Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-05 22:59:17.439 00:00:11.771 TCP 12.102.0.1:36122 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:00:19.249 00:00:11.808 TCP 12.102.0.1:52506 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:01:21.096 00:00:11.802 TCP 12.102.0.1:48168 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:56:47.099 00:06:00.112 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-05 22:56:47.097 00:06:00.118 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-05 23:02:22.939 00:00:11.816 TCP 12.102.0.1:43186 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:03:20.750 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 23:03:21.035 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 23:03:20.919 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 23:03:20.888 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 23:03:21.002 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 23:03:20.938 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 23:03:20.728 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 23:03:24.790 00:00:11.758 TCP 12.102.0.1:38208 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:04:26.587 00:00:11.755 TCP 12.102.0.1:45572 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:05:28.398 00:00:11.812 TCP 12.102.0.1:50884 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:06:30.247 00:00:11.758 TCP 12.102.0.1:34386 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:07:32.069 00:00:11.760 TCP 12.102.0.1:37178 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:08:21.211 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 23:08:20.893 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 23:08:20.909 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 23:08:21.114 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 23:08:21.214 00:00:00.044 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 23:08:21.188 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 23:08:21.189 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 23:08:33.870 00:00:11.800 TCP 12.102.0.1:35868 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:03:47.099 00:06:00.117 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-05 23:03:47.101 00:06:00.112 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-05 23:09:35.711 00:00:11.797 TCP 12.102.0.1:33592 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:10:37.548 00:00:11.805 TCP 12.102.0.1:38432 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:11:39.386 00:00:11.811 TCP 12.102.0.1:39500 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:12:41.229 00:00:11.810 TCP 12.102.0.1:38412 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:13:21.113 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 23:13:21.138 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 23:13:21.237 00:00:00.042 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 23:13:21.312 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 23:13:21.135 00:00:00.038 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 23:13:21.151 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 23:13:21.138 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 23:13:43.089 00:00:11.798 TCP 12.102.0.1:34864 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:14:44.922 00:00:11.817 TCP 12.102.0.1:39562 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:10:47.099 00:06:00.153 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-05 23:10:47.101 00:06:00.147 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-05 23:15:46.778 00:00:11.801 TCP 12.102.0.1:35806 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:16:48.620 00:00:11.814 TCP 12.102.0.1:50292 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:17:50.470 00:00:11.807 TCP 12.102.0.1:55028 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:18:21.293 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 23:18:21.315 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 23:18:20.839 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 23:18:21.389 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 23:18:21.303 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 23:18:21.033 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 23:18:21.321 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 23:18:52.325 00:00:11.804 TCP 12.102.0.1:46416 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:19:54.165 00:00:11.808 TCP 12.102.0.1:44998 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:20:56.031 00:00:11.802 TCP 12.102.0.1:52200 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:21:57.869 00:00:11.802 TCP 12.102.0.1:45708 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:17:47.104 00:06:00.148 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-05 23:17:47.101 00:06:00.153 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-05 23:22:59.716 00:00:11.811 TCP 12.102.0.1:48274 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:23:21.296 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 23:23:21.187 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 23:23:21.313 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 23:23:21.125 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 23:23:21.389 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 23:23:21.347 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 23:23:21.290 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 23:24:01.570 00:00:11.763 TCP 12.102.0.1:38350 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:25:03.371 00:00:11.811 TCP 12.102.0.1:33068 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:26:05.227 00:00:11.812 TCP 12.102.0.1:59302 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:27:07.082 00:00:11.798 TCP 12.102.0.1:42900 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:28:21.330 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 23:28:21.374 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 23:28:21.299 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 23:28:21.384 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 23:28:21.519 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 23:28:21.354 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 23:28:08.919 00:00:11.816 TCP 12.102.0.1:53918 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:28:21.307 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 23:29:10.775 00:00:11.760 TCP 12.102.0.1:38984 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:24:47.105 00:06:00.146 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-05 23:24:47.103 00:06:00.151 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-05 23:30:12.572 00:00:11.801 TCP 12.102.0.1:34766 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:31:14.411 00:00:11.800 TCP 12.102.0.1:38142 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:32:16.258 00:00:11.855 TCP 12.102.0.1:42982 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:33:21.303 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 23:33:21.643 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 23:33:21.449 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 23:33:21.445 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 23:33:21.530 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 23:33:21.539 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 23:33:21.280 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 23:33:18.153 00:00:11.772 TCP 12.102.0.1:41122 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:34:19.963 00:00:11.805 TCP 12.102.0.1:43658 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:35:21.810 00:00:11.813 TCP 12.102.0.1:51320 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:36:23.651 00:00:11.795 TCP 12.102.0.1:46394 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:31:47.104 00:06:00.151 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-05 23:31:47.107 00:06:00.146 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-05 23:37:25.485 00:00:11.807 TCP 12.102.0.1:56122 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:38:21.767 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 23:38:21.560 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 23:38:21.686 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 23:38:21.887 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 23:38:21.628 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 23:38:21.856 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 23:38:21.745 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 23:38:27.329 00:00:11.799 TCP 12.102.0.1:48590 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:39:29.168 00:00:11.806 TCP 12.102.0.1:52302 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:40:31.021 00:00:11.798 TCP 12.102.0.1:56924 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:41:32.858 00:00:11.847 TCP 12.102.0.1:33824 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:42:34.746 00:00:11.758 TCP 12.102.0.1:44142 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:43:21.669 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 23:43:21.710 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 23:43:21.634 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 23:43:21.771 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 23:43:21.726 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 23:43:21.494 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 23:43:21.646 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 23:38:47.105 00:06:00.152 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-05 23:43:36.552 00:00:11.761 TCP 12.102.0.1:46070 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:38:47.108 00:06:00.146 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-05 23:44:38.350 00:00:11.802 TCP 12.102.0.1:52058 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:45:40.183 00:00:11.806 TCP 12.102.0.1:58996 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:46:42.039 00:00:11.808 TCP 12.102.0.1:55278 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:47:43.885 00:00:11.766 TCP 12.102.0.1:41116 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:48:21.560 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 23:48:21.759 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 23:48:21.905 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 23:48:21.749 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 23:48:21.751 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 23:48:21.725 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 23:48:21.536 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 23:48:45.681 00:00:11.851 TCP 12.102.0.1:42238 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:49:47.568 00:00:11.810 TCP 12.102.0.1:59902 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:45:47.106 00:06:00.154 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-05 23:45:47.109 00:06:00.148 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-05 23:50:49.413 00:00:11.761 TCP 12.102.0.1:55928 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:51:51.214 00:00:11.815 TCP 12.102.0.1:53596 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:52:53.080 00:00:11.816 TCP 12.102.0.1:56522 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:53:21.896 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 23:53:21.917 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 23:53:21.883 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 23:53:21.705 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 23:53:21.878 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 23:53:21.838 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 23:53:22.127 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 23:53:54.935 00:00:11.812 TCP 12.102.0.1:50390 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:54:56.787 00:00:11.800 TCP 12.102.0.1:54366 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:55:58.634 00:00:11.762 TCP 12.102.0.1:39714 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:57:00.434 00:00:11.810 TCP 12.102.0.1:47190 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:52:47.111 00:06:00.148 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-05 23:52:47.108 00:06:00.153 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-05 23:58:21.851 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 23:58:02.294 00:00:11.798 TCP 12.102.0.1:60266 -> 1.101.0.1:3000 11 1507 1 2025-10-05 23:58:21.874 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 23:58:21.913 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 23:58:21.924 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 23:58:21.798 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 23:58:21.879 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 23:58:22.111 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 Summary: total flows: 160, total bytes: 124072, total packets: 1142, avg bps: 266, avg pps: 0, avg bpp: 108 Time window: 2025-10-05 22:56:47 - 2025-10-05 23:58:47 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0048s User: 0.0000s Wall: 0.0017s flows/second: 96268.6 Runtime: 0.0017s