Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-02 13:59:03.199 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52176 9 6412 1 2025-10-02 14:00:13.980 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:39964 1 40 1 2025-10-02 13:56:37.570 00:05:00.586 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-02 13:57:36.424 00:05:01.712 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-02 13:57:37.589 00:05:00.506 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-02 14:01:43.374 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 14:01:43.412 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 14:02:14.783 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:50940 1 40 1 2025-10-02 14:03:04.822 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42798 9 6412 1 2025-10-02 13:59:35.568 00:05:02.548 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-02 13:59:35.589 00:05:02.507 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-02 13:59:49.682 00:05:10.009 OSPF 23.0.7.2:0 -> 224.0.0.5:0 35 2384 1 2025-10-02 14:04:15.592 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:51530 1 40 1 2025-10-02 14:05:16.001 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:40034 1 40 1 2025-10-02 14:06:06.045 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:35330 10 6452 1 2025-10-02 14:02:37.570 00:05:00.588 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-02 14:06:43.218 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 14:06:43.321 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 14:07:16.810 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:58644 1 40 1 2025-10-02 14:03:36.426 00:05:01.712 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-02 14:03:37.591 00:05:00.507 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-02 14:05:09.691 00:05:10.006 OSPF 23.0.7.2:0 -> 224.0.0.5:0 35 2520 1 2025-10-02 14:05:35.592 00:05:02.506 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-02 14:05:35.572 00:05:02.546 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-02 14:11:08.054 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37544 9 6412 1 2025-10-02 14:11:44.032 00:00:00.032 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 14:11:44.071 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 14:12:08.462 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50046 10 6452 1 2025-10-02 14:08:37.571 00:05:00.588 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-02 14:13:19.275 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:58044 1 40 1 2025-10-02 14:09:36.426 00:05:01.713 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-02 14:09:37.592 00:05:00.507 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-02 14:14:09.314 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49022 9 6412 1 2025-10-02 14:10:29.697 00:05:10.003 OSPF 23.0.7.2:0 -> 224.0.0.5:0 39 2884 1 2025-10-02 14:15:20.045 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:41800 1 40 1 2025-10-02 14:11:35.580 00:05:02.539 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-02 14:11:35.600 00:05:02.499 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-02 14:16:43.443 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 14:16:43.599 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 14:17:10.500 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56452 10 6452 1 2025-10-02 14:18:10.899 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53664 10 6452 1 2025-10-02 14:14:37.571 00:05:00.588 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-02 14:15:37.591 00:05:00.507 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-02 14:15:36.428 00:05:01.712 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-02 14:15:49.700 00:05:00.854 OSPF 23.0.7.2:0 -> 224.0.0.5:0 33 2236 1 2025-10-02 14:17:35.581 00:05:02.538 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-02 14:17:35.600 00:05:02.498 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-02 14:21:43.826 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 14:21:43.673 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 14:22:12.654 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38230 10 6452 1 2025-10-02 14:23:13.065 00:00:10.432 TCP 1.101.0.1:3000 -> 23.104.0.1:38494 11 10329 1 2025-10-02 14:24:13.534 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43698 10 6452 1 2025-10-02 14:20:37.573 00:05:00.587 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-02 14:20:59.707 00:05:10.002 OSPF 23.0.7.2:0 -> 224.0.0.5:0 38 2652 1 2025-10-02 14:25:13.936 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53702 9 6412 1 2025-10-02 14:21:36.429 00:05:01.711 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-02 14:21:37.601 00:05:00.499 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-02 14:26:24.704 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:42290 1 40 1 2025-10-02 14:26:43.836 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 14:26:43.673 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 14:27:14.745 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58834 10 6452 1 2025-10-02 14:23:35.602 00:05:02.498 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-02 14:23:35.583 00:05:02.538 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-02 14:29:25.928 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:60346 1 40 1 2025-10-02 14:26:19.709 00:05:10.005 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2448 1 2025-10-02 14:30:26.352 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:48308 1 40 1 2025-10-02 14:26:37.578 00:05:00.584 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-02 14:31:26.779 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:32768 1 40 1 2025-10-02 14:27:36.430 00:05:01.712 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-02 14:27:37.599 00:05:00.502 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-02 14:31:43.844 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 14:31:43.735 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 14:32:27.180 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:38946 1 40 1 2025-10-02 14:29:35.603 00:05:02.498 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-02 14:29:35.585 00:05:02.538 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-02 14:34:17.606 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:59684 10 6452 1 2025-10-02 14:35:28.340 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:34022 1 40 1 2025-10-02 14:31:39.714 00:05:10.006 OSPF 23.0.7.2:0 -> 224.0.0.5:0 34 2400 1 2025-10-02 14:36:18.379 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:59888 10 6452 1 2025-10-02 14:32:37.581 00:05:00.584 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-02 14:36:44.137 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 14:36:43.977 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 14:37:18.740 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60524 10 6452 1 2025-10-02 14:33:37.599 00:05:00.504 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-02 14:33:36.432 00:05:01.712 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-02 14:38:19.141 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:51516 9 6412 1 2025-10-02 14:39:19.543 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57284 9 6412 1 2025-10-02 14:35:35.605 00:05:02.498 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-02 14:35:35.585 00:05:02.538 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-02 14:40:19.904 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:50356 9 6412 1 2025-10-02 14:36:59.719 00:05:10.009 OSPF 23.0.7.2:0 -> 224.0.0.5:0 39 2784 1 2025-10-02 14:41:30.692 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:51696 1 40 1 2025-10-02 14:41:44.175 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 14:41:44.182 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 14:42:20.732 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48338 10 6452 1 2025-10-02 14:38:37.580 00:05:00.585 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-02 14:43:31.508 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:34330 1 40 1 2025-10-02 14:39:37.602 00:05:00.502 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-02 14:39:36.433 00:05:01.713 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-02 14:45:21.993 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59168 9 6412 1 2025-10-02 14:41:35.608 00:05:02.498 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-02 14:41:35.587 00:05:02.539 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-02 14:42:19.729 00:05:10.009 OSPF 23.0.7.2:0 -> 224.0.0.5:0 34 2444 1 2025-10-02 14:46:44.218 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 14:46:44.126 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 14:47:33.126 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:60872 1 40 1 2025-10-02 14:48:23.166 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44212 9 6412 1 2025-10-02 14:44:37.583 00:05:00.584 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-02 14:45:36.432 00:05:01.714 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-02 14:45:37.602 00:05:00.503 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-02 14:47:35.589 00:05:02.539 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-02 14:47:35.609 00:05:02.498 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-02 14:51:44.493 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 14:51:42.207 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:53194 1 40 1 2025-10-02 14:51:44.693 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 14:47:39.740 00:05:10.010 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2488 1 2025-10-02 14:52:32.244 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39000 10 6452 1 2025-10-02 14:53:43.010 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:35244 1 40 1 2025-10-02 14:50:37.584 00:05:00.583 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-02 14:51:36.434 00:05:01.715 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-02 14:51:37.606 00:05:00.503 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-02 14:56:44.210 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:40552 1 40 1 2025-10-02 14:56:44.724 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 14:56:44.654 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 14:52:59.750 00:05:00.250 OSPF 23.0.7.2:0 -> 224.0.0.5:0 37 2508 1 2025-10-02 14:53:35.592 00:05:02.537 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-02 14:53:35.611 00:05:02.497 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-02 14:57:44.604 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:45368 1 40 1 2025-10-02 14:58:34.642 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40010 10 6452 1 Summary: total flows: 129, total bytes: 229821, total packets: 1319, avg bps: 493, avg pps: 0, avg bpp: 174 Time window: 2025-10-02 13:56:37 - 2025-10-02 14:58:45 Total flows processed: 129, passed: 129, Blocks skipped: 0, Bytes read: 13480 Sys: 0.0030s User: 0.0023s Wall: 0.0023s flows/second: 55177.0 Runtime: 0.0024s