Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-02 14:59:29.882 00:00:11.803 TCP 12.102.0.1:37404 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:00:31.725 00:00:12.196 TCP 12.102.0.1:47114 -> 1.101.0.1:3000 15 1926 1 2025-11-02 15:01:40.279 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-02 15:01:40.302 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-02 15:01:40.416 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-02 15:01:40.068 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-02 15:01:40.237 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-02 15:01:40.049 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-02 15:01:40.262 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-02 15:01:33.958 00:00:11.799 TCP 12.102.0.1:38656 -> 1.101.0.1:3000 11 1507 1 2025-11-02 14:57:00.511 00:06:00.080 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-02 14:57:00.510 00:06:00.085 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-02 15:02:35.790 00:00:11.799 TCP 12.102.0.1:50216 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:03:37.625 00:00:11.807 TCP 12.102.0.1:53076 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:04:39.467 00:00:11.800 TCP 12.102.0.1:36400 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:05:41.319 00:00:11.760 TCP 12.102.0.1:48800 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:06:40.322 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-02 15:06:40.231 00:00:00.036 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-02 15:06:40.251 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-02 15:06:40.190 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-02 15:06:40.350 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-02 15:06:40.363 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-02 15:06:40.168 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-02 15:06:43.124 00:00:11.800 TCP 12.102.0.1:52146 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:07:44.962 00:00:11.794 TCP 12.102.0.1:37126 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:08:46.799 00:00:11.800 TCP 12.102.0.1:56312 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:04:00.510 00:06:00.089 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-02 15:04:00.512 00:06:00.083 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-02 15:09:48.636 00:00:12.332 TCP 12.102.0.1:48464 -> 1.101.0.1:3000 15 1926 1 2025-11-02 15:10:51.007 00:00:11.763 TCP 12.102.0.1:59750 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:11:40.569 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-02 15:11:40.380 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-02 15:11:40.860 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-02 15:11:40.799 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-02 15:11:40.592 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-02 15:11:40.854 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-02 15:11:40.686 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-02 15:11:52.819 00:00:11.801 TCP 12.102.0.1:60762 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:12:54.656 00:00:11.816 TCP 12.102.0.1:36358 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:13:56.513 00:00:11.803 TCP 12.102.0.1:47520 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:14:58.358 00:00:11.829 TCP 12.102.0.1:38980 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:11:00.515 00:06:00.084 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-02 15:11:00.512 00:06:00.089 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-02 15:16:00.226 00:00:11.805 TCP 12.102.0.1:58718 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:16:40.539 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-02 15:16:40.528 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-02 15:16:40.413 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-02 15:16:40.725 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-02 15:16:40.563 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-02 15:16:40.530 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-02 15:16:40.506 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-02 15:17:02.083 00:00:11.838 TCP 12.102.0.1:32818 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:18:03.958 00:00:11.802 TCP 12.102.0.1:40294 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:19:05.807 00:00:11.767 TCP 12.102.0.1:36342 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:20:07.615 00:00:12.301 TCP 12.102.0.1:53656 -> 1.101.0.1:3000 15 1926 1 2025-11-02 15:21:09.961 00:00:11.803 TCP 12.102.0.1:48182 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:21:41.415 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-02 15:21:41.192 00:00:00.027 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-02 15:21:41.389 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-02 15:21:41.371 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-02 15:21:41.005 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-02 15:21:41.148 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-02 15:21:41.349 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-02 15:22:11.800 00:00:11.798 TCP 12.102.0.1:34664 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:18:00.514 00:06:00.088 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-02 15:18:00.516 00:06:00.083 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-02 15:23:13.636 00:00:11.804 TCP 12.102.0.1:51770 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:24:15.478 00:00:11.800 TCP 12.102.0.1:40064 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:25:17.319 00:00:11.760 TCP 12.102.0.1:52300 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:26:19.115 00:00:11.806 TCP 12.102.0.1:37910 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:26:41.006 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-02 15:26:40.936 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-02 15:26:40.909 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-02 15:26:40.752 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-02 15:26:41.103 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-02 15:26:40.765 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-02 15:26:40.728 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-02 15:27:20.958 00:00:11.809 TCP 12.102.0.1:54612 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:28:22.801 00:00:11.758 TCP 12.102.0.1:46908 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:29:24.600 00:00:11.799 TCP 12.102.0.1:43790 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:25:00.518 00:06:00.084 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-02 15:25:00.515 00:06:00.089 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-02 15:30:26.439 00:00:11.758 TCP 12.102.0.1:60104 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:31:40.789 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-02 15:31:40.764 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-02 15:31:40.919 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-02 15:31:28.231 00:00:11.810 TCP 12.102.0.1:47328 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:31:40.773 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-02 15:31:40.780 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-02 15:31:40.852 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-02 15:31:40.751 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-02 15:32:30.075 00:00:11.800 TCP 12.102.0.1:34408 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:33:31.914 00:00:11.819 TCP 12.102.0.1:51098 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:34:33.778 00:00:11.798 TCP 12.102.0.1:58390 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:35:35.613 00:00:11.804 TCP 12.102.0.1:46442 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:36:41.135 00:00:00.033 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-02 15:36:41.034 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-02 15:36:41.167 00:00:00.048 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-02 15:36:41.137 00:00:00.020 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-02 15:36:40.913 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-02 15:36:41.057 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-02 15:36:41.115 00:00:00.020 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-02 15:36:37.453 00:00:11.804 TCP 12.102.0.1:44918 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:32:00.520 00:06:00.084 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-02 15:32:00.517 00:06:00.089 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-02 15:37:39.297 00:00:11.802 TCP 12.102.0.1:56238 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:38:41.137 00:00:11.830 TCP 12.102.0.1:40816 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:39:43.003 00:00:12.443 TCP 12.102.0.1:44310 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:40:45.485 00:00:11.768 TCP 12.102.0.1:51374 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:41:41.105 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-02 15:41:41.044 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-02 15:41:41.353 00:00:00.025 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-02 15:41:41.051 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-02 15:41:41.129 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-02 15:41:41.148 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-02 15:41:41.116 00:00:00.026 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-02 15:41:47.292 00:00:11.804 TCP 12.102.0.1:54158 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:42:49.135 00:00:11.803 TCP 12.102.0.1:33492 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:39:00.521 00:06:00.087 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-02 15:43:50.978 00:00:11.807 TCP 12.102.0.1:39576 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:39:00.523 00:06:00.082 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-02 15:44:52.827 00:00:11.802 TCP 12.102.0.1:48790 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:45:54.668 00:00:11.803 TCP 12.102.0.1:39356 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:46:41.156 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-02 15:46:41.287 00:00:00.026 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-02 15:46:41.226 00:00:00.038 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-02 15:46:41.255 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-02 15:46:41.180 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-02 15:46:41.020 00:00:00.020 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-02 15:46:41.196 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-02 15:46:56.509 00:00:11.809 TCP 12.102.0.1:49686 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:47:58.349 00:00:11.761 TCP 12.102.0.1:37124 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:49:00.148 00:00:11.809 TCP 12.102.0.1:54412 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:50:01.997 00:00:11.803 TCP 12.102.0.1:44396 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:46:00.521 00:06:00.090 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-02 15:46:00.524 00:06:00.084 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-02 15:51:03.836 00:00:12.499 TCP 12.102.0.1:45064 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:51:41.324 00:00:00.020 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-02 15:51:41.412 00:00:00.020 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-02 15:51:41.245 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-02 15:51:41.367 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-02 15:51:41.503 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-02 15:51:41.062 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-02 15:51:41.344 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-02 15:52:06.372 00:00:11.809 TCP 12.102.0.1:46852 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:53:08.219 00:00:11.801 TCP 12.102.0.1:33496 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:54:10.082 00:00:11.760 TCP 12.102.0.1:46292 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:55:11.877 00:00:11.801 TCP 12.102.0.1:49264 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:56:13.715 00:00:11.806 TCP 12.102.0.1:49022 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:56:41.125 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-02 15:56:41.432 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-02 15:56:41.488 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-02 15:56:41.149 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-02 15:56:41.495 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-02 15:56:41.255 00:00:00.010 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-02 15:56:41.452 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-02 15:57:15.560 00:00:11.808 TCP 12.102.0.1:47474 -> 1.101.0.1:3000 11 1507 1 2025-11-02 15:53:00.523 00:06:00.089 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-02 15:53:00.525 00:06:00.083 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-02 15:58:17.407 00:00:11.801 TCP 12.102.0.1:35180 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 160, total bytes: 125329, total packets: 1154, avg bps: 269, avg pps: 0, avg bpp: 108 Time window: 2025-11-02 14:57:00 - 2025-11-02 15:59:00 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0041s User: 0.0010s Wall: 0.0027s flows/second: 59079.9 Runtime: 0.0027s