Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 00:58:55.821 00:00:00.030 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-28 00:58:55.845 00:00:00.029 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-28 00:58:55.783 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 00:58:55.895 00:00:00.028 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-28 00:58:56.042 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-28 00:58:55.772 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-28 00:58:55.655 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-28 00:58:45.260 00:00:11.801 TCP 12.102.0.1:33338 -> 1.101.0.1:3000 11 1507 1 2025-11-28 00:59:47.101 00:00:11.819 TCP 12.102.0.1:58250 -> 1.101.0.1:3000 11 1507 1 2025-11-28 00:55:13.378 00:06:00.164 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-28 00:55:13.374 00:06:00.169 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-28 01:00:48.960 00:00:11.802 TCP 12.102.0.1:49236 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:01:50.800 00:00:11.797 TCP 12.102.0.1:41024 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:02:52.637 00:00:11.806 TCP 12.102.0.1:33448 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:03:55.642 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-28 01:03:55.664 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-28 01:03:55.855 00:00:00.020 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 01:03:56.126 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-28 01:03:56.103 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-28 01:03:56.136 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-28 01:03:56.016 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-28 01:03:54.478 00:00:11.802 TCP 12.102.0.1:49104 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:04:56.326 00:00:11.799 TCP 12.102.0.1:46932 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:05:58.189 00:00:11.817 TCP 12.102.0.1:35660 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:07:00.065 00:00:11.807 TCP 12.102.0.1:49224 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:02:13.379 00:06:00.163 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-28 01:02:13.378 00:06:00.168 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-28 01:08:01.912 00:00:11.824 TCP 12.102.0.1:48620 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:08:56.208 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-28 01:08:56.231 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-28 01:08:56.309 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 01:08:56.027 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-28 01:08:56.285 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-28 01:08:56.116 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-28 01:08:55.980 00:00:00.025 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-28 01:09:03.771 00:00:11.799 TCP 12.102.0.1:54270 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:10:05.612 00:00:11.804 TCP 12.102.0.1:55476 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:11:07.465 00:00:11.810 TCP 12.102.0.1:60184 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:12:09.320 00:00:11.768 TCP 12.102.0.1:52338 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:13:11.126 00:00:11.836 TCP 12.102.0.1:37936 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:13:56.460 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-28 01:13:56.483 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-28 01:13:56.684 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 01:13:55.962 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-28 01:13:56.391 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-28 01:13:56.733 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-28 01:13:56.431 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-28 01:09:13.383 00:06:00.164 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-28 01:09:13.381 00:06:00.169 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-28 01:14:13.001 00:00:11.794 TCP 12.102.0.1:46410 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:15:14.839 00:00:11.800 TCP 12.102.0.1:37562 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:16:16.682 00:00:11.781 TCP 12.102.0.1:55822 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:17:18.479 00:00:11.810 TCP 12.102.0.1:33884 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:18:20.332 00:00:11.759 TCP 12.102.0.1:49344 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:18:56.162 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-28 01:18:56.258 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 01:18:56.407 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-28 01:18:56.181 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-28 01:18:56.493 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-28 01:18:56.172 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-28 01:18:56.138 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-28 01:19:22.127 00:00:11.797 TCP 12.102.0.1:59686 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:20:23.960 00:00:11.850 TCP 12.102.0.1:54476 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:16:13.385 00:06:00.166 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-28 01:16:13.382 00:06:00.171 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-28 01:21:25.850 00:00:11.766 TCP 12.102.0.1:35288 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:22:27.648 00:00:11.825 TCP 12.102.0.1:43274 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:23:29.514 00:00:11.812 TCP 12.102.0.1:39154 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:23:56.445 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-28 01:23:56.468 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-28 01:23:56.511 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 01:23:56.502 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-28 01:23:56.676 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-28 01:23:56.453 00:00:00.025 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-28 01:23:56.531 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-28 01:24:31.361 00:00:11.824 TCP 12.102.0.1:42034 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:25:33.232 00:00:11.802 TCP 12.102.0.1:48506 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:26:35.074 00:00:11.799 TCP 12.102.0.1:44158 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:27:36.917 00:00:11.793 TCP 12.102.0.1:45286 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:23:13.383 00:06:00.171 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-28 01:23:13.386 00:06:00.166 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-28 01:28:38.746 00:00:11.803 TCP 12.102.0.1:55228 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:28:56.427 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-28 01:28:56.449 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-28 01:28:56.501 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 01:28:56.576 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-28 01:28:56.610 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-28 01:28:56.517 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-28 01:28:56.264 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-28 01:29:40.586 00:00:11.821 TCP 12.102.0.1:55078 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:30:42.448 00:00:11.831 TCP 12.102.0.1:59098 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:31:44.320 00:00:11.820 TCP 12.102.0.1:35692 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:32:46.178 00:00:11.801 TCP 12.102.0.1:55686 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:33:56.319 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-28 01:33:56.342 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-28 01:33:56.598 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 01:33:56.737 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-28 01:33:56.658 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-28 01:33:56.607 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-28 01:33:56.630 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-28 01:33:48.012 00:00:11.799 TCP 12.102.0.1:55016 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:34:49.856 00:00:11.817 TCP 12.102.0.1:57470 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:30:13.385 00:06:00.171 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-28 01:30:13.387 00:06:00.165 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-28 01:35:51.711 00:00:11.799 TCP 12.102.0.1:57348 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:36:53.548 00:00:11.802 TCP 12.102.0.1:49002 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:37:55.395 00:00:11.796 TCP 12.102.0.1:57870 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:38:56.634 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-28 01:38:56.658 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-28 01:38:56.865 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 01:38:56.789 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-28 01:38:56.685 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-28 01:38:56.759 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-28 01:38:56.577 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-28 01:38:57.237 00:00:11.767 TCP 12.102.0.1:55990 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:39:59.065 00:00:11.818 TCP 12.102.0.1:33522 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:41:00.918 00:00:11.787 TCP 12.102.0.1:40494 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:42:02.750 00:00:11.891 TCP 12.102.0.1:56938 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:37:13.385 00:06:00.171 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-28 01:37:13.389 00:06:00.166 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-28 01:43:04.683 00:00:11.816 TCP 12.102.0.1:34758 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:43:56.748 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-28 01:43:56.771 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-28 01:43:56.630 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 01:43:56.803 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-28 01:43:56.702 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-28 01:43:56.909 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-28 01:43:56.678 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-28 01:44:06.536 00:00:11.804 TCP 12.102.0.1:49558 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:45:08.387 00:00:11.809 TCP 12.102.0.1:56440 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:46:10.237 00:00:11.803 TCP 12.102.0.1:34178 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:47:12.081 00:00:11.803 TCP 12.102.0.1:55280 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:48:13.919 00:00:11.832 TCP 12.102.0.1:55662 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:48:56.911 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-28 01:48:56.811 00:00:00.025 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 01:48:56.973 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-28 01:48:56.736 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-28 01:48:56.845 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-28 01:48:56.839 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-28 01:48:56.888 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-28 01:44:13.390 00:06:00.167 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-28 01:44:13.387 00:06:00.171 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-28 01:49:15.789 00:00:11.800 TCP 12.102.0.1:35762 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:50:17.626 00:00:11.815 TCP 12.102.0.1:58092 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:51:19.477 00:00:11.807 TCP 12.102.0.1:42778 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:52:21.316 00:00:11.798 TCP 12.102.0.1:47430 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:53:23.153 00:00:16.392 TCP 12.102.0.1:38452 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:53:56.892 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-28 01:53:56.665 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 01:53:56.828 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-28 01:53:56.899 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-28 01:53:56.869 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-28 01:53:57.024 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-28 01:53:57.035 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-28 01:54:29.586 00:00:11.778 TCP 12.102.0.1:57332 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:55:31.402 00:00:11.824 TCP 12.102.0.1:57548 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:51:13.390 00:06:00.169 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-28 01:51:13.393 00:06:00.163 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-28 01:56:33.268 00:00:11.858 TCP 12.102.0.1:57916 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:57:35.171 00:00:11.799 TCP 12.102.0.1:41016 -> 1.101.0.1:3000 11 1507 1 2025-11-28 01:58:37.009 00:00:11.797 TCP 12.102.0.1:51944 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 161, total bytes: 125579, total packets: 1153, avg bps: 263, avg pps: 0, avg bpp: 108 Time window: 2025-11-28 00:55:13 - 2025-11-28 01:58:48 Total flows processed: 161, passed: 161, Blocks skipped: 0, Bytes read: 16808 Sys: 0.0055s User: 0.0011s Wall: 0.0027s flows/second: 60661.4 Runtime: 0.0027s