Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 05:58:41.255 00:00:11.809 TCP 12.102.0.1:43610 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:54:09.263 00:06:00.586 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 05:59:43.100 00:00:11.803 TCP 12.102.0.1:41896 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:00:09.419 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 06:00:09.319 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 06:00:09.435 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 06:00:09.144 00:00:00.042 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 06:00:09.422 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 06:00:09.358 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 06:00:09.396 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 06:00:44.947 00:00:11.810 TCP 12.102.0.1:48178 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:01:46.802 00:00:11.810 TCP 12.102.0.1:50854 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:02:48.650 00:00:11.815 TCP 12.102.0.1:53794 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:03:50.508 00:00:11.805 TCP 12.102.0.1:52826 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:04:52.348 00:00:11.802 TCP 12.102.0.1:45030 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:05:09.221 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 06:00:09.290 00:06:00.557 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 06:05:09.245 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 06:05:09.340 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 06:05:09.375 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 06:05:09.195 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 06:05:09.298 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 06:05:09.259 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 06:05:54.199 00:00:11.804 TCP 12.102.0.1:44624 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:01:09.293 00:06:00.557 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 06:06:56.071 00:00:11.805 TCP 12.102.0.1:53634 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:07:57.911 00:00:11.869 TCP 12.102.0.1:44722 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:08:59.815 00:00:11.783 TCP 12.102.0.1:48462 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:10:09.098 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 06:10:09.121 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 06:10:09.070 00:00:00.020 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 06:10:09.500 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 06:10:09.409 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 06:10:09.433 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 06:10:09.067 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 06:10:01.636 00:00:11.799 TCP 12.102.0.1:57796 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:11:03.493 00:00:11.805 TCP 12.102.0.1:60252 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:07:09.295 00:06:00.553 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 06:12:05.348 00:00:11.769 TCP 12.102.0.1:53464 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:08:09.294 00:06:00.560 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 06:13:07.157 00:00:11.816 TCP 12.102.0.1:58686 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:14:09.013 00:00:11.819 TCP 12.102.0.1:58836 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:15:09.335 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 06:15:09.357 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 06:15:09.540 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 06:15:09.578 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 06:15:09.480 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 06:15:09.581 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 06:15:09.344 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 06:15:10.869 00:00:11.855 TCP 12.102.0.1:33450 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:16:12.763 00:00:11.759 TCP 12.102.0.1:36184 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:17:14.564 00:00:11.762 TCP 12.102.0.1:57276 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:18:16.364 00:00:11.836 TCP 12.102.0.1:50396 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:14:09.297 00:06:00.554 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 06:19:18.232 00:00:11.770 TCP 12.102.0.1:37910 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:20:09.348 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 06:15:09.295 00:06:00.560 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 06:20:09.696 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 06:20:09.731 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 06:20:09.468 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 06:20:09.475 00:00:00.027 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 06:20:09.578 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 06:20:09.325 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 06:20:20.066 00:00:11.805 TCP 12.102.0.1:38066 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:21:21.911 00:00:11.829 TCP 12.102.0.1:48362 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:22:23.780 00:00:11.812 TCP 12.102.0.1:51140 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:23:25.645 00:00:11.809 TCP 12.102.0.1:57736 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:24:27.494 00:00:11.796 TCP 12.102.0.1:36004 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:25:09.924 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 06:25:10.098 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 06:25:09.904 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 06:25:09.871 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 06:25:10.038 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 06:25:09.930 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 06:25:09.901 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 06:25:29.329 00:00:11.804 TCP 12.102.0.1:54784 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:21:09.300 00:06:00.554 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 06:26:31.169 00:00:11.762 TCP 12.102.0.1:58118 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:22:09.298 00:06:00.560 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 06:27:32.969 00:00:12.251 TCP 12.102.0.1:58960 -> 1.101.0.1:3000 15 1926 1 2025-11-20 06:28:35.259 00:00:11.804 TCP 12.102.0.1:48088 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:29:37.102 00:00:11.798 TCP 12.102.0.1:53332 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:30:09.791 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 06:30:09.710 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 06:30:09.681 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 06:30:09.802 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 06:30:09.877 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 06:30:09.624 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 06:30:09.769 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 06:30:38.938 00:00:11.808 TCP 12.102.0.1:42294 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:31:40.786 00:00:11.805 TCP 12.102.0.1:39432 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:32:42.627 00:00:12.230 TCP 12.102.0.1:56918 -> 1.101.0.1:3000 15 1926 1 2025-11-20 06:28:09.303 00:06:00.552 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 06:33:44.899 00:00:11.855 TCP 12.102.0.1:37596 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:29:09.301 00:06:00.557 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 06:34:46.817 00:00:11.796 TCP 12.102.0.1:56718 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:35:09.752 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 06:35:09.774 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 06:35:09.988 00:00:00.025 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 06:35:09.990 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 06:35:09.887 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 06:35:09.821 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 06:35:09.675 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 06:35:48.657 00:00:11.816 TCP 12.102.0.1:35586 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:36:50.506 00:00:11.803 TCP 12.102.0.1:36878 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:37:52.349 00:00:11.840 TCP 12.102.0.1:58380 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:38:54.226 00:00:11.806 TCP 12.102.0.1:36200 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:40:10.034 00:00:00.051 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 06:35:09.306 00:06:00.552 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 06:39:56.080 00:00:11.802 TCP 12.102.0.1:45288 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:40:10.054 00:00:00.052 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 06:40:10.070 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 06:40:10.125 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 06:40:09.977 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 06:40:09.981 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 06:40:09.823 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 06:40:57.917 00:00:11.801 TCP 12.102.0.1:38202 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:36:09.303 00:06:00.556 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 06:41:59.757 00:00:11.800 TCP 12.102.0.1:45980 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:43:01.596 00:00:11.805 TCP 12.102.0.1:52900 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:44:03.439 00:00:11.816 TCP 12.102.0.1:56242 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:45:09.896 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 06:45:10.044 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 06:45:10.059 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 06:45:10.119 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 06:45:10.120 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 06:45:10.189 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 06:45:09.874 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 06:45:05.292 00:00:11.798 TCP 12.102.0.1:58834 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:46:07.132 00:00:11.802 TCP 12.102.0.1:54208 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:42:09.307 00:06:00.551 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 06:47:08.972 00:00:11.796 TCP 12.102.0.1:50864 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:43:09.304 00:06:00.556 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 06:48:10.809 00:00:11.762 TCP 12.102.0.1:40528 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:49:12.610 00:00:11.765 TCP 12.102.0.1:51654 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:50:10.044 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 06:50:10.084 00:00:00.036 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 06:50:09.996 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 06:50:10.153 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 06:50:10.289 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 06:50:09.933 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 06:50:09.973 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 06:50:14.412 00:00:11.804 TCP 12.102.0.1:47722 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:51:16.254 00:00:11.809 TCP 12.102.0.1:37068 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:52:18.101 00:00:11.799 TCP 12.102.0.1:59528 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:53:19.943 00:00:11.802 TCP 12.102.0.1:54002 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:49:09.307 00:06:00.551 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 06:54:21.784 00:00:11.801 TCP 12.102.0.1:45056 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:55:10.217 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 06:55:10.239 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 06:50:09.306 00:06:00.555 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 06:55:10.050 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 06:55:10.164 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 06:55:10.455 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 06:55:10.284 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 06:55:10.373 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 06:55:23.623 00:00:11.781 TCP 12.102.0.1:33478 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:56:25.442 00:00:11.811 TCP 12.102.0.1:35892 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:57:27.288 00:00:11.803 TCP 12.102.0.1:52244 -> 1.101.0.1:3000 11 1507 1 2025-11-20 06:58:29.132 00:00:11.830 TCP 12.102.0.1:59964 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 160, total bytes: 125556, total packets: 1147, avg bps: 259, avg pps: 0, avg bpp: 109 Time window: 2025-11-20 05:54:09 - 2025-11-20 06:58:40 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0041s User: 0.0030s Wall: 0.0030s flows/second: 54072.1 Runtime: 0.0030s