Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-02 17:58:51.702 00:00:11.806 TCP 12.102.0.1:32780 -> 1.101.0.1:3000 11 1507 1 2025-10-02 17:59:53.542 00:00:11.772 TCP 12.102.0.1:48390 -> 1.101.0.1:3000 11 1507 1 2025-10-02 17:55:45.584 00:06:00.194 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 18:00:55.354 00:00:11.819 TCP 12.102.0.1:51946 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:01:48.494 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 18:01:48.692 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 18:01:48.606 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 18:01:48.582 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 18:01:48.440 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 18:01:48.279 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 18:01:48.472 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 18:01:57.214 00:00:11.801 TCP 12.102.0.1:34332 -> 1.101.0.1:3000 11 1507 1 2025-10-02 17:57:45.581 00:06:00.200 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 18:02:59.078 00:00:11.814 TCP 12.102.0.1:41398 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:04:00.939 00:00:11.812 TCP 12.102.0.1:60378 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:05:02.789 00:00:11.819 TCP 12.102.0.1:45830 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:06:04.637 00:00:11.816 TCP 12.102.0.1:58458 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:06:48.184 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 18:06:48.206 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 18:06:48.319 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 18:06:48.463 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 18:06:48.388 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 18:06:48.335 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 18:06:48.272 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 18:07:06.496 00:00:11.821 TCP 12.102.0.1:58246 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:02:45.585 00:06:00.196 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 18:08:08.357 00:00:11.814 TCP 12.102.0.1:38152 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:09:10.214 00:00:11.761 TCP 12.102.0.1:35996 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:04:45.584 00:06:00.200 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 18:10:12.036 00:00:11.805 TCP 12.102.0.1:50240 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:11:13.881 00:00:11.811 TCP 12.102.0.1:52968 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:11:48.355 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 18:11:48.410 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 18:11:48.389 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 18:11:48.384 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 18:11:48.264 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 18:11:48.358 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 18:11:48.332 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 18:12:15.728 00:00:11.818 TCP 12.102.0.1:56992 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:13:17.580 00:00:11.796 TCP 12.102.0.1:39604 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:14:19.420 00:00:11.801 TCP 12.102.0.1:59558 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:09:45.588 00:06:00.196 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 18:15:21.260 00:00:11.799 TCP 12.102.0.1:57690 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:16:23.093 00:00:12.060 TCP 12.102.0.1:43130 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:11:45.586 00:06:00.203 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 18:16:48.519 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 18:16:48.542 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 18:16:48.667 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 18:16:48.524 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 18:16:48.573 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 18:16:48.345 00:00:00.030 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 18:16:48.546 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 18:17:25.193 00:00:11.763 TCP 12.102.0.1:48642 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:18:26.989 00:00:11.800 TCP 12.102.0.1:45908 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:19:28.826 00:00:11.866 TCP 12.102.0.1:45098 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:20:30.735 00:00:11.827 TCP 12.102.0.1:34000 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:16:45.590 00:06:00.197 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 18:21:32.602 00:00:11.765 TCP 12.102.0.1:56632 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:21:48.525 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 18:21:48.549 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 18:21:48.603 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 18:21:48.608 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 18:21:48.562 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 18:21:48.666 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 18:21:48.545 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 18:22:34.406 00:00:12.119 TCP 12.102.0.1:47010 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:18:45.589 00:06:00.200 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 18:23:36.564 00:00:11.802 TCP 12.102.0.1:50022 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:24:38.416 00:00:11.806 TCP 12.102.0.1:51094 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:25:40.255 00:00:11.803 TCP 12.102.0.1:33336 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:26:48.482 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 18:26:48.504 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 18:26:48.743 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 18:26:48.758 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 18:26:48.871 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 18:26:48.755 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 18:26:48.628 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 18:26:42.097 00:00:11.807 TCP 12.102.0.1:53894 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:27:43.948 00:00:11.806 TCP 12.102.0.1:44284 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:23:45.594 00:06:00.193 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 18:28:45.795 00:00:11.811 TCP 12.102.0.1:36740 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:29:47.650 00:00:11.829 TCP 12.102.0.1:40156 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:25:45.592 00:06:00.198 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 18:30:49.521 00:00:11.816 TCP 12.102.0.1:55476 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:31:49.132 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 18:31:49.020 00:00:00.020 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 18:31:49.092 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 18:31:48.923 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 18:31:48.788 00:00:00.025 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 18:31:49.239 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 18:31:49.110 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 18:31:51.378 00:00:11.817 TCP 12.102.0.1:51140 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:32:53.231 00:00:11.808 TCP 12.102.0.1:36194 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:33:55.086 00:00:11.852 TCP 12.102.0.1:42578 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:34:56.980 00:00:11.773 TCP 12.102.0.1:60458 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:30:45.599 00:06:00.190 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 18:35:58.791 00:00:11.803 TCP 12.102.0.1:42194 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:36:48.806 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 18:36:48.829 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 18:36:49.122 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 18:36:48.976 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 18:36:49.082 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 18:36:49.073 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 18:36:48.851 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 18:37:00.633 00:00:11.774 TCP 12.102.0.1:41196 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:32:45.598 00:06:00.195 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 18:38:02.442 00:00:12.193 TCP 12.102.0.1:37370 -> 1.101.0.1:3000 15 1926 1 2025-10-02 18:39:04.675 00:00:11.822 TCP 12.102.0.1:44310 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:40:06.525 00:00:11.818 TCP 12.102.0.1:45114 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:41:08.379 00:00:11.812 TCP 12.102.0.1:46004 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:41:48.714 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 18:41:48.738 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 18:41:49.052 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 18:41:48.994 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 18:41:48.873 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 18:41:48.890 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 18:41:48.745 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 18:42:10.234 00:00:11.848 TCP 12.102.0.1:39856 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:37:45.601 00:06:00.189 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 18:43:12.121 00:00:11.795 TCP 12.102.0.1:59724 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:44:13.953 00:00:11.848 TCP 12.102.0.1:33138 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:39:45.598 00:06:00.194 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 18:45:15.841 00:00:11.812 TCP 12.102.0.1:51768 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:46:17.699 00:00:11.845 TCP 12.102.0.1:55264 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:46:49.232 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 18:46:49.293 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 18:46:49.286 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 18:46:49.007 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 18:46:49.206 00:00:00.030 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 18:46:49.208 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 18:46:49.209 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 18:47:19.585 00:00:11.801 TCP 12.102.0.1:38788 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:48:21.424 00:00:11.756 TCP 12.102.0.1:38762 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:49:23.220 00:00:11.798 TCP 12.102.0.1:52012 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:44:45.603 00:06:00.189 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 18:50:25.079 00:00:11.797 TCP 12.102.0.1:49194 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:51:26.917 00:00:11.777 TCP 12.102.0.1:45050 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:46:45.600 00:06:00.195 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 18:51:49.504 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 18:51:49.526 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 18:51:49.451 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 18:51:49.514 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 18:51:49.565 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 18:51:49.488 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 18:51:49.542 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 18:52:28.735 00:00:11.801 TCP 12.102.0.1:54898 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:53:30.575 00:00:11.805 TCP 12.102.0.1:60574 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:54:32.418 00:00:11.805 TCP 12.102.0.1:59562 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:55:34.262 00:00:11.864 TCP 12.102.0.1:60770 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:51:45.610 00:06:00.185 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-02 18:56:49.298 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-02 18:56:36.162 00:00:11.797 TCP 12.102.0.1:59148 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:56:49.320 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-02 18:56:49.077 00:00:00.033 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-02 18:56:49.389 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-02 18:56:49.328 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-02 18:56:49.358 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-02 18:56:49.389 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-02 18:57:37.997 00:00:11.759 TCP 12.102.0.1:39068 -> 1.101.0.1:3000 11 1507 1 2025-10-02 18:53:45.607 00:06:00.189 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-02 18:58:39.792 00:00:11.865 TCP 12.102.0.1:47568 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 161, total bytes: 125998, total packets: 1157, avg bps: 262, avg pps: 0, avg bpp: 108 Time window: 2025-10-02 17:55:45 - 2025-10-02 18:59:45 Total flows processed: 161, passed: 161, Blocks skipped: 0, Bytes read: 16808 Sys: 0.0048s User: 0.0010s Wall: 0.0036s flows/second: 44658.6 Runtime: 0.0036s