Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-28 17:59:19.333 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 17:59:19.217 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 17:59:41.303 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:39800 1 40 1 2025-10-28 17:54:51.489 00:05:56.736 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-28 18:00:31.344 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:53802 10 6452 1 2025-10-28 17:55:51.510 00:05:56.696 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-28 17:56:48.831 00:05:02.699 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-28 17:56:50.621 00:05:00.929 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-28 18:01:31.700 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:44908 10 6452 1 2025-10-28 17:57:50.643 00:05:00.847 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-28 18:02:32.124 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42540 10 6452 1 2025-10-28 17:59:23.182 00:05:10.011 OSPF 23.0.7.1:0 -> 224.0.0.5:0 39 2752 1 2025-10-28 18:04:19.523 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 18:04:19.403 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 18:04:32.888 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36096 10 6452 1 2025-10-28 18:05:33.297 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38772 9 6412 1 2025-10-28 18:00:51.490 00:05:56.737 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-28 18:06:44.068 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:60374 1 40 1 2025-10-28 18:01:51.511 00:05:56.696 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-28 18:02:48.834 00:05:02.699 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-28 18:02:50.623 00:05:00.930 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-28 18:07:34.126 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53150 9 6412 1 2025-10-28 18:03:50.644 00:05:00.851 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-28 18:08:34.525 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34706 9 6412 1 2025-10-28 18:04:43.195 00:05:10.009 OSPF 23.0.7.1:0 -> 224.0.0.5:0 38 2624 1 2025-10-28 18:09:19.946 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 18:09:19.857 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 18:09:45.264 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:48624 1 40 1 2025-10-28 18:11:35.716 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:60210 10 6452 1 2025-10-28 18:06:51.493 00:05:56.736 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-28 18:12:46.442 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:54694 1 40 1 2025-10-28 18:07:51.513 00:05:56.696 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-28 18:08:48.837 00:05:02.698 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-28 18:08:50.625 00:05:00.930 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-28 18:13:36.481 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44674 10 6452 1 2025-10-28 18:09:50.645 00:05:00.849 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-28 18:10:03.203 00:05:10.208 OSPF 23.0.7.1:0 -> 224.0.0.5:0 40 2952 1 2025-10-28 18:14:19.771 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 18:14:19.509 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 18:15:47.676 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:34498 1 40 1 2025-10-28 18:16:48.080 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:56288 1 40 1 2025-10-28 18:17:38.133 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46214 10 6452 1 2025-10-28 18:12:51.493 00:05:56.738 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-28 18:18:49.253 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:42248 1 40 1 2025-10-28 18:13:51.514 00:05:56.697 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-28 18:14:48.837 00:05:02.698 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-28 18:14:50.627 00:05:00.928 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-28 18:19:20.476 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 18:19:20.477 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 18:15:23.218 00:05:10.008 OSPF 23.0.7.1:0 -> 224.0.0.5:0 35 2400 1 2025-10-28 18:19:39.290 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:60958 10 6452 1 2025-10-28 18:15:50.648 00:05:00.848 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-28 18:20:39.652 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:42992 10 6452 1 2025-10-28 18:21:40.022 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:34264 10 6452 1 2025-10-28 18:22:51.024 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:49470 1 40 1 2025-10-28 18:18:51.494 00:05:56.739 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-28 18:24:19.695 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 18:24:19.749 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 18:19:51.515 00:05:56.698 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-28 18:24:41.422 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:51626 9 6412 1 2025-10-28 18:20:48.839 00:05:02.699 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-28 18:20:50.629 00:05:00.929 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-28 18:20:43.227 00:05:10.018 OSPF 23.0.7.1:0 -> 224.0.0.5:0 38 2780 1 2025-10-28 18:21:50.649 00:05:00.849 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-28 18:25:52.609 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:42658 1 40 1 2025-10-28 18:26:53.016 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:47518 1 40 1 2025-10-28 18:27:43.058 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54774 9 6412 1 2025-10-28 18:28:43.463 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46218 9 6412 1 2025-10-28 18:29:19.895 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 18:29:19.828 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 18:24:51.495 00:05:56.739 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-28 18:29:43.858 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:36428 9 6412 1 2025-10-28 18:26:03.244 00:05:10.011 OSPF 23.0.7.1:0 -> 224.0.0.5:0 39 2868 1 2025-10-28 18:25:51.517 00:05:56.697 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-28 18:30:54.600 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:41624 1 40 1 2025-10-28 18:26:48.842 00:05:02.697 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-28 18:26:50.631 00:05:00.928 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-28 18:27:50.651 00:05:00.847 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-28 18:31:55.001 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:46354 1 40 1 2025-10-28 18:33:45.397 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56274 10 6452 1 2025-10-28 18:34:19.994 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 18:34:20.078 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 18:34:45.796 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:56132 9 6412 1 2025-10-28 18:31:23.256 00:05:10.004 OSPF 23.0.7.1:0 -> 224.0.0.5:0 39 2672 1 2025-10-28 18:30:51.499 00:05:56.737 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-28 18:35:46.205 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56470 9 6412 1 2025-10-28 18:31:51.518 00:05:56.697 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-28 18:32:48.844 00:05:02.697 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-28 18:32:50.633 00:05:00.928 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-28 18:36:56.978 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:60792 1 40 1 2025-10-28 18:33:50.652 00:05:00.848 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-28 18:37:47.015 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44256 10 6452 1 2025-10-28 18:38:57.784 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:44094 1 40 1 2025-10-28 18:39:20.171 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 18:39:20.235 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 18:39:47.821 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50848 9 6412 1 2025-10-28 18:36:43.260 00:05:10.012 OSPF 23.0.7.1:0 -> 224.0.0.5:0 36 2480 1 2025-10-28 18:40:48.223 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36790 9 6412 1 2025-10-28 18:36:51.501 00:05:56.737 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-28 18:41:48.589 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:51076 12 10375 1 2025-10-28 18:37:51.520 00:05:56.698 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-28 18:38:48.844 00:05:02.697 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-28 18:38:50.633 00:05:00.928 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-28 18:42:59.389 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:51048 1 40 1 2025-10-28 18:39:50.654 00:05:00.848 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-28 18:43:49.430 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34264 10 6452 1 2025-10-28 18:44:20.177 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 18:44:20.252 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 18:44:49.831 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56850 10 6452 1 2025-10-28 18:45:50.236 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47340 9 6412 1 2025-10-28 18:42:03.274 00:05:10.004 OSPF 23.0.7.1:0 -> 224.0.0.5:0 40 2916 1 2025-10-28 18:46:50.637 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58940 9 6412 1 2025-10-28 18:42:51.501 00:05:56.739 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-28 18:48:01.405 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:53190 1 40 1 2025-10-28 18:43:51.522 00:05:56.698 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-28 18:44:48.845 00:05:02.698 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-28 18:44:50.637 00:05:00.926 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-28 18:49:20.355 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 18:49:20.481 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 18:45:50.657 00:05:00.847 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-28 18:50:02.218 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:54982 1 40 1 2025-10-28 18:51:02.623 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:49142 1 40 1 2025-10-28 18:47:23.277 00:05:10.009 OSPF 23.0.7.1:0 -> 224.0.0.5:0 37 2716 1 2025-10-28 18:53:03.630 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:41652 1 40 1 2025-10-28 18:48:51.503 00:05:56.738 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-28 18:54:03.998 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:59938 1 40 1 2025-10-28 18:54:20.441 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 18:54:20.594 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 18:49:51.523 00:05:56.700 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-28 18:50:48.848 00:05:02.697 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-28 18:50:50.639 00:05:00.926 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-28 18:54:54.037 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36760 10 6452 1 2025-10-28 18:51:50.658 00:05:00.847 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-28 18:55:54.447 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39328 10 6452 1 2025-10-28 18:52:43.287 00:05:10.005 OSPF 23.0.7.1:0 -> 224.0.0.5:0 35 2516 1 2025-10-28 18:58:05.689 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:44780 1 40 1 Summary: total flows: 136, total bytes: 270427, total packets: 1398, avg bps: 570, avg pps: 0, avg bpp: 193 Time window: 2025-10-28 17:54:51 - 2025-10-28 18:58:05 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0020s User: 0.0030s Wall: 0.0044s flows/second: 31121.5 Runtime: 0.0044s