Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-17 08:58:58.812 00:00:11.805 TCP 12.102.0.1:38206 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:54:52.625 00:06:00.022 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-17 09:00:00.653 00:00:11.819 TCP 12.102.0.1:53214 -> 1.101.0.1:3000 11 1507 1 2025-10-17 08:55:52.643 00:06:00.002 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-10-17 09:01:02.512 00:00:11.821 TCP 12.102.0.1:43810 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:02:04.367 00:00:11.821 TCP 12.102.0.1:55046 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:03:06.223 00:00:12.031 TCP 12.102.0.1:53976 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:03:50.508 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-17 09:03:50.554 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 09:03:50.715 00:00:00.026 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-17 09:03:50.541 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-17 09:03:50.476 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-17 09:03:50.649 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-17 09:03:50.485 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-17 09:04:08.302 00:00:11.806 TCP 12.102.0.1:50834 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:05:10.142 00:00:11.769 TCP 12.102.0.1:44184 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:06:11.951 00:00:11.801 TCP 12.102.0.1:49114 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:01:52.628 00:06:00.020 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-17 09:07:13.788 00:00:11.804 TCP 12.102.0.1:50698 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:02:52.644 00:06:00.002 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-10-17 09:08:15.627 00:00:11.797 TCP 12.102.0.1:39982 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:08:50.731 00:00:00.026 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-17 09:08:50.747 00:00:00.029 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 09:08:50.890 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-17 09:08:50.786 00:00:00.020 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-17 09:08:50.948 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-17 09:08:50.730 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-17 09:08:50.709 00:00:00.026 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-17 09:09:17.468 00:00:11.807 TCP 12.102.0.1:36270 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:10:19.314 00:00:11.802 TCP 12.102.0.1:52792 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:11:21.155 00:00:12.201 TCP 12.102.0.1:56640 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:12:23.396 00:00:11.804 TCP 12.102.0.1:56328 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:13:25.238 00:00:11.807 TCP 12.102.0.1:41442 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:13:50.811 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-17 09:13:50.833 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-17 09:13:51.047 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 09:13:50.807 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-17 09:13:50.990 00:00:00.051 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-17 09:13:50.956 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-17 09:13:50.918 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-17 09:08:52.630 00:06:00.021 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-17 09:14:27.081 00:00:11.882 TCP 12.102.0.1:36560 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:09:52.649 00:06:00.001 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-10-17 09:15:28.998 00:00:11.804 TCP 12.102.0.1:51422 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:16:30.839 00:00:11.796 TCP 12.102.0.1:55988 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:17:32.684 00:00:11.757 TCP 12.102.0.1:60302 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:18:34.483 00:00:12.022 TCP 12.102.0.1:46866 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:18:50.786 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-17 09:18:50.809 00:00:00.020 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-17 09:18:50.819 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 09:18:50.831 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-17 09:18:50.994 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-17 09:18:50.919 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-17 09:18:50.953 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-17 09:19:36.539 00:00:11.805 TCP 12.102.0.1:51922 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:20:38.382 00:00:11.809 TCP 12.102.0.1:43264 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:15:52.631 00:06:00.022 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-17 09:16:52.648 00:06:00.002 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-10-17 09:21:40.245 00:00:11.763 TCP 12.102.0.1:57306 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:22:42.073 00:00:11.755 TCP 12.102.0.1:49616 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:23:51.011 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-17 09:23:50.882 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 09:23:51.132 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-17 09:23:50.872 00:00:00.030 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-17 09:23:50.990 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-17 09:23:51.025 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-17 09:23:50.988 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-17 09:23:43.863 00:00:11.807 TCP 12.102.0.1:56660 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:24:45.703 00:00:11.813 TCP 12.102.0.1:51732 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:25:47.562 00:00:11.804 TCP 12.102.0.1:47762 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:26:49.406 00:00:12.206 TCP 12.102.0.1:52086 -> 1.101.0.1:3000 15 1926 1 2025-10-17 09:22:52.633 00:06:00.025 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-17 09:27:51.648 00:00:11.825 TCP 12.102.0.1:53228 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:28:51.265 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-17 09:28:51.287 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-17 09:28:51.461 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 09:28:51.584 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-17 09:28:51.230 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-17 09:28:51.278 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-17 09:28:51.288 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-17 09:23:52.650 00:06:00.005 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-10-17 09:28:53.493 00:00:11.800 TCP 12.102.0.1:38206 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:29:55.332 00:00:11.805 TCP 12.102.0.1:50838 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:30:57.177 00:00:11.811 TCP 12.102.0.1:56830 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:31:59.030 00:00:11.802 TCP 12.102.0.1:54816 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:33:00.868 00:00:11.811 TCP 12.102.0.1:47310 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:33:50.882 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-17 09:33:50.904 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-17 09:33:51.271 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 09:33:51.459 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-17 09:33:51.320 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-17 09:33:51.417 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-17 09:33:51.357 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-17 09:34:02.716 00:00:11.822 TCP 12.102.0.1:46248 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:29:52.635 00:06:00.025 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-17 09:35:04.574 00:00:11.806 TCP 12.102.0.1:51202 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:30:52.655 00:06:00.002 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-10-17 09:36:06.414 00:00:11.759 TCP 12.102.0.1:45536 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:37:08.224 00:00:11.793 TCP 12.102.0.1:45850 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:38:10.091 00:00:11.803 TCP 12.102.0.1:57458 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:38:51.280 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-17 09:38:51.363 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 09:38:51.471 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-17 09:38:51.374 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-17 09:38:51.539 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-17 09:38:51.178 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-17 09:38:51.258 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-17 09:39:11.933 00:00:11.816 TCP 12.102.0.1:46806 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:40:13.785 00:00:11.802 TCP 12.102.0.1:44866 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:41:15.626 00:00:11.757 TCP 12.102.0.1:48020 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:36:52.637 00:06:00.025 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-17 09:42:17.421 00:00:11.761 TCP 12.102.0.1:54320 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:37:52.658 00:06:00.001 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-10-17 09:43:19.218 00:00:11.812 TCP 12.102.0.1:50360 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:43:51.354 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-17 09:43:51.637 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 09:43:51.613 00:00:00.027 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-17 09:43:51.452 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-17 09:43:51.278 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-17 09:43:51.598 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-17 09:43:51.332 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-17 09:44:21.080 00:00:11.804 TCP 12.102.0.1:40810 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:45:22.921 00:00:11.823 TCP 12.102.0.1:57838 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:46:24.790 00:00:11.805 TCP 12.102.0.1:49770 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:47:26.642 00:00:12.270 TCP 12.102.0.1:34544 -> 1.101.0.1:3000 15 1926 1 2025-10-17 09:48:28.947 00:00:11.803 TCP 12.102.0.1:35076 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:48:51.352 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-17 09:48:51.743 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 09:48:51.475 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-17 09:48:51.675 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-17 09:48:51.588 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-17 09:48:51.469 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-17 09:48:51.330 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-17 09:43:52.640 00:06:00.023 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-17 09:49:30.788 00:00:11.800 TCP 12.102.0.1:39306 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:44:52.659 00:06:00.001 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-10-17 09:50:32.630 00:00:11.769 TCP 12.102.0.1:34182 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:51:34.450 00:00:11.811 TCP 12.102.0.1:33558 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:52:36.300 00:00:11.832 TCP 12.102.0.1:34388 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:53:38.144 00:00:11.778 TCP 12.102.0.1:47444 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:53:52.231 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-17 09:53:52.504 00:00:00.033 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-17 09:53:52.446 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-17 09:53:52.479 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-17 09:53:52.509 00:00:00.028 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-17 09:53:52.402 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-17 09:53:52.207 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-17 09:54:39.964 00:00:11.859 TCP 12.102.0.1:41134 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:55:41.871 00:00:11.811 TCP 12.102.0.1:48916 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:50:52.641 00:06:00.025 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-17 09:56:43.718 00:00:11.760 TCP 12.102.0.1:36318 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:51:52.659 00:06:00.005 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-10-17 09:57:45.525 00:00:11.807 TCP 12.102.0.1:34580 -> 1.101.0.1:3000 11 1507 1 2025-10-17 09:58:51.793 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 Summary: total flows: 154, total bytes: 120122, total packets: 1069, avg bps: 250, avg pps: 0, avg bpp: 112 Time window: 2025-10-17 08:54:52 - 2025-10-17 09:58:51 Total flows processed: 154, passed: 154, Blocks skipped: 0, Bytes read: 16080 Sys: 0.0035s User: 0.0023s Wall: 0.0031s flows/second: 48918.7 Runtime: 0.0032s