Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-01 13:58:40.699 00:00:11.819 TCP 12.102.0.1:46694 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:59:42.559 00:00:11.798 TCP 12.102.0.1:51432 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:00:44.395 00:00:11.766 TCP 12.102.0.1:33828 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:56:00.067 00:06:00.049 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-01 14:01:10.035 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 14:01:10.212 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 14:01:10.257 00:00:00.025 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 14:01:10.123 00:00:00.049 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 14:01:10.028 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 14:01:10.014 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 14:01:10.013 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 14:01:46.201 00:00:11.797 TCP 12.102.0.1:49546 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:02:48.060 00:00:11.806 TCP 12.102.0.1:44982 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:03:49.908 00:00:11.963 TCP 12.102.0.1:53260 -> 1.101.0.1:3000 13 1611 1 2025-11-01 14:00:00.066 00:06:00.054 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-01 14:04:51.909 00:00:11.821 TCP 12.102.0.1:50994 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:05:53.764 00:00:11.813 TCP 12.102.0.1:55266 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:06:10.239 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 14:06:10.280 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 14:06:10.127 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 14:06:10.348 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 14:06:10.263 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 14:06:10.242 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 14:06:10.217 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 14:06:55.610 00:00:11.830 TCP 12.102.0.1:55808 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:03:00.069 00:06:00.047 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-01 14:07:57.481 00:00:11.766 TCP 12.102.0.1:58720 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:08:59.286 00:00:11.798 TCP 12.102.0.1:47938 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:10:01.120 00:00:11.801 TCP 12.102.0.1:48496 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:11:10.282 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 14:11:10.690 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 14:11:10.639 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 14:11:10.607 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 14:11:10.493 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 14:11:10.701 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 14:11:10.260 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 14:11:02.959 00:00:11.799 TCP 12.102.0.1:36190 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:07:00.068 00:06:00.055 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-01 14:12:04.798 00:00:11.805 TCP 12.102.0.1:41518 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:13:06.649 00:00:11.806 TCP 12.102.0.1:50576 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:14:08.487 00:00:11.769 TCP 12.102.0.1:55700 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:10:00.072 00:06:00.048 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-01 14:15:10.292 00:00:11.798 TCP 12.102.0.1:46396 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:16:10.470 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 14:16:10.610 00:00:00.027 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 14:16:10.617 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 14:16:10.504 00:00:00.029 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 14:16:10.537 00:00:00.025 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 14:16:10.411 00:00:00.025 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 14:16:10.447 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 14:16:12.132 00:00:11.800 TCP 12.102.0.1:35368 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:17:13.974 00:00:11.806 TCP 12.102.0.1:45758 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:18:15.819 00:00:11.810 TCP 12.102.0.1:44896 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:14:00.070 00:06:00.054 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-01 14:19:17.668 00:00:12.193 TCP 12.102.0.1:48704 -> 1.101.0.1:3000 15 1926 1 2025-11-01 14:20:19.900 00:00:12.031 TCP 12.102.0.1:57838 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:21:10.453 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 14:21:10.476 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 14:21:10.661 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 14:21:10.594 00:00:00.025 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 14:21:10.563 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 14:21:10.455 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 14:21:10.618 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 14:21:21.971 00:00:11.801 TCP 12.102.0.1:53282 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:17:00.073 00:06:00.049 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-01 14:22:23.812 00:00:11.798 TCP 12.102.0.1:40836 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:23:25.642 00:00:11.823 TCP 12.102.0.1:58312 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:24:27.498 00:00:11.798 TCP 12.102.0.1:43852 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:25:29.338 00:00:11.760 TCP 12.102.0.1:57892 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:21:00.072 00:06:00.054 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-01 14:26:10.562 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 14:26:10.597 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 14:26:10.875 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 14:26:10.848 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 14:26:10.960 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 14:26:10.671 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 14:26:10.539 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 14:26:31.138 00:00:11.808 TCP 12.102.0.1:49446 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:27:32.986 00:00:11.802 TCP 12.102.0.1:36716 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:28:34.832 00:00:11.802 TCP 12.102.0.1:55586 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:24:00.074 00:06:00.049 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-01 14:29:36.673 00:00:11.802 TCP 12.102.0.1:40052 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:30:38.518 00:00:11.816 TCP 12.102.0.1:52890 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:31:10.866 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 14:31:10.698 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 14:31:11.111 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 14:31:10.959 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 14:31:10.697 00:00:00.027 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 14:31:10.721 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 14:31:10.843 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 14:31:40.372 00:00:11.821 TCP 12.102.0.1:49072 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:32:42.226 00:00:11.809 TCP 12.102.0.1:39662 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:28:00.072 00:06:00.054 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-01 14:33:44.080 00:00:11.757 TCP 12.102.0.1:51620 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:34:45.883 00:00:11.805 TCP 12.102.0.1:60616 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:35:47.734 00:00:11.775 TCP 12.102.0.1:39200 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:31:00.076 00:06:00.049 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-01 14:36:10.815 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 14:36:11.073 00:00:00.020 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 14:36:11.008 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 14:36:10.996 00:00:00.031 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 14:36:10.898 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 14:36:10.898 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 14:36:10.791 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 14:36:49.544 00:00:11.809 TCP 12.102.0.1:48662 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:37:51.398 00:00:11.808 TCP 12.102.0.1:42932 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:38:53.240 00:00:11.798 TCP 12.102.0.1:41216 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:35:00.073 00:06:00.055 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-01 14:39:55.082 00:00:11.812 TCP 12.102.0.1:53564 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:41:10.924 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 14:41:10.943 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 14:41:10.962 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 14:40:56.932 00:00:11.817 TCP 12.102.0.1:55732 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:41:10.937 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 14:41:11.053 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 14:41:10.837 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 14:41:10.901 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 14:41:58.786 00:00:11.799 TCP 12.102.0.1:58068 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:38:00.075 00:06:00.052 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-01 14:43:00.625 00:00:11.769 TCP 12.102.0.1:37202 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:44:02.427 00:00:11.762 TCP 12.102.0.1:38518 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:45:04.229 00:00:11.801 TCP 12.102.0.1:40974 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:46:11.326 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 14:46:11.349 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 14:46:11.162 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 14:46:11.273 00:00:00.035 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 14:46:10.958 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 14:46:11.072 00:00:00.043 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 14:46:11.222 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 14:46:06.084 00:00:12.262 TCP 12.102.0.1:48286 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:42:00.074 00:06:00.057 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-01 14:47:08.395 00:00:11.801 TCP 12.102.0.1:57290 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:48:10.240 00:00:11.812 TCP 12.102.0.1:45486 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:49:12.087 00:00:11.799 TCP 12.102.0.1:50290 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:45:00.078 00:06:00.053 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-01 14:50:13.922 00:00:11.826 TCP 12.102.0.1:34312 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:51:11.161 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 14:51:11.195 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 14:51:11.118 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 14:51:11.183 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 14:51:10.848 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 14:51:11.226 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 14:51:11.139 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 14:51:15.784 00:00:11.769 TCP 12.102.0.1:36700 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:52:17.590 00:00:11.802 TCP 12.102.0.1:40970 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:53:19.430 00:00:11.797 TCP 12.102.0.1:33886 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:49:00.075 00:06:00.059 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-01 14:54:21.270 00:00:11.804 TCP 12.102.0.1:48212 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:55:23.109 00:00:11.759 TCP 12.102.0.1:47874 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:56:11.274 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 14:56:11.381 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 14:56:11.202 00:00:00.045 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 14:56:11.202 00:00:00.025 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 14:56:11.182 00:00:00.020 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 14:56:11.337 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 14:56:11.251 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 14:56:24.907 00:00:11.801 TCP 12.102.0.1:41092 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:52:00.078 00:06:00.054 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-01 14:57:26.745 00:00:11.813 TCP 12.102.0.1:43278 -> 1.101.0.1:3000 11 1507 1 2025-11-01 14:58:28.594 00:00:11.806 TCP 12.102.0.1:49712 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 160, total bytes: 125241, total packets: 1145, avg bps: 266, avg pps: 0, avg bpp: 109 Time window: 2025-11-01 13:56:00 - 2025-11-01 14:58:40 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0046s User: 0.0018s Wall: 0.0028s flows/second: 57927.4 Runtime: 0.0028s