Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 13:59:06.519 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:38852 9 6412 1 2025-10-13 13:55:42.994 00:05:00.642 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-13 14:00:17.256 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:45668 1 40 1 2025-10-13 14:01:07.294 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39314 9 6412 1 2025-10-13 13:57:41.650 00:05:02.028 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-13 13:57:42.975 00:05:00.723 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-13 14:02:00.908 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:02:00.902 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:03:08.123 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48900 9 6412 1 2025-10-13 13:59:40.672 00:05:02.966 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-13 13:59:32.372 00:05:10.029 OSPF 23.0.7.2:0 -> 224.0.0.5:0 39 2888 1 2025-10-13 13:59:40.651 00:05:03.007 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-13 14:04:08.533 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50378 9 6412 1 2025-10-13 14:05:08.936 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:44704 9 6412 1 2025-10-13 14:01:42.999 00:05:00.641 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-13 14:06:09.306 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50050 9 6412 1 2025-10-13 14:07:01.104 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:07:01.154 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:07:09.708 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47050 10 6452 1 2025-10-13 14:03:41.651 00:05:02.028 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-13 14:03:42.976 00:05:00.723 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-13 14:08:10.130 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38174 10 6452 1 2025-10-13 14:04:52.376 00:05:10.006 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2504 1 2025-10-13 14:09:20.902 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:34838 1 40 1 2025-10-13 14:05:40.655 00:05:03.008 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-13 14:05:40.675 00:05:02.967 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-13 14:10:21.303 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:39850 1 40 1 2025-10-13 14:11:21.658 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:35536 1 40 1 2025-10-13 14:07:42.998 00:05:00.645 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-13 14:12:01.132 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:12:01.132 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:13:12.127 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45678 10 6452 1 2025-10-13 14:09:41.655 00:05:02.028 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-13 14:09:42.978 00:05:00.725 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-13 14:10:12.382 00:05:10.065 OSPF 23.0.7.2:0 -> 224.0.0.5:0 39 2852 1 2025-10-13 14:14:12.530 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43346 10 6452 1 2025-10-13 14:15:12.933 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:54798 9 6412 1 2025-10-13 14:11:40.678 00:05:02.965 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-13 14:11:40.657 00:05:03.006 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-13 14:16:13.307 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53892 9 6412 1 2025-10-13 14:17:01.660 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:17:01.082 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:17:13.701 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43028 10 6452 1 2025-10-13 14:13:42.999 00:05:00.644 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-13 14:18:24.498 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:44362 1 40 1 2025-10-13 14:19:14.532 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43898 10 6452 1 2025-10-13 14:15:32.390 00:05:10.006 OSPF 23.0.7.2:0 -> 224.0.0.5:0 35 2384 1 2025-10-13 14:15:41.656 00:05:02.028 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-13 14:15:42.980 00:05:00.724 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-13 14:20:14.938 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45732 10 6452 1 2025-10-13 14:21:25.660 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:45768 1 40 1 2025-10-13 14:17:40.679 00:05:02.966 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-13 14:17:40.659 00:05:03.006 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-13 14:22:01.524 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:22:01.427 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:22:15.699 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57570 9 6412 1 2025-10-13 14:24:16.528 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35180 10 6452 1 2025-10-13 14:19:43.001 00:06:00.645 TCP 23.155.0.1:179 -> 23.156.0.1:36051 14 861 1 2025-10-13 14:20:52.396 00:05:10.007 OSPF 23.0.7.2:0 -> 224.0.0.5:0 34 2304 1 2025-10-13 14:25:16.935 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58956 9 6412 1 2025-10-13 14:21:41.659 00:05:02.028 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-13 14:21:42.981 00:05:00.726 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-13 14:27:01.583 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:27:01.461 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:27:28.171 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:39978 1 40 1 2025-10-13 14:23:40.662 00:05:03.009 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-13 14:23:40.682 00:05:02.968 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-13 14:28:28.572 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:48904 1 40 1 2025-10-13 14:29:29.024 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:41462 1 40 1 2025-10-13 14:26:12.403 00:05:10.686 OSPF 23.0.7.2:0 -> 224.0.0.5:0 35 2464 1 2025-10-13 14:31:19.428 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54554 9 6412 1 2025-10-13 14:26:43.005 00:06:00.644 TCP 23.155.0.1:179 -> 23.156.0.1:36051 14 861 1 2025-10-13 14:27:41.659 00:05:02.031 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-13 14:27:42.984 00:05:00.726 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-13 14:32:01.633 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:32:01.472 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:32:19.791 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:40710 9 6412 1 2025-10-13 14:29:40.687 00:05:02.962 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-13 14:29:40.667 00:05:03.003 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-13 14:34:20.606 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51338 9 6412 1 2025-10-13 14:35:21.008 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53602 10 6452 1 2025-10-13 14:31:32.409 00:05:10.006 OSPF 23.0.7.2:0 -> 224.0.0.5:0 39 2768 1 2025-10-13 14:36:31.807 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:38176 1 40 1 2025-10-13 14:37:01.635 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:37:01.717 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:37:21.848 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:60510 9 6412 1 2025-10-13 14:33:41.660 00:05:02.031 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-13 14:33:42.986 00:05:00.725 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-13 14:38:22.231 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35448 9 6412 1 2025-10-13 14:33:43.007 00:06:00.644 TCP 23.155.0.1:179 -> 23.156.0.1:36051 14 861 1 2025-10-13 14:39:22.591 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60612 9 6412 1 2025-10-13 14:35:40.668 00:05:03.002 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-13 14:35:40.688 00:05:02.963 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-13 14:40:22.991 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56366 10 6452 1 2025-10-13 14:36:52.415 00:05:10.011 OSPF 23.0.7.2:0 -> 224.0.0.5:0 37 2568 1 2025-10-13 14:41:33.847 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:33578 1 40 1 2025-10-13 14:42:01.867 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:42:01.917 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:42:23.895 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55860 9 6412 1 2025-10-13 14:43:24.300 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:48874 9 6412 1 2025-10-13 14:39:41.661 00:05:02.031 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-13 14:39:42.986 00:05:00.726 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-13 14:44:35.080 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:46346 1 40 1 2025-10-13 14:45:25.134 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60526 9 6412 1 2025-10-13 14:41:40.670 00:05:03.004 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-13 14:41:40.690 00:05:02.964 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-13 14:40:43.008 00:06:00.646 TCP 23.155.0.1:179 -> 23.156.0.1:36051 14 861 1 2025-10-13 14:42:12.428 00:05:10.008 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2620 1 2025-10-13 14:46:35.910 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:54180 1 40 1 2025-10-13 14:47:01.814 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:47:01.894 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:47:25.948 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:44696 9 6412 1 2025-10-13 14:49:37.170 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:50890 1 40 1 2025-10-13 14:45:41.661 00:05:02.032 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-13 14:45:42.988 00:05:00.725 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-13 14:50:37.532 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:60874 1 40 1 2025-10-13 14:47:40.693 00:05:02.961 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-13 14:47:32.434 00:05:10.007 OSPF 23.0.7.2:0 -> 224.0.0.5:0 35 2400 1 2025-10-13 14:47:40.673 00:05:03.001 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-13 14:52:01.867 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:52:01.974 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:52:27.969 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52996 10 6452 1 2025-10-13 14:47:43.011 00:06:00.644 TCP 23.155.0.1:179 -> 23.156.0.1:36051 14 861 1 2025-10-13 14:51:41.664 00:05:02.031 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-13 14:51:42.990 00:05:00.725 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-13 14:56:39.889 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:47862 1 40 1 2025-10-13 14:57:02.137 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:52:52.442 00:05:10.004 OSPF 23.0.7.2:0 -> 224.0.0.5:0 34 2384 1 2025-10-13 14:57:02.137 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:53:40.674 00:05:03.001 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-13 14:53:40.696 00:05:02.961 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 Summary: total flows: 131, total bytes: 270813, total packets: 1375, avg bps: 573, avg pps: 0, avg bpp: 196 Time window: 2025-10-13 13:55:42 - 2025-10-13 14:58:43 Total flows processed: 131, passed: 131, Blocks skipped: 0, Bytes read: 13688 Sys: 0.0036s User: 0.0009s Wall: 0.0021s flows/second: 61618.7 Runtime: 0.0021s