Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-03 08:58:43.884 00:00:11.804 TCP 12.102.0.1:33526 -> 1.101.0.1:3000 11 1507 1 2025-11-03 08:59:45.726 00:00:12.234 TCP 12.102.0.1:45418 -> 1.101.0.1:3000 15 1926 1 2025-11-03 08:55:00.847 00:06:00.052 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-03 08:55:00.849 00:06:00.047 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-03 09:00:48.001 00:00:11.799 TCP 12.102.0.1:54240 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:02:01.753 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-03 09:02:01.882 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-03 09:02:02.097 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-03 09:02:01.775 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-03 09:01:49.840 00:00:11.766 TCP 12.102.0.1:36094 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:02:01.900 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-03 09:02:02.024 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-03 09:02:01.803 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-03 09:02:51.646 00:00:11.760 TCP 12.102.0.1:51570 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:03:53.444 00:00:12.819 TCP 12.102.0.1:56510 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:04:56.299 00:00:11.756 TCP 12.102.0.1:50254 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:05:58.096 00:00:11.801 TCP 12.102.0.1:42478 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:07:01.755 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-03 09:02:00.850 00:06:00.048 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-03 09:02:00.847 00:06:00.053 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-03 09:07:01.969 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-03 09:07:02.063 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-03 09:07:01.990 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-03 09:07:01.778 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-03 09:07:02.075 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-03 09:07:01.758 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-03 09:06:59.934 00:00:11.818 TCP 12.102.0.1:49792 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:08:01.791 00:00:11.849 TCP 12.102.0.1:33698 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:09:03.679 00:00:11.802 TCP 12.102.0.1:45300 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:10:05.521 00:00:11.803 TCP 12.102.0.1:38108 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:11:07.366 00:00:11.788 TCP 12.102.0.1:54198 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:12:02.003 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-03 09:12:02.106 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-03 09:12:02.168 00:00:00.032 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-03 09:12:01.967 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-03 09:12:02.191 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-03 09:12:02.053 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-03 09:12:01.943 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-03 09:12:09.192 00:00:11.807 TCP 12.102.0.1:55170 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:13:11.038 00:00:11.800 TCP 12.102.0.1:42142 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:09:00.851 00:06:00.048 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-03 09:09:00.848 00:06:00.054 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-03 09:14:12.880 00:00:11.810 TCP 12.102.0.1:50464 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:15:14.727 00:00:11.801 TCP 12.102.0.1:33742 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:16:16.567 00:00:11.822 TCP 12.102.0.1:57180 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:17:03.121 00:00:00.053 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-03 09:17:03.029 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-03 09:17:03.162 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-03 09:17:03.096 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-03 09:17:03.171 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-03 09:17:02.899 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-03 09:17:03.073 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-03 09:17:18.426 00:00:11.800 TCP 12.102.0.1:47338 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:18:20.265 00:00:11.806 TCP 12.102.0.1:41792 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:19:22.111 00:00:11.815 TCP 12.102.0.1:48338 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:20:23.965 00:00:11.797 TCP 12.102.0.1:46852 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:16:00.851 00:06:00.053 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-03 09:16:00.853 00:06:00.048 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-03 09:21:25.800 00:00:11.800 TCP 12.102.0.1:59416 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:22:02.429 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-03 09:22:02.272 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-03 09:22:02.346 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-03 09:22:02.313 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-03 09:22:02.453 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-03 09:22:02.300 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-03 09:22:02.259 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-03 09:22:27.639 00:00:11.857 TCP 12.102.0.1:45604 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:23:29.536 00:00:11.803 TCP 12.102.0.1:46540 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:24:31.375 00:00:11.769 TCP 12.102.0.1:56228 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:25:33.183 00:00:12.048 TCP 12.102.0.1:33572 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:26:35.271 00:00:11.798 TCP 12.102.0.1:52664 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:27:02.555 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-03 09:27:02.528 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-03 09:27:02.479 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-03 09:27:02.417 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-03 09:27:02.465 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-03 09:27:02.475 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-03 09:27:02.394 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-03 09:27:37.108 00:00:11.798 TCP 12.102.0.1:41700 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:23:00.854 00:06:00.049 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-03 09:23:00.850 00:06:00.055 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-03 09:28:38.942 00:00:11.806 TCP 12.102.0.1:48390 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:29:40.784 00:00:11.805 TCP 12.102.0.1:51410 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:30:42.626 00:00:12.025 TCP 12.102.0.1:57336 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:31:44.689 00:00:11.805 TCP 12.102.0.1:49444 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:32:02.345 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-03 09:32:02.634 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-03 09:32:02.580 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-03 09:32:02.579 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-03 09:32:02.465 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-03 09:32:02.455 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-03 09:32:02.557 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-03 09:32:46.533 00:00:11.802 TCP 12.102.0.1:35014 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:33:48.372 00:00:11.769 TCP 12.102.0.1:37586 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:30:00.855 00:06:00.049 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-03 09:30:00.852 00:06:00.054 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-03 09:34:50.178 00:00:11.799 TCP 12.102.0.1:56204 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:35:52.025 00:00:11.799 TCP 12.102.0.1:40096 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:37:02.827 00:00:00.029 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-03 09:37:02.844 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-03 09:37:03.184 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-03 09:37:03.398 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-03 09:37:02.898 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-03 09:37:03.272 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-03 09:37:03.249 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-03 09:36:53.868 00:00:11.856 TCP 12.102.0.1:57030 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:37:55.762 00:00:11.801 TCP 12.102.0.1:43662 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:38:57.598 00:00:11.809 TCP 12.102.0.1:38246 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:39:59.442 00:00:11.804 TCP 12.102.0.1:47344 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:41:01.288 00:00:11.801 TCP 12.102.0.1:55526 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:42:02.762 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-03 09:37:00.856 00:06:00.049 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-03 09:42:02.938 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-03 09:42:02.795 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-03 09:42:02.785 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-03 09:42:02.862 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-03 09:42:02.746 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-03 09:37:00.854 00:06:00.054 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-03 09:42:02.867 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-03 09:42:03.129 00:00:11.806 TCP 12.102.0.1:53450 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:43:04.979 00:00:11.810 TCP 12.102.0.1:59822 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:44:06.825 00:00:11.810 TCP 12.102.0.1:42296 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:45:08.673 00:00:12.240 TCP 12.102.0.1:58462 -> 1.101.0.1:3000 15 1926 1 2025-11-03 09:46:10.954 00:00:11.800 TCP 12.102.0.1:49236 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:47:02.702 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-03 09:47:02.624 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-03 09:47:02.872 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-03 09:47:02.726 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-03 09:47:02.846 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-03 09:47:02.728 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-03 09:47:02.641 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-03 09:47:12.796 00:00:12.031 TCP 12.102.0.1:46368 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:48:14.869 00:00:11.763 TCP 12.102.0.1:52732 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:44:00.858 00:06:00.048 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-03 09:44:00.856 00:06:00.053 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-03 09:49:16.675 00:00:11.807 TCP 12.102.0.1:45048 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:50:18.522 00:00:11.817 TCP 12.102.0.1:42592 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:51:20.379 00:00:11.821 TCP 12.102.0.1:47894 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:52:02.832 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-03 09:52:02.760 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-03 09:52:03.058 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-03 09:52:02.969 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-03 09:52:03.021 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-03 09:52:02.625 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-03 09:52:02.946 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-03 09:52:22.234 00:00:11.807 TCP 12.102.0.1:47866 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:53:24.082 00:00:11.803 TCP 12.102.0.1:58718 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:54:25.924 00:00:11.821 TCP 12.102.0.1:50642 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:55:27.779 00:00:12.746 TCP 12.102.0.1:52334 -> 1.101.0.1:3000 15 1926 1 2025-11-03 09:51:00.856 00:06:00.053 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-03 09:51:00.860 00:06:00.048 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-03 09:56:30.565 00:00:11.811 TCP 12.102.0.1:52486 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:57:03.075 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-03 09:57:03.055 00:00:00.047 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-03 09:57:02.943 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-03 09:57:03.007 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-03 09:57:03.040 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-03 09:57:03.200 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-03 09:57:03.033 00:00:00.046 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-03 09:57:32.421 00:00:11.764 TCP 12.102.0.1:35602 -> 1.101.0.1:3000 11 1507 1 2025-11-03 09:58:34.224 00:00:11.798 TCP 12.102.0.1:56218 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 161, total bytes: 126836, total packets: 1165, avg bps: 265, avg pps: 0, avg bpp: 108 Time window: 2025-11-03 08:55:00 - 2025-11-03 09:58:46 Total flows processed: 161, passed: 161, Blocks skipped: 0, Bytes read: 16808 Sys: 0.0040s User: 0.0010s Wall: 0.0022s flows/second: 72393.1 Runtime: 0.0022s