Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 12:59:10.381 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-28 12:59:10.404 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-28 12:59:10.525 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 12:59:10.433 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-28 12:59:10.426 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-28 12:59:10.583 00:00:00.029 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-28 12:59:10.406 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-28 12:59:00.576 00:00:11.763 TCP 12.102.0.1:57032 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:00:02.382 00:00:11.781 TCP 12.102.0.1:35982 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:01:04.204 00:00:11.767 TCP 12.102.0.1:41790 -> 1.101.0.1:3000 11 1507 1 2025-11-28 12:56:13.626 00:06:00.152 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-28 12:56:13.629 00:06:00.147 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-28 13:02:06.024 00:00:12.239 TCP 12.102.0.1:43890 -> 1.101.0.1:3000 15 1926 1 2025-11-28 13:03:08.299 00:00:11.813 TCP 12.102.0.1:42848 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:04:10.576 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-28 13:04:10.709 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 13:04:10.569 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-28 13:04:10.467 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-28 13:04:10.451 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-28 13:04:10.579 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-28 13:04:10.553 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-28 13:04:10.141 00:00:11.784 TCP 12.102.0.1:59124 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:05:11.958 00:00:11.763 TCP 12.102.0.1:38124 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:06:13.786 00:00:11.793 TCP 12.102.0.1:36624 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:07:15.592 00:00:11.807 TCP 12.102.0.1:47290 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:03:13.631 00:06:00.146 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-28 13:03:13.628 00:06:00.151 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-28 13:08:17.435 00:00:11.818 TCP 12.102.0.1:36630 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:09:10.641 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-28 13:09:10.530 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 13:09:10.615 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-28 13:09:10.404 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-28 13:09:10.687 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-28 13:09:10.563 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-28 13:09:10.619 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-28 13:09:19.295 00:00:11.823 TCP 12.102.0.1:43104 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:10:21.159 00:00:11.760 TCP 12.102.0.1:46326 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:11:22.961 00:00:11.802 TCP 12.102.0.1:46118 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:12:24.811 00:00:11.801 TCP 12.102.0.1:35698 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:13:26.649 00:00:11.821 TCP 12.102.0.1:38104 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:14:10.683 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-28 13:14:10.705 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-28 13:14:10.626 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 13:14:10.792 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-28 13:14:10.749 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-28 13:14:10.733 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-28 13:14:10.676 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-28 13:14:28.510 00:00:11.801 TCP 12.102.0.1:58386 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:10:13.632 00:06:00.149 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-28 13:10:13.635 00:06:00.143 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-28 13:15:30.352 00:00:11.799 TCP 12.102.0.1:33476 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:16:32.190 00:00:12.192 TCP 12.102.0.1:57044 -> 1.101.0.1:3000 15 1926 1 2025-11-28 13:17:34.420 00:00:11.800 TCP 12.102.0.1:55578 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:18:36.257 00:00:11.766 TCP 12.102.0.1:42756 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:19:10.578 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-28 13:19:10.602 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-28 13:19:10.829 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 13:19:10.761 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-28 13:19:10.836 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-28 13:19:10.888 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-28 13:19:10.698 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-28 13:19:38.081 00:00:11.795 TCP 12.102.0.1:53384 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:20:39.915 00:00:11.818 TCP 12.102.0.1:58010 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:21:41.772 00:00:11.799 TCP 12.102.0.1:53122 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:17:13.636 00:06:00.145 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-28 13:17:13.633 00:06:00.150 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-28 13:22:43.613 00:00:11.814 TCP 12.102.0.1:45392 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:23:45.480 00:00:11.768 TCP 12.102.0.1:42814 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:24:10.976 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-28 13:24:10.998 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-28 13:24:10.811 00:00:00.020 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 13:24:11.224 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-28 13:24:10.846 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-28 13:24:11.132 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-28 13:24:11.082 00:00:00.046 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-28 13:24:47.284 00:00:11.803 TCP 12.102.0.1:54460 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:25:49.122 00:00:11.802 TCP 12.102.0.1:36198 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:26:50.959 00:00:11.773 TCP 12.102.0.1:38938 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:27:52.767 00:00:11.811 TCP 12.102.0.1:38146 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:29:10.844 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-28 13:28:54.623 00:00:11.801 TCP 12.102.0.1:54158 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:29:10.867 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-28 13:29:11.008 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 13:29:10.941 00:00:00.016 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-28 13:29:10.837 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-28 13:29:11.071 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-28 13:29:10.942 00:00:00.025 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-28 13:24:13.640 00:06:00.143 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-28 13:24:13.638 00:06:00.147 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-28 13:29:56.462 00:00:11.804 TCP 12.102.0.1:60906 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:30:58.302 00:00:11.822 TCP 12.102.0.1:56576 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:32:00.142 00:00:12.056 TCP 12.102.0.1:46188 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:33:02.231 00:00:11.806 TCP 12.102.0.1:33314 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:34:10.886 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-28 13:34:10.909 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-28 13:34:10.970 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 13:34:11.156 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-28 13:34:11.020 00:00:00.020 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-28 13:34:10.845 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-28 13:34:10.898 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-28 13:34:04.084 00:00:11.799 TCP 12.102.0.1:56254 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:35:05.921 00:00:11.820 TCP 12.102.0.1:58394 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:31:13.637 00:06:00.149 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-28 13:31:13.640 00:06:00.143 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-28 13:36:07.778 00:00:11.803 TCP 12.102.0.1:43402 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:37:09.622 00:00:11.770 TCP 12.102.0.1:52760 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:38:11.425 00:00:11.802 TCP 12.102.0.1:35186 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:39:11.034 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-28 13:39:11.056 00:00:00.025 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-28 13:39:11.221 00:00:00.046 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 13:39:11.179 00:00:00.034 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-28 13:39:11.267 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-28 13:39:11.267 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-28 13:39:10.970 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-28 13:39:13.263 00:00:11.764 TCP 12.102.0.1:38240 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:40:15.082 00:00:11.803 TCP 12.102.0.1:47114 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:41:16.926 00:00:11.827 TCP 12.102.0.1:37416 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:42:18.792 00:00:11.805 TCP 12.102.0.1:45150 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:38:13.639 00:06:00.149 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-28 13:38:13.641 00:06:00.145 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-28 13:43:20.635 00:00:11.802 TCP 12.102.0.1:37470 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:44:11.258 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-28 13:44:11.764 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 13:44:11.312 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-28 13:44:11.481 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-28 13:44:11.468 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-28 13:44:11.445 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-28 13:44:11.237 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-28 13:44:22.478 00:00:11.804 TCP 12.102.0.1:56908 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:45:24.322 00:00:11.854 TCP 12.102.0.1:50620 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:46:26.214 00:00:11.810 TCP 12.102.0.1:56574 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:47:28.080 00:00:11.815 TCP 12.102.0.1:51022 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:48:29.935 00:00:11.775 TCP 12.102.0.1:42666 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:49:11.295 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-28 13:49:11.317 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-28 13:49:11.455 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 13:49:11.443 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-28 13:49:11.437 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-28 13:49:11.452 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-28 13:49:11.440 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-28 13:49:31.747 00:00:11.803 TCP 12.102.0.1:43672 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:45:13.644 00:06:00.144 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-28 13:45:13.639 00:06:00.149 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-28 13:50:33.588 00:00:11.823 TCP 12.102.0.1:43758 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:51:35.451 00:00:12.368 TCP 12.102.0.1:49780 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:52:37.858 00:00:11.799 TCP 12.102.0.1:33492 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:53:39.697 00:00:11.781 TCP 12.102.0.1:36440 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:54:11.523 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-28 13:54:11.547 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-28 13:54:11.442 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-28 13:54:11.159 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-28 13:54:11.459 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-28 13:54:11.470 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-28 13:54:11.558 00:00:00.028 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-28 13:54:41.515 00:00:11.807 TCP 12.102.0.1:33624 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:55:43.358 00:00:11.873 TCP 12.102.0.1:57328 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:56:45.266 00:00:11.811 TCP 12.102.0.1:52070 -> 1.101.0.1:3000 11 1507 1 2025-11-28 13:52:13.642 00:06:00.151 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-28 13:52:13.646 00:06:00.145 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-28 13:57:47.104 00:00:11.765 TCP 12.102.0.1:39674 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 160, total bytes: 124910, total packets: 1150, avg bps: 268, avg pps: 0, avg bpp: 108 Time window: 2025-11-28 12:56:13 - 2025-11-28 13:58:13 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0035s User: 0.0026s Wall: 0.0020s flows/second: 78895.9 Runtime: 0.0020s