Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-02 05:59:10.090 00:00:11.809 TCP 12.102.0.1:55106 -> 1.101.0.1:3000 11 1507 1 2025-10-02 05:54:45.378 00:06:00.193 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 06:00:11.931 00:00:11.772 TCP 12.102.0.1:33778 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:01:13.742 00:00:11.803 TCP 12.102.0.1:36752 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:01:33.623 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 06:01:33.846 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 06:01:33.671 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 06:01:33.565 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 06:01:33.664 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 06:01:33.791 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 06:01:33.600 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 05:56:45.376 00:06:00.198 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 06:02:15.582 00:00:11.840 TCP 12.102.0.1:56686 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:03:17.458 00:00:11.800 TCP 12.102.0.1:40036 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:04:19.298 00:00:11.808 TCP 12.102.0.1:38316 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:05:21.140 00:00:11.820 TCP 12.102.0.1:37356 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:06:33.911 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 06:06:33.933 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 06:06:34.009 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 06:06:34.092 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 06:06:22.997 00:00:11.798 TCP 12.102.0.1:55286 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:06:34.006 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 06:06:34.111 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 06:06:33.928 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 06:01:45.380 00:06:00.193 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 06:07:24.835 00:00:11.759 TCP 12.102.0.1:46164 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:08:26.638 00:00:11.801 TCP 12.102.0.1:50930 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:03:45.378 00:06:00.198 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 06:09:28.484 00:00:11.801 TCP 12.102.0.1:46188 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:10:30.321 00:00:11.802 TCP 12.102.0.1:48582 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:11:33.815 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 06:11:33.757 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 06:11:33.722 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 06:11:33.838 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 06:11:34.161 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 06:11:33.960 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 06:11:33.933 00:00:00.020 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 06:11:32.161 00:00:11.806 TCP 12.102.0.1:41100 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:12:34.007 00:00:12.194 TCP 12.102.0.1:59420 -> 1.101.0.1:3000 15 1926 1 2025-10-02 06:08:45.380 00:06:00.196 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 06:13:36.240 00:00:11.812 TCP 12.102.0.1:50234 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:14:38.093 00:00:11.814 TCP 12.102.0.1:52430 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:10:45.381 00:06:00.198 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 06:15:39.949 00:00:12.361 TCP 12.102.0.1:49212 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:16:34.256 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 06:16:34.281 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 06:16:34.233 00:00:00.042 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 06:16:34.037 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 06:16:34.259 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 06:16:34.129 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 06:16:34.221 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 06:16:42.345 00:00:11.801 TCP 12.102.0.1:57906 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:17:44.185 00:00:11.801 TCP 12.102.0.1:35268 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:18:46.040 00:00:11.777 TCP 12.102.0.1:40156 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:19:47.856 00:00:11.801 TCP 12.102.0.1:45394 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:15:45.385 00:06:00.192 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 06:20:49.699 00:00:11.772 TCP 12.102.0.1:58588 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:21:34.327 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 06:21:34.350 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 06:21:34.356 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 06:21:34.526 00:00:00.020 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 06:21:34.309 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 06:21:34.416 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 06:21:34.366 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 06:21:51.508 00:00:11.802 TCP 12.102.0.1:39834 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:17:45.382 00:06:00.198 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 06:22:53.350 00:00:11.796 TCP 12.102.0.1:57372 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:23:55.187 00:00:11.805 TCP 12.102.0.1:60670 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:24:57.041 00:00:11.856 TCP 12.102.0.1:52908 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:25:58.937 00:00:11.811 TCP 12.102.0.1:39740 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:26:34.348 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 06:26:34.562 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 06:26:34.304 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 06:26:34.380 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 06:26:34.366 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 06:26:34.265 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 06:26:34.326 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 06:27:00.793 00:00:11.809 TCP 12.102.0.1:39088 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:22:45.387 00:06:00.192 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 06:28:02.637 00:00:11.857 TCP 12.102.0.1:38492 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:29:04.525 00:00:11.820 TCP 12.102.0.1:48888 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:24:45.385 00:06:00.198 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 06:30:06.390 00:00:11.979 TCP 12.102.0.1:46690 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:31:08.413 00:00:11.804 TCP 12.102.0.1:52596 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:31:34.355 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 06:31:34.333 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 06:31:34.151 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 06:31:34.272 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 06:31:34.424 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 06:31:34.001 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 06:31:34.333 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 06:32:10.257 00:00:11.804 TCP 12.102.0.1:53486 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:33:12.098 00:00:11.801 TCP 12.102.0.1:33058 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:34:13.940 00:00:11.815 TCP 12.102.0.1:51060 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:29:45.388 00:06:00.193 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 06:35:15.795 00:00:11.799 TCP 12.102.0.1:42608 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:36:17.634 00:00:11.797 TCP 12.102.0.1:53622 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:36:34.238 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 06:36:34.260 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 06:36:34.531 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 06:36:34.461 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 06:36:34.164 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 06:36:34.380 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 06:36:34.352 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 06:31:45.385 00:06:00.198 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 06:37:19.470 00:00:11.774 TCP 12.102.0.1:45688 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:38:21.291 00:00:11.801 TCP 12.102.0.1:41724 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:39:23.130 00:00:11.800 TCP 12.102.0.1:47688 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:40:24.982 00:00:11.802 TCP 12.102.0.1:45734 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:41:34.507 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 06:41:34.428 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 06:41:34.492 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 06:41:34.544 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 06:41:34.557 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 06:41:34.514 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 06:41:34.485 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 06:41:26.823 00:00:11.804 TCP 12.102.0.1:49394 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:36:45.389 00:06:00.192 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 06:42:28.669 00:00:11.765 TCP 12.102.0.1:38388 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:43:30.471 00:00:11.818 TCP 12.102.0.1:55068 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:38:45.387 00:06:00.211 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 06:44:32.313 00:00:11.792 TCP 12.102.0.1:52832 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:45:34.143 00:00:11.834 TCP 12.102.0.1:47972 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:46:34.417 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 06:46:34.441 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 06:46:34.539 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 06:46:34.687 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 06:46:34.725 00:00:00.030 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 06:46:34.698 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 06:46:34.559 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 06:46:36.026 00:00:11.801 TCP 12.102.0.1:35106 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:47:37.861 00:00:11.800 TCP 12.102.0.1:40210 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:43:45.391 00:06:00.194 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 06:48:39.706 00:00:11.799 TCP 12.102.0.1:47026 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:49:41.542 00:00:11.802 TCP 12.102.0.1:56496 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:45:45.388 00:06:00.200 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 06:50:43.378 00:00:11.807 TCP 12.102.0.1:45366 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:51:34.862 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 06:51:34.835 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 06:51:34.551 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 06:51:34.754 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 06:51:34.862 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 06:51:34.797 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 06:51:34.839 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 06:51:45.225 00:00:11.816 TCP 12.102.0.1:37206 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:52:47.085 00:00:11.804 TCP 12.102.0.1:40222 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:53:48.928 00:00:11.817 TCP 12.102.0.1:42338 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:54:50.780 00:00:11.815 TCP 12.102.0.1:51358 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:50:45.393 00:06:00.194 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 06:55:52.636 00:00:11.795 TCP 12.102.0.1:54356 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:56:34.695 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 06:56:34.834 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 06:56:34.938 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 06:56:34.816 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 06:56:34.832 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 06:56:34.880 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 06:56:34.673 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 06:56:54.479 00:00:11.800 TCP 12.102.0.1:56020 -> 1.101.0.1:3000 11 1507 1 2025-10-02 06:52:45.392 00:06:00.198 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 06:57:56.315 00:00:11.807 TCP 12.102.0.1:45554 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 160, total bytes: 124491, total packets: 1146, avg bps: 259, avg pps: 0, avg bpp: 108 Time window: 2025-10-02 05:54:45 - 2025-10-02 06:58:45 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0022s User: 0.0022s Wall: 0.0024s flows/second: 65625.7 Runtime: 0.0025s