Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-02 12:59:28.556 00:00:11.796 TCP 12.102.0.1:34420 -> 1.101.0.1:3000 11 1507 1 2025-10-02 12:54:45.500 00:06:00.174 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 13:00:30.392 00:00:11.796 TCP 12.102.0.1:50020 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:01:42.008 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 13:01:42.119 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 13:01:42.289 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 13:01:42.409 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 13:01:42.288 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 13:01:42.260 00:00:00.030 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 13:01:32.227 00:00:11.831 TCP 12.102.0.1:50062 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:01:41.985 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 12:56:45.498 00:06:00.179 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 13:02:34.097 00:00:11.801 TCP 12.102.0.1:36058 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:03:35.940 00:00:15.041 TCP 12.102.0.1:39136 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:04:41.027 00:00:11.798 TCP 12.102.0.1:41824 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:05:42.865 00:00:11.759 TCP 12.102.0.1:55324 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:06:42.049 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 13:01:45.503 00:06:00.174 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 13:06:42.193 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 13:06:42.058 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 13:06:42.271 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 13:06:42.304 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 13:06:42.253 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 13:06:42.027 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 13:06:44.662 00:00:11.810 TCP 12.102.0.1:60356 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:07:46.508 00:00:11.800 TCP 12.102.0.1:53282 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:03:45.501 00:06:00.177 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 13:08:48.347 00:00:11.803 TCP 12.102.0.1:40082 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:09:50.189 00:00:11.798 TCP 12.102.0.1:54466 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:10:52.033 00:00:11.799 TCP 12.102.0.1:47828 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:11:42.221 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 13:11:42.244 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 13:11:42.471 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 13:11:42.389 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 13:11:42.028 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 13:11:42.516 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 13:11:42.395 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 13:11:53.875 00:00:11.802 TCP 12.102.0.1:38366 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:12:55.722 00:00:11.806 TCP 12.102.0.1:39408 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:08:45.505 00:06:00.172 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 13:13:57.566 00:00:11.812 TCP 12.102.0.1:36554 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:14:59.417 00:00:11.914 TCP 12.102.0.1:37662 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:10:45.502 00:06:00.178 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 13:16:01.372 00:00:11.800 TCP 12.102.0.1:45842 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:16:42.362 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 13:16:42.460 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 13:16:42.497 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 13:16:42.523 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 13:16:42.485 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 13:16:42.435 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 13:16:42.338 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 13:17:03.211 00:00:11.798 TCP 12.102.0.1:56168 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:18:05.071 00:00:12.230 TCP 12.102.0.1:36428 -> 1.101.0.1:3000 15 1926 1 2025-10-02 13:19:07.339 00:00:11.800 TCP 12.102.0.1:43656 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:20:09.178 00:00:12.153 TCP 12.102.0.1:44974 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:15:45.508 00:06:00.172 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 13:21:11.375 00:00:11.813 TCP 12.102.0.1:35516 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:21:42.783 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 13:21:42.301 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 13:21:42.731 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 13:21:42.699 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 13:21:42.694 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 13:21:42.631 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 13:21:42.761 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 13:22:13.233 00:00:11.803 TCP 12.102.0.1:38254 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:17:45.504 00:06:00.179 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 13:23:15.085 00:00:11.842 TCP 12.102.0.1:37472 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:24:16.962 00:00:11.801 TCP 12.102.0.1:55886 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:25:18.809 00:00:11.805 TCP 12.102.0.1:52790 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:26:20.652 00:00:11.821 TCP 12.102.0.1:46406 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:26:42.564 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 13:26:42.587 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 13:26:42.867 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 13:26:42.786 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 13:26:42.842 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 13:26:42.867 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 13:26:42.588 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 13:27:22.515 00:00:11.802 TCP 12.102.0.1:56314 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:22:45.508 00:06:00.174 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 13:28:24.357 00:00:11.807 TCP 12.102.0.1:41690 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:29:26.203 00:00:11.779 TCP 12.102.0.1:43946 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:24:45.506 00:06:00.179 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 13:30:28.036 00:00:11.804 TCP 12.102.0.1:50824 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:31:29.874 00:00:11.965 TCP 12.102.0.1:49426 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:31:42.736 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 13:31:42.884 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 13:31:42.943 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 13:31:42.779 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 13:31:42.777 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 13:31:42.737 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 13:31:42.714 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 13:32:31.872 00:00:11.767 TCP 12.102.0.1:43664 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:33:33.675 00:00:11.808 TCP 12.102.0.1:53472 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:29:45.508 00:06:00.175 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 13:34:35.524 00:00:11.801 TCP 12.102.0.1:43890 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:35:37.358 00:00:11.820 TCP 12.102.0.1:49948 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:36:42.825 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 13:31:45.506 00:06:00.180 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 13:36:42.855 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 13:36:42.847 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 13:36:42.974 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 13:36:42.983 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 13:36:42.946 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 13:36:42.983 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 13:36:39.213 00:00:11.797 TCP 12.102.0.1:58692 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:37:41.082 00:00:11.805 TCP 12.102.0.1:37484 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:38:42.927 00:00:11.812 TCP 12.102.0.1:59110 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:39:44.776 00:00:11.776 TCP 12.102.0.1:56884 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:40:46.586 00:00:11.827 TCP 12.102.0.1:36926 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:41:43.073 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 13:41:43.097 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 13:36:45.511 00:06:00.177 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 13:41:42.978 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 13:41:42.884 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 13:41:43.071 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 13:41:43.165 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 13:41:42.870 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 13:41:48.453 00:00:11.807 TCP 12.102.0.1:51370 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:42:50.304 00:00:11.802 TCP 12.102.0.1:46900 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:38:45.508 00:06:00.185 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 13:43:52.146 00:00:11.819 TCP 12.102.0.1:46226 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:44:54.001 00:00:11.800 TCP 12.102.0.1:53868 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:45:55.835 00:00:11.803 TCP 12.102.0.1:54794 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:46:43.050 00:00:00.031 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 13:46:43.073 00:00:00.031 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 13:46:42.791 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 13:46:43.029 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 13:46:43.073 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 13:46:43.073 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 13:46:43.083 00:00:00.040 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 13:46:57.677 00:00:11.832 TCP 12.102.0.1:49436 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:47:59.553 00:00:11.794 TCP 12.102.0.1:46160 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:43:45.512 00:06:00.178 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 13:49:01.388 00:00:11.760 TCP 12.102.0.1:38930 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:50:03.185 00:00:11.809 TCP 12.102.0.1:49116 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:45:45.509 00:06:00.184 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 13:51:05.036 00:00:11.805 TCP 12.102.0.1:60164 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:51:43.174 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 13:51:43.292 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 13:51:42.891 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 13:51:43.270 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 13:51:43.049 00:00:00.020 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 13:51:43.181 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 13:51:43.151 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 13:52:06.879 00:00:11.798 TCP 12.102.0.1:56300 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:53:08.716 00:00:11.767 TCP 12.102.0.1:47640 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:54:10.525 00:00:11.772 TCP 12.102.0.1:42792 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:55:12.334 00:00:11.762 TCP 12.102.0.1:42366 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:50:45.512 00:06:00.182 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 13:56:14.129 00:00:11.803 TCP 12.102.0.1:36718 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:56:43.286 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 13:56:43.210 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 13:56:43.087 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 13:56:43.460 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 13:56:43.461 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 13:56:43.034 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 13:56:43.262 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 13:57:15.971 00:00:11.810 TCP 12.102.0.1:35578 -> 1.101.0.1:3000 11 1507 1 2025-10-02 13:52:45.512 00:06:00.185 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 13:58:17.817 00:00:11.802 TCP 12.102.0.1:50584 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 160, total bytes: 124491, total packets: 1146, avg bps: 259, avg pps: 0, avg bpp: 108 Time window: 2025-10-02 12:54:45 - 2025-10-02 13:58:45 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0037s User: 0.0009s Wall: 0.0027s flows/second: 59504.2 Runtime: 0.0027s