Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-04 08:59:19.234 00:00:11.804 TCP 12.102.0.1:34358 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:00:21.080 00:00:11.786 TCP 12.102.0.1:41708 -> 1.101.0.1:3000 11 1507 1 2025-10-04 08:55:46.335 00:06:00.176 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-04 09:01:22.891 00:00:11.765 TCP 12.102.0.1:46754 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:02:35.216 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-04 09:02:35.195 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-04 09:02:35.373 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-04 09:02:35.399 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-04 09:02:35.239 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-04 09:02:24.695 00:00:11.784 TCP 12.102.0.1:56450 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:02:35.271 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-04 09:02:35.152 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-04 09:03:26.507 00:00:12.231 TCP 12.102.0.1:55136 -> 1.101.0.1:3000 15 1926 1 2025-10-04 08:58:46.338 00:06:00.171 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-04 09:04:28.776 00:00:11.857 TCP 12.102.0.1:40584 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:05:30.684 00:00:11.798 TCP 12.102.0.1:52648 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:06:32.532 00:00:11.800 TCP 12.102.0.1:47732 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:07:35.248 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-04 09:07:35.385 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-04 09:07:35.461 00:00:00.017 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-04 09:07:35.314 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-04 09:07:35.200 00:00:00.041 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-04 09:07:35.212 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-04 09:07:35.292 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-04 09:02:46.338 00:06:00.176 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-04 09:07:34.372 00:00:12.344 TCP 12.102.0.1:35448 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:08:36.752 00:00:11.800 TCP 12.102.0.1:35544 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:09:38.589 00:00:11.815 TCP 12.102.0.1:36412 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:05:46.340 00:06:00.172 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-04 09:10:40.444 00:00:11.806 TCP 12.102.0.1:35040 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:11:42.286 00:00:11.797 TCP 12.102.0.1:42020 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:12:35.212 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-04 09:12:35.510 00:00:00.027 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-04 09:12:35.430 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-04 09:12:35.438 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-04 09:12:35.234 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-04 09:12:35.248 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-04 09:12:35.148 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-04 09:12:44.121 00:00:15.874 TCP 12.102.0.1:47206 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:13:50.092 00:00:11.806 TCP 12.102.0.1:54370 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:09:46.337 00:06:00.176 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-04 09:14:51.951 00:00:11.778 TCP 12.102.0.1:38976 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:15:53.777 00:00:11.805 TCP 12.102.0.1:38866 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:16:55.623 00:00:11.758 TCP 12.102.0.1:33442 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:17:35.446 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-04 09:17:35.620 00:00:00.020 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-04 09:17:35.480 00:00:00.034 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-04 09:17:35.422 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-04 09:17:35.479 00:00:00.035 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-04 09:17:35.423 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-04 09:17:35.400 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-04 09:12:46.341 00:06:00.171 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-04 09:17:57.419 00:00:11.822 TCP 12.102.0.1:33226 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:18:59.283 00:00:11.807 TCP 12.102.0.1:44048 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:20:01.127 00:00:11.808 TCP 12.102.0.1:51336 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:21:02.970 00:00:11.806 TCP 12.102.0.1:41724 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:16:46.338 00:06:00.177 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-04 09:22:04.813 00:00:11.801 TCP 12.102.0.1:33748 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:22:35.767 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-04 09:22:36.037 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-04 09:22:35.938 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-04 09:22:35.931 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-04 09:22:35.790 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-04 09:22:35.840 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-04 09:22:35.957 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-04 09:23:06.651 00:00:12.243 TCP 12.102.0.1:45354 -> 1.101.0.1:3000 15 1926 1 2025-10-04 09:24:08.937 00:00:11.811 TCP 12.102.0.1:44406 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:19:46.342 00:06:00.171 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-04 09:25:10.781 00:00:11.811 TCP 12.102.0.1:33996 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:26:12.631 00:00:11.800 TCP 12.102.0.1:49502 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:27:14.465 00:00:11.800 TCP 12.102.0.1:43958 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:27:35.646 00:00:00.031 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-04 09:27:35.657 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-04 09:27:35.585 00:00:00.019 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-04 09:27:35.595 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-04 09:27:35.793 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-04 09:27:35.611 00:00:00.020 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-04 09:27:35.573 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-04 09:28:16.303 00:00:11.782 TCP 12.102.0.1:47930 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:23:46.341 00:06:00.176 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-04 09:29:18.124 00:00:11.806 TCP 12.102.0.1:38346 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:30:19.963 00:00:11.800 TCP 12.102.0.1:37538 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:31:21.803 00:00:11.812 TCP 12.102.0.1:45464 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:26:46.343 00:06:00.171 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-04 09:32:36.022 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-04 09:32:36.272 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-04 09:32:35.964 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-04 09:32:36.088 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-04 09:32:36.030 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-04 09:32:23.649 00:00:11.817 TCP 12.102.0.1:41448 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:32:35.908 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-04 09:32:36.046 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-04 09:33:25.507 00:00:11.805 TCP 12.102.0.1:39350 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:34:27.364 00:00:11.790 TCP 12.102.0.1:33156 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:35:29.196 00:00:11.857 TCP 12.102.0.1:42698 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:30:46.343 00:06:00.175 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-04 09:36:31.092 00:00:11.803 TCP 12.102.0.1:56606 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:37:35.914 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-04 09:37:36.179 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-04 09:37:35.928 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-04 09:37:36.379 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-04 09:37:35.937 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-04 09:37:36.172 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-04 09:37:35.677 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-04 09:37:32.933 00:00:11.812 TCP 12.102.0.1:33218 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:33:46.344 00:06:00.171 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-04 09:38:34.781 00:00:11.770 TCP 12.102.0.1:33198 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:39:36.589 00:00:11.767 TCP 12.102.0.1:54546 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:40:38.398 00:00:11.797 TCP 12.102.0.1:42148 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:41:40.235 00:00:11.760 TCP 12.102.0.1:58610 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:42:35.884 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-04 09:42:36.009 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-04 09:42:36.099 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-04 09:42:36.047 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-04 09:42:35.905 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-04 09:42:35.786 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-04 09:42:35.854 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-04 09:37:46.342 00:06:00.178 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-04 09:42:42.050 00:00:11.846 TCP 12.102.0.1:39760 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:43:43.936 00:00:11.813 TCP 12.102.0.1:55752 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:44:45.800 00:00:11.765 TCP 12.102.0.1:32862 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:40:46.346 00:06:00.172 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-04 09:45:47.612 00:00:11.814 TCP 12.102.0.1:38756 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:46:49.463 00:00:11.765 TCP 12.102.0.1:42668 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:47:36.141 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-04 09:47:35.951 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-04 09:47:36.017 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-04 09:47:36.042 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-04 09:47:36.064 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-04 09:47:36.140 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-04 09:47:36.163 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-04 09:47:51.267 00:00:11.821 TCP 12.102.0.1:51536 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:48:53.128 00:00:11.813 TCP 12.102.0.1:38972 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:44:46.346 00:06:00.174 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-04 09:49:54.985 00:00:11.763 TCP 12.102.0.1:35948 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:50:56.782 00:00:11.794 TCP 12.102.0.1:46674 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:51:58.617 00:00:11.808 TCP 12.102.0.1:47580 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:52:35.929 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-04 09:52:36.178 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-04 09:52:36.374 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-04 09:52:36.178 00:00:00.043 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-04 09:52:35.951 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-04 09:52:36.173 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-04 09:52:36.158 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-04 09:47:46.348 00:06:00.172 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-04 09:53:00.460 00:00:11.808 TCP 12.102.0.1:42302 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:54:02.301 00:00:11.804 TCP 12.102.0.1:45356 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:55:04.142 00:00:11.808 TCP 12.102.0.1:60684 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:56:05.990 00:00:11.803 TCP 12.102.0.1:34042 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:51:46.347 00:06:00.177 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-04 09:57:07.830 00:00:11.808 TCP 12.102.0.1:37378 -> 1.101.0.1:3000 11 1507 1 2025-10-04 09:57:35.916 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-04 09:57:35.942 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-04 09:57:36.230 00:00:00.046 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-04 09:57:36.330 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-04 09:57:35.940 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-04 09:57:36.455 00:00:00.020 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-04 09:57:36.336 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-04 09:58:09.677 00:00:11.811 TCP 12.102.0.1:58676 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 159, total bytes: 124049, total packets: 1136, avg bps: 264, avg pps: 0, avg bpp: 109 Time window: 2025-10-04 08:55:46 - 2025-10-04 09:58:21 Total flows processed: 159, passed: 159, Blocks skipped: 0, Bytes read: 16600 Sys: 0.0014s User: 0.0028s Wall: 0.0028s flows/second: 57734.8 Runtime: 0.0028s