Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 12:58:48.717 00:00:17.254 TCP 12.102.0.1:35650 -> 1.101.0.1:3000 11 1507 1 2025-11-20 12:54:09.414 00:06:00.544 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 12:59:56.024 00:00:11.809 TCP 12.102.0.1:45308 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:00:19.355 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 13:00:19.378 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 13:00:19.394 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 13:00:19.089 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 13:00:19.313 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 13:00:19.397 00:00:00.034 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 13:00:19.339 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 13:00:57.873 00:00:11.802 TCP 12.102.0.1:58772 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:01:59.711 00:00:11.844 TCP 12.102.0.1:55846 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:03:01.591 00:00:11.811 TCP 12.102.0.1:45566 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:04:03.438 00:00:11.814 TCP 12.102.0.1:34336 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:00:09.417 00:06:00.542 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 13:05:19.344 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 13:05:05.288 00:00:11.811 TCP 12.102.0.1:60622 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:05:19.366 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 13:05:19.538 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 13:05:19.299 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 13:05:19.204 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 13:05:19.308 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 13:05:19.522 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 13:01:09.417 00:06:00.546 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 13:06:07.138 00:00:11.806 TCP 12.102.0.1:33544 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:07:08.983 00:00:11.798 TCP 12.102.0.1:34568 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:08:10.822 00:00:11.868 TCP 12.102.0.1:33688 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:09:12.731 00:00:11.806 TCP 12.102.0.1:56706 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:10:19.523 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 13:10:19.546 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 13:10:19.724 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 13:10:19.811 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 13:10:19.474 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 13:10:19.777 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 13:10:19.557 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 13:10:14.579 00:00:11.800 TCP 12.102.0.1:58184 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:11:16.417 00:00:11.759 TCP 12.102.0.1:57800 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:07:09.420 00:06:00.540 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 13:12:18.215 00:00:12.316 TCP 12.102.0.1:54320 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:08:09.417 00:06:00.546 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 13:13:20.573 00:00:11.806 TCP 12.102.0.1:52386 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:14:22.418 00:00:11.762 TCP 12.102.0.1:43226 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:15:19.576 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 13:15:19.766 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 13:15:19.597 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 13:15:19.709 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 13:15:19.804 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 13:15:19.587 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 13:15:19.553 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 13:15:24.211 00:00:11.804 TCP 12.102.0.1:50014 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:16:26.078 00:00:11.806 TCP 12.102.0.1:53752 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:17:27.922 00:00:11.787 TCP 12.102.0.1:34692 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:18:29.743 00:00:12.676 TCP 12.102.0.1:43016 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:14:09.423 00:06:00.540 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 13:19:32.459 00:00:11.802 TCP 12.102.0.1:36764 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:15:09.423 00:06:00.543 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 13:20:19.564 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 13:20:19.586 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 13:20:19.818 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 13:20:19.610 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 13:20:19.690 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 13:20:19.771 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 13:20:19.463 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 13:20:34.301 00:00:12.063 TCP 12.102.0.1:56584 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:21:36.402 00:00:11.761 TCP 12.102.0.1:41584 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:22:38.203 00:00:11.803 TCP 12.102.0.1:53264 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:23:40.070 00:00:11.802 TCP 12.102.0.1:52454 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:24:41.909 00:00:11.831 TCP 12.102.0.1:34948 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:25:19.744 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 13:25:19.891 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 13:25:19.929 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 13:25:19.760 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 13:25:19.881 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 13:25:19.735 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 13:25:19.721 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 13:25:43.792 00:00:11.755 TCP 12.102.0.1:48538 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:21:09.429 00:06:00.535 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 13:26:45.595 00:00:11.806 TCP 12.102.0.1:51050 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:22:09.427 00:06:00.540 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 13:27:47.437 00:00:11.813 TCP 12.102.0.1:33106 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:28:49.284 00:00:11.803 TCP 12.102.0.1:54984 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:29:51.129 00:00:11.813 TCP 12.102.0.1:38394 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:30:19.907 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 13:30:19.734 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 13:30:19.931 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 13:30:19.961 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 13:30:20.068 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 13:30:19.771 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 13:30:19.929 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 13:30:52.982 00:00:11.803 TCP 12.102.0.1:37462 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:31:54.820 00:00:11.805 TCP 12.102.0.1:35848 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:32:56.660 00:00:11.814 TCP 12.102.0.1:38926 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:28:09.431 00:06:00.533 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 13:29:09.429 00:06:00.538 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 13:33:58.539 00:00:12.417 TCP 12.102.0.1:53234 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:35:00.993 00:00:11.815 TCP 12.102.0.1:47278 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:35:19.974 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 13:35:20.224 00:00:00.045 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 13:35:20.115 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 13:35:20.097 00:00:00.020 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 13:35:20.187 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 13:35:19.782 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 13:35:19.952 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 13:36:02.845 00:00:11.801 TCP 12.102.0.1:33994 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:37:04.683 00:00:11.801 TCP 12.102.0.1:50972 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:38:06.521 00:00:12.734 TCP 12.102.0.1:60534 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:39:09.287 00:00:11.802 TCP 12.102.0.1:34806 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:35:09.433 00:06:00.535 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 13:40:20.316 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 13:40:20.236 00:00:00.042 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 13:40:20.396 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 13:40:19.944 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 13:40:20.386 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 13:40:19.980 00:00:00.029 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 13:40:20.294 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 13:40:11.131 00:00:11.799 TCP 12.102.0.1:53928 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:36:09.432 00:06:00.539 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 13:41:12.969 00:00:11.805 TCP 12.102.0.1:46404 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:42:14.810 00:00:11.801 TCP 12.102.0.1:37128 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:43:16.659 00:00:11.762 TCP 12.102.0.1:41854 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:44:18.464 00:00:11.803 TCP 12.102.0.1:33306 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:45:20.047 00:00:00.030 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 13:45:20.071 00:00:00.030 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 13:45:20.282 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 13:45:20.244 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 13:45:20.287 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 13:45:20.302 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 13:45:20.048 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 13:45:20.305 00:00:11.800 TCP 12.102.0.1:34010 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:46:22.145 00:00:11.810 TCP 12.102.0.1:55804 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:42:09.436 00:06:00.533 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 13:47:23.997 00:00:11.812 TCP 12.102.0.1:59550 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:43:09.434 00:06:00.538 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 13:48:25.854 00:00:11.803 TCP 12.102.0.1:60410 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:49:27.696 00:00:11.800 TCP 12.102.0.1:39268 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:50:20.322 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 13:50:20.345 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 13:50:20.341 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 13:50:20.322 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 13:50:20.293 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 13:50:20.409 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 13:50:20.273 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 13:50:29.538 00:00:11.805 TCP 12.102.0.1:39122 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:51:31.386 00:00:11.839 TCP 12.102.0.1:57278 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:52:33.241 00:00:11.803 TCP 12.102.0.1:47610 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:53:35.082 00:00:11.812 TCP 12.102.0.1:56402 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:49:09.438 00:06:00.534 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 13:54:36.936 00:00:11.768 TCP 12.102.0.1:50068 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:50:09.436 00:06:00.539 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 13:55:20.474 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 13:55:20.497 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 13:55:20.422 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 13:55:20.524 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 13:55:20.414 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 13:55:20.512 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 13:55:20.476 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 13:55:38.746 00:00:11.798 TCP 12.102.0.1:55640 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:56:40.582 00:00:11.810 TCP 12.102.0.1:56466 -> 1.101.0.1:3000 11 1507 1 2025-11-20 13:57:42.431 00:00:11.807 TCP 12.102.0.1:44616 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 159, total bytes: 123211, total packets: 1128, avg bps: 257, avg pps: 0, avg bpp: 109 Time window: 2025-11-20 12:54:09 - 2025-11-20 13:57:54 Total flows processed: 159, passed: 159, Blocks skipped: 0, Bytes read: 16600 Sys: 0.0044s User: 0.0000s Wall: 0.0014s flows/second: 112860.8 Runtime: 0.0014s