Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-23 08:59:03.072 00:00:11.818 TCP 12.102.0.1:45600 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:00:04.932 00:00:11.863 TCP 12.102.0.1:50336 -> 1.101.0.1:3000 11 1507 1 2025-11-23 08:57:10.872 00:05:00.416 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-23 08:57:10.869 00:05:00.421 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-23 09:01:06.831 00:00:11.796 TCP 12.102.0.1:53358 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:01:41.274 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-23 09:01:41.490 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-23 09:01:41.308 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-23 09:01:41.666 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-23 09:01:41.297 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-23 09:01:41.398 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-23 09:01:41.386 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-23 09:02:08.661 00:00:11.809 TCP 12.102.0.1:44320 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:03:10.509 00:00:11.929 TCP 12.102.0.1:37688 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:04:12.482 00:00:11.805 TCP 12.102.0.1:54306 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:05:14.329 00:00:11.787 TCP 12.102.0.1:39528 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:06:16.156 00:00:12.200 TCP 12.102.0.1:35436 -> 1.101.0.1:3000 15 1926 1 2025-11-23 09:06:41.268 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-23 09:06:41.311 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-23 09:06:41.097 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-23 09:06:41.431 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-23 09:06:41.290 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-23 09:06:41.486 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-23 09:06:41.408 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-23 09:03:10.872 00:05:00.419 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-23 09:03:10.875 00:05:00.414 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-23 09:07:18.394 00:00:11.795 TCP 12.102.0.1:43798 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:08:20.228 00:00:11.828 TCP 12.102.0.1:46172 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:09:22.095 00:00:11.809 TCP 12.102.0.1:43034 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:10:23.926 00:00:11.820 TCP 12.102.0.1:43024 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:11:25.787 00:00:11.803 TCP 12.102.0.1:59810 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:11:41.305 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-23 09:11:41.363 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-23 09:11:41.187 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-23 09:11:41.485 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-23 09:11:41.329 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-23 09:11:41.347 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-23 09:11:41.348 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-23 09:12:27.643 00:00:11.814 TCP 12.102.0.1:52114 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:09:10.875 00:05:00.417 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-23 09:09:10.872 00:05:00.422 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-23 09:13:29.494 00:00:11.810 TCP 12.102.0.1:51808 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:14:31.350 00:00:11.814 TCP 12.102.0.1:56692 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:15:33.206 00:00:11.804 TCP 12.102.0.1:50062 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:16:41.517 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-23 09:16:41.186 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-23 09:16:41.613 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-23 09:16:41.617 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-23 09:16:41.539 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-23 09:16:41.438 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-23 09:16:41.483 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-23 09:16:35.079 00:00:11.810 TCP 12.102.0.1:34548 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:17:36.930 00:00:11.812 TCP 12.102.0.1:35982 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:18:38.783 00:00:11.807 TCP 12.102.0.1:34428 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:15:10.873 00:05:00.423 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-23 09:15:10.876 00:05:00.418 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-23 09:19:40.636 00:00:11.802 TCP 12.102.0.1:42330 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:20:42.481 00:00:12.232 TCP 12.102.0.1:48570 -> 1.101.0.1:3000 15 1926 1 2025-11-23 09:21:41.525 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-23 09:21:41.412 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-23 09:21:41.653 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-23 09:21:41.457 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-23 09:21:41.548 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-23 09:21:41.781 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-23 09:21:41.775 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-23 09:21:44.755 00:00:11.769 TCP 12.102.0.1:51814 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:22:46.561 00:00:11.807 TCP 12.102.0.1:52518 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:23:48.405 00:00:11.801 TCP 12.102.0.1:55312 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:24:50.247 00:00:11.761 TCP 12.102.0.1:51600 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:21:10.877 00:05:00.418 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-23 09:21:10.873 00:05:00.424 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-23 09:25:52.069 00:00:12.232 TCP 12.102.0.1:42396 -> 1.101.0.1:3000 15 1926 1 2025-11-23 09:26:41.723 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-23 09:26:41.911 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-23 09:26:41.764 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-23 09:26:41.722 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-23 09:26:41.822 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-23 09:26:41.716 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-23 09:26:41.699 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-23 09:26:54.337 00:00:11.794 TCP 12.102.0.1:43426 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:27:56.172 00:00:12.028 TCP 12.102.0.1:55460 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:28:58.238 00:00:11.802 TCP 12.102.0.1:41294 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:30:00.082 00:00:11.858 TCP 12.102.0.1:34404 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:27:10.875 00:05:00.423 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-23 09:31:01.979 00:00:11.804 TCP 12.102.0.1:47112 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:27:10.877 00:05:00.418 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-23 09:31:41.758 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-23 09:31:41.791 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-23 09:31:41.987 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-23 09:31:41.811 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-23 09:31:41.833 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-23 09:31:41.874 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-23 09:31:41.788 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-23 09:32:03.822 00:00:11.818 TCP 12.102.0.1:56152 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:33:05.668 00:00:11.814 TCP 12.102.0.1:45014 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:34:07.519 00:00:11.776 TCP 12.102.0.1:55150 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:35:09.338 00:00:11.774 TCP 12.102.0.1:42840 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:36:11.148 00:00:11.803 TCP 12.102.0.1:43620 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:36:42.176 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-23 09:36:41.933 00:00:00.041 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-23 09:36:42.261 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-23 09:36:42.200 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-23 09:36:41.796 00:00:00.025 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-23 09:36:41.902 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-23 09:36:41.913 00:00:00.026 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-23 09:33:10.879 00:05:00.418 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-23 09:33:10.876 00:05:00.423 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-23 09:37:12.990 00:00:11.800 TCP 12.102.0.1:47946 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:38:14.828 00:00:11.853 TCP 12.102.0.1:50478 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:39:16.723 00:00:11.770 TCP 12.102.0.1:51296 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:40:18.536 00:00:12.241 TCP 12.102.0.1:57768 -> 1.101.0.1:3000 15 1926 1 2025-11-23 09:41:20.828 00:00:11.807 TCP 12.102.0.1:34090 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:41:41.868 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-23 09:41:41.928 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-23 09:41:41.977 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-23 09:41:41.920 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-23 09:41:42.178 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-23 09:41:42.012 00:00:00.025 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-23 09:41:41.891 00:00:00.027 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-23 09:42:22.686 00:00:11.816 TCP 12.102.0.1:41074 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:39:10.878 00:05:00.422 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-23 09:39:10.882 00:05:00.417 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-23 09:43:24.537 00:00:11.773 TCP 12.102.0.1:44216 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:44:26.352 00:00:11.807 TCP 12.102.0.1:42406 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:45:28.204 00:00:11.769 TCP 12.102.0.1:38720 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:46:42.098 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-23 09:46:30.010 00:00:11.761 TCP 12.102.0.1:55902 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:46:41.986 00:00:00.027 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-23 09:46:42.240 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-23 09:46:41.967 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-23 09:46:41.987 00:00:00.026 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-23 09:46:42.074 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-23 09:46:41.944 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-23 09:47:31.810 00:00:11.809 TCP 12.102.0.1:38304 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:48:33.664 00:00:11.890 TCP 12.102.0.1:45228 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:45:10.880 00:05:00.421 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-23 09:45:10.883 00:05:00.416 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-23 09:49:35.592 00:00:11.801 TCP 12.102.0.1:54372 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:50:37.429 00:00:12.237 TCP 12.102.0.1:34634 -> 1.101.0.1:3000 15 1926 1 2025-11-23 09:51:42.186 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-23 09:51:42.219 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-23 09:51:42.323 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-23 09:51:42.333 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-23 09:51:42.209 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-23 09:51:42.456 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-23 09:51:42.068 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-23 09:51:39.707 00:00:11.799 TCP 12.102.0.1:59024 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:52:41.546 00:00:11.797 TCP 12.102.0.1:41500 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:53:43.382 00:00:11.763 TCP 12.102.0.1:50076 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:54:45.187 00:00:11.800 TCP 12.102.0.1:53668 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:51:10.884 00:05:00.419 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-23 09:51:10.882 00:05:00.424 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-23 09:55:47.032 00:00:11.811 TCP 12.102.0.1:34738 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:56:42.412 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-23 09:56:42.554 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-23 09:56:42.280 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-23 09:56:42.524 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-23 09:56:42.407 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-23 09:56:42.641 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-23 09:56:42.258 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-23 09:56:48.882 00:00:11.804 TCP 12.102.0.1:37174 -> 1.101.0.1:3000 11 1507 1 2025-11-23 09:57:50.725 00:00:11.807 TCP 12.102.0.1:33346 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 162, total bytes: 125429, total packets: 1150, avg bps: 274, avg pps: 0, avg bpp: 109 Time window: 2025-11-23 08:57:10 - 2025-11-23 09:58:02 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0036s User: 0.0022s Wall: 0.0026s flows/second: 63230.7 Runtime: 0.0026s