Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-25 09:53:56.423 00:06:00.156 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-25 09:59:03.073 00:00:11.803 TCP 12.102.0.1:36090 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:00:04.916 00:00:11.824 TCP 12.102.0.1:33422 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:01:06.783 00:00:11.801 TCP 12.102.0.1:52496 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:02:08.624 00:00:11.806 TCP 12.102.0.1:43600 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:02:43.964 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-25 10:02:43.478 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 10:02:43.785 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-25 10:02:43.662 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-25 10:02:43.967 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-25 10:02:43.891 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-25 10:02:43.640 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-25 09:57:56.426 00:06:00.150 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-25 10:03:10.469 00:00:12.000 TCP 12.102.0.1:55264 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:04:12.505 00:00:11.804 TCP 12.102.0.1:33950 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:05:14.350 00:00:11.804 TCP 12.102.0.1:53492 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:00:56.425 00:06:00.155 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-25 10:06:16.194 00:00:11.828 TCP 12.102.0.1:54826 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:07:18.091 00:00:11.811 TCP 12.102.0.1:43918 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:07:43.308 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-25 10:07:43.522 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 10:07:43.317 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-25 10:07:43.385 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-25 10:07:43.421 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-25 10:07:43.337 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-25 10:07:43.363 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-25 10:08:19.940 00:00:11.818 TCP 12.102.0.1:35400 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:09:21.796 00:00:11.816 TCP 12.102.0.1:60858 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:04:56.428 00:06:00.151 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-25 10:10:23.650 00:00:11.809 TCP 12.102.0.1:44604 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:11:25.499 00:00:11.800 TCP 12.102.0.1:57562 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:12:43.461 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-25 10:12:43.394 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 10:12:27.341 00:00:11.765 TCP 12.102.0.1:44296 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:12:43.438 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-25 10:12:43.367 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-25 10:12:43.300 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-25 10:12:43.051 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-25 10:12:43.345 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-25 10:07:56.425 00:06:00.159 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-25 10:13:29.144 00:00:11.815 TCP 12.102.0.1:51802 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:14:30.996 00:00:11.803 TCP 12.102.0.1:44104 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:15:32.855 00:00:11.762 TCP 12.102.0.1:39780 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:16:34.657 00:00:12.500 TCP 12.102.0.1:34380 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:11:56.428 00:06:00.159 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-25 10:17:43.437 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-25 10:17:43.331 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-25 10:17:43.591 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 10:17:43.594 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-25 10:17:43.460 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-25 10:17:43.676 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-25 10:17:43.711 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-25 10:17:37.211 00:00:11.760 TCP 12.102.0.1:55888 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:18:39.012 00:00:11.800 TCP 12.102.0.1:33010 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:19:40.847 00:00:11.769 TCP 12.102.0.1:40144 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:14:56.428 00:06:00.162 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-25 10:20:42.657 00:00:11.822 TCP 12.102.0.1:51102 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:21:44.517 00:00:11.867 TCP 12.102.0.1:57162 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:22:43.593 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-25 10:22:43.610 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 10:22:43.613 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-25 10:22:43.569 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-25 10:22:43.520 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-25 10:22:43.477 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-25 10:22:43.546 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-25 10:22:46.424 00:00:11.804 TCP 12.102.0.1:51938 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:18:56.432 00:06:00.160 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-25 10:23:48.268 00:00:11.818 TCP 12.102.0.1:34090 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:24:50.121 00:00:11.874 TCP 12.102.0.1:40714 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:25:52.025 00:00:11.808 TCP 12.102.0.1:53816 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:21:56.430 00:06:00.165 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-25 10:26:53.868 00:00:11.763 TCP 12.102.0.1:38338 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:27:43.703 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-25 10:27:43.677 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-25 10:27:43.544 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 10:27:43.797 00:00:00.016 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-25 10:27:43.725 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-25 10:27:43.593 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-25 10:27:43.739 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-25 10:27:55.672 00:00:11.861 TCP 12.102.0.1:51898 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:28:57.582 00:00:11.818 TCP 12.102.0.1:58940 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:29:59.447 00:00:11.803 TCP 12.102.0.1:49604 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:25:56.434 00:06:00.161 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-25 10:31:01.296 00:00:11.812 TCP 12.102.0.1:55462 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:32:03.146 00:00:11.820 TCP 12.102.0.1:40112 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:32:43.754 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-25 10:32:43.827 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-25 10:32:43.847 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-25 10:32:43.722 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-25 10:32:43.918 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 10:32:43.907 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-25 10:32:43.778 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-25 10:33:05.011 00:00:11.817 TCP 12.102.0.1:45358 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:28:56.432 00:06:00.165 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-25 10:34:06.877 00:00:11.806 TCP 12.102.0.1:48124 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:35:08.725 00:00:11.821 TCP 12.102.0.1:38610 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:36:10.583 00:00:12.243 TCP 12.102.0.1:37692 -> 1.101.0.1:3000 15 1926 1 2025-10-25 10:37:12.863 00:00:11.760 TCP 12.102.0.1:46696 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:37:43.915 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-25 10:37:43.917 00:00:00.045 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-25 10:37:43.845 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-25 10:37:43.958 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-25 10:37:44.319 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-25 10:37:44.054 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 10:37:44.342 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-25 10:32:56.438 00:06:00.158 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-25 10:38:14.664 00:00:11.810 TCP 12.102.0.1:38010 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:39:16.511 00:00:11.765 TCP 12.102.0.1:55696 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:40:18.314 00:00:11.763 TCP 12.102.0.1:36650 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:35:56.437 00:06:00.163 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-25 10:41:20.116 00:00:11.801 TCP 12.102.0.1:55154 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:42:21.953 00:00:11.798 TCP 12.102.0.1:50058 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:42:43.924 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-25 10:42:43.943 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 10:42:43.745 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-25 10:42:43.952 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-25 10:42:43.721 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-25 10:42:44.033 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-25 10:42:44.034 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-25 10:43:23.792 00:00:11.806 TCP 12.102.0.1:33024 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:44:25.634 00:00:11.986 TCP 12.102.0.1:52056 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:39:56.439 00:06:00.159 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-25 10:45:27.653 00:00:11.822 TCP 12.102.0.1:57526 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:46:29.511 00:00:11.811 TCP 12.102.0.1:32828 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:47:43.884 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-25 10:47:31.358 00:00:11.815 TCP 12.102.0.1:37872 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:47:43.864 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-25 10:47:43.861 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-25 10:47:44.132 00:00:00.050 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-25 10:47:44.227 00:00:00.051 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 10:47:44.088 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-25 10:47:44.170 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-25 10:42:56.437 00:06:00.162 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-25 10:48:33.219 00:00:11.797 TCP 12.102.0.1:33778 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:49:35.072 00:00:21.412 TCP 12.102.0.1:39668 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:50:46.526 00:00:11.800 TCP 12.102.0.1:60478 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:46:56.441 00:06:00.156 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-25 10:51:48.366 00:00:11.828 TCP 12.102.0.1:44424 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:52:44.087 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-25 10:52:44.324 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 10:52:44.360 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-25 10:52:44.227 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-25 10:52:44.324 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-25 10:52:44.197 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-25 10:52:44.206 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-25 10:52:50.226 00:00:11.805 TCP 12.102.0.1:43184 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:53:52.083 00:00:11.803 TCP 12.102.0.1:53670 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:49:56.439 00:06:00.163 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-25 10:54:53.927 00:00:11.817 TCP 12.102.0.1:46616 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:55:55.793 00:00:11.804 TCP 12.102.0.1:52116 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:56:57.639 00:00:11.811 TCP 12.102.0.1:42992 -> 1.101.0.1:3000 11 1507 1 2025-10-25 10:57:44.225 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-25 10:57:44.304 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-25 10:57:44.393 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-25 10:57:44.259 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-25 10:57:43.987 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-25 10:57:44.326 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-25 10:57:44.236 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-25 10:57:59.485 00:00:11.804 TCP 12.102.0.1:60618 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 159, total bytes: 123630, total packets: 1132, avg bps: 256, avg pps: 0, avg bpp: 109 Time window: 2025-10-25 09:53:56 - 2025-10-25 10:58:11 Total flows processed: 159, passed: 159, Blocks skipped: 0, Bytes read: 16600 Sys: 0.0046s User: 0.0012s Wall: 0.0022s flows/second: 71879.1 Runtime: 0.0022s