Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-23 12:58:58.025 00:00:11.807 TCP 12.102.0.1:53894 -> 1.101.0.1:3000 11 1507 1 2025-10-23 12:54:55.553 00:06:00.092 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-23 12:59:59.873 00:00:11.814 TCP 12.102.0.1:58240 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:01:01.730 00:00:11.764 TCP 12.102.0.1:38898 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:01:48.693 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-23 13:01:48.803 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-23 13:01:48.830 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-23 13:01:48.719 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-23 13:01:48.738 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-23 13:01:48.699 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-23 13:01:48.671 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-23 13:02:03.535 00:00:12.468 TCP 12.102.0.1:38910 -> 1.101.0.1:3000 11 1507 1 2025-10-23 12:57:55.556 00:06:00.087 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-23 13:03:06.064 00:00:11.798 TCP 12.102.0.1:52868 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:04:07.909 00:00:11.824 TCP 12.102.0.1:39540 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:05:09.768 00:00:11.857 TCP 12.102.0.1:42996 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:06:11.663 00:00:11.804 TCP 12.102.0.1:41586 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:06:48.782 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-23 13:06:48.723 00:00:00.025 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-23 13:06:48.835 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-23 13:06:48.818 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-23 13:06:48.930 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-23 13:06:48.896 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-23 13:06:48.759 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-23 13:01:55.555 00:06:00.092 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-23 13:07:13.505 00:00:11.809 TCP 12.102.0.1:37900 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:08:15.355 00:00:11.834 TCP 12.102.0.1:42668 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:09:17.231 00:00:11.802 TCP 12.102.0.1:38968 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:04:55.557 00:06:00.088 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-23 13:10:19.078 00:00:11.802 TCP 12.102.0.1:33234 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:11:20.917 00:00:11.826 TCP 12.102.0.1:56412 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:11:48.853 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-23 13:11:49.096 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-23 13:11:49.081 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-23 13:11:48.876 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-23 13:11:48.792 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-23 13:11:49.019 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-23 13:11:48.832 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-23 13:12:22.781 00:00:11.805 TCP 12.102.0.1:57598 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:13:24.639 00:00:11.804 TCP 12.102.0.1:33608 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:08:55.557 00:06:00.094 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-23 13:14:26.480 00:00:11.802 TCP 12.102.0.1:42684 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:15:28.345 00:00:11.805 TCP 12.102.0.1:56136 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:16:30.199 00:00:11.806 TCP 12.102.0.1:39668 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:16:49.019 00:00:00.020 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-23 13:16:49.040 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-23 13:16:48.867 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-23 13:16:48.801 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-23 13:16:48.966 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-23 13:16:49.093 00:00:00.026 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-23 13:16:49.058 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-23 13:11:55.559 00:06:00.089 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-23 13:17:32.064 00:00:11.759 TCP 12.102.0.1:47976 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:18:33.860 00:00:11.811 TCP 12.102.0.1:49416 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:19:35.706 00:00:12.233 TCP 12.102.0.1:40692 -> 1.101.0.1:3000 15 1926 1 2025-10-23 13:20:37.985 00:00:11.793 TCP 12.102.0.1:48008 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:15:55.558 00:06:00.094 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-23 13:21:49.149 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-23 13:21:49.415 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-23 13:21:49.169 00:00:00.043 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-23 13:21:49.136 00:00:00.045 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-23 13:21:49.169 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-23 13:21:49.230 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-23 13:21:49.125 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-23 13:21:39.817 00:00:18.772 TCP 12.102.0.1:57680 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:22:48.629 00:00:11.852 TCP 12.102.0.1:53116 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:18:55.560 00:06:00.090 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-23 13:23:50.526 00:00:11.808 TCP 12.102.0.1:58010 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:24:52.376 00:00:11.883 TCP 12.102.0.1:52200 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:25:54.287 00:00:11.801 TCP 12.102.0.1:47572 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:26:49.046 00:00:00.044 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-23 13:26:49.069 00:00:00.044 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-23 13:26:49.079 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-23 13:26:49.227 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-23 13:26:49.080 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-23 13:26:49.345 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-23 13:26:49.180 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-23 13:26:56.127 00:00:12.097 TCP 12.102.0.1:58408 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:22:55.559 00:06:00.094 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-23 13:27:58.274 00:00:11.804 TCP 12.102.0.1:52186 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:29:00.112 00:00:11.768 TCP 12.102.0.1:39958 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:30:01.919 00:00:11.827 TCP 12.102.0.1:41782 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:25:55.561 00:06:00.089 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-23 13:31:03.784 00:00:11.805 TCP 12.102.0.1:52196 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:31:49.084 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-23 13:31:49.108 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-23 13:31:49.314 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-23 13:31:49.240 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-23 13:31:49.309 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-23 13:31:49.423 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-23 13:31:49.304 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-23 13:32:05.638 00:00:11.759 TCP 12.102.0.1:48070 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:33:07.430 00:00:11.839 TCP 12.102.0.1:60060 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:34:09.271 00:00:11.812 TCP 12.102.0.1:55340 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:29:55.561 00:06:00.093 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-23 13:35:11.117 00:00:11.813 TCP 12.102.0.1:43580 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:36:12.970 00:00:12.325 TCP 12.102.0.1:55288 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:36:49.147 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-23 13:36:49.169 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-23 13:36:49.272 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-23 13:36:49.559 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-23 13:36:49.457 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-23 13:36:49.499 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-23 13:36:49.469 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-23 13:37:15.331 00:00:11.859 TCP 12.102.0.1:50774 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:32:55.566 00:06:00.086 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-23 13:38:17.231 00:00:11.798 TCP 12.102.0.1:41266 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:39:19.083 00:00:11.798 TCP 12.102.0.1:44108 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:40:20.925 00:00:11.822 TCP 12.102.0.1:45314 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:41:22.795 00:00:11.766 TCP 12.102.0.1:47042 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:41:49.520 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-23 13:41:49.543 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-23 13:41:49.838 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-23 13:41:49.669 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-23 13:41:49.575 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-23 13:41:49.788 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-23 13:41:49.477 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-23 13:36:55.562 00:06:00.095 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-23 13:42:24.598 00:00:11.760 TCP 12.102.0.1:60762 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:43:26.402 00:00:11.805 TCP 12.102.0.1:42806 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:44:28.248 00:00:11.763 TCP 12.102.0.1:47426 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:39:55.566 00:06:00.090 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-23 13:45:30.067 00:00:11.860 TCP 12.102.0.1:60280 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:46:31.976 00:00:11.764 TCP 12.102.0.1:55302 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:46:49.650 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-23 13:46:49.834 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-23 13:46:49.790 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-23 13:46:49.680 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-23 13:46:49.888 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-23 13:46:49.479 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-23 13:46:49.626 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-23 13:47:33.779 00:00:11.802 TCP 12.102.0.1:48826 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:48:35.625 00:00:11.806 TCP 12.102.0.1:52618 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:43:55.563 00:06:00.096 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-23 13:49:37.469 00:00:11.796 TCP 12.102.0.1:52726 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:50:39.308 00:00:11.806 TCP 12.102.0.1:32774 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:51:49.488 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-23 13:51:49.725 00:00:00.020 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-23 13:51:49.760 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-23 13:51:49.775 00:00:00.039 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-23 13:51:49.803 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-23 13:51:49.690 00:00:00.025 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-23 13:51:49.467 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-23 13:51:41.150 00:00:11.803 TCP 12.102.0.1:35670 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:46:55.567 00:06:00.091 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-23 13:52:42.992 00:00:11.804 TCP 12.102.0.1:51278 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:53:44.836 00:00:11.802 TCP 12.102.0.1:54116 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:54:46.671 00:00:11.809 TCP 12.102.0.1:49854 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:50:55.564 00:06:00.096 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-23 13:55:48.543 00:00:11.800 TCP 12.102.0.1:46188 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:56:50.057 00:00:00.034 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-23 13:56:50.198 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-23 13:56:49.912 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-23 13:56:49.992 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-23 13:56:49.973 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-23 13:56:50.071 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-23 13:56:50.035 00:00:00.034 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-23 13:56:50.382 00:00:11.811 TCP 12.102.0.1:55746 -> 1.101.0.1:3000 11 1507 1 2025-10-23 13:57:52.231 00:00:11.759 TCP 12.102.0.1:40814 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 159, total bytes: 123630, total packets: 1132, avg bps: 261, avg pps: 0, avg bpp: 109 Time window: 2025-10-23 12:54:55 - 2025-10-23 13:58:03 Total flows processed: 159, passed: 159, Blocks skipped: 0, Bytes read: 16600 Sys: 0.0039s User: 0.0010s Wall: 0.0020s flows/second: 77935.5 Runtime: 0.0021s