Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-05 15:59:25.628 00:00:11.807 TCP 12.102.0.1:32796 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:00:27.471 00:00:11.833 TCP 12.102.0.1:39714 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:56:46.948 00:05:00.162 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-10-05 16:01:29.344 00:00:11.815 TCP 12.102.0.1:39998 -> 1.101.0.1:3000 11 1507 1 2025-10-05 15:57:46.943 00:05:00.168 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-10-05 16:02:31.202 00:00:11.818 TCP 12.102.0.1:42016 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:03:12.408 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 16:03:12.688 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 16:03:12.623 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 16:03:12.632 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 16:03:12.524 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 16:03:12.497 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 16:03:12.385 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 16:03:33.079 00:00:11.806 TCP 12.102.0.1:53576 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:04:34.923 00:00:11.834 TCP 12.102.0.1:38030 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:05:36.799 00:00:11.809 TCP 12.102.0.1:36076 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:06:38.647 00:00:11.808 TCP 12.102.0.1:44424 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:02:46.949 00:05:00.162 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-10-05 16:03:46.946 00:05:00.168 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-10-05 16:07:40.486 00:00:11.864 TCP 12.102.0.1:50548 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:08:12.727 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 16:08:12.751 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 16:08:12.708 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 16:08:12.792 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 16:08:12.693 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 16:08:12.724 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 16:08:12.596 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 16:08:42.393 00:00:11.809 TCP 12.102.0.1:42694 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:09:44.239 00:00:11.768 TCP 12.102.0.1:36782 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:10:46.069 00:00:11.762 TCP 12.102.0.1:41162 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:11:47.867 00:00:11.809 TCP 12.102.0.1:40108 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:08:46.950 00:05:00.160 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-10-05 16:12:49.722 00:00:11.803 TCP 12.102.0.1:38784 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:13:12.779 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 16:13:12.750 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 16:13:12.711 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 16:13:12.663 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 16:13:12.761 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 16:13:12.533 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 16:13:12.756 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 16:09:46.947 00:05:00.166 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-10-05 16:13:51.560 00:00:11.802 TCP 12.102.0.1:52988 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:14:53.399 00:00:11.808 TCP 12.102.0.1:34742 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:15:55.243 00:00:11.774 TCP 12.102.0.1:47856 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:16:57.079 00:00:11.798 TCP 12.102.0.1:34856 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:17:58.918 00:00:11.822 TCP 12.102.0.1:56996 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:18:12.816 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 16:18:12.510 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 16:18:12.731 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 16:18:12.631 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 16:18:12.912 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 16:18:12.615 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 16:18:12.795 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 16:14:46.951 00:05:00.161 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-10-05 16:19:00.778 00:00:12.191 TCP 12.102.0.1:54660 -> 1.101.0.1:3000 15 1926 1 2025-10-05 16:15:46.948 00:05:00.167 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-10-05 16:20:03.007 00:00:11.798 TCP 12.102.0.1:34288 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:21:04.843 00:00:11.923 TCP 12.102.0.1:41462 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:22:06.808 00:00:11.804 TCP 12.102.0.1:40530 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:23:12.781 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 16:23:13.020 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 16:23:13.018 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 16:23:12.989 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 16:23:13.085 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 16:23:12.967 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 16:23:12.758 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 16:23:08.648 00:00:11.954 TCP 12.102.0.1:47542 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:24:10.646 00:00:11.771 TCP 12.102.0.1:33818 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:20:46.951 00:05:00.162 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-10-05 16:25:12.459 00:00:11.802 TCP 12.102.0.1:41784 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:21:46.949 00:05:00.169 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-10-05 16:26:14.306 00:00:11.765 TCP 12.102.0.1:36320 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:27:16.113 00:00:11.764 TCP 12.102.0.1:46848 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:28:12.961 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 16:28:12.984 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 16:28:13.037 00:00:00.025 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 16:28:13.052 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 16:28:13.009 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 16:28:12.965 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 16:28:13.057 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 16:28:17.917 00:00:11.834 TCP 12.102.0.1:59528 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:29:19.797 00:00:11.764 TCP 12.102.0.1:50376 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:30:21.604 00:00:11.775 TCP 12.102.0.1:55524 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:26:46.954 00:05:00.163 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-10-05 16:31:23.406 00:00:11.813 TCP 12.102.0.1:33182 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:27:46.950 00:05:00.169 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-10-05 16:32:25.260 00:00:11.789 TCP 12.102.0.1:51714 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:33:13.219 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 16:33:13.336 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 16:33:13.161 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 16:33:13.079 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 16:33:13.338 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 16:33:12.848 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 16:33:13.198 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 16:33:27.092 00:00:11.808 TCP 12.102.0.1:41424 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:34:28.947 00:00:11.804 TCP 12.102.0.1:43282 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:35:30.791 00:00:11.805 TCP 12.102.0.1:43010 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:36:32.649 00:00:11.767 TCP 12.102.0.1:58224 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:32:46.954 00:05:00.165 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-10-05 16:37:34.460 00:00:11.810 TCP 12.102.0.1:52182 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:33:46.951 00:05:00.170 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-10-05 16:38:13.029 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 16:38:13.231 00:00:00.062 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 16:38:13.086 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 16:38:13.296 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 16:38:13.378 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 16:38:13.257 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 16:38:13.008 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 16:38:36.308 00:00:11.800 TCP 12.102.0.1:40188 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:39:38.149 00:00:11.812 TCP 12.102.0.1:59408 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:40:40.007 00:00:11.802 TCP 12.102.0.1:40150 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:41:41.850 00:00:11.853 TCP 12.102.0.1:59592 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:38:46.957 00:05:00.163 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-10-05 16:42:43.745 00:00:11.828 TCP 12.102.0.1:51222 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:43:13.397 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 16:43:13.421 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 16:43:13.497 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 16:43:13.436 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 16:43:13.417 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 16:43:13.304 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 16:43:13.166 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 16:39:46.955 00:05:00.167 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-10-05 16:43:45.615 00:00:11.803 TCP 12.102.0.1:56566 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:44:47.451 00:00:11.756 TCP 12.102.0.1:53718 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:45:49.248 00:00:11.812 TCP 12.102.0.1:44668 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:46:51.097 00:00:11.796 TCP 12.102.0.1:43750 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:47:52.929 00:00:11.822 TCP 12.102.0.1:40974 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:48:13.447 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 16:48:13.586 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 16:48:13.399 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 16:48:13.535 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 16:48:13.259 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 16:48:13.455 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 16:48:13.426 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 16:44:46.959 00:05:00.162 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-10-05 16:48:54.796 00:00:11.802 TCP 12.102.0.1:55598 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:45:46.957 00:05:00.167 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-10-05 16:49:56.639 00:00:11.830 TCP 12.102.0.1:51740 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:50:58.508 00:00:11.808 TCP 12.102.0.1:58932 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:52:00.355 00:00:11.819 TCP 12.102.0.1:33146 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:53:13.413 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 16:53:13.683 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 16:53:13.543 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 16:53:13.640 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 16:53:13.558 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 16:53:13.562 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 16:53:02.212 00:00:11.818 TCP 12.102.0.1:57936 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:53:13.390 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 16:54:04.084 00:00:11.797 TCP 12.102.0.1:53734 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:50:46.960 00:05:00.162 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-10-05 16:55:05.921 00:00:11.819 TCP 12.102.0.1:56258 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:51:46.959 00:05:00.168 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-10-05 16:56:07.779 00:00:11.777 TCP 12.102.0.1:56250 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:57:09.594 00:00:11.808 TCP 12.102.0.1:33992 -> 1.101.0.1:3000 11 1507 1 2025-10-05 16:58:13.677 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 16:58:13.700 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 16:58:13.656 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 16:58:13.538 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 16:58:13.522 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 16:58:13.786 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 16:58:13.642 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 16:58:11.443 00:00:11.820 TCP 12.102.0.1:44218 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 162, total bytes: 123753, total packets: 1134, avg bps: 267, avg pps: 0, avg bpp: 109 Time window: 2025-10-05 15:56:46 - 2025-10-05 16:58:23 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0044s User: 0.0007s Wall: 0.0023s flows/second: 69647.1 Runtime: 0.0023s