Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-05 14:59:36.939 00:00:11.778 TCP 12.102.0.1:36730 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:00:38.759 00:00:11.803 TCP 12.102.0.1:53900 -> 1.101.0.1:3000 11 1507 1 2025-10-05 14:56:46.927 00:05:00.157 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-10-05 14:57:46.926 00:05:00.162 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-10-05 15:01:40.599 00:00:11.803 TCP 12.102.0.1:47694 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:02:42.439 00:00:11.758 TCP 12.102.0.1:40016 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:03:11.370 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 15:03:11.546 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 15:03:11.138 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 15:03:11.112 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 15:03:11.613 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 15:03:10.984 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 15:03:11.347 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 15:03:44.239 00:00:12.198 TCP 12.102.0.1:38790 -> 1.101.0.1:3000 15 1926 1 2025-10-05 15:04:46.475 00:00:11.801 TCP 12.102.0.1:38096 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:05:48.314 00:00:11.800 TCP 12.102.0.1:55904 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:02:46.933 00:05:00.154 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-10-05 15:06:50.152 00:00:11.756 TCP 12.102.0.1:46544 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:03:46.930 00:05:00.160 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-10-05 15:07:51.946 00:00:11.803 TCP 12.102.0.1:33856 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:08:11.187 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 15:08:11.291 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 15:08:11.211 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 15:08:11.325 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 15:08:11.282 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 15:08:11.243 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 15:08:11.341 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 15:08:53.792 00:00:11.809 TCP 12.102.0.1:51084 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:09:55.640 00:00:11.819 TCP 12.102.0.1:55708 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:10:57.500 00:00:11.767 TCP 12.102.0.1:59754 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:11:59.305 00:00:11.859 TCP 12.102.0.1:50902 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:08:46.934 00:05:00.162 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-10-05 15:13:11.447 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 15:13:11.301 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 15:13:11.580 00:00:00.017 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 15:13:11.580 00:00:00.018 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 15:13:11.394 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 15:13:11.232 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 15:13:11.425 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 15:13:01.211 00:00:11.756 TCP 12.102.0.1:49742 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:09:46.934 00:05:00.166 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-10-05 15:14:03.005 00:00:11.766 TCP 12.102.0.1:54376 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:15:04.806 00:00:11.801 TCP 12.102.0.1:58746 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:16:06.646 00:00:11.801 TCP 12.102.0.1:42910 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:17:08.484 00:00:11.803 TCP 12.102.0.1:44890 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:18:11.582 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 15:18:11.667 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 15:18:11.563 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 15:18:11.484 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 15:18:11.449 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 15:18:11.437 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 15:18:11.413 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 15:18:10.326 00:00:11.796 TCP 12.102.0.1:44034 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:14:46.936 00:05:00.161 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-10-05 15:19:12.162 00:00:11.797 TCP 12.102.0.1:50852 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:15:46.933 00:05:00.166 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-10-05 15:20:13.997 00:00:11.800 TCP 12.102.0.1:57994 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:21:15.836 00:00:11.764 TCP 12.102.0.1:59764 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:22:17.640 00:00:11.832 TCP 12.102.0.1:34636 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:23:11.838 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 15:23:11.815 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 15:23:12.298 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 15:23:12.161 00:00:00.018 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 15:23:12.121 00:00:00.030 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 15:23:12.082 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 15:23:12.048 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 15:23:19.513 00:00:11.802 TCP 12.102.0.1:38118 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:24:21.350 00:00:11.798 TCP 12.102.0.1:50664 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:20:46.938 00:05:00.162 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-10-05 15:25:23.188 00:00:11.804 TCP 12.102.0.1:44604 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:21:46.936 00:05:00.167 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-10-05 15:26:25.030 00:00:11.811 TCP 12.102.0.1:54168 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:27:26.873 00:00:11.806 TCP 12.102.0.1:47786 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:28:11.731 00:00:00.026 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 15:28:11.670 00:00:00.020 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 15:28:11.680 00:00:00.014 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 15:28:11.895 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 15:28:11.871 00:00:00.025 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 15:28:11.872 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 15:28:11.709 00:00:00.025 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 15:28:28.715 00:00:11.801 TCP 12.102.0.1:32930 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:29:30.555 00:00:11.802 TCP 12.102.0.1:42550 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:30:32.393 00:00:11.798 TCP 12.102.0.1:33952 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:26:46.939 00:05:00.161 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-10-05 15:31:34.226 00:00:11.801 TCP 12.102.0.1:56296 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:27:46.938 00:05:00.166 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-10-05 15:32:36.078 00:00:11.849 TCP 12.102.0.1:38182 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:33:11.803 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 15:33:11.760 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 15:33:11.936 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 15:33:11.683 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 15:33:11.660 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 15:33:12.015 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 15:33:12.052 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 15:33:37.970 00:00:11.803 TCP 12.102.0.1:50656 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:34:39.806 00:00:11.801 TCP 12.102.0.1:50842 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:35:41.641 00:00:11.802 TCP 12.102.0.1:57690 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:32:46.942 00:05:00.159 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-10-05 15:36:43.479 00:00:12.457 TCP 12.102.0.1:47860 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:33:46.940 00:05:00.164 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-10-05 15:37:45.975 00:00:12.839 TCP 12.102.0.1:37116 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:38:11.872 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 15:38:11.893 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 15:38:11.894 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 15:38:12.118 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 15:38:12.110 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 15:38:12.073 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 15:38:12.125 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 15:38:48.856 00:00:11.764 TCP 12.102.0.1:34978 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:39:50.661 00:00:11.809 TCP 12.102.0.1:56432 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:40:52.509 00:00:11.795 TCP 12.102.0.1:42190 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:41:54.342 00:00:11.798 TCP 12.102.0.1:43020 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:38:46.945 00:05:00.159 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-10-05 15:42:56.178 00:00:11.801 TCP 12.102.0.1:41928 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:43:12.257 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 15:43:12.191 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 15:43:12.144 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 15:43:12.014 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 15:43:12.017 00:00:00.020 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 15:43:12.080 00:00:00.039 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 15:43:12.235 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 15:39:46.942 00:05:00.164 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-10-05 15:43:58.037 00:00:11.759 TCP 12.102.0.1:35150 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:44:59.833 00:00:11.760 TCP 12.102.0.1:36488 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:46:01.638 00:00:11.804 TCP 12.102.0.1:52020 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:47:03.478 00:00:11.806 TCP 12.102.0.1:32920 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:48:12.178 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 15:48:12.235 00:00:00.037 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 15:48:12.174 00:00:00.043 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 15:48:12.136 00:00:00.045 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 15:48:12.172 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 15:48:12.363 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 15:48:12.156 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 15:48:05.320 00:00:11.801 TCP 12.102.0.1:33196 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:44:46.945 00:05:00.162 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-10-05 15:49:07.160 00:00:11.808 TCP 12.102.0.1:50648 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:45:46.942 00:05:00.168 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-10-05 15:50:09.004 00:00:11.803 TCP 12.102.0.1:41234 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:51:10.841 00:00:11.772 TCP 12.102.0.1:49842 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:52:12.656 00:00:11.817 TCP 12.102.0.1:56704 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:53:12.307 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 15:53:12.330 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 15:53:12.399 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 15:53:12.374 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 15:53:12.347 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 15:53:12.205 00:00:00.030 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 15:53:11.979 00:00:00.025 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 15:53:14.511 00:00:11.804 TCP 12.102.0.1:55004 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:54:16.359 00:00:11.808 TCP 12.102.0.1:41934 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:50:46.947 00:05:00.162 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-10-05 15:55:18.202 00:00:11.805 TCP 12.102.0.1:52946 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:51:46.942 00:05:00.168 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-10-05 15:56:20.077 00:00:11.802 TCP 12.102.0.1:37510 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:57:21.916 00:00:11.828 TCP 12.102.0.1:47522 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:58:12.223 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 15:58:12.246 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 15:58:12.439 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 15:58:12.085 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 15:58:12.360 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 15:58:12.293 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 15:58:12.407 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 15:58:23.780 00:00:11.819 TCP 12.102.0.1:48700 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 162, total bytes: 123753, total packets: 1134, avg bps: 266, avg pps: 0, avg bpp: 109 Time window: 2025-10-05 14:56:46 - 2025-10-05 15:58:35 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0054s User: 0.0009s Wall: 0.0029s flows/second: 56449.1 Runtime: 0.0029s