Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-28 11:58:59.195 00:00:11.768 TCP 12.102.0.1:54432 -> 1.101.0.1:3000 11 1507 1 2025-10-28 11:59:12.040 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-28 11:59:12.181 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 11:59:12.213 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-28 11:59:12.080 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-28 11:59:12.360 00:00:00.031 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-28 11:59:12.188 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-28 11:59:12.019 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-28 11:54:58.036 00:06:00.098 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-28 12:00:01.006 00:00:11.798 TCP 12.102.0.1:43964 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:01:02.843 00:00:11.810 TCP 12.102.0.1:32988 -> 1.101.0.1:3000 11 1507 1 2025-10-28 11:56:58.039 00:06:00.092 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-28 12:02:04.686 00:00:11.797 TCP 12.102.0.1:44024 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:03:06.520 00:00:11.802 TCP 12.102.0.1:50632 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:04:12.038 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-28 12:04:12.382 00:00:00.020 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 12:04:12.237 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-28 12:04:12.382 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-28 12:04:12.301 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-28 12:04:12.237 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-28 12:04:12.017 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-28 12:04:08.355 00:00:11.815 TCP 12.102.0.1:52538 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:05:10.209 00:00:11.757 TCP 12.102.0.1:37852 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:06:12.004 00:00:11.820 TCP 12.102.0.1:50644 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:01:58.037 00:06:00.097 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-28 12:07:13.865 00:00:11.804 TCP 12.102.0.1:45180 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:08:15.703 00:00:11.806 TCP 12.102.0.1:45528 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:03:58.040 00:06:00.093 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-28 12:09:12.001 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-28 12:09:12.023 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-28 12:09:12.607 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 12:09:12.403 00:00:00.017 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-28 12:09:12.512 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-28 12:09:12.308 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-28 12:09:12.415 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-28 12:09:17.547 00:00:11.801 TCP 12.102.0.1:60566 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:10:19.387 00:00:11.803 TCP 12.102.0.1:45232 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:11:21.228 00:00:12.106 TCP 12.102.0.1:37664 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:12:23.372 00:00:11.816 TCP 12.102.0.1:60360 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:13:25.227 00:00:11.757 TCP 12.102.0.1:40392 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:08:58.040 00:06:00.096 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-28 12:14:12.448 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-28 12:14:12.320 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 12:14:12.591 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-28 12:14:12.460 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-28 12:14:12.482 00:00:00.020 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-28 12:14:12.460 00:00:00.028 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-28 12:14:12.426 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-28 12:14:27.035 00:00:11.801 TCP 12.102.0.1:52742 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:15:28.881 00:00:11.803 TCP 12.102.0.1:59530 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:10:58.042 00:06:00.093 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-28 12:16:30.722 00:00:12.106 TCP 12.102.0.1:46704 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:17:32.868 00:00:12.228 TCP 12.102.0.1:49382 -> 1.101.0.1:3000 15 1926 1 2025-10-28 12:18:35.136 00:00:11.817 TCP 12.102.0.1:44488 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:19:12.506 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-28 12:19:12.422 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 12:19:12.564 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-28 12:19:12.725 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-28 12:19:12.703 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-28 12:19:12.644 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-28 12:19:12.484 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-28 12:19:36.988 00:00:11.809 TCP 12.102.0.1:59808 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:20:38.836 00:00:11.797 TCP 12.102.0.1:34966 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:15:58.044 00:06:00.096 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-28 12:21:40.677 00:00:11.803 TCP 12.102.0.1:57752 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:22:42.519 00:00:11.805 TCP 12.102.0.1:38616 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:17:58.044 00:06:00.092 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-28 12:23:44.362 00:00:11.813 TCP 12.102.0.1:49964 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:24:12.869 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-28 12:24:12.743 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 12:24:12.793 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-28 12:24:12.751 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-28 12:24:12.644 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-28 12:24:12.731 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-28 12:24:12.846 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-28 12:24:46.213 00:00:11.798 TCP 12.102.0.1:50236 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:25:48.076 00:00:11.931 TCP 12.102.0.1:39178 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:26:50.072 00:00:11.763 TCP 12.102.0.1:37706 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:22:58.044 00:06:00.097 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-28 12:27:51.867 00:00:11.768 TCP 12.102.0.1:32816 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:28:53.674 00:00:11.768 TCP 12.102.0.1:44156 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:29:12.894 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-28 12:29:12.912 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 12:29:12.639 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-28 12:29:12.717 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-28 12:29:12.803 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-28 12:29:12.716 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-28 12:29:12.872 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-28 12:24:58.046 00:06:00.092 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-28 12:29:55.487 00:00:11.804 TCP 12.102.0.1:42400 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:30:57.334 00:00:11.804 TCP 12.102.0.1:48716 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:31:59.172 00:00:11.760 TCP 12.102.0.1:44020 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:33:00.971 00:00:11.769 TCP 12.102.0.1:33408 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:34:02.770 00:00:11.799 TCP 12.102.0.1:43226 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:34:12.966 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-28 12:34:12.807 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 12:34:13.057 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-28 12:34:13.022 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-28 12:34:13.144 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-28 12:34:12.989 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-28 12:34:12.945 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-28 12:29:58.046 00:06:00.098 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-28 12:35:04.608 00:00:11.762 TCP 12.102.0.1:44130 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:36:06.407 00:00:11.797 TCP 12.102.0.1:39888 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:31:58.048 00:06:00.094 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-28 12:37:08.242 00:00:11.803 TCP 12.102.0.1:54972 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:38:10.086 00:00:11.756 TCP 12.102.0.1:56476 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:39:12.914 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-28 12:39:13.134 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 12:39:13.414 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-28 12:39:13.284 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-28 12:39:13.393 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-28 12:39:13.060 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-28 12:39:12.891 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-28 12:39:11.884 00:00:11.811 TCP 12.102.0.1:35068 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:40:13.763 00:00:11.801 TCP 12.102.0.1:52928 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:41:15.609 00:00:11.806 TCP 12.102.0.1:39800 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:36:58.048 00:06:00.098 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-28 12:42:17.454 00:00:11.808 TCP 12.102.0.1:55866 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:43:19.352 00:00:13.705 TCP 12.102.0.1:47390 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:38:58.050 00:06:00.093 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-28 12:44:12.966 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-28 12:44:13.181 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 12:44:12.834 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-28 12:44:13.065 00:00:00.026 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-28 12:44:13.292 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-28 12:44:12.869 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-28 12:44:12.943 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-28 12:44:23.098 00:00:11.939 TCP 12.102.0.1:37828 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:45:25.081 00:00:11.805 TCP 12.102.0.1:41238 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:46:26.924 00:00:11.814 TCP 12.102.0.1:56008 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:47:28.775 00:00:11.802 TCP 12.102.0.1:33186 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:48:30.618 00:00:11.762 TCP 12.102.0.1:58902 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:43:58.048 00:06:00.099 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-28 12:49:12.927 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-28 12:49:12.950 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-28 12:49:13.153 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 12:49:13.153 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-28 12:49:13.045 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-28 12:49:13.153 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-28 12:49:13.147 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-28 12:49:32.413 00:00:11.805 TCP 12.102.0.1:38104 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:50:34.251 00:00:11.800 TCP 12.102.0.1:43472 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:45:58.052 00:06:00.093 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-28 12:51:36.092 00:00:11.763 TCP 12.102.0.1:47970 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:52:37.896 00:00:11.803 TCP 12.102.0.1:36568 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:53:39.734 00:00:11.807 TCP 12.102.0.1:51052 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:54:13.324 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-28 12:54:13.218 00:00:00.051 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 12:54:13.295 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-28 12:54:13.358 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-28 12:54:13.244 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-28 12:54:13.093 00:00:00.039 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-28 12:54:13.300 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-28 12:54:41.578 00:00:11.964 TCP 12.102.0.1:55402 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:55:43.579 00:00:11.806 TCP 12.102.0.1:42976 -> 1.101.0.1:3000 11 1507 1 2025-10-28 12:50:58.052 00:06:00.096 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-28 12:56:45.425 00:00:12.244 TCP 12.102.0.1:39132 -> 1.101.0.1:3000 15 1926 1 2025-10-28 12:52:58.057 00:06:00.090 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-28 12:57:47.711 00:00:11.802 TCP 12.102.0.1:47746 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 160, total bytes: 124910, total packets: 1150, avg bps: 260, avg pps: 0, avg bpp: 108 Time window: 2025-10-28 11:54:58 - 2025-10-28 12:58:58 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0052s User: 0.0000s Wall: 0.0029s flows/second: 54493.6 Runtime: 0.0030s