Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-14 08:58:50.330 00:00:11.812 TCP 12.102.0.1:56170 -> 1.101.0.1:3000 11 1507 1 2025-10-14 08:59:52.182 00:00:11.759 TCP 12.102.0.1:42902 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:00:53.986 00:00:11.809 TCP 12.102.0.1:44950 -> 1.101.0.1:3000 11 1507 1 2025-10-14 08:56:51.194 00:06:00.067 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-14 09:01:55.835 00:00:11.826 TCP 12.102.0.1:39558 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:02:23.886 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 09:02:23.848 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-14 09:02:23.826 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-14 09:02:24.042 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-14 09:02:23.980 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-14 09:02:24.010 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-14 09:02:24.040 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-14 09:02:57.704 00:00:11.814 TCP 12.102.0.1:56750 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:03:59.556 00:00:11.804 TCP 12.102.0.1:60052 -> 1.101.0.1:3000 11 1507 1 2025-10-14 08:59:51.193 00:06:00.072 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-14 09:05:01.401 00:00:11.802 TCP 12.102.0.1:55116 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:06:03.250 00:00:11.806 TCP 12.102.0.1:34240 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:07:05.093 00:00:11.804 TCP 12.102.0.1:36652 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:07:24.005 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-14 09:07:24.140 00:00:00.028 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-14 09:07:24.149 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 09:07:24.078 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-14 09:07:24.026 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-14 09:07:24.166 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-14 09:07:24.036 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-14 09:08:06.936 00:00:11.817 TCP 12.102.0.1:35992 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:03:51.194 00:06:00.067 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-14 09:09:08.782 00:00:11.806 TCP 12.102.0.1:50004 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:10:10.627 00:00:11.812 TCP 12.102.0.1:60002 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:11:12.477 00:00:11.800 TCP 12.102.0.1:47734 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:06:51.193 00:06:00.072 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-14 09:12:23.954 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-14 09:12:23.887 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-14 09:12:24.093 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-14 09:12:24.200 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 09:12:14.316 00:00:11.763 TCP 12.102.0.1:47630 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:12:24.112 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-14 09:12:23.977 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-14 09:12:24.155 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-14 09:13:16.118 00:00:12.467 TCP 12.102.0.1:50874 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:14:18.626 00:00:11.805 TCP 12.102.0.1:32882 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:15:20.468 00:00:11.800 TCP 12.102.0.1:35512 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:10:51.197 00:06:00.067 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-14 09:16:22.309 00:00:11.798 TCP 12.102.0.1:58268 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:17:24.220 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-14 09:17:24.036 00:00:00.025 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 09:17:24.151 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-14 09:17:24.078 00:00:00.029 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-14 09:17:24.126 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-14 09:17:24.263 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-14 09:17:24.055 00:00:00.029 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-14 09:17:24.148 00:00:11.813 TCP 12.102.0.1:35496 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:18:26.002 00:00:11.797 TCP 12.102.0.1:60556 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:13:51.195 00:06:00.077 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-14 09:19:27.836 00:00:12.489 TCP 12.102.0.1:33470 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:20:30.364 00:00:11.816 TCP 12.102.0.1:51586 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:21:32.219 00:00:11.801 TCP 12.102.0.1:53264 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:22:24.438 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-14 09:22:24.497 00:00:00.019 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 09:22:24.433 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-14 09:22:24.225 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-14 09:22:24.434 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-14 09:22:24.221 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-14 09:22:24.204 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-14 09:22:34.084 00:00:12.034 TCP 12.102.0.1:43436 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:17:51.198 00:06:00.072 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-14 09:23:36.158 00:00:11.807 TCP 12.102.0.1:47960 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:24:38.004 00:00:11.807 TCP 12.102.0.1:54480 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:20:51.195 00:06:00.077 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-14 09:25:39.850 00:00:11.805 TCP 12.102.0.1:58710 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:26:41.694 00:00:11.795 TCP 12.102.0.1:48464 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:27:24.469 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-14 09:27:24.626 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-14 09:27:24.450 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 09:27:24.544 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-14 09:27:24.493 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-14 09:27:24.542 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-14 09:27:24.495 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-14 09:27:43.526 00:00:11.798 TCP 12.102.0.1:56670 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:28:45.364 00:00:11.825 TCP 12.102.0.1:48482 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:24:51.199 00:06:00.072 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-14 09:29:47.227 00:00:11.805 TCP 12.102.0.1:40986 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:30:49.080 00:00:11.759 TCP 12.102.0.1:37720 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:31:50.880 00:00:11.796 TCP 12.102.0.1:48320 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:32:24.376 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-14 09:32:24.670 00:00:00.017 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 09:32:24.705 00:00:00.020 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-14 09:32:24.399 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-14 09:32:24.504 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-14 09:32:24.640 00:00:00.030 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-14 09:32:24.735 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-14 09:27:51.197 00:06:00.077 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-14 09:32:52.715 00:00:11.807 TCP 12.102.0.1:36682 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:33:54.561 00:00:11.809 TCP 12.102.0.1:58444 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:34:56.401 00:00:11.812 TCP 12.102.0.1:40090 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:35:58.255 00:00:11.848 TCP 12.102.0.1:35868 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:31:51.199 00:06:00.072 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-14 09:37:00.142 00:00:11.819 TCP 12.102.0.1:45590 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:37:24.347 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-14 09:37:24.782 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 09:37:24.537 00:00:00.009 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-14 09:37:24.369 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-14 09:37:24.605 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-14 09:37:24.765 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-14 09:37:24.750 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-14 09:38:02.003 00:00:11.774 TCP 12.102.0.1:59466 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:39:03.815 00:00:11.760 TCP 12.102.0.1:49984 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:34:51.198 00:06:00.077 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-14 09:40:05.611 00:00:11.804 TCP 12.102.0.1:53032 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:41:07.449 00:00:11.807 TCP 12.102.0.1:50166 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:42:09.299 00:00:11.815 TCP 12.102.0.1:36864 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:42:25.063 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-14 09:42:24.929 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 09:42:25.074 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-14 09:42:24.839 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-14 09:42:24.974 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-14 09:42:24.835 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-14 09:42:24.817 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-14 09:43:11.149 00:00:11.805 TCP 12.102.0.1:39646 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:38:51.202 00:06:00.071 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-14 09:44:12.987 00:00:12.242 TCP 12.102.0.1:33434 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:45:15.268 00:00:11.852 TCP 12.102.0.1:46188 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:46:17.160 00:00:11.804 TCP 12.102.0.1:46534 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:41:51.201 00:06:00.076 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-14 09:47:24.830 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-14 09:47:24.918 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 09:47:25.044 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-14 09:47:24.867 00:00:00.019 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-14 09:47:24.690 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-14 09:47:24.793 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-14 09:47:24.843 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-14 09:47:19.004 00:00:11.799 TCP 12.102.0.1:43214 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:48:20.836 00:00:12.507 TCP 12.102.0.1:37012 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:49:23.378 00:00:11.820 TCP 12.102.0.1:45032 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:50:25.242 00:00:11.764 TCP 12.102.0.1:43096 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:45:51.204 00:06:00.070 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-14 09:51:27.066 00:00:11.816 TCP 12.102.0.1:41352 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:52:24.760 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 09:52:24.874 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-14 09:52:25.019 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-14 09:52:25.058 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-14 09:52:24.852 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-14 09:52:25.019 00:00:00.026 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-14 09:52:24.997 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-14 09:52:28.919 00:00:11.827 TCP 12.102.0.1:32920 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:53:30.787 00:00:11.765 TCP 12.102.0.1:45652 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:48:51.203 00:06:00.075 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-14 09:54:32.586 00:00:11.861 TCP 12.102.0.1:55978 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:55:34.491 00:00:11.803 TCP 12.102.0.1:46138 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:56:36.331 00:00:11.755 TCP 12.102.0.1:44782 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:57:25.138 00:00:00.025 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-14 09:57:24.989 00:00:00.031 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-14 09:57:25.020 00:00:00.019 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-14 09:57:25.017 00:00:00.015 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-14 09:57:25.163 00:00:00.025 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-14 09:57:25.092 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-14 09:57:24.980 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-14 09:52:51.205 00:06:00.071 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-14 09:57:38.123 00:00:11.805 TCP 12.102.0.1:32794 -> 1.101.0.1:3000 11 1507 1 2025-10-14 09:58:39.972 00:00:11.854 TCP 12.102.0.1:53396 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 160, total bytes: 124718, total packets: 1139, avg bps: 268, avg pps: 0, avg bpp: 109 Time window: 2025-10-14 08:56:51 - 2025-10-14 09:58:51 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0027s User: 0.0027s Wall: 0.0027s flows/second: 60149.6 Runtime: 0.0027s