Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-02 13:59:24.462 00:00:11.779 TCP 12.102.0.1:33808 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:00:26.285 00:00:11.803 TCP 12.102.0.1:49078 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:01:28.126 00:00:11.758 TCP 12.102.0.1:41652 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:02:09.767 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-02 14:02:09.977 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-02 14:02:09.644 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 14:02:09.856 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-02 14:02:09.789 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-02 14:02:09.841 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-02 14:02:09.859 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-02 14:02:29.927 00:00:11.822 TCP 12.102.0.1:33768 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:03:31.786 00:00:11.797 TCP 12.102.0.1:33804 -> 1.101.0.1:3000 11 1507 1 2025-09-02 13:59:24.341 00:06:00.120 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-09-02 14:04:33.622 00:00:11.805 TCP 12.102.0.1:47702 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:00:24.339 00:06:00.125 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-02 14:05:35.463 00:00:11.759 TCP 12.102.0.1:49160 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:06:37.266 00:00:11.764 TCP 12.102.0.1:51202 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:07:09.791 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-02 14:07:09.814 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-02 14:07:10.204 00:00:00.033 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-02 14:07:09.986 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-02 14:07:10.018 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-02 14:07:09.908 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 14:07:10.138 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-02 14:07:39.076 00:00:11.797 TCP 12.102.0.1:57076 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:08:40.913 00:00:11.867 TCP 12.102.0.1:55208 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:09:42.830 00:00:11.782 TCP 12.102.0.1:50186 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:10:44.652 00:00:11.821 TCP 12.102.0.1:56968 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:06:24.346 00:06:00.118 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-09-02 14:11:46.510 00:00:11.806 TCP 12.102.0.1:60096 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:12:09.806 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-02 14:12:09.925 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 14:12:09.924 00:00:00.031 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-02 14:12:09.860 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-02 14:12:09.924 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-02 14:12:09.684 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-02 14:12:09.838 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-02 14:07:24.344 00:06:00.124 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-02 14:12:48.354 00:00:12.805 TCP 12.102.0.1:55628 -> 1.101.0.1:3000 15 1926 1 2025-09-02 14:13:51.196 00:00:11.804 TCP 12.102.0.1:59280 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:14:53.037 00:00:11.760 TCP 12.102.0.1:50066 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:15:54.840 00:00:11.803 TCP 12.102.0.1:37732 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:17:10.166 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-02 14:16:56.678 00:00:11.802 TCP 12.102.0.1:57018 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:17:10.233 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-02 14:17:10.451 00:00:00.029 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 14:17:10.263 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-02 14:17:10.187 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-02 14:17:10.009 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-02 14:17:10.195 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-02 14:17:58.520 00:00:11.805 TCP 12.102.0.1:60070 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:13:24.347 00:06:00.119 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-09-02 14:19:00.363 00:00:11.832 TCP 12.102.0.1:55070 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:14:24.344 00:06:00.124 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-02 14:20:02.234 00:00:11.812 TCP 12.102.0.1:49576 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:21:04.087 00:00:11.810 TCP 12.102.0.1:48416 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:22:10.413 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-02 14:22:10.006 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-02 14:22:10.131 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 14:22:10.360 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-02 14:22:10.437 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-02 14:22:10.306 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-02 14:22:09.995 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-02 14:22:05.935 00:00:11.783 TCP 12.102.0.1:57398 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:23:07.753 00:00:12.494 TCP 12.102.0.1:47128 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:24:10.283 00:00:11.814 TCP 12.102.0.1:53210 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:25:12.151 00:00:11.814 TCP 12.102.0.1:54812 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:20:24.347 00:06:00.119 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-09-02 14:21:24.345 00:06:00.126 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-02 14:26:14.004 00:00:11.770 TCP 12.102.0.1:49956 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:27:10.166 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-02 14:27:10.290 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-02 14:27:10.184 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 14:27:10.400 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-02 14:27:10.187 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-02 14:27:10.176 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-02 14:27:10.050 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-02 14:27:15.813 00:00:11.805 TCP 12.102.0.1:38680 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:28:17.663 00:00:11.828 TCP 12.102.0.1:45062 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:29:19.532 00:00:11.797 TCP 12.102.0.1:44714 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:30:21.363 00:00:11.784 TCP 12.102.0.1:37596 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:31:23.190 00:00:11.800 TCP 12.102.0.1:56220 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:32:10.307 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-02 14:32:10.416 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-02 14:32:10.418 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 14:32:10.051 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-02 14:32:10.329 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-02 14:32:10.362 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-02 14:32:10.327 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-02 14:27:24.349 00:06:00.122 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-09-02 14:32:25.034 00:00:11.762 TCP 12.102.0.1:37276 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:28:24.347 00:06:00.127 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-02 14:33:26.836 00:00:11.811 TCP 12.102.0.1:56612 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:34:28.685 00:00:11.818 TCP 12.102.0.1:46650 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:35:30.528 00:00:11.818 TCP 12.102.0.1:45054 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:36:32.378 00:00:11.821 TCP 12.102.0.1:52176 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:37:10.577 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-02 14:37:10.406 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 14:37:10.677 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-02 14:37:10.549 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-02 14:37:10.596 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-02 14:37:10.390 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-02 14:37:10.526 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-02 14:37:34.240 00:00:11.763 TCP 12.102.0.1:55730 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:38:36.059 00:00:11.765 TCP 12.102.0.1:49176 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:34:24.350 00:06:00.123 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-09-02 14:39:37.857 00:00:11.814 TCP 12.102.0.1:50432 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:35:24.348 00:06:00.128 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-02 14:40:39.704 00:00:11.767 TCP 12.102.0.1:34058 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:41:41.509 00:00:11.800 TCP 12.102.0.1:58324 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:42:10.777 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-02 14:42:10.763 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 14:42:10.753 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-02 14:42:10.680 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-02 14:42:10.826 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-02 14:42:10.745 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-02 14:42:10.657 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-02 14:42:43.347 00:00:12.234 TCP 12.102.0.1:52972 -> 1.101.0.1:3000 15 1926 1 2025-09-02 14:43:45.621 00:00:11.799 TCP 12.102.0.1:49952 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:44:47.456 00:00:12.368 TCP 12.102.0.1:50686 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:45:49.866 00:00:11.817 TCP 12.102.0.1:42798 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:41:24.353 00:06:00.122 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-09-02 14:46:51.723 00:00:11.805 TCP 12.102.0.1:46764 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:47:10.689 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-02 14:47:10.692 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-02 14:47:10.725 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-02 14:47:10.691 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-02 14:47:10.779 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 14:47:10.896 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-02 14:47:10.712 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-02 14:42:24.348 00:06:00.132 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-02 14:47:53.566 00:00:11.835 TCP 12.102.0.1:40528 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:48:55.445 00:00:11.814 TCP 12.102.0.1:58000 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:49:57.300 00:00:11.809 TCP 12.102.0.1:57896 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:50:59.145 00:00:11.802 TCP 12.102.0.1:39500 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:52:10.704 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-02 14:52:10.712 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-02 14:52:11.065 00:00:00.035 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 14:52:00.988 00:00:11.759 TCP 12.102.0.1:58060 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:52:11.009 00:00:00.025 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-02 14:52:10.726 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-02 14:52:10.818 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-02 14:52:10.813 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-02 14:53:02.785 00:00:11.764 TCP 12.102.0.1:49532 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:48:24.352 00:06:00.129 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-09-02 14:54:04.585 00:00:11.803 TCP 12.102.0.1:38834 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:49:24.349 00:06:00.133 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-02 14:55:06.422 00:00:12.205 TCP 12.102.0.1:56658 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:56:08.664 00:00:11.817 TCP 12.102.0.1:37204 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:57:10.842 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-02 14:57:10.956 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-02 14:57:10.901 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 14:57:10.992 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-02 14:57:10.866 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-02 14:57:10.904 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-02 14:57:10.981 00:00:00.025 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-02 14:57:10.516 00:00:11.813 TCP 12.102.0.1:58412 -> 1.101.0.1:3000 11 1507 1 2025-09-02 14:58:12.366 00:00:11.829 TCP 12.102.0.1:51936 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 158, total bytes: 123188, total packets: 1122, avg bps: 278, avg pps: 0, avg bpp: 109 Time window: 2025-09-02 13:59:24 - 2025-09-02 14:58:24 Total flows processed: 158, passed: 158, Blocks skipped: 0, Bytes read: 16496 Sys: 0.0032s User: 0.0021s Wall: 0.0026s flows/second: 59848.3 Runtime: 0.0027s