Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-09 18:58:51.135 00:00:11.831 TCP 12.102.0.1:54722 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:00:07.202 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-09 18:59:53.007 00:00:11.794 TCP 12.102.0.1:55326 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:00:07.193 00:00:00.020 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 19:00:07.129 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-09 19:00:07.183 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-09 19:00:07.325 00:00:00.020 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-09 19:00:07.304 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-09 19:00:07.162 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-09 19:00:54.845 00:00:11.806 TCP 12.102.0.1:59524 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:01:56.689 00:00:11.821 TCP 12.102.0.1:53964 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:02:58.546 00:00:11.764 TCP 12.102.0.1:57766 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:00:03.908 00:05:00.127 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-09 19:00:03.906 00:05:00.132 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-09 19:04:00.347 00:00:11.811 TCP 12.102.0.1:58498 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:05:07.317 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-09 19:05:07.295 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-09 19:05:07.386 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 19:05:07.485 00:00:00.025 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-09 19:05:07.339 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-09 19:05:07.254 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-09 19:05:07.279 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-09 19:05:02.185 00:00:11.885 TCP 12.102.0.1:48916 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:06:04.105 00:00:11.759 TCP 12.102.0.1:55734 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:07:05.904 00:00:11.851 TCP 12.102.0.1:38222 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:08:07.800 00:00:11.798 TCP 12.102.0.1:56114 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:09:09.641 00:00:11.760 TCP 12.102.0.1:51654 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:10:07.286 00:00:00.026 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-09 19:06:03.910 00:05:00.127 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-09 19:06:03.908 00:05:00.132 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-09 19:10:07.469 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-09 19:10:07.594 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 19:10:07.343 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-09 19:10:07.309 00:00:00.026 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-09 19:10:07.125 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-09 19:10:07.199 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-09 19:10:11.439 00:00:11.807 TCP 12.102.0.1:46222 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:11:13.285 00:00:11.812 TCP 12.102.0.1:59426 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:12:15.124 00:00:11.807 TCP 12.102.0.1:39468 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:13:16.969 00:00:11.816 TCP 12.102.0.1:35896 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:14:18.825 00:00:11.762 TCP 12.102.0.1:37542 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:15:07.476 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-09 19:15:07.525 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-09 19:15:07.330 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 19:15:07.447 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-09 19:15:07.497 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-09 19:15:07.561 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-09 19:15:07.294 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-09 19:15:20.628 00:00:11.801 TCP 12.102.0.1:59402 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:12:03.912 00:05:00.129 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-09 19:12:03.910 00:05:00.133 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-09 19:16:22.470 00:00:11.826 TCP 12.102.0.1:43512 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:17:24.331 00:00:11.802 TCP 12.102.0.1:52950 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:18:26.171 00:00:11.801 TCP 12.102.0.1:52794 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:19:28.021 00:00:11.796 TCP 12.102.0.1:58464 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:20:07.513 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-09 19:20:07.596 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 19:20:07.739 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-09 19:20:07.643 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-09 19:20:07.731 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-09 19:20:07.659 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-09 19:20:07.620 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-09 19:20:29.857 00:00:11.804 TCP 12.102.0.1:57074 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:21:31.694 00:00:11.801 TCP 12.102.0.1:35912 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:18:03.913 00:05:00.134 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-09 19:18:03.910 00:05:00.140 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-09 19:22:33.531 00:00:11.813 TCP 12.102.0.1:52606 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:23:35.381 00:00:11.808 TCP 12.102.0.1:56388 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:24:37.228 00:00:11.797 TCP 12.102.0.1:50670 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:25:07.857 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-09 19:25:07.705 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 19:25:07.821 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-09 19:25:07.664 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-09 19:25:07.805 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-09 19:25:07.673 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-09 19:25:07.641 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-09 19:25:39.078 00:00:11.832 TCP 12.102.0.1:36190 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:26:40.955 00:00:11.769 TCP 12.102.0.1:40786 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:27:42.760 00:00:11.810 TCP 12.102.0.1:41364 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:24:03.916 00:05:00.135 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-09 19:24:03.919 00:05:00.130 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-09 19:28:44.613 00:00:11.817 TCP 12.102.0.1:37580 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:29:46.476 00:00:11.806 TCP 12.102.0.1:59540 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:30:07.883 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-09 19:30:07.953 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-09 19:30:07.970 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-09 19:30:07.947 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-09 19:30:07.964 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 19:30:08.032 00:00:00.020 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-09 19:30:07.906 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-09 19:30:48.321 00:00:11.800 TCP 12.102.0.1:47550 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:31:50.159 00:00:11.809 TCP 12.102.0.1:57406 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:32:52.005 00:00:11.802 TCP 12.102.0.1:58256 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:30:03.919 00:05:00.130 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-09 19:30:03.917 00:05:00.135 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-09 19:33:53.850 00:00:11.794 TCP 12.102.0.1:33368 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:35:08.216 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-09 19:34:55.688 00:00:11.798 TCP 12.102.0.1:34860 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:35:08.155 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 19:35:08.223 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-09 19:35:08.038 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-09 19:35:08.168 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-09 19:35:08.250 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-09 19:35:08.017 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-09 19:35:57.525 00:00:11.806 TCP 12.102.0.1:43318 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:36:59.370 00:00:11.822 TCP 12.102.0.1:54454 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:38:01.231 00:00:11.800 TCP 12.102.0.1:59958 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:39:03.084 00:00:11.807 TCP 12.102.0.1:55422 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:40:08.026 00:00:00.020 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-09 19:36:03.920 00:05:00.130 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-09 19:36:03.919 00:05:00.135 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-09 19:40:07.997 00:00:00.025 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-09 19:40:07.921 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 19:40:08.087 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-09 19:40:08.049 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-09 19:40:08.154 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-09 19:40:07.906 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-09 19:40:04.927 00:00:11.819 TCP 12.102.0.1:40132 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:41:06.779 00:00:11.856 TCP 12.102.0.1:47592 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:42:08.673 00:00:11.758 TCP 12.102.0.1:48382 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:43:10.471 00:00:11.757 TCP 12.102.0.1:43888 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:44:12.266 00:00:11.799 TCP 12.102.0.1:48280 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:45:08.112 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-09 19:45:08.015 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 19:45:08.310 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-09 19:45:08.251 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-09 19:45:08.017 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-09 19:45:08.090 00:00:00.048 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-09 19:45:08.229 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-09 19:45:14.102 00:00:11.763 TCP 12.102.0.1:52424 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:42:03.921 00:05:00.133 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-09 19:42:03.922 00:05:00.128 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-09 19:46:15.908 00:00:11.830 TCP 12.102.0.1:55080 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:47:17.782 00:00:11.804 TCP 12.102.0.1:32810 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:48:19.627 00:00:12.246 TCP 12.102.0.1:43972 -> 1.101.0.1:3000 15 1926 1 2025-11-09 19:49:21.915 00:00:11.822 TCP 12.102.0.1:39442 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:50:08.155 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 19:50:08.226 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-09 19:50:08.070 00:00:00.041 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-09 19:50:07.897 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-09 19:50:08.298 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-09 19:50:08.066 00:00:00.013 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-09 19:50:08.047 00:00:00.040 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-09 19:50:23.776 00:00:11.802 TCP 12.102.0.1:42136 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:51:25.618 00:00:11.802 TCP 12.102.0.1:58240 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:48:03.921 00:05:00.133 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-09 19:48:03.924 00:05:00.128 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-09 19:52:27.457 00:00:11.819 TCP 12.102.0.1:45990 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:53:29.308 00:00:11.811 TCP 12.102.0.1:47546 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:54:31.158 00:00:11.763 TCP 12.102.0.1:59768 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:55:08.258 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-09 19:55:08.514 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-09 19:55:08.390 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-09 19:55:08.376 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-09 19:55:08.214 00:00:00.047 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-09 19:55:08.328 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-09 19:55:08.355 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-09 19:55:32.960 00:00:11.774 TCP 12.102.0.1:46792 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:56:34.770 00:00:11.814 TCP 12.102.0.1:44744 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:57:36.629 00:00:11.869 TCP 12.102.0.1:55880 -> 1.101.0.1:3000 11 1507 1 2025-11-09 19:54:03.921 00:05:00.136 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-09 19:54:03.925 00:05:00.130 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-09 19:58:38.533 00:00:11.808 TCP 12.102.0.1:40260 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 125260, total packets: 1145, avg bps: 277, avg pps: 0, avg bpp: 109 Time window: 2025-11-09 18:58:51 - 2025-11-09 19:59:04 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0041s User: 0.0010s Wall: 0.0028s flows/second: 58674.2 Runtime: 0.0028s