Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-08 08:54:03.204 00:06:00.177 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-08 08:59:00.524 00:00:11.808 TCP 12.102.0.1:49724 -> 1.101.0.1:3000 11 1507 1 2025-11-08 08:59:26.301 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-08 08:59:26.332 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-08 08:59:26.153 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-08 08:59:26.033 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-08 08:59:26.059 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-08 08:59:26.231 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-08 08:59:26.278 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-08 09:00:02.372 00:00:20.703 TCP 12.102.0.1:42238 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:01:13.119 00:00:11.771 TCP 12.102.0.1:43700 -> 1.101.0.1:3000 11 1507 1 2025-11-08 08:57:03.202 00:06:00.182 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-08 09:02:14.933 00:00:11.812 TCP 12.102.0.1:42572 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:03:16.776 00:00:11.830 TCP 12.102.0.1:58310 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:04:26.789 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-08 09:04:26.813 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-08 09:04:26.857 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-08 09:04:26.879 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-08 09:04:26.971 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-08 09:04:26.946 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-08 09:04:26.902 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-08 09:04:18.643 00:00:12.182 TCP 12.102.0.1:51264 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:05:20.861 00:00:11.818 TCP 12.102.0.1:34844 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:01:03.208 00:06:00.174 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-08 09:06:22.715 00:00:11.819 TCP 12.102.0.1:46266 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:07:24.569 00:00:12.262 TCP 12.102.0.1:49324 -> 1.101.0.1:3000 15 1926 1 2025-11-08 09:08:26.878 00:00:11.813 TCP 12.102.0.1:34420 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:04:03.206 00:06:00.181 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-08 09:09:26.394 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-08 09:09:26.481 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-08 09:09:26.417 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-08 09:09:26.439 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-08 09:09:26.594 00:00:00.025 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-08 09:09:26.251 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-08 09:09:26.542 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-08 09:09:28.732 00:00:11.767 TCP 12.102.0.1:60040 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:10:30.540 00:00:11.765 TCP 12.102.0.1:60800 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:11:32.344 00:00:11.803 TCP 12.102.0.1:54296 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:12:34.192 00:00:11.799 TCP 12.102.0.1:38724 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:08:03.210 00:06:00.174 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-08 09:13:36.052 00:00:11.818 TCP 12.102.0.1:39120 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:14:26.592 00:00:00.020 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-08 09:14:26.615 00:00:00.020 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-08 09:14:26.623 00:00:00.019 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-08 09:14:26.612 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-08 09:14:26.427 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-08 09:14:26.418 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-08 09:14:26.305 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-08 09:14:37.908 00:00:11.832 TCP 12.102.0.1:56980 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:15:39.779 00:00:11.803 TCP 12.102.0.1:53534 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:11:03.209 00:06:00.178 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-08 09:16:41.628 00:00:11.807 TCP 12.102.0.1:36782 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:17:43.480 00:00:11.803 TCP 12.102.0.1:55198 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:18:45.326 00:00:11.807 TCP 12.102.0.1:55030 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:19:26.657 00:00:00.033 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-08 09:19:26.680 00:00:00.032 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-08 09:19:26.668 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-08 09:19:26.661 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-08 09:19:26.451 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-08 09:19:26.678 00:00:00.027 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-08 09:19:26.622 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-08 09:19:47.168 00:00:11.831 TCP 12.102.0.1:38182 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:15:03.213 00:06:00.172 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-08 09:20:49.063 00:00:11.763 TCP 12.102.0.1:49014 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:21:50.860 00:00:11.815 TCP 12.102.0.1:38490 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:18:03.210 00:06:00.178 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-08 09:22:52.715 00:00:11.799 TCP 12.102.0.1:53126 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:23:54.556 00:00:11.795 TCP 12.102.0.1:36224 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:24:26.669 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-08 09:24:26.589 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-08 09:24:26.675 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-08 09:24:26.773 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-08 09:24:26.666 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-08 09:24:26.645 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-08 09:24:26.622 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-08 09:24:56.391 00:00:11.816 TCP 12.102.0.1:47392 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:25:58.244 00:00:11.800 TCP 12.102.0.1:44886 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:22:03.215 00:06:00.172 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-08 09:27:00.088 00:00:11.793 TCP 12.102.0.1:46334 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:28:01.921 00:00:11.819 TCP 12.102.0.1:33996 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:29:03.775 00:00:12.963 TCP 12.102.0.1:39820 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:29:26.957 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-08 09:29:26.826 00:00:00.020 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-08 09:29:26.885 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-08 09:29:26.990 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-08 09:29:27.138 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-08 09:29:27.109 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-08 09:29:26.981 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-08 09:25:03.211 00:06:00.178 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-08 09:30:06.780 00:00:11.765 TCP 12.102.0.1:46094 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:31:08.583 00:00:11.814 TCP 12.102.0.1:58904 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:32:10.435 00:00:11.760 TCP 12.102.0.1:45630 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:33:12.229 00:00:12.143 TCP 12.102.0.1:34530 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:29:03.214 00:06:00.173 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-08 09:34:26.903 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-08 09:34:14.410 00:00:11.803 TCP 12.102.0.1:40352 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:34:26.888 00:00:00.025 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-08 09:34:26.903 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-08 09:34:26.882 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-08 09:34:27.183 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-08 09:34:27.021 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-08 09:34:27.212 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-08 09:35:16.247 00:00:11.820 TCP 12.102.0.1:47594 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:36:18.106 00:00:11.811 TCP 12.102.0.1:60584 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:32:03.213 00:06:00.178 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-08 09:37:19.945 00:00:11.823 TCP 12.102.0.1:48084 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:38:21.807 00:00:11.803 TCP 12.102.0.1:40086 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:39:26.964 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-08 09:39:26.949 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-08 09:39:26.988 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-08 09:39:27.121 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-08 09:39:27.088 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-08 09:39:27.029 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-08 09:39:27.064 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-08 09:39:23.643 00:00:11.819 TCP 12.102.0.1:46600 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:40:25.497 00:00:11.805 TCP 12.102.0.1:55000 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:36:03.217 00:06:00.172 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-08 09:41:27.342 00:00:11.803 TCP 12.102.0.1:36962 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:42:29.183 00:00:11.761 TCP 12.102.0.1:49936 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:43:30.981 00:00:11.806 TCP 12.102.0.1:47932 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:39:03.215 00:06:00.176 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-08 09:44:27.342 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-08 09:44:27.367 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-08 09:44:27.514 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-08 09:44:27.438 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-08 09:44:27.443 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-08 09:44:27.537 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-08 09:44:27.410 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-08 09:44:32.817 00:00:22.495 TCP 12.102.0.1:56758 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:45:45.352 00:00:11.782 TCP 12.102.0.1:42422 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:46:47.171 00:00:11.804 TCP 12.102.0.1:38868 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:47:49.014 00:00:11.860 TCP 12.102.0.1:43996 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:43:03.217 00:06:00.175 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-08 09:48:50.910 00:00:11.824 TCP 12.102.0.1:51252 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:49:26.908 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-08 09:49:27.289 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-08 09:49:27.343 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-08 09:49:27.174 00:00:00.040 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-08 09:49:27.258 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-08 09:49:27.019 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-08 09:49:27.266 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-08 09:49:52.772 00:00:11.806 TCP 12.102.0.1:53074 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:46:03.216 00:06:00.180 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-08 09:50:54.624 00:00:11.775 TCP 12.102.0.1:53752 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:51:56.424 00:00:11.805 TCP 12.102.0.1:45660 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:52:58.266 00:00:11.799 TCP 12.102.0.1:36166 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:54:00.105 00:00:11.805 TCP 12.102.0.1:36154 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:54:27.357 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-08 09:54:27.514 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-08 09:54:27.547 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-08 09:54:27.319 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-08 09:54:27.270 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-08 09:54:27.225 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-08 09:54:27.334 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-08 09:50:03.221 00:06:00.171 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-08 09:55:01.949 00:00:11.806 TCP 12.102.0.1:34474 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:56:03.790 00:00:11.762 TCP 12.102.0.1:45988 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:57:05.589 00:00:11.805 TCP 12.102.0.1:32800 -> 1.101.0.1:3000 11 1507 1 2025-11-08 09:53:03.220 00:06:00.176 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-08 09:58:07.430 00:00:11.817 TCP 12.102.0.1:37130 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 160, total bytes: 124491, total packets: 1146, avg bps: 255, avg pps: 0, avg bpp: 108 Time window: 2025-11-08 08:54:03 - 2025-11-08 09:59:03 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0057s User: 0.0000s Wall: 0.0021s flows/second: 74557.1 Runtime: 0.0022s