Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-15 12:59:31.340 00:00:11.834 TCP 12.102.0.1:60288 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:00:33.223 00:00:11.804 TCP 12.102.0.1:41722 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:01:35.102 00:00:11.759 TCP 12.102.0.1:41620 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:02:36.915 00:00:11.828 TCP 12.102.0.1:50050 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:02:53.519 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 13:02:53.542 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 13:02:53.171 00:00:00.032 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 13:02:53.354 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 13:02:53.017 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 13:02:53.477 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 13:02:53.053 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 13:03:38.788 00:00:11.800 TCP 12.102.0.1:39144 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:04:40.634 00:00:11.801 TCP 12.102.0.1:45542 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:00:07.079 00:06:00.266 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-15 13:00:07.077 00:06:00.271 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-15 13:05:42.487 00:00:11.807 TCP 12.102.0.1:47298 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:06:44.340 00:00:11.815 TCP 12.102.0.1:50840 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:07:53.390 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 13:07:53.412 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 13:07:53.412 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 13:07:53.418 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 13:07:53.382 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 13:07:53.062 00:00:00.025 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 13:07:53.063 00:00:00.026 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 13:07:46.196 00:00:11.815 TCP 12.102.0.1:45584 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:08:48.077 00:00:11.815 TCP 12.102.0.1:40474 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:09:49.933 00:00:11.817 TCP 12.102.0.1:52586 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:10:51.797 00:00:12.289 TCP 12.102.0.1:44188 -> 1.101.0.1:3000 15 1926 1 2025-11-15 13:11:54.127 00:00:11.804 TCP 12.102.0.1:36414 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:07:07.082 00:06:00.265 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-15 13:07:07.078 00:06:00.270 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-15 13:12:53.552 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 13:12:53.516 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 13:12:53.579 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 13:12:53.552 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 13:12:53.408 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 13:12:53.380 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 13:12:53.530 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 13:12:55.970 00:00:11.812 TCP 12.102.0.1:41852 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:13:57.823 00:00:11.786 TCP 12.102.0.1:44358 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:14:59.649 00:00:11.814 TCP 12.102.0.1:50584 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:16:01.501 00:00:11.803 TCP 12.102.0.1:57838 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:17:03.342 00:00:11.800 TCP 12.102.0.1:53462 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:17:53.387 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 13:17:53.410 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 13:17:53.525 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 13:17:53.459 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 13:17:53.619 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 13:17:53.530 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 13:17:53.411 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 13:14:07.083 00:06:00.272 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-15 13:14:07.081 00:06:00.277 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-15 13:18:05.180 00:01:13.601 TCP 12.102.0.1:55076 -> 1.101.0.1:3000 22 3014 1 2025-11-15 13:20:08.823 00:00:11.801 TCP 12.102.0.1:51076 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:21:10.663 00:00:11.804 TCP 12.102.0.1:45350 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:22:12.505 00:00:11.816 TCP 12.102.0.1:34464 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:22:53.895 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 13:22:53.917 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 13:22:53.816 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 13:22:53.848 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 13:22:53.899 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 13:22:53.838 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 13:22:53.924 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 13:23:14.364 00:00:11.823 TCP 12.102.0.1:46372 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:24:16.225 00:00:11.805 TCP 12.102.0.1:50792 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:25:18.076 00:00:11.810 TCP 12.102.0.1:38724 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:21:07.085 00:06:00.276 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-15 13:21:07.087 00:06:00.270 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-15 13:26:19.925 00:00:11.868 TCP 12.102.0.1:40550 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:27:21.831 00:00:11.801 TCP 12.102.0.1:36592 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:27:53.684 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 13:27:53.707 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 13:27:53.601 00:00:00.025 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 13:27:53.784 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 13:27:53.484 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 13:27:53.805 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 13:27:53.359 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 13:28:23.675 00:00:11.801 TCP 12.102.0.1:59628 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:29:25.519 00:00:11.869 TCP 12.102.0.1:34878 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:30:27.439 00:00:11.938 TCP 12.102.0.1:49334 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:31:29.411 00:00:12.245 TCP 12.102.0.1:46654 -> 1.101.0.1:3000 15 1926 1 2025-11-15 13:32:31.688 00:00:11.807 TCP 12.102.0.1:48422 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:32:53.807 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 13:32:54.064 00:00:00.025 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 13:32:53.925 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 13:32:53.951 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 13:32:53.862 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 13:32:53.643 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 13:32:53.784 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 13:28:07.089 00:06:00.275 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-15 13:28:07.091 00:06:00.270 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-15 13:33:33.532 00:00:11.809 TCP 12.102.0.1:55264 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:34:35.380 00:00:11.839 TCP 12.102.0.1:40070 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:35:37.262 00:00:11.808 TCP 12.102.0.1:34044 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:36:39.110 00:00:11.814 TCP 12.102.0.1:42112 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:37:53.828 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 13:37:53.919 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 13:37:54.000 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 13:37:53.978 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 13:37:40.961 00:00:11.802 TCP 12.102.0.1:55112 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:37:53.897 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 13:37:53.996 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 13:37:53.875 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 13:38:42.799 00:00:11.802 TCP 12.102.0.1:43202 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:39:44.635 00:00:11.800 TCP 12.102.0.1:36404 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:35:07.094 00:06:00.270 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-15 13:35:07.091 00:06:00.275 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-15 13:40:46.472 00:00:11.795 TCP 12.102.0.1:49026 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:41:48.307 00:00:11.801 TCP 12.102.0.1:38314 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:42:53.797 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 13:42:53.995 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 13:42:53.916 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 13:42:53.902 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 13:42:53.814 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 13:42:53.882 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 13:42:53.775 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 13:42:50.147 00:00:21.567 TCP 12.102.0.1:50076 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:44:01.754 00:00:11.827 TCP 12.102.0.1:43150 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:45:03.608 00:00:12.347 TCP 12.102.0.1:43022 -> 1.101.0.1:3000 13 1611 1 2025-11-15 13:46:05.983 00:00:11.759 TCP 12.102.0.1:54324 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:42:07.093 00:06:00.275 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-15 13:42:07.095 00:06:00.269 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-15 13:47:07.780 00:00:11.770 TCP 12.102.0.1:33506 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:47:54.110 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 13:47:54.131 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 13:47:54.225 00:00:00.046 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 13:47:54.248 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 13:47:54.262 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 13:47:54.237 00:00:00.026 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 13:47:53.926 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 13:48:09.589 00:00:11.820 TCP 12.102.0.1:57578 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:49:11.446 00:00:11.857 TCP 12.102.0.1:52762 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:50:13.345 00:00:11.803 TCP 12.102.0.1:44890 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:51:15.184 00:00:11.804 TCP 12.102.0.1:53038 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:52:17.027 00:00:11.810 TCP 12.102.0.1:56910 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:52:54.283 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 13:52:54.306 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 13:52:54.396 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 13:52:54.248 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 13:52:54.309 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 13:52:54.264 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 13:52:54.210 00:00:00.025 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 13:53:18.881 00:00:11.800 TCP 12.102.0.1:45918 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:49:07.093 00:06:00.277 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-15 13:49:07.095 00:06:00.272 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-15 13:54:20.727 00:00:11.822 TCP 12.102.0.1:38478 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:55:22.594 00:00:11.764 TCP 12.102.0.1:33808 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:56:24.404 00:00:11.806 TCP 12.102.0.1:56696 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:57:26.250 00:00:11.820 TCP 12.102.0.1:56018 -> 1.101.0.1:3000 11 1507 1 2025-11-15 13:57:54.291 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 13:57:54.328 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 13:57:54.455 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 13:57:54.432 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 13:57:54.401 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 13:57:54.207 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 13:57:54.270 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 13:58:28.111 00:00:11.812 TCP 12.102.0.1:35750 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 157, total bytes: 123292, total packets: 1124, avg bps: 277, avg pps: 0, avg bpp: 109 Time window: 2025-11-15 12:59:31 - 2025-11-15 13:58:39 Total flows processed: 157, passed: 157, Blocks skipped: 0, Bytes read: 16392 Sys: 0.0029s User: 0.0019s Wall: 0.0020s flows/second: 79896.4 Runtime: 0.0020s