Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-27 09:58:50.573 00:00:11.805 TCP 12.102.0.1:59236 -> 1.101.0.1:3000 11 1507 1 2025-10-27 09:54:57.430 00:06:00.178 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-27 09:54:57.428 00:06:00.183 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-27 09:59:52.416 00:00:11.807 TCP 12.102.0.1:33378 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:00:54.260 00:00:11.801 TCP 12.102.0.1:39268 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:01:56.098 00:00:11.768 TCP 12.102.0.1:41458 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:02:57.901 00:00:11.781 TCP 12.102.0.1:42014 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:03:40.851 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-27 10:03:40.814 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-27 10:03:41.137 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-27 10:03:40.987 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-27 10:03:41.146 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-27 10:03:41.024 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-27 10:03:40.875 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-27 10:03:59.718 00:00:11.811 TCP 12.102.0.1:49768 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:05:01.569 00:00:11.810 TCP 12.102.0.1:57566 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:06:03.422 00:00:11.799 TCP 12.102.0.1:57864 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:01:57.429 00:06:00.186 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-27 10:01:57.431 00:06:00.181 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-27 10:07:05.264 00:00:11.802 TCP 12.102.0.1:58802 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:08:07.109 00:00:11.801 TCP 12.102.0.1:56080 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:08:41.170 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-27 10:08:41.192 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-27 10:08:40.923 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-27 10:08:41.129 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-27 10:08:41.025 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-27 10:08:41.196 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-27 10:08:41.013 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-27 10:09:08.951 00:00:11.888 TCP 12.102.0.1:35076 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:10:10.869 00:00:11.802 TCP 12.102.0.1:54732 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:11:12.710 00:00:11.806 TCP 12.102.0.1:59740 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:12:14.560 00:00:11.760 TCP 12.102.0.1:60054 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:13:16.357 00:00:11.814 TCP 12.102.0.1:48254 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:13:41.359 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-27 10:13:41.104 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-27 10:13:41.414 00:00:00.020 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-27 10:13:41.414 00:00:00.010 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-27 10:13:41.009 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-27 10:13:41.217 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-27 10:13:41.338 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-27 10:08:57.432 00:06:00.184 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-27 10:08:57.435 00:06:00.180 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-27 10:14:18.208 00:00:11.832 TCP 12.102.0.1:54890 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:15:20.083 00:00:11.801 TCP 12.102.0.1:33950 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:16:21.923 00:00:11.828 TCP 12.102.0.1:50064 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:17:23.785 00:00:11.800 TCP 12.102.0.1:41736 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:18:41.035 00:00:00.047 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-27 10:18:25.623 00:00:11.801 TCP 12.102.0.1:59868 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:18:41.057 00:00:00.048 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-27 10:18:41.538 00:00:00.030 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-27 10:18:41.386 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-27 10:18:41.661 00:00:00.020 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-27 10:18:41.180 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-27 10:18:41.486 00:00:00.036 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-27 10:19:27.459 00:00:11.798 TCP 12.102.0.1:41974 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:20:29.292 00:00:11.765 TCP 12.102.0.1:54882 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:15:57.435 00:06:00.183 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-27 10:15:57.432 00:06:00.188 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-27 10:21:31.092 00:00:11.804 TCP 12.102.0.1:41056 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:22:32.930 00:00:11.774 TCP 12.102.0.1:42652 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:23:41.406 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-27 10:23:41.339 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-27 10:23:41.386 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-27 10:23:41.440 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-27 10:23:41.470 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-27 10:23:41.424 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-27 10:23:41.384 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-27 10:23:34.744 00:00:11.797 TCP 12.102.0.1:46788 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:24:36.580 00:00:11.766 TCP 12.102.0.1:38216 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:25:38.383 00:00:11.812 TCP 12.102.0.1:37532 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:26:40.241 00:00:11.809 TCP 12.102.0.1:34994 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:27:42.092 00:00:12.519 TCP 12.102.0.1:55838 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:22:57.436 00:06:00.183 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-27 10:22:57.438 00:06:00.179 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-27 10:28:41.473 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-27 10:28:41.498 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-27 10:28:41.553 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-27 10:28:41.240 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-27 10:28:41.443 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-27 10:28:41.531 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-27 10:28:41.499 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-27 10:28:44.649 00:00:11.819 TCP 12.102.0.1:41782 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:29:46.515 00:00:11.809 TCP 12.102.0.1:32860 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:30:48.363 00:00:11.820 TCP 12.102.0.1:40208 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:31:50.226 00:00:11.800 TCP 12.102.0.1:36372 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:32:52.079 00:00:11.801 TCP 12.102.0.1:60458 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:33:41.689 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-27 10:33:41.711 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-27 10:33:41.921 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-27 10:33:41.835 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-27 10:33:41.827 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-27 10:33:41.832 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-27 10:33:41.876 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-27 10:33:53.921 00:00:11.780 TCP 12.102.0.1:42710 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:29:57.436 00:06:00.184 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-27 10:29:57.439 00:06:00.179 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-27 10:34:55.740 00:00:11.804 TCP 12.102.0.1:36534 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:35:57.580 00:00:11.762 TCP 12.102.0.1:56716 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:36:59.383 00:00:11.817 TCP 12.102.0.1:49732 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:38:01.233 00:00:11.861 TCP 12.102.0.1:58978 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:38:41.932 00:00:00.025 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-27 10:38:41.901 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-27 10:38:41.895 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-27 10:38:42.008 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-27 10:38:42.030 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-27 10:38:41.993 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-27 10:38:42.105 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-27 10:39:03.136 00:00:11.815 TCP 12.102.0.1:59090 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:40:04.985 00:00:11.801 TCP 12.102.0.1:46762 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:41:06.824 00:00:11.805 TCP 12.102.0.1:47232 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:36:57.438 00:06:00.184 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-27 10:36:57.441 00:06:00.178 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-27 10:42:08.674 00:00:11.805 TCP 12.102.0.1:54202 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:43:10.519 00:00:11.800 TCP 12.102.0.1:38792 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:43:41.724 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-27 10:43:41.840 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-27 10:43:41.904 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-27 10:43:42.036 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-27 10:43:42.023 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-27 10:43:42.044 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-27 10:43:42.013 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-27 10:44:12.364 00:00:11.824 TCP 12.102.0.1:34032 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:45:14.222 00:00:11.799 TCP 12.102.0.1:51940 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:46:16.078 00:00:11.798 TCP 12.102.0.1:39744 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:47:17.917 00:00:11.781 TCP 12.102.0.1:38002 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:48:19.738 00:00:11.798 TCP 12.102.0.1:33076 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:48:41.890 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-27 10:48:41.911 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-27 10:48:41.932 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-27 10:48:42.167 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-27 10:48:42.067 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-27 10:48:42.098 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-27 10:48:42.069 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-27 10:43:57.441 00:06:00.180 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-27 10:43:57.439 00:06:00.185 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-27 10:49:21.574 00:00:11.766 TCP 12.102.0.1:40558 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:50:23.378 00:00:11.820 TCP 12.102.0.1:49480 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:51:25.236 00:00:11.802 TCP 12.102.0.1:37056 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:52:27.113 00:00:11.802 TCP 12.102.0.1:40366 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:53:41.958 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-27 10:53:28.953 00:00:11.812 TCP 12.102.0.1:37864 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:53:42.258 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-27 10:53:42.056 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-27 10:53:42.238 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-27 10:53:42.145 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-27 10:53:42.034 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-27 10:53:42.236 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-27 10:54:30.796 00:00:11.807 TCP 12.102.0.1:55104 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:55:32.644 00:00:11.800 TCP 12.102.0.1:42720 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:50:57.440 00:06:00.186 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-27 10:50:57.443 00:06:00.180 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-27 10:56:34.491 00:00:11.764 TCP 12.102.0.1:40822 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:57:36.291 00:00:11.801 TCP 12.102.0.1:47774 -> 1.101.0.1:3000 11 1507 1 2025-10-27 10:58:41.831 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-27 10:58:41.989 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-27 10:58:42.017 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-27 10:58:42.014 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-27 10:58:42.232 00:00:00.036 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-27 10:58:42.271 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-27 10:58:42.127 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-27 10:58:38.129 00:00:11.799 TCP 12.102.0.1:54622 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 161, total bytes: 125579, total packets: 1153, avg bps: 262, avg pps: 0, avg bpp: 108 Time window: 2025-10-27 09:54:57 - 2025-10-27 10:58:49 Total flows processed: 161, passed: 161, Blocks skipped: 0, Bytes read: 16808 Sys: 0.0010s User: 0.0039s Wall: 0.0028s flows/second: 57854.9 Runtime: 0.0028s