Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 17:55:01.742 00:05:02.006 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 17:59:33.633 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:53496 9 6412 1 2025-11-20 18:00:25.257 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 18:00:25.394 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 18:00:44.421 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:44352 1 40 1 2025-11-20 17:57:01.062 00:05:02.624 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 17:58:01.047 00:05:02.661 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 18:02:45.255 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:59024 1 40 1 2025-11-20 17:59:01.762 00:05:01.927 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 17:58:50.322 00:05:10.004 OSPF 23.0.7.1:0 -> 224.0.0.5:0 42 3152 1 2025-11-20 18:03:35.296 00:00:10.671 TCP 1.101.0.1:3000 -> 23.104.0.1:53260 10 6452 1 2025-11-20 18:00:01.109 00:05:02.622 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 18:04:36.007 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49800 10 6452 1 2025-11-20 18:01:01.743 00:05:02.009 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 18:05:25.383 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 18:05:25.258 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 18:05:36.417 00:00:10.614 TCP 1.101.0.1:3000 -> 23.104.0.1:50640 10 6452 1 2025-11-20 18:03:01.070 00:05:02.620 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 18:04:01.051 00:05:02.661 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 18:04:10.326 00:05:10.012 OSPF 23.0.7.1:0 -> 224.0.0.5:0 35 2400 1 2025-11-20 18:08:48.204 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:54892 1 40 1 2025-11-20 18:05:01.763 00:05:01.929 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 18:09:38.241 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35676 9 6412 1 2025-11-20 18:06:01.114 00:05:02.618 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 18:10:25.437 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 18:10:25.381 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 18:10:49.012 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:38766 1 40 1 2025-11-20 18:07:01.743 00:05:02.011 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 18:11:39.050 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34202 10 6452 1 2025-11-20 18:12:49.891 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:36404 1 40 1 2025-11-20 18:09:01.093 00:05:02.601 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 18:09:30.339 00:05:10.003 OSPF 23.0.7.1:0 -> 224.0.0.5:0 36 2588 1 2025-11-20 18:13:50.296 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:46812 1 40 1 2025-11-20 18:10:01.072 00:05:02.642 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 18:14:50.666 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:32812 1 40 1 2025-11-20 18:11:01.764 00:05:01.930 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 18:15:25.588 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 18:15:25.590 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 18:15:40.707 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58954 9 6412 1 2025-11-20 18:12:01.118 00:05:02.617 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 18:13:01.744 00:05:02.011 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 18:18:41.944 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:49308 9 6412 1 2025-11-20 18:14:50.341 00:05:00.736 OSPF 23.0.7.1:0 -> 224.0.0.5:0 36 2608 1 2025-11-20 18:15:01.093 00:05:02.602 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 18:16:01.072 00:05:02.642 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 18:20:25.606 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 18:20:25.718 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 18:20:42.739 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:50618 9 6412 1 2025-11-20 18:17:01.765 00:05:01.930 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 18:21:43.124 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44998 9 6412 1 2025-11-20 18:18:01.118 00:05:02.618 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 18:22:43.529 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58990 9 6412 1 2025-11-20 18:19:01.746 00:05:02.011 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 18:23:43.934 00:00:10.728 TCP 1.101.0.1:3000 -> 23.104.0.1:36830 9 6412 1 2025-11-20 18:20:00.347 00:05:10.010 OSPF 23.0.7.1:0 -> 224.0.0.5:0 37 2544 1 2025-11-20 18:24:44.696 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34786 9 6412 1 2025-11-20 18:21:01.094 00:05:02.603 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 18:25:25.761 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 18:25:25.852 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 18:25:55.427 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:36880 1 40 1 2025-11-20 18:22:01.074 00:05:02.643 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 18:26:55.828 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:36872 1 40 1 2025-11-20 18:23:01.767 00:05:01.931 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 18:27:45.865 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:52872 10 6452 1 2025-11-20 18:24:01.121 00:05:02.618 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 18:28:46.297 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34420 10 6452 1 2025-11-20 18:25:01.748 00:05:02.010 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 18:25:20.357 00:05:10.004 OSPF 23.0.7.1:0 -> 224.0.0.5:0 41 3012 1 2025-11-20 18:29:46.653 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:43610 9 6412 1 2025-11-20 18:30:25.657 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 18:30:25.828 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 18:30:57.486 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:60220 1 40 1 2025-11-20 18:27:01.095 00:05:02.604 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 18:31:47.525 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:32962 9 6412 1 2025-11-20 18:28:01.074 00:05:02.644 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 18:29:01.768 00:05:01.930 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 18:33:48.335 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39724 9 6412 1 2025-11-20 18:30:01.122 00:05:02.616 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 18:30:40.361 00:05:00.953 OSPF 23.0.7.1:0 -> 224.0.0.5:0 38 2684 1 2025-11-20 18:34:48.752 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45138 9 6412 1 2025-11-20 18:31:01.748 00:05:02.011 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 18:35:26.147 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 18:35:26.149 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 18:35:49.129 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36404 10 6452 1 2025-11-20 18:36:59.900 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:35774 1 40 1 2025-11-20 18:33:01.095 00:05:02.604 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 18:34:01.074 00:05:02.644 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 18:35:01.768 00:05:01.931 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 18:38:50.351 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58092 10 6452 1 2025-11-20 18:39:50.754 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55510 9 6412 1 2025-11-20 18:35:50.364 00:05:10.035 OSPF 23.0.7.1:0 -> 224.0.0.5:0 37 2684 1 2025-11-20 18:36:01.124 00:05:02.616 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 18:40:26.081 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 18:40:26.134 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 18:37:01.748 00:05:02.011 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 18:41:01.522 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:51000 1 40 1 2025-11-20 18:42:02.294 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:37948 1 40 1 2025-11-20 18:43:02.666 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:42406 1 40 1 2025-11-20 18:39:01.097 00:05:02.604 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 18:44:03.070 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:39318 1 40 1 2025-11-20 18:40:01.077 00:05:02.643 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 18:41:01.771 00:05:01.930 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 18:44:53.131 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53738 9 6412 1 2025-11-20 18:41:10.369 00:05:10.004 OSPF 23.0.7.1:0 -> 224.0.0.5:0 34 2400 1 2025-11-20 18:45:26.079 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 18:45:26.202 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 18:42:01.124 00:05:02.617 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 18:43:01.751 00:05:02.011 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 18:48:07.146 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:40122 1 40 1 2025-11-20 18:45:01.098 00:05:02.605 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 18:48:57.185 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:42142 10 6452 1 2025-11-20 18:46:01.076 00:05:02.646 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 18:50:07.914 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:40066 1 40 1 2025-11-20 18:50:26.031 00:00:00.037 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 18:50:26.021 00:00:00.041 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 18:46:30.374 00:05:10.007 OSPF 23.0.7.1:0 -> 224.0.0.5:0 39 2740 1 2025-11-20 18:47:01.771 00:05:01.931 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 18:51:08.331 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:57116 1 40 1 2025-11-20 18:48:01.125 00:05:02.619 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 18:51:58.369 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58018 10 6452 1 2025-11-20 18:49:01.753 00:05:02.012 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 18:52:58.772 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:50264 10 6452 1 2025-11-20 18:53:59.132 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44612 10 6452 1 2025-11-20 18:51:01.097 00:05:02.607 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 18:54:59.537 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50210 9 6412 1 2025-11-20 18:55:26.542 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 18:55:26.497 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 18:51:50.380 00:05:10.007 OSPF 23.0.7.1:0 -> 224.0.0.5:0 39 2788 1 2025-11-20 18:52:01.077 00:05:02.647 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 18:55:59.896 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54072 10 6452 1 2025-11-20 18:53:01.772 00:05:01.934 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 18:57:00.258 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47872 10 6452 1 2025-11-20 18:54:01.125 00:05:02.620 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 Summary: total flows: 133, total bytes: 266188, total packets: 1388, avg bps: 554, avg pps: 0, avg bpp: 191 Time window: 2025-11-20 17:55:01 - 2025-11-20 18:59:03 Total flows processed: 133, passed: 133, Blocks skipped: 0, Bytes read: 13896 Sys: 0.0028s User: 0.0028s Wall: 0.0019s flows/second: 68522.6 Runtime: 0.0020s