Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-08 15:59:09.079 00:00:11.797 TCP 12.102.0.1:43866 -> 1.101.0.1:3000 11 1507 1 2025-10-08 15:59:38.936 00:00:00.025 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-08 15:59:38.958 00:00:00.025 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-08 15:59:39.042 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 15:59:39.138 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-08 15:59:39.206 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-08 15:59:39.087 00:00:00.020 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-08 15:59:39.033 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-08 16:00:10.924 00:00:11.816 TCP 12.102.0.1:44972 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:01:12.779 00:00:11.806 TCP 12.102.0.1:35962 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:02:14.622 00:00:11.814 TCP 12.102.0.1:45132 -> 1.101.0.1:3000 11 1507 1 2025-10-08 15:57:48.487 00:06:00.148 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-08 16:03:16.471 00:00:11.774 TCP 12.102.0.1:50896 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:04:18.287 00:00:12.232 TCP 12.102.0.1:40280 -> 1.101.0.1:3000 15 1926 1 2025-10-08 16:04:39.240 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-08 16:04:39.263 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-08 16:04:39.326 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 16:04:39.221 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-08 16:04:39.238 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-08 16:04:39.449 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-08 16:04:39.207 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-08 16:05:20.557 00:00:12.006 TCP 12.102.0.1:60828 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:00:48.484 00:06:00.155 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-08 16:06:22.601 00:00:11.804 TCP 12.102.0.1:54278 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:07:24.445 00:00:11.820 TCP 12.102.0.1:38276 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:08:26.303 00:00:11.761 TCP 12.102.0.1:40476 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:09:39.237 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-08 16:09:28.104 00:00:11.797 TCP 12.102.0.1:38694 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:09:39.259 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-08 16:09:39.187 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 16:09:39.312 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-08 16:09:39.062 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-08 16:09:39.104 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-08 16:09:38.894 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-08 16:04:48.488 00:06:00.151 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-08 16:10:29.942 00:00:11.808 TCP 12.102.0.1:39856 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:11:31.789 00:00:11.802 TCP 12.102.0.1:44652 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:12:33.625 00:00:11.756 TCP 12.102.0.1:60752 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:07:48.485 00:06:00.156 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-08 16:13:35.423 00:00:11.798 TCP 12.102.0.1:36494 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:14:39.224 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-08 16:14:39.418 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 16:14:39.352 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-08 16:14:39.233 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-08 16:14:39.213 00:00:00.047 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-08 16:14:39.283 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-08 16:14:39.201 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-08 16:14:37.265 00:00:11.800 TCP 12.102.0.1:45878 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:15:39.104 00:00:11.763 TCP 12.102.0.1:36872 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:11:48.492 00:06:00.147 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-08 16:16:40.902 00:00:11.799 TCP 12.102.0.1:52552 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:17:42.737 00:00:11.827 TCP 12.102.0.1:59764 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:18:44.609 00:00:12.014 TCP 12.102.0.1:46482 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:19:39.252 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-08 16:19:39.165 00:00:00.032 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 16:19:39.485 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-08 16:19:39.456 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-08 16:19:39.349 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-08 16:19:39.355 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-08 16:19:39.229 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-08 16:14:48.488 00:06:00.156 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-08 16:19:46.671 00:00:11.807 TCP 12.102.0.1:52448 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:20:48.516 00:00:11.801 TCP 12.102.0.1:39252 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:21:50.353 00:00:11.831 TCP 12.102.0.1:43408 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:22:52.225 00:00:11.805 TCP 12.102.0.1:58068 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:18:48.491 00:06:00.150 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-08 16:23:54.083 00:00:11.825 TCP 12.102.0.1:55186 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:24:39.215 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-08 16:24:39.622 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 16:24:39.673 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-08 16:24:39.529 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-08 16:24:39.630 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-08 16:24:39.491 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-08 16:24:39.192 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-08 16:24:55.944 00:00:11.805 TCP 12.102.0.1:33292 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:25:57.792 00:00:11.767 TCP 12.102.0.1:37006 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:21:48.490 00:06:00.154 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-08 16:26:59.596 00:00:11.831 TCP 12.102.0.1:55124 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:28:01.467 00:00:11.805 TCP 12.102.0.1:46546 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:29:03.319 00:00:11.816 TCP 12.102.0.1:43776 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:29:39.623 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-08 16:29:39.647 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-08 16:29:39.392 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 16:29:39.494 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-08 16:29:39.638 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-08 16:29:39.691 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-08 16:29:39.363 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-08 16:30:05.178 00:00:11.765 TCP 12.102.0.1:48044 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:25:48.493 00:06:00.149 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-08 16:31:06.977 00:00:11.804 TCP 12.102.0.1:44106 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:32:08.828 00:00:11.760 TCP 12.102.0.1:51298 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:33:10.623 00:00:11.782 TCP 12.102.0.1:56558 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:28:48.491 00:06:00.154 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-08 16:34:12.442 00:00:11.819 TCP 12.102.0.1:58334 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:34:39.814 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-08 16:34:40.048 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 16:34:39.951 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-08 16:34:39.858 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-08 16:34:39.881 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-08 16:34:39.740 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-08 16:34:39.792 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-08 16:35:14.308 00:00:12.286 TCP 12.102.0.1:37268 -> 1.101.0.1:3000 15 1926 1 2025-10-08 16:36:16.657 00:00:11.821 TCP 12.102.0.1:50698 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:37:18.512 00:00:11.813 TCP 12.102.0.1:54448 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:32:48.493 00:06:00.150 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-08 16:38:20.363 00:00:11.820 TCP 12.102.0.1:39286 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:39:22.217 00:00:11.805 TCP 12.102.0.1:52110 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:39:39.787 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-08 16:39:39.809 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-08 16:39:39.857 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 16:39:39.704 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-08 16:39:39.755 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-08 16:39:39.937 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-08 16:39:39.946 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-08 16:40:24.076 00:00:11.804 TCP 12.102.0.1:46606 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:35:48.493 00:06:00.154 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-08 16:41:25.912 00:00:11.781 TCP 12.102.0.1:51512 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:42:27.737 00:00:11.803 TCP 12.102.0.1:35184 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:43:29.575 00:00:11.802 TCP 12.102.0.1:35330 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:44:39.965 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-08 16:44:39.904 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 16:44:39.966 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-08 16:44:39.857 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-08 16:44:39.825 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-08 16:44:39.831 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-08 16:44:39.942 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-08 16:44:31.420 00:00:11.826 TCP 12.102.0.1:51936 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:39:48.496 00:06:00.149 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-08 16:45:33.281 00:00:11.798 TCP 12.102.0.1:39886 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:46:35.113 00:00:11.802 TCP 12.102.0.1:33182 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:42:48.498 00:06:00.149 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-08 16:47:36.958 00:00:11.818 TCP 12.102.0.1:39824 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:48:38.815 00:00:11.813 TCP 12.102.0.1:42834 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:49:40.165 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-08 16:49:40.216 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 16:49:40.121 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-08 16:49:40.192 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-08 16:49:40.005 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-08 16:49:39.886 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-08 16:49:40.142 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-08 16:49:40.667 00:00:11.808 TCP 12.102.0.1:53682 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:50:42.516 00:00:11.801 TCP 12.102.0.1:50740 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:46:48.502 00:06:00.144 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-08 16:51:44.359 00:00:11.812 TCP 12.102.0.1:50110 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:52:46.209 00:00:11.801 TCP 12.102.0.1:51104 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:53:48.070 00:00:11.761 TCP 12.102.0.1:49202 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:54:40.311 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-08 16:54:40.089 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-08 16:54:40.435 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-08 16:54:40.341 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-08 16:54:40.508 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-08 16:54:40.117 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-08 16:54:40.288 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-08 16:49:48.500 00:06:00.149 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-08 16:54:49.872 00:00:11.803 TCP 12.102.0.1:55782 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:55:51.714 00:00:11.765 TCP 12.102.0.1:52568 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:56:53.517 00:00:11.759 TCP 12.102.0.1:37838 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:57:55.313 00:00:11.805 TCP 12.102.0.1:60086 -> 1.101.0.1:3000 11 1507 1 2025-10-08 16:53:48.504 00:06:00.144 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 Summary: total flows: 159, total bytes: 124049, total packets: 1136, avg bps: 266, avg pps: 0, avg bpp: 109 Time window: 2025-10-08 15:57:48 - 2025-10-08 16:59:48 Total flows processed: 159, passed: 159, Blocks skipped: 0, Bytes read: 16600 Sys: 0.0037s User: 0.0012s Wall: 0.0030s flows/second: 52544.5 Runtime: 0.0031s