Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-20 21:53:54.336 00:06:00.153 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 21:58:56.171 00:00:11.762 TCP 12.102.0.1:56838 -> 1.101.0.1:3000 11 1507 1 2025-10-20 21:54:54.341 00:06:00.148 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 21:59:57.967 00:00:11.830 TCP 12.102.0.1:34240 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:00:33.367 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 22:00:33.117 00:00:00.020 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 22:00:33.351 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 22:00:33.336 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 22:00:33.556 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 22:00:33.442 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 22:00:33.344 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 22:00:59.838 00:00:11.808 TCP 12.102.0.1:38216 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:02:01.684 00:00:11.805 TCP 12.102.0.1:36838 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:03:03.531 00:00:11.804 TCP 12.102.0.1:41166 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:04:05.378 00:00:11.765 TCP 12.102.0.1:36658 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:05:07.187 00:00:11.776 TCP 12.102.0.1:53876 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:05:33.191 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 22:05:32.960 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 22:05:32.802 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 22:05:33.197 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 22:05:32.975 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 22:05:33.038 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 22:05:33.168 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 22:00:54.341 00:06:00.152 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 22:06:09.004 00:00:11.803 TCP 12.102.0.1:42280 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:01:54.342 00:06:00.148 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 22:07:10.847 00:00:11.808 TCP 12.102.0.1:54798 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:08:12.694 00:00:11.801 TCP 12.102.0.1:49046 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:09:14.540 00:00:11.853 TCP 12.102.0.1:54406 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:10:16.430 00:00:12.067 TCP 12.102.0.1:39444 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:10:33.544 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 22:10:33.567 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 22:10:33.725 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 22:10:33.796 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 22:10:33.649 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 22:10:33.544 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 22:10:33.726 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 22:11:18.537 00:00:11.760 TCP 12.102.0.1:38866 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:12:20.335 00:00:11.856 TCP 12.102.0.1:55520 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:07:54.340 00:06:00.157 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 22:13:22.228 00:00:11.851 TCP 12.102.0.1:40606 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:08:54.343 00:06:00.151 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 22:14:24.130 00:00:11.851 TCP 12.102.0.1:58074 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:15:33.207 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 22:15:33.203 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 22:15:33.067 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 22:15:33.214 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 22:15:33.202 00:00:00.050 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 22:15:33.079 00:00:00.047 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 22:15:33.185 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 22:15:26.033 00:00:11.801 TCP 12.102.0.1:44574 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:16:27.873 00:00:11.809 TCP 12.102.0.1:55126 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:17:29.719 00:00:11.760 TCP 12.102.0.1:45746 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:18:31.519 00:00:11.797 TCP 12.102.0.1:43132 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:19:33.380 00:00:11.805 TCP 12.102.0.1:48550 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:14:54.345 00:06:00.155 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 22:20:33.688 00:00:00.026 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 22:20:33.711 00:00:00.025 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 22:20:33.171 00:00:00.057 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 22:20:34.174 00:00:00.039 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 22:20:34.140 00:00:00.041 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 22:20:33.377 00:00:00.028 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 22:20:34.217 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 22:20:35.225 00:00:11.761 TCP 12.102.0.1:40094 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:15:54.346 00:06:00.150 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 22:21:37.038 00:00:11.795 TCP 12.102.0.1:51522 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:22:38.865 00:00:11.818 TCP 12.102.0.1:49708 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:23:40.719 00:00:11.798 TCP 12.102.0.1:54202 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:24:42.556 00:00:11.810 TCP 12.102.0.1:38726 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:25:33.366 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 22:25:33.488 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 22:25:33.535 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 22:25:33.305 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 22:25:33.483 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 22:25:33.154 00:00:00.034 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 22:25:33.343 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 22:25:44.402 00:00:11.815 TCP 12.102.0.1:33564 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:21:54.348 00:06:00.152 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 22:26:46.248 00:00:11.808 TCP 12.102.0.1:51462 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:22:54.355 00:06:00.142 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 22:27:48.096 00:00:11.801 TCP 12.102.0.1:35844 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:28:49.936 00:00:11.818 TCP 12.102.0.1:52078 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:29:51.792 00:00:11.767 TCP 12.102.0.1:41358 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:30:33.344 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 22:30:33.545 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 22:30:33.405 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 22:30:33.519 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 22:30:33.623 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 22:30:33.526 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 22:30:33.321 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 22:30:53.600 00:00:11.799 TCP 12.102.0.1:33188 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:31:55.433 00:00:11.798 TCP 12.102.0.1:39762 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:32:57.269 00:00:11.799 TCP 12.102.0.1:44796 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:28:54.347 00:06:00.156 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 22:33:59.108 00:00:11.812 TCP 12.102.0.1:55368 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:29:54.350 00:06:00.151 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 22:35:00.950 00:00:11.758 TCP 12.102.0.1:46448 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:35:33.532 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 22:35:33.554 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 22:35:33.464 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 22:35:33.606 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 22:35:33.490 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 22:35:33.842 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 22:35:33.713 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 22:36:02.746 00:00:12.786 TCP 12.102.0.1:52132 -> 1.101.0.1:3000 13 1611 1 2025-10-20 22:37:05.572 00:00:11.798 TCP 12.102.0.1:38040 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:38:07.418 00:00:11.753 TCP 12.102.0.1:51496 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:39:09.205 00:00:11.969 TCP 12.102.0.1:47564 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:40:11.213 00:00:11.800 TCP 12.102.0.1:53074 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:40:33.452 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 22:40:33.475 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 22:40:33.864 00:00:00.020 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 22:40:33.837 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 22:40:33.685 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 22:40:33.855 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 22:40:33.586 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 22:35:54.350 00:06:00.155 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 22:41:13.076 00:00:11.780 TCP 12.102.0.1:43148 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:36:54.353 00:06:00.150 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 22:42:14.896 00:00:11.812 TCP 12.102.0.1:47068 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:43:16.745 00:00:11.805 TCP 12.102.0.1:52034 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:44:18.596 00:00:11.765 TCP 12.102.0.1:50930 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:45:20.402 00:00:12.523 TCP 12.102.0.1:57290 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:45:34.134 00:00:00.025 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 22:45:34.215 00:00:00.038 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 22:45:34.369 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 22:45:34.091 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 22:45:33.753 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 22:45:34.243 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 22:45:34.112 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 22:46:22.960 00:00:11.805 TCP 12.102.0.1:60356 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:47:24.806 00:00:11.811 TCP 12.102.0.1:35494 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:42:54.350 00:06:00.155 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 22:48:26.657 00:00:11.814 TCP 12.102.0.1:40012 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:43:54.355 00:06:00.149 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 22:49:28.506 00:00:20.455 TCP 12.102.0.1:42742 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:50:33.922 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 22:50:33.945 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 22:50:33.892 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 22:50:33.882 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 22:50:33.985 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 22:50:33.891 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 22:50:33.742 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 22:50:39.003 00:00:11.809 TCP 12.102.0.1:42646 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:51:40.874 00:00:11.772 TCP 12.102.0.1:34378 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:52:42.697 00:00:11.792 TCP 12.102.0.1:59946 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:53:44.526 00:00:11.768 TCP 12.102.0.1:47636 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:49:54.354 00:06:00.159 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 22:54:46.363 00:00:11.857 TCP 12.102.0.1:44470 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:55:33.834 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 22:55:34.064 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 22:55:33.971 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 22:55:33.947 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 22:55:34.034 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 22:55:33.836 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 22:55:33.812 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 22:50:54.356 00:06:00.154 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 22:55:48.238 00:00:11.765 TCP 12.102.0.1:45116 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:56:50.072 00:00:11.811 TCP 12.102.0.1:45564 -> 1.101.0.1:3000 11 1507 1 2025-10-20 22:57:51.921 00:00:11.832 TCP 12.102.0.1:56902 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 160, total bytes: 124176, total packets: 1144, avg bps: 258, avg pps: 0, avg bpp: 108 Time window: 2025-10-20 21:53:54 - 2025-10-20 22:58:03 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0029s User: 0.0029s Wall: 0.0026s flows/second: 61091.4 Runtime: 0.0026s