Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-27 19:54:57.419 00:05:53.652 TCP 23.155.0.1:37249 -> 23.153.0.1:179 12 738 1 2025-10-27 19:56:48.253 00:05:02.838 TCP 23.151.0.1:42035 -> 23.155.0.1:179 12 738 1 2025-10-27 19:55:57.399 00:05:53.712 TCP 23.153.0.1:179 -> 23.155.0.1:37249 12 738 1 2025-10-27 20:01:05.463 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56124 9 6412 1 2025-10-27 19:56:58.158 00:05:52.913 TCP 23.155.0.1:179 -> 23.158.0.1:40787 12 738 1 2025-10-27 19:57:51.170 00:05:10.006 OSPF 23.0.4.1:0 -> 224.0.0.5:0 38 2828 1 2025-10-27 19:58:48.275 00:05:02.797 TCP 23.155.0.1:179 -> 23.151.0.1:42035 12 738 1 2025-10-27 19:58:48.411 00:05:02.661 TCP 23.155.0.1:42089 -> 23.154.0.1:179 12 738 1 2025-10-27 19:58:51.150 00:05:06.991 TCP 23.158.0.1:40787 -> 23.155.0.1:179 12 738 1 2025-10-27 20:03:16.653 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:39592 1 40 1 2025-10-27 20:03:53.091 00:00:00.042 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 19:58:57.662 00:05:53.470 TCP 23.157.0.1:40165 -> 23.155.0.1:179 12 738 1 2025-10-27 20:03:52.867 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 19:58:57.682 00:05:53.389 TCP 23.155.0.1:179 -> 23.157.0.1:40165 12 738 1 2025-10-27 20:03:53.030 00:00:00.042 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 20:04:06.692 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35194 9 6412 1 2025-10-27 20:05:17.496 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:46104 1 40 1 2025-10-27 20:00:57.425 00:05:53.649 TCP 23.155.0.1:37249 -> 23.153.0.1:179 12 738 1 2025-10-27 20:02:48.255 00:05:02.838 TCP 23.151.0.1:42035 -> 23.155.0.1:179 12 738 1 2025-10-27 20:01:57.404 00:05:53.709 TCP 23.153.0.1:179 -> 23.155.0.1:37249 12 738 1 2025-10-27 20:07:18.333 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:56710 1 40 1 2025-10-27 20:03:11.176 00:05:10.012 OSPF 23.0.4.1:0 -> 224.0.0.5:0 38 2688 1 2025-10-27 20:02:58.161 00:05:52.913 TCP 23.155.0.1:179 -> 23.158.0.1:40787 12 738 1 2025-10-27 20:08:08.373 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51924 10 6452 1 2025-10-27 20:08:53.034 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 20:04:48.412 00:05:02.662 TCP 23.155.0.1:42089 -> 23.154.0.1:179 12 738 1 2025-10-27 20:08:52.894 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 20:08:52.974 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 20:04:48.274 00:05:02.800 TCP 23.155.0.1:179 -> 23.151.0.1:42035 12 738 1 2025-10-27 20:04:51.152 00:05:06.993 TCP 23.158.0.1:40787 -> 23.155.0.1:179 12 738 1 2025-10-27 20:09:08.742 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:43112 10 6452 1 2025-10-27 20:04:57.643 00:05:53.494 TCP 23.157.0.1:40165 -> 23.155.0.1:179 12 738 1 2025-10-27 20:04:57.663 00:05:53.413 TCP 23.155.0.1:179 -> 23.157.0.1:40165 12 738 1 2025-10-27 20:11:09.530 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48356 10 6452 1 2025-10-27 20:06:57.426 00:05:53.657 TCP 23.155.0.1:37249 -> 23.153.0.1:179 12 738 1 2025-10-27 20:12:09.930 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:60472 10 6452 1 2025-10-27 20:08:31.188 00:05:10.011 OSPF 23.0.4.1:0 -> 224.0.0.5:0 38 2608 1 2025-10-27 20:08:48.257 00:05:02.847 TCP 23.151.0.1:42035 -> 23.155.0.1:179 12 738 1 2025-10-27 20:07:57.407 00:05:53.717 TCP 23.153.0.1:179 -> 23.155.0.1:37249 12 738 1 2025-10-27 20:13:10.338 00:00:10.797 TCP 1.101.0.1:3000 -> 23.104.0.1:54638 9 6412 1 2025-10-27 20:13:53.455 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 20:08:58.165 00:05:52.918 TCP 23.155.0.1:179 -> 23.158.0.1:40787 12 738 1 2025-10-27 20:13:52.955 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 20:13:53.395 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 20:14:21.540 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:49250 1 40 1 2025-10-27 20:10:48.276 00:05:02.807 TCP 23.155.0.1:179 -> 23.151.0.1:42035 12 738 1 2025-10-27 20:10:48.414 00:05:02.669 TCP 23.155.0.1:42089 -> 23.154.0.1:179 12 738 1 2025-10-27 20:10:51.157 00:05:06.991 TCP 23.158.0.1:40787 -> 23.155.0.1:179 12 738 1 2025-10-27 20:15:11.576 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45816 10 6452 1 2025-10-27 20:10:57.666 00:05:53.426 TCP 23.155.0.1:179 -> 23.157.0.1:40165 12 738 1 2025-10-27 20:10:57.645 00:05:53.505 TCP 23.157.0.1:40165 -> 23.155.0.1:179 12 738 1 2025-10-27 20:17:24.730 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:38644 12 10584 1 2025-10-27 20:12:57.427 00:05:53.655 TCP 23.155.0.1:37249 -> 23.153.0.1:179 12 738 1 2025-10-27 20:13:51.199 00:05:10.002 OSPF 23.0.4.1:0 -> 224.0.0.5:0 39 2828 1 2025-10-27 20:18:25.212 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:35718 9 6621 1 2025-10-27 20:14:48.256 00:05:02.846 TCP 23.151.0.1:42035 -> 23.155.0.1:179 12 738 1 2025-10-27 20:18:53.136 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 20:13:57.407 00:05:53.716 TCP 23.153.0.1:179 -> 23.155.0.1:37249 12 738 1 2025-10-27 20:18:53.280 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 20:18:53.076 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 20:14:58.168 00:05:52.915 TCP 23.155.0.1:179 -> 23.158.0.1:40787 12 738 1 2025-10-27 20:16:48.277 00:05:02.807 TCP 23.155.0.1:179 -> 23.151.0.1:42035 12 738 1 2025-10-27 20:16:48.418 00:05:02.666 TCP 23.155.0.1:42089 -> 23.154.0.1:179 12 738 1 2025-10-27 20:16:51.171 00:05:06.978 TCP 23.158.0.1:40787 -> 23.155.0.1:179 12 738 1 2025-10-27 20:16:57.646 00:05:53.498 TCP 23.157.0.1:40165 -> 23.155.0.1:179 12 738 1 2025-10-27 20:16:57.667 00:05:53.418 TCP 23.155.0.1:179 -> 23.157.0.1:40165 12 738 1 2025-10-27 20:22:26.785 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:51726 9 6621 1 2025-10-27 20:19:11.202 00:05:10.499 OSPF 23.0.4.1:0 -> 224.0.0.5:0 36 2504 1 2025-10-27 20:23:27.207 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:56072 9 6621 1 2025-10-27 20:23:53.319 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 20:18:57.430 00:05:53.654 TCP 23.155.0.1:37249 -> 23.153.0.1:179 12 738 1 2025-10-27 20:23:53.293 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 20:23:53.353 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 20:24:27.604 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45482 10 6661 1 2025-10-27 20:20:48.263 00:05:02.842 TCP 23.151.0.1:42035 -> 23.155.0.1:179 12 738 1 2025-10-27 20:19:57.411 00:05:53.714 TCP 23.153.0.1:179 -> 23.155.0.1:37249 12 738 1 2025-10-27 20:25:28.007 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49916 10 6661 1 2025-10-27 20:20:58.169 00:05:52.915 TCP 23.155.0.1:179 -> 23.158.0.1:40787 12 738 1 2025-10-27 20:22:48.418 00:05:02.666 TCP 23.155.0.1:42089 -> 23.154.0.1:179 12 738 1 2025-10-27 20:22:48.283 00:05:02.801 TCP 23.155.0.1:179 -> 23.151.0.1:42035 12 738 1 2025-10-27 20:22:51.164 00:05:06.986 TCP 23.158.0.1:40787 -> 23.155.0.1:179 12 738 1 2025-10-27 20:22:57.667 00:05:53.417 TCP 23.155.0.1:179 -> 23.157.0.1:40165 12 738 1 2025-10-27 20:22:57.648 00:05:53.497 TCP 23.157.0.1:40165 -> 23.155.0.1:179 12 738 1 2025-10-27 20:24:31.206 00:05:10.009 OSPF 23.0.4.1:0 -> 224.0.0.5:0 39 2960 1 2025-10-27 20:28:53.416 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 20:28:53.083 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 20:28:53.356 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 20:24:57.432 00:05:53.652 TCP 23.155.0.1:37249 -> 23.153.0.1:179 12 738 1 2025-10-27 20:26:48.263 00:05:02.843 TCP 23.151.0.1:42035 -> 23.155.0.1:179 12 738 1 2025-10-27 20:25:57.412 00:05:53.714 TCP 23.153.0.1:179 -> 23.155.0.1:37249 12 738 1 2025-10-27 20:31:30.795 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39998 10 6661 1 2025-10-27 20:26:58.170 00:05:52.916 TCP 23.155.0.1:179 -> 23.158.0.1:40787 12 738 1 2025-10-27 20:28:48.421 00:05:02.665 TCP 23.155.0.1:42089 -> 23.154.0.1:179 12 738 1 2025-10-27 20:28:48.283 00:05:02.803 TCP 23.155.0.1:179 -> 23.151.0.1:42035 12 738 1 2025-10-27 20:28:51.165 00:05:06.987 TCP 23.158.0.1:40787 -> 23.155.0.1:179 12 738 1 2025-10-27 20:33:31.568 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:47844 10 6661 1 2025-10-27 20:28:57.649 00:05:53.498 TCP 23.157.0.1:40165 -> 23.155.0.1:179 12 738 1 2025-10-27 20:28:57.668 00:05:53.418 TCP 23.155.0.1:179 -> 23.157.0.1:40165 12 738 1 2025-10-27 20:33:54.465 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 20:33:54.169 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 20:33:54.407 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 20:29:51.216 00:05:10.007 OSPF 23.0.4.1:0 -> 224.0.0.5:0 38 2688 1 2025-10-27 20:34:42.338 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:39724 1 40 1 2025-10-27 20:35:32.378 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:32888 10 6661 1 2025-10-27 20:30:57.434 00:05:53.654 TCP 23.155.0.1:37249 -> 23.153.0.1:179 12 738 1 2025-10-27 20:32:48.264 00:05:02.843 TCP 23.151.0.1:42035 -> 23.155.0.1:179 12 738 1 2025-10-27 20:31:57.413 00:05:53.714 TCP 23.153.0.1:179 -> 23.155.0.1:37249 12 738 1 2025-10-27 20:32:58.171 00:05:52.916 TCP 23.155.0.1:179 -> 23.158.0.1:40787 12 738 1 2025-10-27 20:38:33.552 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34046 10 6661 1 2025-10-27 20:38:53.870 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 20:34:48.420 00:05:02.667 TCP 23.155.0.1:42089 -> 23.154.0.1:179 12 738 1 2025-10-27 20:38:53.646 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 20:38:53.809 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 20:34:48.285 00:05:02.802 TCP 23.155.0.1:179 -> 23.151.0.1:42035 12 738 1 2025-10-27 20:34:51.167 00:05:07.008 TCP 23.158.0.1:40787 -> 23.155.0.1:179 12 738 1 2025-10-27 20:35:11.222 00:05:10.016 OSPF 23.0.4.1:0 -> 224.0.0.5:0 38 2628 1 2025-10-27 20:34:57.670 00:05:53.417 TCP 23.155.0.1:179 -> 23.157.0.1:40165 12 738 1 2025-10-27 20:34:57.650 00:05:53.497 TCP 23.157.0.1:40165 -> 23.155.0.1:179 12 738 1 2025-10-27 20:40:44.698 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:35510 1 40 1 2025-10-27 20:41:45.102 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:50314 1 40 1 2025-10-27 20:36:57.436 00:05:53.652 TCP 23.155.0.1:37249 -> 23.153.0.1:179 12 738 1 2025-10-27 20:42:35.138 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47556 10 6661 1 2025-10-27 20:38:48.265 00:05:02.842 TCP 23.151.0.1:42035 -> 23.155.0.1:179 12 738 1 2025-10-27 20:37:57.415 00:05:53.712 TCP 23.153.0.1:179 -> 23.155.0.1:37249 12 738 1 2025-10-27 20:43:53.680 00:00:00.030 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 20:38:58.172 00:05:52.916 TCP 23.155.0.1:179 -> 23.158.0.1:40787 12 738 1 2025-10-27 20:43:53.672 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 20:43:53.620 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 20:40:31.226 00:05:10.004 OSPF 23.0.4.1:0 -> 224.0.0.5:0 39 2704 1 2025-10-27 20:44:35.945 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:47738 9 6621 1 2025-10-27 20:40:48.287 00:05:02.815 TCP 23.155.0.1:179 -> 23.151.0.1:42035 12 738 1 2025-10-27 20:40:48.424 00:05:02.678 TCP 23.155.0.1:42089 -> 23.154.0.1:179 12 738 1 2025-10-27 20:40:51.168 00:05:07.011 TCP 23.158.0.1:40787 -> 23.155.0.1:179 12 738 1 2025-10-27 20:45:46.725 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:40292 1 40 1 2025-10-27 20:40:57.672 00:05:53.417 TCP 23.155.0.1:179 -> 23.157.0.1:40165 12 738 1 2025-10-27 20:40:57.652 00:05:53.497 TCP 23.157.0.1:40165 -> 23.155.0.1:179 12 738 1 2025-10-27 20:47:47.538 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:60074 1 40 1 2025-10-27 20:42:57.436 00:05:53.654 TCP 23.155.0.1:37249 -> 23.153.0.1:179 12 738 1 2025-10-27 20:48:47.942 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:54556 1 40 1 2025-10-27 20:44:48.268 00:05:02.842 TCP 23.151.0.1:42035 -> 23.155.0.1:179 12 738 1 2025-10-27 20:43:57.416 00:05:53.714 TCP 23.153.0.1:179 -> 23.155.0.1:37249 12 738 1 2025-10-27 20:48:54.093 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 20:48:54.001 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 20:48:54.152 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 20:49:37.979 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:35756 10 6661 1 2025-10-27 20:44:58.198 00:05:52.893 TCP 23.155.0.1:179 -> 23.158.0.1:40787 12 738 1 2025-10-27 20:45:51.231 00:05:10.004 OSPF 23.0.4.1:0 -> 224.0.0.5:0 34 2500 1 2025-10-27 20:50:48.664 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:53686 1 40 1 2025-10-27 20:46:48.288 00:05:02.802 TCP 23.155.0.1:179 -> 23.151.0.1:42035 12 738 1 2025-10-27 20:46:48.426 00:05:02.664 TCP 23.155.0.1:42089 -> 23.154.0.1:179 12 738 1 2025-10-27 20:46:51.170 00:05:07.013 TCP 23.158.0.1:40787 -> 23.155.0.1:179 12 738 1 2025-10-27 20:46:57.673 00:05:53.418 TCP 23.155.0.1:179 -> 23.157.0.1:40165 12 738 1 2025-10-27 20:51:49.262 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:56500 1 40 1 2025-10-27 20:46:57.653 00:05:53.499 TCP 23.157.0.1:40165 -> 23.155.0.1:179 12 738 1 2025-10-27 20:48:57.437 00:05:53.653 TCP 23.155.0.1:37249 -> 23.153.0.1:179 12 738 1 2025-10-27 20:53:53.951 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 20:53:54.009 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 20:53:54.013 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 20:49:57.418 00:05:53.713 TCP 23.153.0.1:179 -> 23.155.0.1:37249 12 738 1 2025-10-27 20:50:48.268 00:05:02.843 TCP 23.151.0.1:42035 -> 23.155.0.1:179 12 738 1 2025-10-27 20:54:40.148 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33622 10 6661 1 2025-10-27 20:51:11.235 00:05:10.061 OSPF 23.0.4.1:0 -> 224.0.0.5:0 38 2716 1 2025-10-27 20:55:40.555 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48162 10 6661 1 2025-10-27 20:50:58.202 00:05:52.889 TCP 23.155.0.1:179 -> 23.158.0.1:40787 12 738 1 2025-10-27 20:52:48.290 00:05:02.802 TCP 23.155.0.1:179 -> 23.151.0.1:42035 12 738 1 2025-10-27 20:52:48.429 00:05:02.663 TCP 23.155.0.1:42089 -> 23.154.0.1:179 12 738 1 2025-10-27 20:52:51.170 00:05:07.013 TCP 23.158.0.1:40787 -> 23.155.0.1:179 12 738 1 2025-10-27 20:52:57.653 00:05:53.498 TCP 23.157.0.1:40165 -> 23.155.0.1:179 12 738 1 2025-10-27 20:52:57.674 00:05:53.418 TCP 23.155.0.1:179 -> 23.157.0.1:40165 12 738 1 2025-10-27 20:57:41.373 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34278 9 6621 1 2025-10-27 20:58:53.950 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 Summary: total flows: 171, total bytes: 266915, total packets: 1843, avg bps: 556, avg pps: 0, avg bpp: 144 Time window: 2025-10-27 19:54:57 - 2025-10-27 20:58:53 Total flows processed: 171, passed: 171, Blocks skipped: 0, Bytes read: 17848 Sys: 0.0029s User: 0.0019s Wall: 0.0019s flows/second: 92426.0 Runtime: 0.0019s