Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 17:59:18.359 00:00:11.824 TCP 12.102.0.1:46376 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:54:59.236 00:06:00.001 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-10-30 18:00:16.961 00:00:00.026 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-30 18:00:17.662 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-30 18:00:17.685 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-30 18:00:17.004 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 18:00:17.384 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-30 18:00:17.205 00:00:00.058 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-30 18:00:17.496 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-30 18:00:20.228 00:00:11.802 TCP 12.102.0.1:45426 -> 1.101.0.1:3000 11 1507 1 2025-10-30 17:55:59.218 00:06:00.022 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-30 18:01:22.082 00:00:11.766 TCP 12.102.0.1:57010 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:02:23.886 00:00:11.805 TCP 12.102.0.1:55764 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:03:25.732 00:00:11.803 TCP 12.102.0.1:58840 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:04:27.575 00:00:11.808 TCP 12.102.0.1:58500 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:05:17.341 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-30 18:05:17.365 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-30 18:05:17.344 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 18:05:17.413 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-30 18:05:17.400 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-30 18:05:17.197 00:00:00.051 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-30 18:05:17.173 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-30 18:05:29.419 00:00:11.802 TCP 12.102.0.1:41808 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:06:31.260 00:00:11.795 TCP 12.102.0.1:43110 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:01:59.237 00:06:00.001 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-10-30 18:07:33.091 00:00:11.759 TCP 12.102.0.1:51208 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:02:59.219 00:06:00.023 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-30 18:08:34.890 00:00:11.814 TCP 12.102.0.1:58334 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:09:36.747 00:00:11.800 TCP 12.102.0.1:56578 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:10:17.440 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-30 18:10:17.461 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-30 18:10:17.414 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 18:10:17.552 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-30 18:10:17.358 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-30 18:10:17.438 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-30 18:10:17.320 00:00:00.025 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-30 18:10:38.581 00:00:11.774 TCP 12.102.0.1:47468 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:11:40.393 00:00:11.803 TCP 12.102.0.1:49450 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:12:42.238 00:00:12.107 TCP 12.102.0.1:44724 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:13:44.385 00:00:11.829 TCP 12.102.0.1:37740 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:08:59.238 00:06:00.001 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-10-30 18:14:46.255 00:00:11.809 TCP 12.102.0.1:60480 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:09:59.221 00:06:00.022 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-30 18:15:17.490 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-30 18:15:17.514 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-30 18:15:17.606 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 18:15:17.535 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-30 18:15:17.562 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-30 18:15:17.429 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-30 18:15:17.386 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-30 18:15:48.101 00:00:12.513 TCP 12.102.0.1:54974 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:16:50.652 00:00:11.806 TCP 12.102.0.1:53942 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:17:52.499 00:00:11.805 TCP 12.102.0.1:40320 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:18:54.345 00:00:11.761 TCP 12.102.0.1:55788 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:19:56.144 00:00:11.813 TCP 12.102.0.1:60082 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:20:17.549 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-30 18:20:17.446 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 18:20:17.715 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-30 18:20:17.470 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-30 18:20:17.719 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-30 18:20:17.637 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-30 18:20:17.526 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-30 18:15:59.240 00:06:00.000 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-10-30 18:20:57.994 00:00:11.799 TCP 12.102.0.1:53030 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:16:59.221 00:06:00.023 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-30 18:21:59.834 00:00:11.806 TCP 12.102.0.1:39212 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:23:01.677 00:00:11.812 TCP 12.102.0.1:54084 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:24:03.526 00:00:11.819 TCP 12.102.0.1:40494 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:25:17.678 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-30 18:25:17.645 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 18:25:17.789 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-30 18:25:17.552 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-30 18:25:05.385 00:00:11.805 TCP 12.102.0.1:59772 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:25:17.437 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-30 18:25:17.627 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-30 18:25:17.655 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-30 18:26:07.230 00:00:11.808 TCP 12.102.0.1:42648 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:27:09.081 00:00:11.803 TCP 12.102.0.1:59310 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:22:59.242 00:06:00.001 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-10-30 18:28:10.920 00:00:11.786 TCP 12.102.0.1:57782 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:23:59.225 00:06:00.023 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-30 18:29:12.746 00:00:11.806 TCP 12.102.0.1:44144 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:30:17.727 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-30 18:30:17.711 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 18:30:17.790 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-30 18:30:17.670 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-30 18:30:17.792 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-30 18:30:17.840 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-30 18:30:17.705 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-30 18:30:14.586 00:00:11.806 TCP 12.102.0.1:53668 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:31:16.430 00:00:11.820 TCP 12.102.0.1:38454 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:32:18.287 00:00:11.810 TCP 12.102.0.1:48968 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:33:20.136 00:00:11.823 TCP 12.102.0.1:45858 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:34:21.987 00:00:11.801 TCP 12.102.0.1:58132 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:29:59.245 00:06:00.002 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-10-30 18:35:17.827 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-30 18:35:17.850 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-30 18:35:17.978 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 18:35:17.982 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-30 18:35:17.824 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-30 18:35:18.032 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-30 18:35:17.789 00:00:00.019 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-30 18:35:23.820 00:00:11.800 TCP 12.102.0.1:47314 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:30:59.228 00:06:00.021 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-30 18:36:25.658 00:00:11.811 TCP 12.102.0.1:50514 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:37:27.506 00:00:11.806 TCP 12.102.0.1:59984 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:38:29.356 00:00:12.285 TCP 12.102.0.1:41226 -> 1.101.0.1:3000 15 1926 1 2025-10-30 18:39:31.681 00:00:11.814 TCP 12.102.0.1:37522 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:40:18.201 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-30 18:40:18.223 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-30 18:40:18.022 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 18:40:18.402 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-30 18:40:18.279 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-30 18:40:18.286 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-30 18:40:18.044 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-30 18:40:33.535 00:00:11.798 TCP 12.102.0.1:36002 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:41:35.371 00:00:11.814 TCP 12.102.0.1:45040 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:36:59.247 00:06:00.005 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-10-30 18:42:37.229 00:00:11.800 TCP 12.102.0.1:33262 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:37:59.230 00:06:00.024 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-30 18:43:39.087 00:00:11.802 TCP 12.102.0.1:40568 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:44:40.929 00:00:11.805 TCP 12.102.0.1:47850 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:45:18.043 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-30 18:45:17.975 00:00:00.020 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 18:45:18.067 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-30 18:45:17.943 00:00:00.010 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-30 18:45:18.165 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-30 18:45:18.053 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-30 18:45:18.020 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-30 18:45:42.777 00:00:11.763 TCP 12.102.0.1:54648 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:46:44.579 00:00:11.815 TCP 12.102.0.1:38596 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:47:46.434 00:00:11.814 TCP 12.102.0.1:37156 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:48:48.284 00:00:11.803 TCP 12.102.0.1:59862 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:43:59.250 00:06:00.002 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-10-30 18:44:59.234 00:06:00.021 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-30 18:49:50.132 00:00:11.813 TCP 12.102.0.1:45768 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:50:18.114 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-30 18:50:17.982 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 18:50:18.088 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-30 18:50:18.255 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-30 18:50:18.212 00:00:00.051 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-30 18:50:18.095 00:00:00.046 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-30 18:50:18.090 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-30 18:50:51.989 00:00:11.762 TCP 12.102.0.1:36908 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:51:53.788 00:00:11.801 TCP 12.102.0.1:38250 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:52:55.632 00:00:11.803 TCP 12.102.0.1:47522 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:53:57.473 00:00:11.803 TCP 12.102.0.1:56416 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:54:59.310 00:00:11.764 TCP 12.102.0.1:44248 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:55:18.852 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-30 18:55:18.713 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-30 18:55:18.512 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-30 18:55:18.686 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-30 18:55:18.458 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-30 18:55:18.497 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-30 18:55:18.831 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-30 18:50:59.253 00:06:00.002 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-10-30 18:56:01.108 00:00:11.797 TCP 12.102.0.1:59894 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:51:59.235 00:06:00.022 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-30 18:57:02.942 00:00:11.777 TCP 12.102.0.1:52292 -> 1.101.0.1:3000 11 1507 1 2025-10-30 18:58:04.757 00:00:12.239 TCP 12.102.0.1:59174 -> 1.101.0.1:3000 15 1926 1 Summary: total flows: 160, total bytes: 121634, total packets: 1087, avg bps: 256, avg pps: 0, avg bpp: 111 Time window: 2025-10-30 17:54:59 - 2025-10-30 18:58:16 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0028s User: 0.0028s Wall: 0.0040s flows/second: 39625.0 Runtime: 0.0041s