Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-15 07:58:51.171 00:00:11.807 TCP 12.102.0.1:59716 -> 1.101.0.1:3000 11 1507 1 2025-11-15 07:59:53.025 00:00:11.802 TCP 12.102.0.1:41172 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:00:54.866 00:00:11.803 TCP 12.102.0.1:34040 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:01:56.708 00:00:11.830 TCP 12.102.0.1:45970 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:02:47.760 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 08:02:47.418 00:00:00.028 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 08:02:47.287 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 08:02:47.441 00:00:00.027 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 08:02:47.204 00:00:00.028 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 08:02:47.523 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 08:02:47.739 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 08:02:58.577 00:00:11.757 TCP 12.102.0.1:54770 -> 1.101.0.1:3000 11 1507 1 2025-11-15 07:59:06.952 00:05:00.278 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-15 07:59:06.953 00:05:00.274 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-15 08:04:00.372 00:00:11.820 TCP 12.102.0.1:54072 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:05:02.230 00:00:11.797 TCP 12.102.0.1:42368 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:06:04.086 00:00:11.802 TCP 12.102.0.1:41242 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:07:05.927 00:00:11.780 TCP 12.102.0.1:45194 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:07:47.287 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 08:07:47.297 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 08:07:47.432 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 08:07:47.313 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 08:07:47.512 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 08:07:47.384 00:00:00.026 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 08:07:47.265 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 08:08:07.741 00:00:11.804 TCP 12.102.0.1:43632 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:05:06.957 00:05:00.271 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-15 08:05:06.955 00:05:00.275 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-15 08:09:09.580 00:00:11.800 TCP 12.102.0.1:35174 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:10:11.417 00:00:11.809 TCP 12.102.0.1:54160 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:11:13.263 00:00:11.760 TCP 12.102.0.1:52320 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:12:15.081 00:00:12.035 TCP 12.102.0.1:49132 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:12:47.542 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 08:12:47.667 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 08:12:47.390 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 08:12:47.531 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 08:12:47.566 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 08:12:47.369 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 08:12:47.521 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 08:13:17.150 00:00:11.805 TCP 12.102.0.1:40726 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:14:18.993 00:00:11.765 TCP 12.102.0.1:44862 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:11:06.957 00:05:00.273 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-15 08:11:06.955 00:05:00.278 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-15 08:15:20.821 00:00:11.808 TCP 12.102.0.1:42640 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:16:22.668 00:00:11.805 TCP 12.102.0.1:39258 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:17:24.513 00:00:11.808 TCP 12.102.0.1:52980 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:17:47.546 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 08:17:47.399 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 08:17:47.705 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 08:17:47.625 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 08:17:47.584 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 08:17:47.642 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 08:17:47.524 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 08:18:26.361 00:00:11.812 TCP 12.102.0.1:48990 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:19:28.210 00:00:11.812 TCP 12.102.0.1:56192 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:20:30.081 00:00:11.802 TCP 12.102.0.1:36070 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:17:06.958 00:05:00.278 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-15 08:17:06.961 00:05:00.273 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-15 08:21:31.922 00:00:11.819 TCP 12.102.0.1:53872 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:22:33.781 00:00:11.800 TCP 12.102.0.1:45452 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:22:47.673 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 08:22:47.869 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 08:22:47.793 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 08:22:47.683 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 08:22:47.721 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 08:22:47.802 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 08:22:47.651 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 08:23:35.618 00:00:11.804 TCP 12.102.0.1:56658 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:24:37.461 00:00:11.801 TCP 12.102.0.1:53322 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:25:39.300 00:00:11.801 TCP 12.102.0.1:35230 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:26:41.142 00:00:11.811 TCP 12.102.0.1:47532 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:23:06.962 00:05:00.275 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-15 08:23:06.966 00:05:00.270 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-15 08:27:47.970 00:00:00.027 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 08:27:48.183 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 08:27:48.101 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 08:27:47.717 00:00:00.025 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 08:27:47.921 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 08:27:47.957 00:00:00.027 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 08:27:47.947 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 08:27:42.997 00:00:11.805 TCP 12.102.0.1:34718 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:28:44.838 00:00:11.769 TCP 12.102.0.1:41296 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:29:46.647 00:00:11.802 TCP 12.102.0.1:39746 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:30:48.485 00:00:11.808 TCP 12.102.0.1:53486 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:31:50.336 00:00:11.815 TCP 12.102.0.1:60950 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:32:47.944 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 08:32:48.077 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 08:32:47.932 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 08:32:47.983 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 08:32:47.999 00:00:00.033 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 08:32:47.881 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 08:32:47.920 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 08:32:52.187 00:00:11.806 TCP 12.102.0.1:45526 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:29:06.963 00:05:00.275 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-15 08:29:06.966 00:05:00.270 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-15 08:33:54.036 00:00:11.763 TCP 12.102.0.1:55502 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:34:55.840 00:00:11.805 TCP 12.102.0.1:44750 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:35:57.681 00:00:11.801 TCP 12.102.0.1:42392 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:36:59.529 00:00:11.757 TCP 12.102.0.1:44812 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:37:47.956 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 08:37:48.110 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 08:37:48.180 00:00:00.046 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 08:37:48.052 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 08:37:48.041 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 08:37:47.895 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 08:37:47.933 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 08:38:01.327 00:00:11.824 TCP 12.102.0.1:59220 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:35:06.963 00:05:00.276 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-15 08:35:06.965 00:05:00.271 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-15 08:39:03.201 00:00:11.755 TCP 12.102.0.1:43396 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:40:04.994 00:00:11.812 TCP 12.102.0.1:57300 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:41:06.843 00:00:11.802 TCP 12.102.0.1:41756 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:42:08.681 00:00:12.304 TCP 12.102.0.1:60006 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:42:48.317 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 08:42:47.965 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 08:42:48.167 00:00:00.035 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 08:42:48.050 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 08:42:48.064 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 08:42:48.027 00:00:00.020 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 08:42:48.295 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 08:43:11.029 00:00:11.800 TCP 12.102.0.1:52462 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:44:12.867 00:00:11.807 TCP 12.102.0.1:46440 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:41:06.966 00:05:00.271 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-15 08:41:06.966 00:05:00.276 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-15 08:45:14.714 00:00:11.800 TCP 12.102.0.1:34068 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:46:16.552 00:00:12.193 TCP 12.102.0.1:35824 -> 1.101.0.1:3000 15 1926 1 2025-11-15 08:47:18.785 00:00:11.800 TCP 12.102.0.1:52448 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:47:48.108 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 08:47:48.231 00:00:00.051 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 08:47:48.273 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 08:47:48.222 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 08:47:48.314 00:00:00.025 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 08:47:48.198 00:00:00.025 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 08:47:48.085 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 08:48:20.630 00:00:11.797 TCP 12.102.0.1:45262 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:49:22.464 00:00:11.797 TCP 12.102.0.1:37430 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:50:24.304 00:00:11.799 TCP 12.102.0.1:56420 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:47:06.969 00:05:00.273 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-15 08:47:06.966 00:05:00.278 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-15 08:51:26.141 00:00:11.813 TCP 12.102.0.1:43380 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:52:27.993 00:00:11.760 TCP 12.102.0.1:60246 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:52:48.144 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 08:52:47.940 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 08:52:48.181 00:00:00.038 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 08:52:48.356 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 08:52:48.464 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 08:52:48.150 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 08:52:48.120 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 08:53:29.793 00:00:11.810 TCP 12.102.0.1:42076 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:54:31.636 00:00:11.806 TCP 12.102.0.1:53352 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:55:33.482 00:00:11.803 TCP 12.102.0.1:37186 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:56:35.323 00:00:12.220 TCP 12.102.0.1:40932 -> 1.101.0.1:3000 15 1926 1 2025-11-15 08:53:06.970 00:05:00.272 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-15 08:53:06.966 00:05:00.278 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-15 08:57:48.672 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 08:57:37.582 00:00:11.807 TCP 12.102.0.1:48292 -> 1.101.0.1:3000 11 1507 1 2025-11-15 08:57:48.698 00:00:00.020 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 08:57:48.815 00:00:00.026 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 08:57:48.615 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 08:57:48.786 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 08:57:48.838 00:00:00.017 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 08:57:48.445 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 Summary: total flows: 162, total bytes: 124172, total packets: 1138, avg bps: 279, avg pps: 0, avg bpp: 109 Time window: 2025-11-15 07:58:51 - 2025-11-15 08:58:07 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0034s User: 0.0011s Wall: 0.0014s flows/second: 119479.0 Runtime: 0.0014s