.1:59338 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:02:31.722 00:00:12.244 TCP 12.102.0.1:44396 -> 1.101.0.1:3000 15 1926 1 2025-09-28 08:58:42.915 00:06:00.014 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-09-28 09:03:34.012 00:00:11.951 TCP 12.102.0.1:42590 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:04:41.846 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 09:04:41.736 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-28 09:04:41.988 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-28 09:04:42.012 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-28 09:04:42.038 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-28 09:04:42.005 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-28 09:04:42.028 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-28 09:04:36.009 00:00:11.802 TCP 12.102.0.1:59078 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:00:42.893 00:06:00.039 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-09-28 09:05:37.852 00:00:11.809 TCP 12.102.0.1:49086 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:06:39.699 00:00:11.802 TCP 12.102.0.1:47536 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:07:41.537 00:00:11.756 TCP 12.102.0.1:49578 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:08:43.328 00:00:11.802 TCP 12.102.0.1:49148 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:09:41.942 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-28 09:09:41.942 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-28 09:09:41.934 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-28 09:09:41.920 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-28 09:09:42.128 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 09:09:42.064 00:00:00.026 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-28 09:09:42.020 00:00:00.025 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-28 09:09:45.167 00:00:11.802 TCP 12.102.0.1:37076 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:05:42.929 00:06:00.002 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-09-28 09:10:47.008 00:00:11.841 TCP 12.102.0.1:51572 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:11:48.885 00:00:11.808 TCP 12.102.0.1:35326 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:07:42.903 00:06:00.030 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-09-28 09:12:50.730 00:00:11.814 TCP 12.102.0.1:45870 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:13:52.584 00:00:11.798 TCP 12.102.0.1:45100 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:14:42.203 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-28 09:14:42.483 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 09:14:42.334 00:00:00.025 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-28 09:14:42.453 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-28 09:14:42.398 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-28 09:14:42.419 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-28 09:14:42.180 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-28 09:14:54.421 00:00:11.804 TCP 12.102.0.1:44268 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:15:56.263 00:00:11.800 TCP 12.102.0.1:42610 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:16:58.102 00:00:11.813 TCP 12.102.0.1:50790 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:12:42.931 00:06:00.000 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-09-28 09:17:59.952 00:00:11.800 TCP 12.102.0.1:37016 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:19:01.797 00:00:11.798 TCP 12.102.0.1:44108 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:19:42.053 00:00:00.038 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-28 09:19:42.103 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 09:19:42.291 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-28 09:19:42.185 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-28 09:19:42.188 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-28 09:19:42.056 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-28 09:19:42.031 00:00:00.038 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-28 09:14:42.904 00:06:00.039 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-09-28 09:20:03.636 00:00:11.837 TCP 12.102.0.1:34138 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:21:05.513 00:00:11.810 TCP 12.102.0.1:40202 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:22:07.362 00:00:11.837 TCP 12.102.0.1:33444 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:23:09.234 00:00:11.926 TCP 12.102.0.1:36978 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:24:11.197 00:00:11.757 TCP 12.102.0.1:40432 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:24:42.284 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-28 09:19:42.931 00:06:00.011 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-09-28 09:24:42.281 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 09:24:42.419 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-28 09:24:42.449 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-28 09:24:42.416 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-28 09:24:42.412 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-28 09:24:42.262 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-28 09:25:12.992 00:00:11.758 TCP 12.102.0.1:40668 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:26:14.788 00:00:11.757 TCP 12.102.0.1:54594 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:21:42.907 00:06:00.038 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-09-28 09:27:16.586 00:00:11.803 TCP 12.102.0.1:59564 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:28:18.432 00:00:11.818 TCP 12.102.0.1:58488 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:29:20.292 00:00:11.803 TCP 12.102.0.1:52734 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:29:42.410 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-28 09:29:42.408 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 09:29:42.527 00:00:00.043 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-28 09:29:42.341 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-28 09:29:42.453 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-28 09:29:42.327 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-28 09:29:42.388 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-28 09:30:22.135 00:00:11.821 TCP 12.102.0.1:55162 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:31:23.995 00:00:11.801 TCP 12.102.0.1:32876 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:26:42.942 00:06:00.000 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-09-28 09:32:25.838 00:00:11.763 TCP 12.102.0.1:54690 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:33:27.638 00:00:11.806 TCP 12.102.0.1:48844 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:28:42.909 00:06:00.037 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-09-28 09:34:29.484 00:00:11.816 TCP 12.102.0.1:54188 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:34:42.311 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-28 09:34:42.333 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-28 09:34:42.768 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 09:34:42.655 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-28 09:34:42.468 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-28 09:34:42.482 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-28 09:34:42.538 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-28 09:35:31.339 00:00:11.809 TCP 12.102.0.1:35904 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:36:33.191 00:00:11.806 TCP 12.102.0.1:51748 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:37:35.031 00:00:11.808 TCP 12.102.0.1:57724 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:33:42.943 00:06:00.005 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-09-28 09:38:36.880 00:00:11.755 TCP 12.102.0.1:51996 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:39:42.886 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-28 09:39:42.909 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-28 09:39:42.901 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 09:39:42.644 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-28 09:39:42.960 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-28 09:39:43.011 00:00:00.020 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-28 09:39:42.861 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-28 09:39:38.679 00:00:11.767 TCP 12.102.0.1:38098 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:35:42.911 00:06:00.041 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-09-28 09:40:40.484 00:00:11.763 TCP 12.102.0.1:43654 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:41:42.283 00:00:11.806 TCP 12.102.0.1:49686 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:42:44.132 00:00:11.804 TCP 12.102.0.1:49078 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:43:45.977 00:00:11.776 TCP 12.102.0.1:41356 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:44:42.786 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-28 09:44:42.868 00:00:00.015 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 09:44:42.700 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-28 09:44:42.878 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-28 09:44:42.917 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-28 09:44:42.743 00:00:00.013 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-28 09:44:42.765 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-28 09:44:47.785 00:00:11.808 TCP 12.102.0.1:48330 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:40:42.948 00:06:00.002 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-09-28 09:45:49.629 00:00:11.801 TCP 12.102.0.1:48458 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:46:51.470 00:00:11.756 TCP 12.102.0.1:45486 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:42:42.915 00:06:00.037 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-09-28 09:47:53.268 00:00:12.234 TCP 12.102.0.1:40604 -> 1.101.0.1:3000 15 1926 1 2025-09-28 09:48:55.543 00:00:11.758 TCP 12.102.0.1:56340 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:49:42.805 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-28 09:49:42.828 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-28 09:49:42.791 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 09:49:42.702 00:00:00.025 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-28 09:49:42.747 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-28 09:49:42.717 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-28 09:49:42.570 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-28 09:49:57.339 00:00:11.762 TCP 12.102.0.1:57394 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:50:59.146 00:00:11.811 TCP 12.102.0.1:52738 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:52:00.993 00:00:11.836 TCP 12.102.0.1:41864 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:47:42.950 00:06:00.001 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-09-28 09:53:02.874 00:00:11.808 TCP 12.102.0.1:57606 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:54:04.716 00:00:11.806 TCP 12.102.0.1:56376 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:54:42.847 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-28 09:49:42.916 00:06:00.037 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-09-28 09:54:42.871 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-28 09:54:42.894 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 09:54:42.897 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-28 09:54:42.922 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-28 09:54:42.875 00:00:00.025 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-28 09:54:42.773 00:00:00.019 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-28 09:55:06.561 00:00:11.836 TCP 12.102.0.1:33772 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:56:08.439 00:00:11.868 TCP 12.102.0.1:43682 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:57:10.347 00:00:11.801 TCP 12.102.0.1:55584 -> 1.101.0.1:3000 11 1507 1 2025-09-28 09:58:12.187 00:00:11.800 TCP 12.102.0.1:56924 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 158, total bytes: 120276, total packets: 1066, avg bps: 268, avg pps: 0, avg bpp: 112 Time window: 2025-09-28 08:58:42 - 2025-09-28 09:58:23 Total flows processed: 158, passed: 158, Blocks skipped: 0, Bytes read: 16496 Sys: 0.0041s User: 0.0010s Wall: 0.0020s flows/second: 79043.4 Runtime: 0.0020s