Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-15 18:54:07.174 00:06:00.305 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-15 18:59:06.081 00:00:11.797 TCP 12.102.0.1:39158 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:00:07.918 00:00:11.819 TCP 12.102.0.1:57306 -> 1.101.0.1:3000 11 1507 1 2025-11-15 18:56:07.176 00:06:00.300 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-15 19:01:09.782 00:00:11.807 TCP 12.102.0.1:56062 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:02:11.616 00:00:11.913 TCP 12.102.0.1:36732 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:03:00.633 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 19:03:00.661 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 19:03:00.584 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 19:03:00.744 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 19:03:00.656 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 19:03:00.518 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 19:03:00.558 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 19:03:13.569 00:00:11.767 TCP 12.102.0.1:52266 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:04:15.367 00:00:11.827 TCP 12.102.0.1:51366 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:05:17.234 00:00:11.765 TCP 12.102.0.1:43680 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:01:07.174 00:06:00.312 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-15 19:06:19.066 00:00:11.804 TCP 12.102.0.1:36762 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:07:20.908 00:00:11.827 TCP 12.102.0.1:44870 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:08:00.754 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 19:08:00.700 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 19:08:00.351 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 19:08:00.604 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 19:08:00.676 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 19:08:00.571 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 19:08:00.328 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 19:03:07.176 00:06:00.307 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-15 19:08:22.779 00:00:11.813 TCP 12.102.0.1:57188 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:09:24.622 00:00:11.802 TCP 12.102.0.1:60660 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:10:26.468 00:00:11.799 TCP 12.102.0.1:60618 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:11:28.305 00:00:11.814 TCP 12.102.0.1:46614 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:12:30.163 00:00:11.766 TCP 12.102.0.1:36472 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:13:00.573 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 19:13:00.694 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 19:13:00.559 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 19:13:00.688 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 19:13:00.800 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 19:13:00.688 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 19:13:00.537 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 19:08:07.177 00:06:00.310 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-15 19:13:31.967 00:00:11.809 TCP 12.102.0.1:41620 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:14:33.812 00:00:11.796 TCP 12.102.0.1:41684 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:10:07.181 00:06:00.304 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-15 19:15:35.649 00:00:11.798 TCP 12.102.0.1:41812 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:16:37.487 00:00:12.240 TCP 12.102.0.1:50902 -> 1.101.0.1:3000 15 1926 1 2025-11-15 19:17:39.761 00:00:11.800 TCP 12.102.0.1:36410 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:18:00.620 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 19:18:00.758 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 19:18:01.009 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 19:18:00.888 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 19:18:00.643 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 19:18:01.050 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 19:18:00.746 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 19:18:41.600 00:00:11.802 TCP 12.102.0.1:36516 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:19:43.438 00:00:11.810 TCP 12.102.0.1:45752 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:15:07.179 00:06:00.309 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-15 19:20:45.284 00:00:11.767 TCP 12.102.0.1:46814 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:21:47.088 00:00:11.810 TCP 12.102.0.1:57056 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:17:07.184 00:06:00.303 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-15 19:23:00.983 00:00:00.025 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 19:23:01.109 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 19:22:48.935 00:00:11.816 TCP 12.102.0.1:46160 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:23:00.826 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 19:23:01.284 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 19:23:01.006 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 19:23:01.122 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 19:23:00.802 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 19:23:50.786 00:00:11.761 TCP 12.102.0.1:44356 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:24:52.584 00:00:12.445 TCP 12.102.0.1:37006 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:25:55.082 00:00:11.799 TCP 12.102.0.1:48176 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:22:07.182 00:06:00.308 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-15 19:26:56.922 00:00:11.827 TCP 12.102.0.1:37998 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:28:00.880 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 19:28:00.919 00:00:00.020 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 19:28:01.011 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 19:28:01.040 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 19:28:00.904 00:00:00.025 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 19:28:01.148 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 19:28:01.075 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 19:27:58.788 00:00:11.759 TCP 12.102.0.1:53662 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:24:07.185 00:06:00.318 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-15 19:29:00.585 00:00:11.814 TCP 12.102.0.1:40148 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:30:02.441 00:00:11.802 TCP 12.102.0.1:35168 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:31:04.281 00:00:12.270 TCP 12.102.0.1:51964 -> 1.101.0.1:3000 15 1926 1 2025-11-15 19:32:06.590 00:00:12.218 TCP 12.102.0.1:35200 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:33:02.045 00:00:00.033 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 19:33:02.201 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 19:33:01.233 00:00:00.058 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 19:33:01.572 00:00:00.086 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 19:33:02.067 00:00:00.033 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 19:33:02.031 00:00:00.033 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 19:33:01.513 00:00:00.028 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 19:33:08.848 00:00:11.767 TCP 12.102.0.1:50616 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:29:07.183 00:06:00.325 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-15 19:34:10.652 00:00:11.817 TCP 12.102.0.1:46334 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:35:12.514 00:00:11.803 TCP 12.102.0.1:45380 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:31:07.185 00:06:00.321 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-15 19:36:14.358 00:00:11.814 TCP 12.102.0.1:43156 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:37:16.211 00:00:11.798 TCP 12.102.0.1:44458 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:38:01.163 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 19:38:01.228 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 19:38:01.013 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 19:38:01.200 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 19:38:01.219 00:00:00.033 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 19:38:01.073 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 19:38:01.140 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 19:38:18.067 00:00:11.797 TCP 12.102.0.1:58806 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:39:19.904 00:00:11.788 TCP 12.102.0.1:42086 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:40:21.730 00:00:11.802 TCP 12.102.0.1:52306 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:36:07.186 00:06:00.323 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-15 19:41:23.566 00:00:11.801 TCP 12.102.0.1:38672 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:42:25.404 00:00:11.766 TCP 12.102.0.1:49402 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:43:01.127 00:00:00.050 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 19:43:01.238 00:00:00.039 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 19:43:01.474 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 19:43:01.234 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 19:43:01.292 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 19:43:01.014 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 19:43:01.211 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 19:38:07.190 00:06:00.318 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-15 19:43:27.210 00:00:11.807 TCP 12.102.0.1:54148 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:44:29.085 00:00:11.760 TCP 12.102.0.1:48268 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:45:30.888 00:00:11.811 TCP 12.102.0.1:44212 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:46:32.746 00:00:11.773 TCP 12.102.0.1:33966 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:47:34.556 00:00:11.819 TCP 12.102.0.1:45348 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:48:01.363 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 19:48:01.466 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 19:48:01.559 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 19:48:01.337 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 19:48:01.479 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 19:48:01.409 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 19:48:01.315 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 19:43:07.188 00:06:00.322 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-15 19:48:36.416 00:00:11.810 TCP 12.102.0.1:33852 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:49:38.257 00:00:11.802 TCP 12.102.0.1:55736 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:45:07.191 00:06:00.318 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-15 19:50:40.099 00:00:11.759 TCP 12.102.0.1:37300 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:51:41.894 00:00:16.821 TCP 12.102.0.1:48782 -> 1.101.0.1:3000 15 1926 1 2025-11-15 19:53:01.465 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 19:53:01.742 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 19:53:01.773 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 19:53:01.489 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 19:53:01.796 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 19:53:01.605 00:00:00.025 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 19:53:01.618 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 19:52:48.757 00:00:11.817 TCP 12.102.0.1:45132 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:53:50.614 00:00:11.771 TCP 12.102.0.1:35056 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:50:07.191 00:06:00.323 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-15 19:54:52.424 00:00:11.879 TCP 12.102.0.1:32826 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:55:54.348 00:00:11.761 TCP 12.102.0.1:47236 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:52:07.193 00:06:00.319 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-15 19:56:56.148 00:00:11.818 TCP 12.102.0.1:49784 -> 1.101.0.1:3000 11 1507 1 2025-11-15 19:58:01.610 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 19:58:01.706 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 19:58:01.506 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 19:58:01.649 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 19:58:01.713 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 19:58:01.668 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 19:58:01.627 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 19:57:57.994 00:00:11.826 TCP 12.102.0.1:39544 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 160, total bytes: 125329, total packets: 1154, avg bps: 260, avg pps: 0, avg bpp: 108 Time window: 2025-11-15 18:54:07 - 2025-11-15 19:58:09 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0041s User: 0.0010s Wall: 0.0029s flows/second: 55692.0 Runtime: 0.0029s