Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-08 01:59:15.301 00:00:11.801 TCP 12.102.0.1:50606 -> 1.101.0.1:3000 11 1507 1 2025-09-08 01:59:48.407 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-08 01:59:48.466 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-08 01:59:48.629 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-08 01:59:48.557 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-08 01:59:48.430 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-08 01:59:48.720 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-08 01:59:48.430 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-08 02:00:17.140 00:00:11.804 TCP 12.102.0.1:38700 -> 1.101.0.1:3000 11 1507 1 2025-09-08 01:57:27.976 00:05:00.060 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-09-08 02:01:18.983 00:00:11.758 TCP 12.102.0.1:34106 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:02:20.779 00:00:11.794 TCP 12.102.0.1:47448 -> 1.101.0.1:3000 11 1507 1 2025-09-08 01:58:28.025 00:06:00.007 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-08 02:03:22.614 00:00:11.803 TCP 12.102.0.1:34708 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:04:24.455 00:00:11.810 TCP 12.102.0.1:46908 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:04:48.574 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-08 02:04:48.687 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-08 02:04:48.700 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-08 02:04:48.789 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-08 02:04:48.597 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-08 02:04:48.775 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-08 02:04:48.656 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-08 02:05:26.309 00:00:11.798 TCP 12.102.0.1:44298 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:06:28.144 00:00:11.822 TCP 12.102.0.1:42324 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:03:27.977 00:05:00.059 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-09-08 02:07:30.005 00:00:11.800 TCP 12.102.0.1:33520 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:08:31.834 00:00:11.814 TCP 12.102.0.1:37904 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:05:27.980 00:05:00.054 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-09-08 02:09:48.586 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-08 02:09:48.832 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-08 02:09:33.680 00:00:11.804 TCP 12.102.0.1:51722 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:09:48.884 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-08 02:09:48.620 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-08 02:09:48.609 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-08 02:09:48.755 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-08 02:09:48.686 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-08 02:10:35.523 00:00:11.795 TCP 12.102.0.1:55478 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:11:37.357 00:00:11.822 TCP 12.102.0.1:35748 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:12:39.220 00:00:11.758 TCP 12.102.0.1:32890 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:09:27.979 00:05:00.058 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-09-08 02:13:41.023 00:00:11.802 TCP 12.102.0.1:60608 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:14:48.834 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-08 02:14:48.762 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-08 02:14:48.683 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-08 02:14:48.970 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-08 02:14:48.856 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-08 02:14:48.967 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-08 02:14:49.096 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-08 02:14:42.866 00:00:11.806 TCP 12.102.0.1:34796 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:11:27.981 00:05:00.053 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-09-08 02:15:44.716 00:00:11.807 TCP 12.102.0.1:40148 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:16:46.569 00:00:11.803 TCP 12.102.0.1:55506 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:17:48.411 00:00:11.767 TCP 12.102.0.1:33996 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:18:50.211 00:00:11.770 TCP 12.102.0.1:55470 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:15:27.980 00:05:00.060 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-09-08 02:19:48.891 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-08 02:19:48.885 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-08 02:19:48.782 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-08 02:19:48.862 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-08 02:19:49.113 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-08 02:19:49.019 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-08 02:19:49.089 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-08 02:19:52.023 00:00:11.763 TCP 12.102.0.1:48974 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:20:53.827 00:00:11.806 TCP 12.102.0.1:40674 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:17:27.983 00:05:00.055 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-09-08 02:21:55.676 00:00:11.763 TCP 12.102.0.1:53050 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:22:57.472 00:00:11.805 TCP 12.102.0.1:41162 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:23:59.313 00:00:11.804 TCP 12.102.0.1:53336 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:24:48.894 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-08 02:24:48.872 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-08 02:24:49.077 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-08 02:24:49.276 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-08 02:24:49.013 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-08 02:24:49.007 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-08 02:24:48.980 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-08 02:25:01.152 00:00:11.804 TCP 12.102.0.1:54086 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:21:27.981 00:05:00.060 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-09-08 02:26:02.999 00:00:11.800 TCP 12.102.0.1:42168 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:27:04.844 00:00:11.802 TCP 12.102.0.1:42970 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:23:27.985 00:05:00.053 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-09-08 02:28:06.690 00:00:11.809 TCP 12.102.0.1:40376 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:29:08.539 00:00:11.822 TCP 12.102.0.1:47782 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:29:49.029 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-08 02:29:49.089 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-08 02:29:49.090 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-08 02:29:49.110 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-08 02:29:49.051 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-08 02:29:49.019 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-08 02:29:49.278 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-08 02:30:10.406 00:00:11.802 TCP 12.102.0.1:58064 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:31:12.244 00:00:11.765 TCP 12.102.0.1:37162 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:27:27.983 00:05:00.067 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-09-08 02:32:14.076 00:00:11.800 TCP 12.102.0.1:53960 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:29:27.987 00:05:00.062 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-09-08 02:33:15.913 00:00:11.818 TCP 12.102.0.1:33080 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:34:17.767 00:00:11.807 TCP 12.102.0.1:34906 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:34:49.772 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-08 02:34:49.911 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-08 02:34:49.883 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-08 02:34:49.755 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-08 02:34:50.031 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-08 02:34:49.876 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-08 02:34:49.732 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-08 02:35:19.613 00:00:11.809 TCP 12.102.0.1:40362 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:36:21.460 00:00:11.806 TCP 12.102.0.1:34696 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:33:27.987 00:05:00.071 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-09-08 02:37:23.310 00:00:11.823 TCP 12.102.0.1:51418 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:38:25.174 00:00:11.802 TCP 12.102.0.1:59430 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:35:27.989 00:05:00.072 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-09-08 02:39:27.025 00:00:11.770 TCP 12.102.0.1:41850 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:39:49.420 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-08 02:39:49.484 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-08 02:39:49.494 00:00:00.025 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-08 02:39:49.484 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-08 02:39:49.443 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-08 02:39:49.625 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-08 02:39:49.593 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-08 02:40:28.829 00:00:11.804 TCP 12.102.0.1:45902 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:41:30.667 00:00:11.807 TCP 12.102.0.1:60970 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:42:32.510 00:00:11.831 TCP 12.102.0.1:57632 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:39:27.996 00:05:00.069 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-09-08 02:43:34.374 00:00:11.778 TCP 12.102.0.1:39864 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:44:36.188 00:00:11.762 TCP 12.102.0.1:60466 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:44:49.326 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-08 02:44:49.348 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-08 02:44:49.419 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-08 02:44:49.453 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-08 02:44:49.534 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-08 02:44:49.462 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-08 02:44:49.431 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-08 02:45:37.987 00:00:11.760 TCP 12.102.0.1:49224 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:41:28.003 00:06:00.061 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-08 02:46:39.792 00:00:11.760 TCP 12.102.0.1:33658 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:47:41.591 00:00:11.799 TCP 12.102.0.1:47752 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:48:43.427 00:00:11.760 TCP 12.102.0.1:35606 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:49:49.707 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-08 02:49:49.635 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-08 02:49:49.678 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-08 02:49:49.421 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-08 02:49:49.542 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-08 02:49:49.499 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-08 02:49:49.399 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-08 02:49:45.227 00:00:11.802 TCP 12.102.0.1:51554 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:45:28.002 00:06:00.074 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-09-08 02:50:47.077 00:00:11.802 TCP 12.102.0.1:42724 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:48:28.005 00:03:00.068 TCP 179.10.12.12:58070 -> 179.10.12.10:179 8 492 1 2025-09-08 02:51:48.915 00:00:11.874 TCP 12.102.0.1:54660 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:52:50.827 00:00:11.807 TCP 12.102.0.1:51980 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:53:52.675 00:00:12.194 TCP 12.102.0.1:52828 -> 1.101.0.1:3000 15 1926 1 2025-09-08 02:54:49.592 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-08 02:54:49.752 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-08 02:54:49.550 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-08 02:54:49.692 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-08 02:54:49.615 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-08 02:54:49.537 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-08 02:54:49.615 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-08 02:54:54.906 00:00:11.801 TCP 12.102.0.1:55550 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:55:56.746 00:00:11.808 TCP 12.102.0.1:41614 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:52:28.005 00:04:00.069 TCP 179.10.12.12:58070 -> 179.10.12.10:179 10 615 1 2025-09-08 02:56:58.595 00:00:11.799 TCP 12.102.0.1:44168 -> 1.101.0.1:3000 11 1507 1 2025-09-08 02:52:28.001 00:06:00.075 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-09-08 02:58:00.448 00:00:11.810 TCP 12.102.0.1:36602 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 162, total bytes: 123876, total packets: 1136, avg bps: 270, avg pps: 0, avg bpp: 109 Time window: 2025-09-08 01:57:27 - 2025-09-08 02:58:28 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0026s User: 0.0026s Wall: 0.0025s flows/second: 64005.0 Runtime: 0.0025s