Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 14:55:01.683 00:05:02.002 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 14:59:05.266 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:37456 1 40 1 2025-11-20 14:59:55.315 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33018 10 6452 1 2025-11-20 15:00:21.696 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:00:21.576 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 14:57:00.964 00:05:02.663 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 15:00:55.722 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55102 10 6452 1 2025-11-20 14:57:30.054 00:05:10.021 OSPF 23.0.7.1:0 -> 224.0.0.5:0 39 2740 1 2025-11-20 14:58:00.944 00:05:02.703 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 15:02:06.498 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:35910 1 40 1 2025-11-20 14:59:01.704 00:05:01.924 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 15:02:56.535 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41778 10 6452 1 2025-11-20 15:00:00.948 00:05:02.721 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 15:04:07.345 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:48340 1 40 1 2025-11-20 15:01:01.685 00:05:02.005 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 15:04:57.356 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57018 9 6412 1 2025-11-20 15:05:22.068 00:00:00.020 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:05:21.977 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:02:50.076 00:05:10.011 OSPF 23.0.7.1:0 -> 224.0.0.5:0 38 2648 1 2025-11-20 15:03:00.967 00:05:02.664 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 15:07:08.532 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:50328 1 40 1 2025-11-20 15:04:00.946 00:05:02.704 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 15:07:58.568 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43694 10 6452 1 2025-11-20 15:05:01.707 00:05:01.923 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 15:08:58.967 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53870 9 6412 1 2025-11-20 15:06:00.949 00:05:02.722 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 15:10:21.763 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:10:21.834 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:07:01.690 00:05:02.005 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 15:10:59.736 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54764 9 6412 1 2025-11-20 15:12:00.141 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38638 9 6412 1 2025-11-20 15:08:10.086 00:05:10.007 OSPF 23.0.7.1:0 -> 224.0.0.5:0 42 3132 1 2025-11-20 15:09:00.967 00:05:02.666 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 15:13:10.900 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:55918 1 40 1 2025-11-20 15:10:00.947 00:05:02.706 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 15:14:00.938 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36278 10 6452 1 2025-11-20 15:11:01.709 00:05:01.925 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 15:15:01.304 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55464 10 6452 1 2025-11-20 15:15:21.948 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:15:22.090 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:12:00.955 00:05:02.719 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 15:13:01.688 00:05:02.006 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 15:17:02.133 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50586 9 6412 1 2025-11-20 15:13:30.093 00:05:10.007 OSPF 23.0.7.1:0 -> 224.0.0.5:0 35 2400 1 2025-11-20 15:18:12.908 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:54214 1 40 1 2025-11-20 15:15:00.968 00:05:02.668 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 15:16:00.948 00:05:02.709 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 15:20:21.934 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:20:21.935 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:17:01.710 00:05:01.927 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 15:21:14.056 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:45194 1 40 1 2025-11-20 15:18:00.956 00:05:02.722 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 15:19:01.690 00:05:02.009 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 15:18:50.100 00:05:10.006 OSPF 23.0.7.1:0 -> 224.0.0.5:0 35 2524 1 2025-11-20 15:24:15.307 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:50144 1 40 1 2025-11-20 15:21:00.972 00:05:02.667 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 15:25:05.351 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59138 9 6412 1 2025-11-20 15:25:21.956 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:25:22.061 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:22:00.953 00:05:02.707 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 15:23:01.710 00:05:01.930 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 15:27:06.129 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39340 10 6452 1 2025-11-20 15:24:00.958 00:05:02.722 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 15:28:06.532 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:53682 9 6412 1 2025-11-20 15:24:10.108 00:05:10.007 OSPF 23.0.7.1:0 -> 224.0.0.5:0 38 2740 1 2025-11-20 15:25:01.690 00:05:02.010 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 15:29:17.292 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:34382 1 40 1 2025-11-20 15:30:22.290 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:30:07.335 00:00:12.895 TCP 1.101.0.1:3000 -> 23.104.0.1:36748 9 6412 1 2025-11-20 15:30:22.359 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:27:00.973 00:05:02.668 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 15:31:10.273 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52690 10 6452 1 2025-11-20 15:28:00.953 00:05:02.708 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 15:32:10.676 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:45946 10 6452 1 2025-11-20 15:29:01.712 00:05:01.929 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 15:33:11.120 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56820 9 6412 1 2025-11-20 15:29:30.114 00:05:10.006 OSPF 23.0.7.1:0 -> 224.0.0.5:0 40 2752 1 2025-11-20 15:30:00.960 00:05:02.722 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 15:31:01.693 00:05:02.009 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 15:35:22.200 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:35:22.354 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:35:11.880 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55120 10 6452 1 2025-11-20 15:36:12.293 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36546 9 6412 1 2025-11-20 15:33:00.975 00:05:02.667 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 15:34:00.954 00:05:02.707 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 15:38:13.060 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37190 10 6452 1 2025-11-20 15:34:50.120 00:05:10.006 OSPF 23.0.7.1:0 -> 224.0.0.5:0 40 3012 1 2025-11-20 15:35:01.715 00:05:01.927 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 15:39:13.461 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53950 9 6412 1 2025-11-20 15:36:00.963 00:05:02.718 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 15:40:22.467 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:40:13.858 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:40376 10 6452 1 2025-11-20 15:40:22.383 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:37:01.695 00:05:02.008 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 15:41:24.643 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:46120 1 40 1 2025-11-20 15:42:14.687 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45850 9 6412 1 2025-11-20 15:39:00.976 00:05:02.665 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 15:43:15.123 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34350 9 6412 1 2025-11-20 15:40:00.956 00:05:02.706 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 15:40:10.126 00:05:10.005 OSPF 23.0.7.1:0 -> 224.0.0.5:0 39 2704 1 2025-11-20 15:41:01.717 00:05:01.926 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 15:45:22.557 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:45:22.489 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:45:15.897 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59942 9 6412 1 2025-11-20 15:42:00.960 00:05:02.723 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 15:46:16.329 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45488 9 6412 1 2025-11-20 15:43:01.697 00:05:02.006 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 15:47:16.743 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41412 9 6412 1 2025-11-20 15:48:27.526 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:33118 1 40 1 2025-11-20 15:45:00.989 00:05:02.655 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 15:49:17.564 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41708 9 6412 1 2025-11-20 15:45:30.132 00:05:10.007 OSPF 23.0.7.1:0 -> 224.0.0.5:0 35 2524 1 2025-11-20 15:46:00.967 00:05:02.696 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 15:50:23.121 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:50:23.175 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:50:28.293 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:59060 1 40 1 2025-11-20 15:47:01.719 00:05:01.926 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 15:51:18.330 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37900 10 6452 1 2025-11-20 15:48:00.972 00:05:02.711 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 15:52:18.734 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43132 9 6412 1 2025-11-20 15:49:01.697 00:05:02.007 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 15:53:19.123 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54808 10 6452 1 2025-11-20 15:54:19.524 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38972 9 6412 1 2025-11-20 15:50:50.138 00:05:10.005 OSPF 23.0.7.1:0 -> 224.0.0.5:0 35 2532 1 2025-11-20 15:51:00.989 00:05:02.656 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 15:55:22.461 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 15:55:22.658 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 15:55:19.927 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53700 10 6452 1 2025-11-20 15:52:00.969 00:05:02.696 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 15:56:20.336 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37338 10 6452 1 2025-11-20 15:53:01.721 00:05:01.924 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 15:57:20.697 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39008 9 6412 1 2025-11-20 15:54:00.977 00:05:02.709 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 15:58:21.130 00:00:17.485 TCP 1.101.0.1:3000 -> 23.104.0.1:39116 10 6452 1 Summary: total flows: 134, total bytes: 311060, total packets: 1450, avg bps: 647, avg pps: 0, avg bpp: 214 Time window: 2025-11-20 14:55:01 - 2025-11-20 15:59:03 Total flows processed: 134, passed: 134, Blocks skipped: 0, Bytes read: 14000 Sys: 0.0019s User: 0.0028s Wall: 0.0016s flows/second: 83636.4 Runtime: 0.0016s