Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-28 12:58:52.974 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:37306 10 6452 1 2025-10-28 12:59:13.506 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 12:59:13.515 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 12:54:51.402 00:05:56.753 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-28 13:00:03.713 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:35316 1 40 1 2025-10-28 12:56:02.720 00:05:10.285 OSPF 23.0.7.1:0 -> 224.0.0.5:0 39 2852 1 2025-10-28 12:55:51.422 00:05:56.713 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-28 12:56:48.717 00:05:02.726 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-28 12:56:50.504 00:05:00.959 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-28 13:00:53.753 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34760 9 6412 1 2025-10-28 12:57:50.524 00:05:00.878 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-28 13:02:08.418 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:47218 1 40 1 2025-10-28 13:02:58.462 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40354 9 6412 1 2025-10-28 13:03:58.827 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33362 10 6452 1 2025-10-28 13:04:13.442 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:04:13.448 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:04:59.247 00:00:10.858 TCP 1.101.0.1:3000 -> 23.104.0.1:52762 10 6452 1 2025-10-28 13:01:22.724 00:05:10.007 OSPF 23.0.7.1:0 -> 224.0.0.5:0 36 2464 1 2025-10-28 13:00:51.403 00:05:56.753 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-28 13:06:00.135 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48496 10 6452 1 2025-10-28 13:01:51.422 00:05:56.714 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-28 13:02:48.718 00:05:02.726 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-28 13:02:50.505 00:05:00.959 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-28 13:07:00.541 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38524 10 6452 1 2025-10-28 13:03:50.526 00:05:00.879 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-28 13:08:11.267 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:54948 1 40 1 2025-10-28 13:09:13.565 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:09:01.308 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43218 10 6452 1 2025-10-28 13:09:13.599 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:06:42.732 00:05:10.007 OSPF 23.0.7.1:0 -> 224.0.0.5:0 39 2960 1 2025-10-28 13:11:12.503 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:34846 1 40 1 2025-10-28 13:06:51.405 00:05:56.752 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-28 13:12:02.538 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43632 10 6452 1 2025-10-28 13:07:51.424 00:05:56.712 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-28 13:08:48.722 00:05:02.725 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-28 13:08:50.506 00:05:00.961 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-28 13:13:02.940 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:36702 10 6452 1 2025-10-28 13:09:50.528 00:05:00.882 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-28 13:14:13.666 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:14:13.741 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:51946 1 40 1 2025-10-28 13:14:13.665 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:15:03.777 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:39230 10 6452 1 2025-10-28 13:12:02.738 00:05:10.011 OSPF 23.0.7.1:0 -> 224.0.0.5:0 39 2752 1 2025-10-28 13:16:04.148 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43766 9 6412 1 2025-10-28 13:17:14.880 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:52284 1 40 1 2025-10-28 13:12:51.407 00:05:56.750 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-28 13:13:51.428 00:05:56.710 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-28 13:14:48.724 00:05:02.724 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-28 13:14:50.507 00:05:00.961 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-28 13:19:13.658 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:19:13.655 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:19:05.339 00:00:10.719 TCP 1.101.0.1:3000 -> 23.104.0.1:33806 10 6452 1 2025-10-28 13:15:50.529 00:05:00.881 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-28 13:20:06.128 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37390 9 6412 1 2025-10-28 13:21:06.530 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:47314 10 6452 1 2025-10-28 13:17:22.749 00:05:10.009 OSPF 23.0.7.1:0 -> 224.0.0.5:0 36 2464 1 2025-10-28 13:23:07.319 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:59998 9 6412 1 2025-10-28 13:18:51.409 00:05:56.751 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-28 13:24:13.600 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:24:13.814 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:24:07.695 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:54042 9 6412 1 2025-10-28 13:19:51.429 00:05:56.711 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-28 13:20:48.726 00:05:02.728 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-28 13:20:50.510 00:05:00.964 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-28 13:25:08.142 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54522 9 6412 1 2025-10-28 13:21:50.530 00:05:00.884 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-28 13:26:08.556 00:00:18.151 TCP 1.101.0.1:3000 -> 23.104.0.1:38346 9 6412 1 2025-10-28 13:22:42.757 00:05:10.019 OSPF 23.0.7.1:0 -> 224.0.0.5:0 37 2560 1 2025-10-28 13:27:16.779 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:32848 9 6412 1 2025-10-28 13:28:17.191 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54550 9 6412 1 2025-10-28 13:29:13.881 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:29:13.882 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:29:17.596 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60186 10 6452 1 2025-10-28 13:24:51.409 00:05:56.753 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-28 13:30:28.366 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:44846 1 40 1 2025-10-28 13:25:51.433 00:05:56.710 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-28 13:26:48.729 00:05:02.729 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-28 13:26:50.511 00:05:00.967 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-28 13:31:28.768 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:47542 1 40 1 2025-10-28 13:27:50.532 00:05:00.884 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-28 13:28:02.758 00:05:10.006 OSPF 23.0.7.1:0 -> 224.0.0.5:0 40 2916 1 2025-10-28 13:33:19.287 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54520 10 6452 1 2025-10-28 13:34:14.163 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:34:14.083 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:34:19.692 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50912 10 6452 1 2025-10-28 13:30:51.415 00:05:56.749 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-28 13:36:20.527 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47822 10 6452 1 2025-10-28 13:31:51.437 00:05:56.707 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-28 13:32:48.727 00:05:02.730 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-28 13:32:50.511 00:05:00.965 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-28 13:33:22.765 00:05:10.010 OSPF 23.0.7.1:0 -> 224.0.0.5:0 38 2796 1 2025-10-28 13:37:31.256 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:56286 1 40 1 2025-10-28 13:33:50.532 00:05:00.885 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-28 13:38:21.296 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36666 10 6452 1 2025-10-28 13:39:14.192 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:39:14.028 00:00:00.045 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:39:21.664 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:40364 10 6452 1 2025-10-28 13:41:22.545 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55172 9 6412 1 2025-10-28 13:36:51.417 00:05:56.748 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-28 13:42:33.324 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:43268 1 40 1 2025-10-28 13:37:51.437 00:05:56.709 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-28 13:38:48.729 00:05:02.729 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-28 13:38:50.533 00:05:00.945 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-28 13:38:42.776 00:05:10.007 OSPF 23.0.7.1:0 -> 224.0.0.5:0 35 2564 1 2025-10-28 13:43:23.363 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49238 9 6412 1 2025-10-28 13:39:50.553 00:05:00.865 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-28 13:44:14.168 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:44:14.165 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:44:23.766 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35840 9 6412 1 2025-10-28 13:45:34.543 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:36356 1 40 1 2025-10-28 13:46:34.945 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:33172 1 40 1 2025-10-28 13:47:24.988 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47788 10 6452 1 2025-10-28 13:42:51.419 00:05:56.749 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-28 13:44:02.769 00:05:10.020 OSPF 23.0.7.1:0 -> 224.0.0.5:0 40 2752 1 2025-10-28 13:48:25.394 00:00:10.316 TCP 1.101.0.1:3000 -> 23.104.0.1:46802 9 6412 1 2025-10-28 13:43:51.438 00:05:56.709 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-28 13:44:48.732 00:05:02.728 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-28 13:44:50.535 00:05:00.945 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-28 13:49:14.136 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:49:14.288 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:49:25.745 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:56362 9 6412 1 2025-10-28 13:45:50.553 00:05:00.865 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-28 13:50:36.498 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:37882 1 40 1 2025-10-28 13:51:26.531 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44660 9 6412 1 2025-10-28 13:52:26.938 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:44100 11 10335 1 2025-10-28 13:49:22.790 00:05:10.003 OSPF 23.0.7.1:0 -> 224.0.0.5:0 38 2624 1 2025-10-28 13:53:27.418 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52334 10 6452 1 2025-10-28 13:48:51.418 00:05:56.751 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-28 13:54:14.453 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:54:14.591 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:54:27.823 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:54882 9 6412 1 2025-10-28 13:49:51.438 00:05:56.711 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-28 13:50:48.732 00:05:02.727 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-28 13:50:50.535 00:05:00.944 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-28 13:55:28.209 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39100 10 6452 1 2025-10-28 13:51:50.556 00:05:00.863 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-28 13:56:38.985 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:52990 1 40 1 Summary: total flows: 137, total bytes: 321591, total packets: 1467, avg bps: 691, avg pps: 0, avg bpp: 219 Time window: 2025-10-28 12:54:51 - 2025-10-28 13:56:51 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0042s User: 0.0007s Wall: 0.0027s flows/second: 50591.6 Runtime: 0.0027s