Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-04 09:54:25.371 00:06:00.045 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-04 09:59:15.641 00:00:11.758 TCP 12.102.0.1:56690 -> 1.101.0.1:3000 11 1507 1 2025-09-04 09:55:25.413 00:06:00.000 TCP 179.10.12.10:179 -> 179.10.12.12:58070 7 497 1 2025-09-04 10:00:17.440 00:00:11.874 TCP 12.102.0.1:55780 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:01:19.357 00:00:11.818 TCP 12.102.0.1:50354 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:02:21.208 00:00:11.808 TCP 12.102.0.1:48760 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:03:02.684 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-04 10:03:02.847 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-04 10:03:02.787 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-04 10:03:02.921 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-04 10:03:02.707 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-04 10:03:02.818 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-04 10:03:02.706 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-04 10:03:23.078 00:00:11.797 TCP 12.102.0.1:35562 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:04:24.915 00:00:11.872 TCP 12.102.0.1:45368 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:05:26.827 00:00:11.804 TCP 12.102.0.1:45358 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:01:25.375 00:06:00.044 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-04 10:06:28.669 00:00:11.801 TCP 12.102.0.1:52632 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:02:25.414 00:06:00.002 TCP 179.10.12.10:179 -> 179.10.12.12:58070 7 497 1 2025-09-04 10:07:30.512 00:00:11.810 TCP 12.102.0.1:58918 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:08:02.851 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-04 10:08:03.005 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-04 10:08:02.738 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-04 10:08:02.602 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-04 10:08:02.735 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-04 10:08:02.877 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-04 10:08:02.579 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-04 10:08:32.356 00:00:11.801 TCP 12.102.0.1:47848 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:09:34.199 00:00:11.808 TCP 12.102.0.1:44866 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:10:36.067 00:00:11.811 TCP 12.102.0.1:40774 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:11:37.919 00:00:11.828 TCP 12.102.0.1:40666 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:12:39.798 00:00:11.767 TCP 12.102.0.1:44392 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:13:02.878 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-04 10:13:03.092 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-04 10:13:02.792 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-04 10:13:02.653 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-04 10:13:03.054 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-04 10:13:02.937 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-04 10:13:02.631 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-04 10:08:25.378 00:06:00.055 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-04 10:13:41.606 00:00:11.855 TCP 12.102.0.1:34454 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:09:25.417 00:06:00.000 TCP 179.10.12.10:179 -> 179.10.12.12:58070 7 497 1 2025-09-04 10:14:43.505 00:00:11.804 TCP 12.102.0.1:59602 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:15:45.350 00:00:11.799 TCP 12.102.0.1:43504 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:16:47.186 00:00:11.808 TCP 12.102.0.1:52414 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:18:02.886 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-04 10:18:03.021 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-04 10:18:02.842 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-04 10:18:03.055 00:00:00.025 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-04 10:18:02.910 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-04 10:17:49.041 00:00:12.161 TCP 12.102.0.1:34740 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:18:02.956 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-04 10:18:02.925 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-04 10:18:51.239 00:00:11.813 TCP 12.102.0.1:47896 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:19:53.082 00:00:11.777 TCP 12.102.0.1:37274 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:15:25.384 00:06:00.037 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-04 10:20:54.899 00:00:11.809 TCP 12.102.0.1:49212 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:16:25.419 00:06:00.001 TCP 179.10.12.10:179 -> 179.10.12.12:58070 7 497 1 2025-09-04 10:21:56.745 00:00:11.796 TCP 12.102.0.1:36120 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:23:02.967 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-04 10:23:02.971 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-04 10:23:03.148 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-04 10:23:02.953 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-04 10:23:03.087 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-04 10:23:03.087 00:00:00.035 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-04 10:23:02.932 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-04 10:22:58.580 00:00:11.757 TCP 12.102.0.1:50360 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:24:00.377 00:00:11.770 TCP 12.102.0.1:34982 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:25:02.195 00:00:11.811 TCP 12.102.0.1:55704 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:26:04.068 00:00:11.800 TCP 12.102.0.1:51758 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:27:05.902 00:00:11.848 TCP 12.102.0.1:43900 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:22:25.384 00:06:00.040 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-04 10:28:03.123 00:00:00.046 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-04 10:28:03.584 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-04 10:28:03.531 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-04 10:28:03.413 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-04 10:28:03.446 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-04 10:28:03.480 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-04 10:28:03.392 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-04 10:28:07.791 00:00:11.804 TCP 12.102.0.1:41422 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:23:25.419 00:06:00.004 TCP 179.10.12.10:179 -> 179.10.12.12:58070 7 497 1 2025-09-04 10:29:09.632 00:00:11.797 TCP 12.102.0.1:54318 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:30:11.468 00:00:11.803 TCP 12.102.0.1:35660 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:31:13.311 00:00:11.757 TCP 12.102.0.1:46204 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:32:15.108 00:00:11.803 TCP 12.102.0.1:45768 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:33:03.273 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-04 10:33:03.029 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-04 10:33:03.410 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-04 10:33:03.304 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-04 10:33:03.296 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-04 10:33:03.580 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-04 10:33:03.451 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-04 10:33:16.945 00:00:11.803 TCP 12.102.0.1:52270 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:29:25.388 00:06:00.045 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-04 10:34:18.816 00:00:11.802 TCP 12.102.0.1:36514 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:30:25.427 00:06:00.001 TCP 179.10.12.10:179 -> 179.10.12.12:58070 7 497 1 2025-09-04 10:35:20.654 00:00:11.768 TCP 12.102.0.1:47208 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:36:22.462 00:00:11.799 TCP 12.102.0.1:51072 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:37:24.302 00:00:11.806 TCP 12.102.0.1:58776 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:38:03.516 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-04 10:38:03.647 00:00:00.026 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-04 10:38:03.504 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-04 10:38:03.490 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-04 10:38:03.854 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-04 10:38:03.291 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-04 10:38:03.468 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-04 10:38:26.150 00:00:11.802 TCP 12.102.0.1:45002 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:39:27.990 00:00:11.815 TCP 12.102.0.1:43526 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:40:29.841 00:00:11.803 TCP 12.102.0.1:45070 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:36:25.389 00:06:00.043 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-04 10:41:31.678 00:00:11.801 TCP 12.102.0.1:43110 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:37:25.430 00:06:00.000 TCP 179.10.12.10:179 -> 179.10.12.12:58070 7 497 1 2025-09-04 10:42:33.518 00:00:11.889 TCP 12.102.0.1:32850 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:43:03.509 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-04 10:43:03.522 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-04 10:43:03.237 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-04 10:43:03.308 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-04 10:43:03.528 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-04 10:43:03.401 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-04 10:43:03.284 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-04 10:43:35.445 00:00:11.810 TCP 12.102.0.1:49660 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:44:37.295 00:00:11.808 TCP 12.102.0.1:33238 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:45:39.143 00:00:11.812 TCP 12.102.0.1:56388 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:46:41.006 00:00:11.798 TCP 12.102.0.1:40590 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:47:42.842 00:00:11.807 TCP 12.102.0.1:41562 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:48:03.590 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-04 10:48:03.500 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-04 10:48:03.948 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-04 10:48:03.801 00:00:00.030 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-04 10:48:03.779 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-04 10:48:03.639 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-04 10:48:03.778 00:00:00.030 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-04 10:43:25.391 00:06:00.049 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-04 10:48:44.682 00:00:11.762 TCP 12.102.0.1:57066 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:44:25.430 00:06:00.009 TCP 179.10.12.10:179 -> 179.10.12.12:58070 11 705 1 2025-09-04 10:49:46.484 00:00:11.805 TCP 12.102.0.1:53148 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:50:48.329 00:00:11.808 TCP 12.102.0.1:52806 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:51:50.171 00:00:11.816 TCP 12.102.0.1:52864 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:53:03.892 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-04 10:53:03.669 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-04 10:53:03.879 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-04 10:52:52.037 00:00:11.841 TCP 12.102.0.1:32852 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:53:03.914 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-04 10:53:03.696 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-04 10:53:03.806 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-04 10:53:03.999 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-04 10:53:53.918 00:00:11.829 TCP 12.102.0.1:48464 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:54:55.784 00:00:11.804 TCP 12.102.0.1:48678 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:50:25.395 00:06:00.048 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-04 10:55:57.628 00:00:11.809 TCP 12.102.0.1:58116 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:51:25.399 00:06:00.042 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-09-04 10:56:59.471 00:00:11.810 TCP 12.102.0.1:55030 -> 1.101.0.1:3000 11 1507 1 2025-09-04 10:58:03.709 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-04 10:58:03.892 00:00:00.025 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-04 10:58:03.623 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-04 10:58:03.720 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-04 10:58:03.940 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-04 10:58:03.829 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-04 10:58:03.698 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-04 10:58:01.315 00:00:11.803 TCP 12.102.0.1:56672 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 160, total bytes: 121368, total packets: 1090, avg bps: 253, avg pps: 0, avg bpp: 111 Time window: 2025-09-04 09:54:25 - 2025-09-04 10:58:13 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0047s User: 0.0000s Wall: 0.0022s flows/second: 71590.4 Runtime: 0.0023s