Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-28 09:59:00.974 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36858 9 6412 1 2025-08-28 09:59:40.457 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 09:59:40.458 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 10:00:01.386 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:36890 10 6452 1 2025-08-28 09:56:19.511 00:05:00.941 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-08-28 09:57:20.058 00:06:00.396 TCP 23.155.0.1:179 -> 23.156.0.1:36051 14 861 1 2025-08-28 09:58:20.038 00:06:00.475 TCP 23.156.0.1:36051 -> 23.155.0.1:179 14 861 1 2025-08-28 09:59:59.428 00:05:10.004 OSPF 23.0.7.1:0 -> 224.0.0.5:0 38 2724 1 2025-08-28 10:04:02.944 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:51352 10 6452 1 2025-08-28 10:00:19.546 00:05:00.949 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-08-28 10:00:19.488 00:05:00.987 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-08-28 10:04:40.564 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 10:04:40.482 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 10:05:03.321 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45988 9 6412 1 2025-08-28 10:02:19.510 00:05:00.946 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-08-28 10:09:04.950 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:42544 9 6412 1 2025-08-28 10:04:20.073 00:06:00.383 TCP 23.155.0.1:179 -> 23.156.0.1:36051 14 861 1 2025-08-28 10:05:19.432 00:05:10.017 OSPF 23.0.7.1:0 -> 224.0.0.5:0 42 3052 1 2025-08-28 10:09:40.645 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 10:09:40.691 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 10:10:05.378 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34520 9 6412 1 2025-08-28 10:06:19.552 00:05:00.944 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-08-28 10:05:20.058 00:06:00.458 TCP 23.156.0.1:36051 -> 23.155.0.1:179 14 861 1 2025-08-28 10:06:19.491 00:05:00.985 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-08-28 10:11:05.779 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:47576 9 6412 1 2025-08-28 10:08:19.512 00:05:00.945 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-08-28 10:13:06.617 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:35720 10 6452 1 2025-08-28 10:14:06.980 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:59298 9 6412 1 2025-08-28 10:14:40.720 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 10:14:40.722 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 10:10:39.450 00:05:10.008 OSPF 23.0.7.1:0 -> 224.0.0.5:0 38 2748 1 2025-08-28 10:15:17.709 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:35476 1 40 1 2025-08-28 10:12:19.498 00:05:00.980 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-08-28 10:12:19.552 00:05:00.946 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-08-28 10:16:07.748 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:53780 9 6412 1 2025-08-28 10:11:20.091 00:06:00.365 TCP 23.155.0.1:179 -> 23.156.0.1:36051 14 861 1 2025-08-28 10:12:20.072 00:06:00.445 TCP 23.156.0.1:36051 -> 23.155.0.1:179 14 861 1 2025-08-28 10:18:18.947 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:46224 1 40 1 2025-08-28 10:14:19.514 00:05:00.943 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-08-28 10:19:19.346 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:35090 1 40 1 2025-08-28 10:19:40.818 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 10:19:40.641 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 10:15:59.458 00:05:10.009 OSPF 23.0.7.1:0 -> 224.0.0.5:0 40 2848 1 2025-08-28 10:21:09.789 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57364 9 6412 1 2025-08-28 10:18:19.552 00:05:00.945 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-08-28 10:18:19.494 00:05:00.983 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-08-28 10:22:10.156 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33120 9 6412 1 2025-08-28 10:23:20.901 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:48236 1 40 1 2025-08-28 10:18:20.094 00:06:00.365 TCP 23.155.0.1:179 -> 23.156.0.1:36051 14 861 1 2025-08-28 10:24:10.936 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44672 9 6412 1 2025-08-28 10:20:19.514 00:05:00.943 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-08-28 10:19:20.072 00:06:00.445 TCP 23.156.0.1:36051 -> 23.155.0.1:179 14 861 1 2025-08-28 10:24:41.276 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 10:24:40.930 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 10:25:11.341 00:00:10.574 TCP 1.101.0.1:3000 -> 23.104.0.1:41334 9 6412 1 2025-08-28 10:21:19.466 00:05:10.008 OSPF 23.0.7.1:0 -> 224.0.0.5:0 34 2360 1 2025-08-28 10:27:12.374 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44252 10 6452 1 2025-08-28 10:28:23.165 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:47070 1 40 1 2025-08-28 10:24:19.553 00:05:00.947 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-08-28 10:24:19.495 00:05:00.985 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-08-28 10:29:13.203 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39698 9 6412 1 2025-08-28 10:29:40.908 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 10:29:41.144 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 10:30:13.605 00:00:10.413 TCP 1.101.0.1:3000 -> 23.104.0.1:38774 10 6452 1 2025-08-28 10:25:20.095 00:06:00.370 TCP 23.155.0.1:179 -> 23.156.0.1:36051 14 861 1 2025-08-28 10:26:19.518 00:05:00.947 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-08-28 10:26:39.475 00:05:10.008 OSPF 23.0.7.1:0 -> 224.0.0.5:0 38 2724 1 2025-08-28 10:26:20.076 00:06:00.449 TCP 23.156.0.1:36051 -> 23.155.0.1:179 14 861 1 2025-08-28 10:32:14.460 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:59440 9 6412 1 2025-08-28 10:33:25.158 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:57854 1 40 1 2025-08-28 10:30:19.554 00:05:00.950 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-08-28 10:30:19.500 00:05:00.984 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-08-28 10:34:25.566 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:40228 1 40 1 2025-08-28 10:34:41.109 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 10:34:41.228 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 10:31:59.483 00:05:10.005 OSPF 23.0.7.1:0 -> 224.0.0.5:0 38 2624 1 2025-08-28 10:32:19.522 00:05:00.944 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-08-28 10:36:26.375 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:50522 1 40 1 2025-08-28 10:32:20.095 00:06:00.369 TCP 23.155.0.1:179 -> 23.156.0.1:36051 14 861 1 2025-08-28 10:37:16.421 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51702 10 6452 1 2025-08-28 10:33:20.076 00:06:00.449 TCP 23.156.0.1:36051 -> 23.155.0.1:179 14 861 1 2025-08-28 10:38:27.186 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:41800 1 40 1 2025-08-28 10:39:41.340 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 10:39:41.300 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 10:36:19.564 00:05:00.941 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-08-28 10:36:19.502 00:05:00.983 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-08-28 10:40:17.623 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58758 9 6412 1 2025-08-28 10:37:19.490 00:05:10.050 OSPF 23.0.7.1:0 -> 224.0.0.5:0 37 2700 1 2025-08-28 10:41:28.388 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:57516 1 40 1 2025-08-28 10:38:19.523 00:05:00.943 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-08-28 10:42:18.427 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:43724 10 6452 1 2025-08-28 10:43:18.795 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:51092 10 6452 1 2025-08-28 10:39:20.098 00:06:00.368 TCP 23.155.0.1:179 -> 23.156.0.1:36051 14 861 1 2025-08-28 10:44:19.165 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45850 9 6412 1 2025-08-28 10:44:41.339 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 10:44:41.335 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 10:40:20.078 00:06:00.448 TCP 23.156.0.1:36051 -> 23.155.0.1:179 14 861 1 2025-08-28 10:45:29.930 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:52078 1 40 1 2025-08-28 10:42:19.559 00:05:00.947 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-08-28 10:42:19.506 00:05:00.980 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-08-28 10:46:19.970 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48712 9 6412 1 2025-08-28 10:42:30.390 00:05:09.105 OSPF 23.0.7.1:0 -> 224.0.0.5:0 42 3112 1 2025-08-28 10:47:20.380 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39090 10 6452 1 2025-08-28 10:44:19.529 00:05:00.938 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-08-28 10:49:21.195 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44928 10 6452 1 2025-08-28 10:49:41.443 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 10:49:41.628 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 10:50:21.601 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:46446 9 6412 1 2025-08-28 10:46:20.099 00:06:00.368 TCP 23.155.0.1:179 -> 23.156.0.1:36051 14 861 1 2025-08-28 10:47:49.495 00:05:10.011 OSPF 23.0.7.1:0 -> 224.0.0.5:0 36 2504 1 2025-08-28 10:48:19.559 00:05:00.948 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-08-28 10:47:20.078 00:06:00.449 TCP 23.156.0.1:36051 -> 23.155.0.1:179 14 861 1 2025-08-28 10:48:19.509 00:05:00.978 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-08-28 10:52:32.788 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:47318 1 40 1 2025-08-28 10:53:33.202 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:46932 1 40 1 2025-08-28 10:50:19.530 00:05:00.939 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-08-28 10:54:41.533 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 10:54:41.436 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 10:55:23.639 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47844 9 6412 1 2025-08-28 10:53:09.507 00:05:10.004 OSPF 23.0.7.1:0 -> 224.0.0.5:0 34 2384 1 2025-08-28 10:57:34.844 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:59252 1 40 1 2025-08-28 10:53:20.102 00:06:00.367 TCP 23.155.0.1:179 -> 23.156.0.1:36051 14 861 1 2025-08-28 10:54:19.571 00:05:00.939 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-08-28 10:54:19.514 00:05:00.976 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-08-28 10:58:24.882 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45794 10 6452 1 Summary: total flows: 125, total bytes: 259553, total packets: 1373, avg bps: 549, avg pps: 0, avg bpp: 189 Time window: 2025-08-28 09:56:19 - 2025-08-28 10:59:20 Total flows processed: 125, passed: 125, Blocks skipped: 0, Bytes read: 13064 Sys: 0.0016s User: 0.0024s Wall: 0.0017s flows/second: 72216.0 Runtime: 0.0017s