Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-02 14:59:08.158 00:00:11.774 TCP 12.102.0.1:40232 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:00:09.965 00:00:11.803 TCP 12.102.0.1:33886 -> 1.101.0.1:3000 11 1507 1 2025-10-02 14:55:45.528 00:06:00.183 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 15:01:11.808 00:00:11.800 TCP 12.102.0.1:58022 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:01:44.649 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 15:01:44.687 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 15:01:44.355 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 15:01:44.525 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 15:01:44.633 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 15:01:44.590 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 15:01:44.627 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 15:02:13.653 00:00:11.861 TCP 12.102.0.1:53194 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:03:15.554 00:00:11.799 TCP 12.102.0.1:50314 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:04:17.389 00:00:11.806 TCP 12.102.0.1:39382 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:05:19.231 00:00:11.775 TCP 12.102.0.1:43192 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:00:45.533 00:06:00.178 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 15:06:21.067 00:00:11.856 TCP 12.102.0.1:57952 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:06:44.566 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 15:06:44.635 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 15:06:44.597 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 15:06:44.408 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 15:06:44.737 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 15:06:44.773 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 15:06:44.612 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 15:07:22.967 00:00:11.806 TCP 12.102.0.1:37472 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:02:45.530 00:06:00.183 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 15:08:24.812 00:00:11.816 TCP 12.102.0.1:38826 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:09:26.666 00:00:11.812 TCP 12.102.0.1:48896 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:10:28.515 00:00:11.819 TCP 12.102.0.1:53694 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:11:44.790 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 15:11:44.750 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 15:11:30.376 00:00:11.811 TCP 12.102.0.1:34352 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:11:44.718 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 15:11:44.771 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 15:11:44.766 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 15:11:44.793 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 15:11:44.768 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 15:07:45.535 00:06:00.176 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 15:12:32.223 00:00:11.803 TCP 12.102.0.1:43134 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:13:34.082 00:00:11.767 TCP 12.102.0.1:60932 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:09:45.533 00:06:00.182 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 15:14:35.888 00:00:11.798 TCP 12.102.0.1:40234 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:15:37.732 00:00:11.761 TCP 12.102.0.1:59630 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:16:44.854 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 15:16:44.877 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 15:16:45.022 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 15:16:45.055 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 15:16:44.783 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 15:16:45.106 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 15:16:44.884 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 15:16:39.530 00:00:11.798 TCP 12.102.0.1:54472 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:17:41.367 00:00:12.257 TCP 12.102.0.1:38998 -> 1.101.0.1:3000 15 1926 1 2025-10-02 15:18:43.680 00:00:11.813 TCP 12.102.0.1:40970 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:14:45.536 00:06:00.176 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 15:19:45.526 00:00:11.811 TCP 12.102.0.1:51632 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:20:47.376 00:00:11.822 TCP 12.102.0.1:60892 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:21:44.929 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 15:21:45.295 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 15:21:45.319 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 15:21:44.901 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 15:21:45.165 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 15:21:45.208 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 15:21:44.907 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 15:16:45.535 00:06:00.181 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 15:21:49.239 00:00:11.763 TCP 12.102.0.1:52590 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:22:51.068 00:00:11.806 TCP 12.102.0.1:53650 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:23:52.915 00:00:11.803 TCP 12.102.0.1:55482 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:24:54.755 00:00:11.798 TCP 12.102.0.1:47166 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:25:56.592 00:00:11.812 TCP 12.102.0.1:51942 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:26:45.013 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 15:26:45.034 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 15:21:45.537 00:06:00.180 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 15:26:45.013 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 15:26:45.111 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 15:26:45.080 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 15:26:45.109 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 15:26:45.136 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 15:26:58.440 00:00:11.892 TCP 12.102.0.1:48882 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:28:00.373 00:00:11.822 TCP 12.102.0.1:39054 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:23:45.535 00:06:00.185 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 15:29:02.232 00:00:11.760 TCP 12.102.0.1:41252 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:30:04.036 00:00:11.804 TCP 12.102.0.1:41980 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:31:05.881 00:00:11.806 TCP 12.102.0.1:45302 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:31:45.347 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 15:31:45.369 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 15:31:45.505 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 15:31:45.509 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 15:31:45.473 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 15:31:45.609 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 15:31:45.292 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 15:32:07.728 00:00:11.827 TCP 12.102.0.1:55134 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:33:09.592 00:00:11.796 TCP 12.102.0.1:55730 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:28:45.539 00:06:00.180 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 15:34:11.429 00:00:11.758 TCP 12.102.0.1:55966 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:35:13.239 00:00:11.801 TCP 12.102.0.1:41138 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:30:45.538 00:06:00.185 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 15:36:15.090 00:00:11.806 TCP 12.102.0.1:58698 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:36:45.254 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 15:36:45.283 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 15:36:45.508 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 15:36:45.134 00:00:00.051 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 15:36:45.428 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 15:36:45.347 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 15:36:45.232 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 15:37:16.936 00:00:11.819 TCP 12.102.0.1:56890 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:38:18.798 00:00:11.796 TCP 12.102.0.1:58268 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:39:20.634 00:00:11.767 TCP 12.102.0.1:38386 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:40:22.436 00:00:11.809 TCP 12.102.0.1:57896 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:35:45.541 00:06:00.180 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 15:41:24.279 00:00:11.804 TCP 12.102.0.1:60884 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:41:45.138 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 15:41:45.162 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 15:41:45.141 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 15:41:45.460 00:00:00.026 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 15:41:45.449 00:00:00.026 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 15:41:45.594 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 15:41:45.466 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 15:42:26.122 00:00:11.811 TCP 12.102.0.1:56996 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:37:45.539 00:06:00.186 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 15:43:27.974 00:00:12.191 TCP 12.102.0.1:60882 -> 1.101.0.1:3000 15 1926 1 2025-10-02 15:44:30.200 00:00:11.808 TCP 12.102.0.1:52458 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:45:32.066 00:00:11.799 TCP 12.102.0.1:48064 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:46:45.562 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 15:46:45.584 00:00:00.025 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 15:46:33.900 00:00:11.800 TCP 12.102.0.1:52460 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:46:45.770 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 15:46:45.603 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 15:46:45.626 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 15:46:45.671 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 15:46:45.678 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 15:42:45.544 00:06:00.181 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 15:47:35.735 00:00:11.809 TCP 12.102.0.1:53712 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:48:37.581 00:00:11.799 TCP 12.102.0.1:51468 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:44:45.542 00:06:00.185 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 15:49:39.421 00:00:11.813 TCP 12.102.0.1:60420 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:50:41.268 00:00:11.808 TCP 12.102.0.1:40736 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:51:45.628 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 15:51:45.600 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 15:51:45.743 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 15:51:45.771 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 15:51:45.590 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 15:51:45.638 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 15:51:45.607 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 15:51:43.115 00:00:11.804 TCP 12.102.0.1:45746 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:52:44.957 00:00:11.785 TCP 12.102.0.1:44010 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:53:46.785 00:00:11.801 TCP 12.102.0.1:56136 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:49:45.545 00:06:00.180 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 15:54:48.629 00:00:11.812 TCP 12.102.0.1:43368 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:55:50.483 00:00:11.805 TCP 12.102.0.1:55198 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:56:45.568 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 15:56:45.510 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 15:56:45.699 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 15:56:45.582 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 15:56:45.597 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 15:56:45.475 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 15:56:45.546 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 15:51:45.544 00:06:00.187 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 15:56:52.333 00:00:11.801 TCP 12.102.0.1:60124 -> 1.101.0.1:3000 11 1507 1 2025-10-02 15:57:54.178 00:00:11.758 TCP 12.102.0.1:58776 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 159, total bytes: 124049, total packets: 1136, avg bps: 265, avg pps: 0, avg bpp: 109 Time window: 2025-10-02 14:55:45 - 2025-10-02 15:58:05 Total flows processed: 159, passed: 159, Blocks skipped: 0, Bytes read: 16600 Sys: 0.0033s User: 0.0022s Wall: 0.0029s flows/second: 54267.6 Runtime: 0.0029s