Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-11 17:58:50.452 00:00:11.811 TCP 12.102.0.1:46088 -> 1.101.0.1:3000 11 1507 1 2025-10-11 17:59:52.308 00:00:12.259 TCP 12.102.0.1:51192 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:00:54.606 00:00:11.807 TCP 12.102.0.1:50030 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:01:08.007 00:00:00.020 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-11 18:01:08.030 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-11 18:01:07.814 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-11 18:01:08.237 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-11 18:01:07.856 00:00:00.025 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-11 18:01:07.989 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-11 18:01:08.049 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-11 17:56:49.998 00:06:00.000 TCP 179.10.12.10:179 -> 179.10.12.12:58070 7 497 1 2025-10-11 17:57:49.988 00:05:00.014 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-10-11 18:01:56.453 00:00:11.809 TCP 12.102.0.1:45384 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:02:58.298 00:00:11.811 TCP 12.102.0.1:54896 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:04:00.146 00:00:11.809 TCP 12.102.0.1:52768 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:05:01.992 00:00:11.809 TCP 12.102.0.1:56216 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:06:08.344 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-11 18:06:08.367 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-11 18:06:08.127 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-11 18:06:08.132 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-11 18:06:08.371 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-11 18:06:08.119 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-11 18:06:08.137 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-11 18:06:03.838 00:00:11.815 TCP 12.102.0.1:34052 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:07:05.681 00:00:11.758 TCP 12.102.0.1:53476 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:03:49.989 00:05:00.015 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-10-11 18:03:49.999 00:05:00.002 TCP 179.10.12.10:179 -> 179.10.12.12:58070 6 426 1 2025-10-11 18:08:07.475 00:00:11.816 TCP 12.102.0.1:56006 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:09:09.328 00:00:11.804 TCP 12.102.0.1:49624 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:10:11.174 00:00:11.807 TCP 12.102.0.1:41924 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:11:07.936 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-11 18:11:08.312 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-11 18:11:08.369 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-11 18:11:08.201 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-11 18:11:08.369 00:00:00.020 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-11 18:11:08.175 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-11 18:11:07.911 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-11 18:11:13.027 00:00:11.804 TCP 12.102.0.1:45096 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:12:14.867 00:00:11.821 TCP 12.102.0.1:33806 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:13:16.729 00:00:11.803 TCP 12.102.0.1:51914 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:09:49.989 00:05:00.036 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-10-11 18:14:18.575 00:00:11.810 TCP 12.102.0.1:40652 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:09:50.001 00:06:00.023 TCP 179.10.12.10:179 -> 179.10.12.12:58070 7 497 1 2025-10-11 18:15:20.417 00:00:12.246 TCP 12.102.0.1:50774 -> 1.101.0.1:3000 15 1926 1 2025-10-11 18:16:08.306 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-11 18:16:08.330 00:00:00.029 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-11 18:16:08.424 00:00:00.020 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-11 18:16:08.253 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-11 18:16:08.611 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-11 18:16:08.615 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-11 18:16:08.213 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-11 18:16:22.718 00:00:11.765 TCP 12.102.0.1:44700 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:17:24.521 00:00:11.764 TCP 12.102.0.1:38662 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:18:26.323 00:00:11.802 TCP 12.102.0.1:54972 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:19:28.160 00:00:11.766 TCP 12.102.0.1:45046 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:15:49.991 00:05:00.047 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-10-11 18:20:29.966 00:00:11.804 TCP 12.102.0.1:59118 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:21:08.475 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-11 18:21:08.497 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-11 18:21:08.692 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-11 18:21:08.428 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-11 18:21:08.415 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-11 18:21:08.642 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-11 18:21:08.296 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-11 18:21:31.812 00:00:11.796 TCP 12.102.0.1:37664 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:16:50.027 00:06:00.010 TCP 179.10.12.10:179 -> 179.10.12.12:58070 7 497 1 2025-10-11 18:22:33.646 00:00:11.818 TCP 12.102.0.1:35122 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:23:35.502 00:00:12.371 TCP 12.102.0.1:39474 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:24:37.911 00:00:11.809 TCP 12.102.0.1:35106 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:25:39.759 00:00:11.814 TCP 12.102.0.1:42394 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:21:49.994 00:05:00.047 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-10-11 18:26:08.496 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-11 18:26:08.434 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-11 18:26:08.698 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-11 18:26:08.658 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-11 18:26:08.603 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-11 18:26:08.700 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-11 18:26:08.474 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-11 18:26:41.612 00:00:11.799 TCP 12.102.0.1:36754 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:27:43.451 00:00:11.810 TCP 12.102.0.1:48444 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:23:50.037 00:06:00.003 TCP 179.10.12.10:179 -> 179.10.12.12:58070 10 653 1 2025-10-11 18:28:45.296 00:00:11.802 TCP 12.102.0.1:47366 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:29:47.132 00:00:11.775 TCP 12.102.0.1:60480 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:30:48.927 00:00:11.815 TCP 12.102.0.1:59630 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:31:09.386 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-11 18:31:09.409 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-11 18:31:09.639 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-11 18:31:09.754 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-11 18:31:09.703 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-11 18:31:09.529 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-11 18:31:09.379 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-11 18:27:49.997 00:05:00.046 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-10-11 18:31:50.780 00:00:11.791 TCP 12.102.0.1:53092 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:32:52.610 00:00:11.798 TCP 12.102.0.1:39314 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:33:54.444 00:00:11.808 TCP 12.102.0.1:60086 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:34:56.286 00:00:11.807 TCP 12.102.0.1:41936 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:30:50.001 00:06:00.042 TCP 179.10.12.10:179 -> 179.10.12.12:58070 13 809 1 2025-10-11 18:36:08.653 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-11 18:35:58.130 00:00:11.762 TCP 12.102.0.1:43910 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:36:08.676 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-11 18:36:08.885 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-11 18:36:08.826 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-11 18:36:08.811 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-11 18:36:08.994 00:00:00.025 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-11 18:36:08.835 00:00:00.025 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-11 18:36:59.934 00:00:11.776 TCP 12.102.0.1:43938 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:38:01.750 00:00:11.802 TCP 12.102.0.1:34856 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:33:50.000 00:06:00.048 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-11 18:39:03.597 00:00:11.807 TCP 12.102.0.1:45016 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:40:05.438 00:00:11.814 TCP 12.102.0.1:42784 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:41:08.903 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-11 18:41:08.641 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-11 18:41:08.910 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-11 18:41:08.871 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-11 18:41:08.784 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-11 18:41:08.911 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-11 18:41:08.880 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-11 18:41:07.294 00:00:11.879 TCP 12.102.0.1:37522 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:42:09.226 00:00:11.801 TCP 12.102.0.1:42534 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:37:50.003 00:06:00.044 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-11 18:43:11.083 00:00:12.030 TCP 12.102.0.1:38630 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:44:13.151 00:00:11.814 TCP 12.102.0.1:41598 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:45:15.002 00:00:12.209 TCP 12.102.0.1:37702 -> 1.101.0.1:3000 15 1926 1 2025-10-11 18:40:50.002 00:06:00.050 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-11 18:46:08.953 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-11 18:46:09.059 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-11 18:46:09.000 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-11 18:46:08.970 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-11 18:46:08.992 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-11 18:46:08.956 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-11 18:46:08.931 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-11 18:46:17.263 00:00:11.803 TCP 12.102.0.1:60870 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:47:19.106 00:00:11.802 TCP 12.102.0.1:49144 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:48:20.947 00:00:11.802 TCP 12.102.0.1:36458 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:49:22.794 00:00:11.841 TCP 12.102.0.1:35930 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:44:50.004 00:06:00.045 TCP 179.10.12.10:179 -> 179.10.12.12:58070 10 653 1 2025-10-11 18:50:24.683 00:00:11.809 TCP 12.102.0.1:43892 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:51:09.330 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-11 18:51:09.630 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-11 18:51:09.519 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-11 18:51:09.360 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-11 18:51:09.445 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-11 18:51:09.397 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-11 18:51:09.306 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-11 18:51:26.528 00:00:11.761 TCP 12.102.0.1:51658 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:52:28.325 00:00:11.851 TCP 12.102.0.1:40890 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:47:50.038 00:06:00.016 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-11 18:53:30.226 00:00:11.809 TCP 12.102.0.1:35026 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:54:32.079 00:00:11.805 TCP 12.102.0.1:33464 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:55:33.929 00:00:11.817 TCP 12.102.0.1:57526 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:56:09.125 00:00:00.019 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-11 18:56:09.148 00:00:00.019 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-11 18:56:09.103 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-11 18:56:09.282 00:00:00.029 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-11 18:56:09.107 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-11 18:56:09.121 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-11 18:56:09.313 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-11 18:56:35.785 00:00:11.815 TCP 12.102.0.1:57206 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:51:50.049 00:06:00.002 TCP 179.10.12.10:179 -> 179.10.12.12:58070 7 497 1 2025-10-11 18:57:37.635 00:00:11.803 TCP 12.102.0.1:40026 -> 1.101.0.1:3000 11 1507 1 2025-10-11 18:58:39.475 00:00:11.764 TCP 12.102.0.1:41148 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 161, total bytes: 123320, total packets: 1104, avg bps: 265, avg pps: 0, avg bpp: 111 Time window: 2025-10-11 17:56:49 - 2025-10-11 18:58:51 Total flows processed: 161, passed: 161, Blocks skipped: 0, Bytes read: 16808 Sys: 0.0020s User: 0.0020s Wall: 0.0015s flows/second: 108270.5 Runtime: 0.0015s