Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-20 19:59:02.523 00:00:11.756 TCP 12.102.0.1:59358 -> 1.101.0.1:3000 11 1507 1 2025-10-20 19:54:54.298 00:06:00.164 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 20:00:04.317 00:00:11.766 TCP 12.102.0.1:57416 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:00:30.626 00:00:00.025 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 20:00:30.381 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 20:00:30.538 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 20:00:30.298 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 20:00:30.202 00:00:00.051 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 20:00:30.513 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 20:00:30.357 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 19:55:54.301 00:06:00.158 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 20:01:06.120 00:00:11.800 TCP 12.102.0.1:34062 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:02:07.960 00:00:11.858 TCP 12.102.0.1:45104 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:03:09.856 00:00:11.811 TCP 12.102.0.1:35972 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:04:11.707 00:00:11.807 TCP 12.102.0.1:59858 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:05:13.553 00:00:11.762 TCP 12.102.0.1:51326 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:05:30.763 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 20:05:30.789 00:00:00.027 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 20:05:30.588 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 20:05:30.679 00:00:00.011 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 20:05:30.775 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 20:05:30.659 00:00:00.020 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 20:05:30.739 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 20:06:15.352 00:00:11.801 TCP 12.102.0.1:58228 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:01:54.301 00:06:00.163 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 20:07:17.193 00:00:11.757 TCP 12.102.0.1:42182 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:02:54.304 00:06:00.158 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 20:08:18.990 00:00:11.771 TCP 12.102.0.1:44564 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:09:20.798 00:00:11.798 TCP 12.102.0.1:34264 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:10:30.508 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 20:10:30.532 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 20:10:30.759 00:00:00.013 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 20:10:30.846 00:00:00.019 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 20:10:30.821 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 20:10:30.529 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 20:10:30.631 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 20:10:22.645 00:00:11.826 TCP 12.102.0.1:34944 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:11:24.512 00:00:11.804 TCP 12.102.0.1:54526 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:12:26.355 00:00:11.880 TCP 12.102.0.1:56740 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:13:28.274 00:00:11.803 TCP 12.102.0.1:44850 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:08:54.303 00:06:00.163 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 20:14:30.115 00:00:18.961 TCP 12.102.0.1:44612 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:09:54.307 00:06:00.159 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 20:15:30.610 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 20:15:30.632 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 20:15:31.032 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 20:15:30.839 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 20:15:30.831 00:00:00.031 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 20:15:31.082 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 20:15:30.811 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 20:15:39.115 00:00:11.761 TCP 12.102.0.1:33430 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:16:40.913 00:00:11.825 TCP 12.102.0.1:33720 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:17:42.776 00:00:11.806 TCP 12.102.0.1:58518 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:18:44.618 00:00:11.812 TCP 12.102.0.1:48618 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:19:46.475 00:00:11.773 TCP 12.102.0.1:50766 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:20:30.934 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 20:20:31.070 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 20:20:30.941 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 20:20:30.876 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 20:20:30.910 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 20:20:30.992 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 20:20:30.911 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 20:15:54.304 00:06:00.164 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 20:20:48.284 00:00:11.804 TCP 12.102.0.1:50156 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:16:54.307 00:06:00.160 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 20:21:50.123 00:00:11.805 TCP 12.102.0.1:34530 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:22:51.959 00:00:11.808 TCP 12.102.0.1:51026 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:23:53.812 00:00:11.828 TCP 12.102.0.1:39482 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:24:55.692 00:00:11.809 TCP 12.102.0.1:60462 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:25:30.476 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 20:25:30.498 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 20:25:30.832 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 20:25:30.544 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 20:25:30.527 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 20:25:30.776 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 20:25:30.644 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 20:25:57.539 00:00:11.804 TCP 12.102.0.1:60008 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:26:59.383 00:00:11.762 TCP 12.102.0.1:45064 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:22:54.307 00:06:00.164 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 20:28:01.182 00:00:11.857 TCP 12.102.0.1:58718 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:23:54.310 00:06:00.159 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 20:29:03.080 00:00:11.803 TCP 12.102.0.1:47212 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:30:04.917 00:00:11.826 TCP 12.102.0.1:56680 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:30:31.134 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 20:30:31.157 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 20:30:31.118 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 20:30:31.027 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 20:30:31.209 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 20:30:30.989 00:00:00.026 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 20:30:30.988 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 20:31:06.778 00:00:11.792 TCP 12.102.0.1:46404 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:32:08.585 00:00:12.357 TCP 12.102.0.1:57860 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:33:10.976 00:00:11.777 TCP 12.102.0.1:59040 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:34:12.787 00:00:11.804 TCP 12.102.0.1:57460 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:29:54.309 00:06:00.162 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 20:35:14.629 00:00:11.852 TCP 12.102.0.1:46270 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:35:30.990 00:00:00.025 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 20:35:30.887 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 20:35:31.176 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 20:35:31.022 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 20:35:31.015 00:00:00.020 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 20:35:31.167 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 20:35:30.865 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 20:30:54.311 00:06:00.157 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 20:36:16.521 00:00:11.764 TCP 12.102.0.1:39650 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:37:18.325 00:00:11.799 TCP 12.102.0.1:45374 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:38:20.168 00:00:11.797 TCP 12.102.0.1:36714 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:39:22.005 00:00:11.800 TCP 12.102.0.1:33192 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:40:31.237 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 20:40:31.272 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 20:40:31.261 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 20:40:31.314 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 20:40:31.110 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 20:40:31.284 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 20:40:31.189 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 20:40:23.849 00:00:11.758 TCP 12.102.0.1:48710 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:41:25.647 00:00:11.798 TCP 12.102.0.1:33080 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:36:54.309 00:06:00.163 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 20:42:27.487 00:00:11.806 TCP 12.102.0.1:41440 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:37:54.312 00:06:00.158 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 20:43:29.334 00:00:11.799 TCP 12.102.0.1:58192 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:44:31.168 00:00:13.800 TCP 12.102.0.1:59850 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:45:31.456 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 20:45:31.478 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 20:45:31.570 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 20:45:31.367 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 20:45:31.418 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 20:45:31.430 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 20:45:31.494 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 20:45:35.012 00:00:11.802 TCP 12.102.0.1:42184 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:46:36.851 00:00:11.806 TCP 12.102.0.1:53786 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:47:38.690 00:00:17.735 TCP 12.102.0.1:41766 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:43:54.312 00:06:00.162 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 20:48:46.465 00:00:11.802 TCP 12.102.0.1:33646 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:44:54.313 00:06:00.158 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 20:49:48.313 00:00:11.816 TCP 12.102.0.1:48146 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:50:31.356 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 20:50:31.377 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 20:50:31.461 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 20:50:31.518 00:00:00.020 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 20:50:31.486 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 20:50:31.394 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 20:50:31.271 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 20:50:50.167 00:00:11.899 TCP 12.102.0.1:41362 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:51:52.103 00:00:11.832 TCP 12.102.0.1:38530 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:52:53.976 00:00:11.822 TCP 12.102.0.1:55210 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:53:55.838 00:00:11.805 TCP 12.102.0.1:55440 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:54:57.682 00:00:11.759 TCP 12.102.0.1:32912 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:55:31.622 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 20:55:31.407 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 20:55:31.742 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 20:55:31.487 00:00:00.013 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 20:55:31.512 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 20:55:31.562 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 20:55:31.600 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 20:50:54.312 00:06:00.162 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 20:55:59.476 00:00:11.785 TCP 12.102.0.1:54692 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:51:54.315 00:06:00.157 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 20:57:01.303 00:00:11.802 TCP 12.102.0.1:43740 -> 1.101.0.1:3000 11 1507 1 2025-10-20 20:58:03.142 00:00:11.858 TCP 12.102.0.1:38688 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 160, total bytes: 124072, total packets: 1142, avg bps: 261, avg pps: 0, avg bpp: 108 Time window: 2025-10-20 19:54:54 - 2025-10-20 20:58:15 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0038s User: 0.0019s Wall: 0.0022s flows/second: 74416.6 Runtime: 0.0022s