Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 01:59:21.314 00:00:11.811 TCP 12.102.0.1:45172 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:00:04.186 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 02:00:04.210 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 02:00:04.564 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 02:00:04.328 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 02:00:04.395 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 02:00:04.322 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 02:00:04.456 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 01:55:09.198 00:06:00.581 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 02:00:23.161 00:00:11.811 TCP 12.102.0.1:36318 -> 1.101.0.1:3000 11 1507 1 2025-11-20 01:56:09.196 00:06:00.586 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 02:01:25.008 00:00:11.802 TCP 12.102.0.1:50292 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:02:26.851 00:00:11.802 TCP 12.102.0.1:58250 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:03:28.690 00:00:11.804 TCP 12.102.0.1:44114 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:04:30.533 00:00:11.801 TCP 12.102.0.1:57936 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:05:04.450 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 02:05:04.450 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 02:05:04.187 00:00:00.042 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 02:05:04.093 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 02:05:04.437 00:00:00.025 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 02:05:04.317 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 02:05:04.429 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 02:05:32.372 00:00:11.828 TCP 12.102.0.1:56100 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:06:34.240 00:00:11.800 TCP 12.102.0.1:53264 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:02:09.200 00:06:00.583 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 02:07:36.081 00:00:12.237 TCP 12.102.0.1:58104 -> 1.101.0.1:3000 15 1926 1 2025-11-20 02:03:09.197 00:06:00.588 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 02:08:38.364 00:00:11.827 TCP 12.102.0.1:50230 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:09:40.239 00:00:11.771 TCP 12.102.0.1:40924 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:10:04.465 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 02:10:04.488 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 02:10:04.416 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 02:10:04.422 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 02:10:04.423 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 02:10:04.661 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 02:10:04.547 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 02:10:42.066 00:00:11.767 TCP 12.102.0.1:35262 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:11:43.875 00:00:11.804 TCP 12.102.0.1:45626 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:12:45.725 00:00:11.755 TCP 12.102.0.1:52240 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:13:47.524 00:00:11.809 TCP 12.102.0.1:48556 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:09:09.202 00:06:00.583 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 02:14:49.378 00:00:11.812 TCP 12.102.0.1:48024 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:15:04.378 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 02:15:04.400 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 02:15:04.772 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 02:15:04.698 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 02:15:04.715 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 02:15:04.615 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 02:15:04.586 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 02:10:09.198 00:06:00.588 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 02:15:51.230 00:00:11.761 TCP 12.102.0.1:59818 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:16:53.034 00:00:11.804 TCP 12.102.0.1:39666 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:17:54.873 00:00:11.857 TCP 12.102.0.1:51534 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:18:56.771 00:00:11.803 TCP 12.102.0.1:39984 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:20:04.531 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 02:20:04.887 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 02:20:04.882 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 02:20:04.748 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 02:20:04.738 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 02:20:04.820 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 02:20:04.508 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 02:19:58.611 00:00:11.810 TCP 12.102.0.1:45686 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:16:09.202 00:06:00.584 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 02:21:00.456 00:00:11.855 TCP 12.102.0.1:42312 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:17:09.202 00:06:00.587 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 02:22:02.349 00:00:12.280 TCP 12.102.0.1:52602 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:23:04.671 00:00:11.807 TCP 12.102.0.1:43812 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:24:06.523 00:00:11.801 TCP 12.102.0.1:44522 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:25:05.353 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 02:25:05.389 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 02:25:05.417 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 02:25:05.304 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 02:25:05.397 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 02:25:05.362 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 02:25:05.330 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 02:25:08.359 00:00:11.830 TCP 12.102.0.1:34940 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:26:10.229 00:00:11.814 TCP 12.102.0.1:60826 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:27:12.081 00:00:11.765 TCP 12.102.0.1:56304 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:23:09.208 00:06:00.581 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 02:28:13.880 00:00:11.802 TCP 12.102.0.1:60728 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:24:09.204 00:06:00.587 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 02:29:15.722 00:00:11.794 TCP 12.102.0.1:50180 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:30:04.733 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 02:30:04.938 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 02:30:05.152 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 02:30:04.994 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 02:30:05.090 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 02:30:04.837 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 02:30:04.712 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 02:30:17.562 00:00:11.760 TCP 12.102.0.1:58736 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:31:19.360 00:00:11.787 TCP 12.102.0.1:40642 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:32:21.185 00:00:11.764 TCP 12.102.0.1:37826 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:33:22.988 00:00:11.803 TCP 12.102.0.1:38732 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:34:24.834 00:00:12.188 TCP 12.102.0.1:43134 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:35:05.024 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 02:35:05.048 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 02:35:05.078 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 02:35:04.860 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 02:35:04.756 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 02:35:05.062 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 02:35:04.956 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 02:30:09.208 00:06:00.582 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 02:35:27.079 00:00:11.792 TCP 12.102.0.1:37706 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:31:09.207 00:06:00.586 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 02:36:28.913 00:00:11.781 TCP 12.102.0.1:41276 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:37:30.738 00:00:11.761 TCP 12.102.0.1:59792 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:38:32.542 00:00:11.808 TCP 12.102.0.1:57004 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:39:34.393 00:00:11.774 TCP 12.102.0.1:44504 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:40:05.069 00:00:00.046 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 02:40:04.992 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 02:40:05.231 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 02:40:04.985 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 02:40:05.292 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 02:40:04.990 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 02:40:05.047 00:00:00.046 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 02:40:36.204 00:00:11.775 TCP 12.102.0.1:41392 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:41:38.036 00:00:11.800 TCP 12.102.0.1:34656 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:37:09.210 00:06:00.582 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 02:42:39.875 00:00:11.800 TCP 12.102.0.1:43144 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:38:09.208 00:06:00.587 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 02:43:41.713 00:00:11.798 TCP 12.102.0.1:53196 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:44:43.550 00:00:11.807 TCP 12.102.0.1:59374 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:45:05.274 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 02:45:04.986 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 02:45:05.325 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 02:45:05.231 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 02:45:05.394 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 02:45:05.198 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 02:45:05.252 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 02:45:45.392 00:00:11.813 TCP 12.102.0.1:54724 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:46:47.246 00:00:11.800 TCP 12.102.0.1:35534 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:47:49.088 00:00:12.623 TCP 12.102.0.1:49974 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:48:51.742 00:00:11.803 TCP 12.102.0.1:55558 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:44:09.211 00:06:00.583 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 02:50:05.306 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 02:50:05.350 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 02:50:05.342 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 02:50:05.337 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 02:49:53.580 00:00:11.809 TCP 12.102.0.1:49534 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:50:05.210 00:00:00.041 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 02:50:05.303 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 02:50:05.283 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 02:45:09.209 00:06:00.588 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 02:50:55.427 00:00:11.800 TCP 12.102.0.1:46276 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:51:57.270 00:00:11.992 TCP 12.102.0.1:38564 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:52:59.300 00:00:11.821 TCP 12.102.0.1:48682 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:54:01.149 00:00:11.807 TCP 12.102.0.1:36664 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:55:05.409 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 02:55:05.428 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 02:55:05.433 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 02:55:05.439 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 02:55:05.656 00:00:00.020 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 02:55:05.591 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 02:55:05.461 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 02:55:02.994 00:00:11.794 TCP 12.102.0.1:57676 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:51:09.213 00:06:00.582 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 02:56:04.822 00:00:11.808 TCP 12.102.0.1:50802 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:52:09.212 00:06:00.588 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 02:57:06.662 00:00:11.803 TCP 12.102.0.1:57162 -> 1.101.0.1:3000 11 1507 1 2025-11-20 02:58:08.500 00:00:12.194 TCP 12.102.0.1:36580 -> 1.101.0.1:3000 15 1926 1 Summary: total flows: 160, total bytes: 124910, total packets: 1150, avg bps: 263, avg pps: 0, avg bpp: 108 Time window: 2025-11-20 01:55:09 - 2025-11-20 02:58:20 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0021s User: 0.0031s Wall: 0.0024s flows/second: 66523.5 Runtime: 0.0024s