Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-19 23:58:42.628 00:00:11.805 TCP 12.102.0.1:38974 -> 1.101.0.1:3000 11 1507 1 2025-11-19 23:59:44.469 00:00:11.803 TCP 12.102.0.1:36932 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:00:02.951 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 00:00:02.672 00:00:00.020 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 00:00:02.435 00:00:00.027 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 00:00:02.625 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 00:00:02.606 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 00:00:02.609 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 00:00:02.927 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 00:00:46.311 00:00:11.806 TCP 12.102.0.1:56670 -> 1.101.0.1:3000 11 1507 1 2025-11-19 23:56:09.161 00:06:00.590 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 00:01:48.156 00:00:11.802 TCP 12.102.0.1:40002 -> 1.101.0.1:3000 11 1507 1 2025-11-19 23:57:09.159 00:06:00.595 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 00:02:50.001 00:00:11.800 TCP 12.102.0.1:60416 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:03:51.838 00:00:11.799 TCP 12.102.0.1:53246 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:05:01.937 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 00:05:01.946 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 00:05:01.915 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 00:05:02.068 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 00:05:02.109 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 00:05:02.024 00:00:00.020 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 00:05:02.067 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 00:04:53.672 00:00:11.802 TCP 12.102.0.1:53392 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:05:55.523 00:00:11.810 TCP 12.102.0.1:59912 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:06:57.370 00:00:11.815 TCP 12.102.0.1:57964 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:03:09.163 00:06:00.589 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 00:07:59.225 00:00:11.811 TCP 12.102.0.1:50384 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:04:09.163 00:06:00.592 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 00:09:01.086 00:00:11.796 TCP 12.102.0.1:44364 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:10:02.073 00:00:00.038 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 00:10:02.163 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 00:10:02.033 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 00:10:02.230 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 00:10:02.218 00:00:00.033 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 00:10:02.191 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 00:10:02.050 00:00:00.038 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 00:10:02.918 00:00:11.831 TCP 12.102.0.1:56232 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:11:04.789 00:00:11.814 TCP 12.102.0.1:49902 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:12:06.640 00:00:11.827 TCP 12.102.0.1:33932 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:13:08.504 00:00:11.804 TCP 12.102.0.1:51250 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:14:10.343 00:00:11.799 TCP 12.102.0.1:51288 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:15:02.230 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 00:15:02.129 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 00:15:02.348 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 00:15:02.314 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 00:15:02.403 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 00:15:02.219 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 00:15:02.208 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 00:10:09.170 00:06:00.584 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 00:15:12.180 00:00:11.800 TCP 12.102.0.1:58058 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:11:09.163 00:06:00.593 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 00:16:14.023 00:00:11.760 TCP 12.102.0.1:49572 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:17:15.817 00:00:12.223 TCP 12.102.0.1:50274 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:18:18.084 00:00:11.812 TCP 12.102.0.1:48116 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:19:19.934 00:00:11.810 TCP 12.102.0.1:34872 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:20:02.403 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 00:20:02.414 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 00:20:02.328 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 00:20:02.386 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 00:20:02.062 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 00:20:02.450 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 00:20:02.380 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 00:20:21.779 00:00:11.807 TCP 12.102.0.1:57496 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:21:23.639 00:00:11.793 TCP 12.102.0.1:56474 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:17:09.168 00:06:00.589 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 00:22:25.482 00:00:12.237 TCP 12.102.0.1:45998 -> 1.101.0.1:3000 15 1926 1 2025-11-20 00:18:09.166 00:06:00.594 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 00:23:27.756 00:00:11.780 TCP 12.102.0.1:39364 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:24:29.578 00:00:11.806 TCP 12.102.0.1:53156 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:25:02.589 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 00:25:02.632 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 00:25:02.369 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 00:25:02.452 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 00:25:02.339 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 00:25:02.561 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 00:25:02.566 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 00:25:31.421 00:00:12.369 TCP 12.102.0.1:44942 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:26:33.832 00:00:11.802 TCP 12.102.0.1:42610 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:27:35.671 00:00:11.762 TCP 12.102.0.1:38870 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:28:37.470 00:00:11.800 TCP 12.102.0.1:35368 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:24:09.169 00:06:00.590 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 00:29:39.313 00:00:11.813 TCP 12.102.0.1:40248 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:30:02.714 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 00:30:02.736 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 00:30:02.830 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 00:30:02.863 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 00:30:02.760 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 00:30:02.917 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 00:30:02.658 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 00:25:09.167 00:06:00.595 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 00:30:41.165 00:00:11.802 TCP 12.102.0.1:46362 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:31:43.006 00:00:11.801 TCP 12.102.0.1:50672 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:32:44.846 00:00:11.821 TCP 12.102.0.1:55722 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:33:46.708 00:00:11.813 TCP 12.102.0.1:57964 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:34:48.559 00:00:11.803 TCP 12.102.0.1:50274 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:35:02.713 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 00:35:02.766 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 00:35:02.654 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 00:35:02.635 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 00:35:02.762 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 00:35:02.652 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 00:35:02.691 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 00:35:50.399 00:00:11.802 TCP 12.102.0.1:56402 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:31:09.172 00:06:00.590 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 00:36:52.247 00:00:11.806 TCP 12.102.0.1:51186 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:32:09.169 00:06:00.596 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 00:37:54.091 00:00:11.809 TCP 12.102.0.1:57526 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:38:55.936 00:00:11.811 TCP 12.102.0.1:53628 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:40:02.615 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 00:40:02.637 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 00:40:02.772 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 00:40:02.475 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 00:40:02.768 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 00:40:02.861 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 00:40:02.747 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 00:39:57.788 00:00:11.768 TCP 12.102.0.1:49698 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:40:59.593 00:00:12.762 TCP 12.102.0.1:46854 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:42:02.395 00:00:11.801 TCP 12.102.0.1:48288 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:38:09.173 00:06:00.590 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 00:43:04.234 00:00:11.802 TCP 12.102.0.1:60962 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:39:09.171 00:06:00.595 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 00:44:06.088 00:00:11.801 TCP 12.102.0.1:46114 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:45:02.906 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 00:45:02.930 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 00:45:02.588 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 00:45:02.784 00:00:00.020 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 00:45:02.815 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 00:45:02.846 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 00:45:02.612 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 00:45:07.932 00:00:11.782 TCP 12.102.0.1:42500 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:46:09.749 00:00:11.756 TCP 12.102.0.1:36598 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:47:11.545 00:00:11.821 TCP 12.102.0.1:32928 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:48:13.404 00:00:11.799 TCP 12.102.0.1:42602 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:49:15.241 00:00:11.804 TCP 12.102.0.1:56274 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:50:02.860 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 00:50:03.086 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 00:50:03.095 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 00:50:03.072 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 00:50:02.848 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 00:50:02.996 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 00:50:02.837 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 00:45:09.176 00:06:00.591 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 00:50:17.084 00:00:11.809 TCP 12.102.0.1:59240 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:46:09.173 00:06:00.596 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 00:51:18.927 00:00:11.967 TCP 12.102.0.1:43796 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:52:20.932 00:00:11.774 TCP 12.102.0.1:52320 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:53:22.744 00:00:11.800 TCP 12.102.0.1:48944 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:54:24.586 00:00:12.290 TCP 12.102.0.1:34700 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:55:02.828 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 00:55:02.851 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 00:55:02.875 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 00:55:03.088 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 00:55:02.779 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 00:55:02.881 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 00:55:03.021 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 00:55:26.919 00:00:11.828 TCP 12.102.0.1:34354 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:56:28.785 00:00:11.808 TCP 12.102.0.1:35212 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:52:09.180 00:06:00.587 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 00:57:30.633 00:00:11.801 TCP 12.102.0.1:56006 -> 1.101.0.1:3000 11 1507 1 2025-11-20 00:53:09.177 00:06:00.593 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 00:58:32.476 00:00:11.806 TCP 12.102.0.1:33006 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 161, total bytes: 125998, total packets: 1157, avg bps: 266, avg pps: 0, avg bpp: 108 Time window: 2025-11-19 23:56:09 - 2025-11-20 00:59:09 Total flows processed: 161, passed: 161, Blocks skipped: 0, Bytes read: 16808 Sys: 0.0053s User: 0.0000s Wall: 0.0014s flows/second: 114338.5 Runtime: 0.0014s