Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 17:55:09.496 00:05:00.576 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-20 17:59:34.200 00:00:11.857 TCP 12.102.0.1:50510 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:00:25.398 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 18:00:25.307 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 18:00:25.512 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 18:00:25.496 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 18:00:25.420 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 18:00:25.499 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 18:00:25.430 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 18:00:36.116 00:00:11.813 TCP 12.102.0.1:51206 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:01:37.955 00:00:11.885 TCP 12.102.0.1:42116 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:02:39.876 00:00:11.867 TCP 12.102.0.1:32908 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:03:41.782 00:00:12.456 TCP 12.102.0.1:60488 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:00:09.501 00:05:00.570 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-20 18:04:44.284 00:00:11.769 TCP 12.102.0.1:41882 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:01:09.497 00:05:00.575 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-20 18:05:25.330 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 18:05:25.385 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 18:05:25.441 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 18:05:25.354 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 18:05:25.485 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 18:05:25.277 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 18:05:25.448 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 18:05:46.093 00:00:17.789 TCP 12.102.0.1:52844 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:06:53.941 00:00:11.811 TCP 12.102.0.1:50916 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:07:55.813 00:00:11.821 TCP 12.102.0.1:46662 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:08:57.674 00:00:11.812 TCP 12.102.0.1:49078 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:09:59.528 00:00:11.762 TCP 12.102.0.1:50272 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:06:09.500 00:05:00.571 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-20 18:10:25.442 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 18:10:25.595 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 18:10:25.615 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 18:10:25.439 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 18:10:25.464 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 18:10:25.520 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 18:10:25.186 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 18:07:09.499 00:05:00.575 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-20 18:11:01.327 00:00:11.805 TCP 12.102.0.1:60086 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:12:03.169 00:00:11.804 TCP 12.102.0.1:57820 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:13:05.013 00:00:12.297 TCP 12.102.0.1:51658 -> 1.101.0.1:3000 15 1926 1 2025-11-20 18:14:07.355 00:00:11.843 TCP 12.102.0.1:35628 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:15:09.252 00:00:11.808 TCP 12.102.0.1:55056 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:15:25.419 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 18:15:25.653 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 18:15:25.543 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 18:15:25.789 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 18:15:25.441 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 18:15:25.533 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 18:15:25.622 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 18:12:09.502 00:05:00.574 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-20 18:16:11.117 00:00:11.803 TCP 12.102.0.1:34056 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:13:09.500 00:05:00.579 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-20 18:17:12.960 00:00:11.805 TCP 12.102.0.1:50334 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:18:14.814 00:00:11.766 TCP 12.102.0.1:34208 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:19:16.626 00:00:11.797 TCP 12.102.0.1:41974 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:20:25.388 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 18:20:25.578 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 18:20:25.676 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 18:20:25.886 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 18:20:25.410 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 18:20:25.767 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 18:20:25.714 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 18:20:18.467 00:00:11.809 TCP 12.102.0.1:53732 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:21:20.309 00:00:11.790 TCP 12.102.0.1:48324 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:18:09.502 00:05:00.575 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-20 18:22:22.139 00:00:11.820 TCP 12.102.0.1:43640 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:19:09.500 00:05:00.580 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-20 18:23:24.003 00:00:11.835 TCP 12.102.0.1:55470 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:24:25.882 00:00:11.799 TCP 12.102.0.1:47740 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:25:25.637 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 18:25:25.734 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 18:25:25.950 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 18:25:25.837 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 18:25:25.911 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 18:25:25.792 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 18:25:25.814 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 18:25:27.721 00:00:11.763 TCP 12.102.0.1:46100 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:26:29.521 00:00:11.824 TCP 12.102.0.1:60634 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:27:31.399 00:00:11.809 TCP 12.102.0.1:42052 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:24:09.505 00:05:00.574 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-20 18:28:33.248 00:00:11.799 TCP 12.102.0.1:37962 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:25:09.502 00:05:00.578 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-20 18:29:35.080 00:00:11.799 TCP 12.102.0.1:37030 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:30:25.836 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 18:30:25.886 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 18:30:25.966 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 18:30:26.005 00:00:00.020 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 18:30:25.859 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 18:30:25.903 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 18:30:25.672 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 18:30:36.919 00:00:11.937 TCP 12.102.0.1:40698 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:31:38.902 00:00:11.810 TCP 12.102.0.1:52336 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:32:40.752 00:00:11.797 TCP 12.102.0.1:58854 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:33:42.584 00:00:11.818 TCP 12.102.0.1:40628 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:30:09.505 00:05:00.574 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-20 18:34:44.442 00:00:11.808 TCP 12.102.0.1:57746 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:31:09.504 00:05:00.578 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-20 18:35:26.456 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 18:35:25.844 00:00:00.026 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 18:35:26.216 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 18:35:26.007 00:00:00.027 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 18:35:26.430 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 18:35:25.954 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 18:35:25.983 00:00:00.029 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 18:35:46.296 00:00:11.753 TCP 12.102.0.1:55174 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:36:48.089 00:00:11.801 TCP 12.102.0.1:59572 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:37:49.933 00:00:11.814 TCP 12.102.0.1:37034 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:38:51.784 00:00:11.803 TCP 12.102.0.1:41810 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:39:53.630 00:00:11.802 TCP 12.102.0.1:54736 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:36:09.506 00:05:00.575 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-20 18:40:26.104 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 18:40:26.212 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 18:40:26.291 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 18:40:26.405 00:00:00.026 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 18:40:26.106 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 18:40:26.080 00:00:00.045 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 18:40:26.383 00:00:00.025 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 18:40:55.473 00:00:11.817 TCP 12.102.0.1:39950 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:37:09.505 00:05:00.580 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-20 18:41:57.331 00:00:11.809 TCP 12.102.0.1:58110 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:42:59.175 00:00:11.804 TCP 12.102.0.1:45130 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:44:01.020 00:00:11.801 TCP 12.102.0.1:49184 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:45:02.858 00:00:11.775 TCP 12.102.0.1:40860 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:45:26.150 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 18:45:26.079 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 18:45:26.082 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 18:45:26.245 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 18:45:26.173 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 18:45:26.305 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 18:45:26.240 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 18:42:09.507 00:05:00.576 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-20 18:46:04.668 00:00:11.814 TCP 12.102.0.1:50736 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:43:09.505 00:05:00.582 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-20 18:47:06.521 00:00:11.761 TCP 12.102.0.1:51780 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:48:08.320 00:00:12.232 TCP 12.102.0.1:52366 -> 1.101.0.1:3000 15 1926 1 2025-11-20 18:49:10.614 00:00:11.807 TCP 12.102.0.1:54428 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:50:26.166 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 18:50:26.303 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 18:50:26.198 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 18:50:12.457 00:00:11.814 TCP 12.102.0.1:59640 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:50:26.495 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 18:50:26.368 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 18:50:26.387 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 18:50:26.364 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 18:51:14.316 00:00:11.803 TCP 12.102.0.1:57108 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:48:09.508 00:05:00.577 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-20 18:52:16.171 00:00:11.809 TCP 12.102.0.1:49282 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:49:09.505 00:05:00.583 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-20 18:53:18.032 00:00:11.809 TCP 12.102.0.1:37460 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:54:19.898 00:00:11.805 TCP 12.102.0.1:34316 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:55:26.622 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 18:55:26.802 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 18:55:26.646 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 18:55:26.667 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 18:55:26.629 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 18:55:26.415 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 18:55:26.646 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 18:55:21.756 00:00:11.805 TCP 12.102.0.1:40988 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:56:23.612 00:00:11.855 TCP 12.102.0.1:60488 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:57:25.506 00:00:11.781 TCP 12.102.0.1:59320 -> 1.101.0.1:3000 11 1507 1 2025-11-20 18:54:09.509 00:05:00.578 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-20 18:58:27.327 00:00:11.805 TCP 12.102.0.1:51540 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 162, total bytes: 124172, total packets: 1138, avg bps: 258, avg pps: 0, avg bpp: 109 Time window: 2025-11-20 17:55:09 - 2025-11-20 18:59:10 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0033s User: 0.0022s Wall: 0.0023s flows/second: 69675.7 Runtime: 0.0023s