Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-01 17:58:59.371 00:00:11.789 TCP 12.102.0.1:39884 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:00:01.201 00:00:11.764 TCP 12.102.0.1:45348 -> 1.101.0.1:3000 11 1507 1 2025-10-01 17:55:45.178 00:06:00.155 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-01 18:01:02.999 00:00:11.765 TCP 12.102.0.1:57248 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:01:19.556 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 18:01:19.579 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 18:01:19.370 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 18:01:19.769 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 18:01:19.849 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 18:01:19.703 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 18:01:19.502 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 18:02:04.801 00:00:11.804 TCP 12.102.0.1:39304 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:03:06.642 00:00:11.763 TCP 12.102.0.1:55650 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:04:08.444 00:00:12.048 TCP 12.102.0.1:50094 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:05:10.537 00:00:11.800 TCP 12.102.0.1:60080 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:00:45.182 00:06:00.149 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-01 18:06:19.521 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 18:06:19.543 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 18:06:19.467 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 18:06:19.388 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 18:06:19.580 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 18:06:19.766 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 18:06:19.228 00:00:00.026 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 18:06:12.375 00:00:11.828 TCP 12.102.0.1:34700 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:07:14.233 00:00:11.821 TCP 12.102.0.1:50530 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:02:45.180 00:06:00.154 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-01 18:08:16.091 00:00:11.801 TCP 12.102.0.1:36498 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:09:17.935 00:00:11.810 TCP 12.102.0.1:44624 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:10:19.783 00:00:11.757 TCP 12.102.0.1:56800 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:11:19.704 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 18:11:19.726 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 18:11:19.685 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 18:11:19.623 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 18:11:19.604 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 18:11:19.482 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 18:11:19.578 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 18:11:21.578 00:00:11.802 TCP 12.102.0.1:59208 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:12:23.416 00:00:11.798 TCP 12.102.0.1:37856 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:07:45.185 00:06:00.148 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-01 18:13:25.259 00:00:11.814 TCP 12.102.0.1:54704 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:14:27.110 00:00:11.759 TCP 12.102.0.1:50522 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:09:45.183 00:06:00.153 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-01 18:15:28.908 00:00:11.791 TCP 12.102.0.1:47480 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:16:19.691 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 18:16:19.881 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 18:16:19.720 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 18:16:19.784 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 18:16:19.607 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 18:16:19.487 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 18:16:19.669 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 18:16:30.743 00:00:11.771 TCP 12.102.0.1:38534 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:17:32.552 00:00:11.807 TCP 12.102.0.1:40810 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:18:34.391 00:00:11.801 TCP 12.102.0.1:51982 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:14:45.184 00:06:00.150 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-01 18:19:36.232 00:00:11.810 TCP 12.102.0.1:49256 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:20:38.075 00:00:11.819 TCP 12.102.0.1:40092 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:21:19.690 00:00:00.026 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 18:21:19.880 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 18:21:19.886 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 18:21:19.713 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 18:21:19.942 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 18:21:19.765 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 18:21:19.668 00:00:00.026 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 18:16:45.184 00:06:00.158 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-01 18:21:39.931 00:00:11.812 TCP 12.102.0.1:53212 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:22:41.795 00:00:11.816 TCP 12.102.0.1:50624 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:23:43.651 00:00:11.822 TCP 12.102.0.1:51576 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:24:45.518 00:00:11.800 TCP 12.102.0.1:37264 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:25:47.360 00:00:11.807 TCP 12.102.0.1:43400 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:26:20.042 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 18:26:19.937 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 18:26:20.149 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 18:26:20.068 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 18:26:20.030 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 18:26:19.986 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 18:26:20.020 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 18:21:45.187 00:06:00.153 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-01 18:26:49.206 00:00:11.806 TCP 12.102.0.1:48694 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:27:51.072 00:00:11.981 TCP 12.102.0.1:59392 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:23:45.184 00:06:00.158 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-01 18:28:53.092 00:00:11.803 TCP 12.102.0.1:48212 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:29:54.937 00:00:11.810 TCP 12.102.0.1:50490 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:30:56.794 00:00:11.814 TCP 12.102.0.1:49530 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:31:19.925 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 18:31:20.226 00:00:00.040 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 18:31:20.125 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 18:31:20.200 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 18:31:20.103 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 18:31:19.819 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 18:31:19.903 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 18:31:58.648 00:00:11.810 TCP 12.102.0.1:60596 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:33:00.501 00:00:11.821 TCP 12.102.0.1:57296 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:28:45.188 00:06:00.153 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-01 18:34:02.354 00:00:11.806 TCP 12.102.0.1:36266 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:35:04.200 00:00:11.802 TCP 12.102.0.1:49018 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:30:45.185 00:06:00.159 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-01 18:36:19.953 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 18:36:19.976 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 18:36:20.173 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 18:36:20.239 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 18:36:20.193 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 18:36:06.058 00:00:11.806 TCP 12.102.0.1:57314 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:36:20.007 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 18:36:19.974 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 18:37:07.896 00:00:11.804 TCP 12.102.0.1:47776 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:38:09.736 00:00:12.229 TCP 12.102.0.1:51660 -> 1.101.0.1:3000 15 1926 1 2025-10-01 18:39:12.009 00:00:11.795 TCP 12.102.0.1:51598 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:40:13.842 00:00:11.805 TCP 12.102.0.1:56124 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:35:45.189 00:06:00.153 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-01 18:41:20.151 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 18:41:20.282 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 18:41:19.943 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 18:41:20.051 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 18:41:20.275 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 18:41:19.927 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 18:41:20.128 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 18:41:15.700 00:00:11.768 TCP 12.102.0.1:39520 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:42:17.507 00:00:11.801 TCP 12.102.0.1:56342 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:37:45.187 00:06:00.158 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-01 18:43:19.348 00:00:12.196 TCP 12.102.0.1:33342 -> 1.101.0.1:3000 15 1926 1 2025-10-01 18:44:21.580 00:00:11.860 TCP 12.102.0.1:36964 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:45:23.484 00:00:11.812 TCP 12.102.0.1:45626 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:46:20.390 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 18:46:20.414 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 18:46:20.598 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 18:46:20.372 00:00:00.019 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 18:46:20.554 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 18:46:20.559 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 18:46:20.425 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 18:46:25.331 00:00:11.757 TCP 12.102.0.1:50604 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:47:27.125 00:00:11.799 TCP 12.102.0.1:32946 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:42:45.192 00:06:00.155 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-01 18:48:28.963 00:00:11.806 TCP 12.102.0.1:54190 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:44:45.189 00:06:00.161 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-01 18:49:30.811 00:00:11.759 TCP 12.102.0.1:43934 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:50:32.602 00:00:11.801 TCP 12.102.0.1:34752 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:51:20.540 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 18:51:20.579 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 18:51:20.727 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 18:51:20.647 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 18:51:20.676 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 18:51:20.602 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 18:51:20.518 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 18:51:34.438 00:00:11.817 TCP 12.102.0.1:40804 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:52:36.297 00:00:11.801 TCP 12.102.0.1:45614 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:53:38.135 00:00:11.831 TCP 12.102.0.1:38976 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:49:45.193 00:06:00.156 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-01 18:54:40.023 00:00:11.804 TCP 12.102.0.1:44152 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:55:41.866 00:00:11.804 TCP 12.102.0.1:57954 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:56:20.413 00:00:00.032 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 18:56:20.436 00:00:00.032 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 18:56:20.175 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 18:56:20.519 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 18:56:20.466 00:00:00.030 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 18:56:20.362 00:00:00.028 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 18:56:20.438 00:00:00.028 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 18:51:45.190 00:06:00.160 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-01 18:56:43.710 00:00:11.798 TCP 12.102.0.1:56322 -> 1.101.0.1:3000 11 1507 1 2025-10-01 18:57:45.545 00:00:11.798 TCP 12.102.0.1:48026 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 159, total bytes: 124049, total packets: 1136, avg bps: 265, avg pps: 0, avg bpp: 109 Time window: 2025-10-01 17:55:45 - 2025-10-01 18:57:57 Total flows processed: 159, passed: 159, Blocks skipped: 0, Bytes read: 16600 Sys: 0.0049s User: 0.0008s Wall: 0.0022s flows/second: 71493.8 Runtime: 0.0022s