Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 17:58:46.377 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47656 10 6452 1 2025-10-13 17:59:46.784 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:43496 9 6412 1 2025-10-13 18:00:57.563 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:45914 1 40 1 2025-10-13 17:56:43.109 00:06:00.604 TCP 23.155.0.1:179 -> 23.156.0.1:36051 14 861 1 2025-10-13 17:57:41.737 00:05:02.017 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-13 17:56:43.090 00:06:00.684 TCP 23.156.0.1:36051 -> 23.155.0.1:179 14 861 1 2025-10-13 18:01:47.600 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:40808 10 6452 1 2025-10-13 18:02:05.852 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 18:02:05.774 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 18:02:58.397 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:60180 1 40 1 2025-10-13 17:59:02.726 00:05:10.004 OSPF 23.0.7.2:0 -> 224.0.0.5:0 37 2652 1 2025-10-13 17:59:40.733 00:05:03.000 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-13 17:59:40.753 00:05:02.960 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-13 18:03:58.779 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:46402 1 40 1 2025-10-13 18:04:48.813 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:56892 10 6452 1 2025-10-13 18:05:59.561 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:60226 1 40 1 2025-10-13 18:06:59.923 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:51762 1 40 1 2025-10-13 18:07:05.652 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 18:07:05.658 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 18:03:41.738 00:05:02.018 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-13 18:04:22.730 00:05:10.009 OSPF 23.0.7.2:0 -> 224.0.0.5:0 37 2544 1 2025-10-13 18:03:43.113 00:06:00.603 TCP 23.155.0.1:179 -> 23.156.0.1:36051 14 861 1 2025-10-13 18:03:43.092 00:06:00.683 TCP 23.156.0.1:36051 -> 23.155.0.1:179 14 861 1 2025-10-13 18:08:50.377 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45682 10 6452 1 2025-10-13 18:05:40.734 00:05:03.002 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-13 18:05:40.754 00:05:02.962 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-13 18:09:50.781 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47616 10 6452 1 2025-10-13 18:12:05.841 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 18:11:51.586 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50244 9 6412 1 2025-10-13 18:12:06.162 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 18:09:41.740 00:05:02.018 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-13 18:09:42.741 00:05:10.006 OSPF 23.0.7.2:0 -> 224.0.0.5:0 34 2304 1 2025-10-13 18:14:02.768 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:37368 1 40 1 2025-10-13 18:14:52.806 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:49580 10 6452 1 2025-10-13 18:11:40.756 00:05:02.962 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-13 18:10:43.114 00:06:00.604 TCP 23.155.0.1:179 -> 23.156.0.1:36051 14 861 1 2025-10-13 18:10:43.094 00:06:00.684 TCP 23.156.0.1:36051 -> 23.155.0.1:179 14 861 1 2025-10-13 18:11:40.736 00:05:03.002 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-13 18:15:53.173 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52528 10 6452 1 2025-10-13 18:17:06.459 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 18:17:06.307 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 18:17:53.993 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:37596 10 6452 1 2025-10-13 18:19:04.771 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:60078 1 40 1 2025-10-13 18:15:02.746 00:05:10.006 OSPF 23.0.7.2:0 -> 224.0.0.5:0 35 2464 1 2025-10-13 18:15:41.744 00:05:02.014 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-13 18:19:54.811 00:00:10.886 TCP 1.101.0.1:3000 -> 23.104.0.1:40168 9 6412 1 2025-10-13 18:20:55.731 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53274 10 6452 1 2025-10-13 18:17:40.739 00:05:02.999 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-13 18:17:40.758 00:05:02.960 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-13 18:22:06.247 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 18:22:06.171 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 18:22:06.486 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:57022 1 40 1 2025-10-13 18:17:43.096 00:06:00.684 TCP 23.156.0.1:36051 -> 23.155.0.1:179 14 861 1 2025-10-13 18:17:43.117 00:06:00.603 TCP 23.155.0.1:179 -> 23.156.0.1:36051 14 861 1 2025-10-13 18:23:56.932 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59268 12 6556 1 2025-10-13 18:20:22.753 00:05:10.367 OSPF 23.0.7.2:0 -> 224.0.0.5:0 39 2752 1 2025-10-13 18:24:57.339 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44876 10 6452 1 2025-10-13 18:21:41.746 00:05:02.014 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-13 18:26:08.877 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:60494 1 40 1 2025-10-13 18:27:06.393 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 18:26:58.913 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42150 9 6412 1 2025-10-13 18:27:06.330 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 18:23:40.762 00:05:02.958 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-13 18:23:40.741 00:05:02.998 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-13 18:29:10.099 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:42408 1 40 1 2025-10-13 18:24:43.119 00:06:00.601 TCP 23.155.0.1:179 -> 23.156.0.1:36051 14 861 1 2025-10-13 18:24:43.099 00:06:00.680 TCP 23.156.0.1:36051 -> 23.155.0.1:179 14 861 1 2025-10-13 18:25:42.758 00:05:10.006 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2504 1 2025-10-13 18:30:10.459 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:60498 1 40 1 2025-10-13 18:31:00.494 00:00:11.249 TCP 1.101.0.1:3000 -> 23.104.0.1:57904 9 6412 1 2025-10-13 18:27:41.746 00:05:02.014 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-13 18:32:06.469 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 18:32:06.565 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 18:32:01.775 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:53842 9 6412 1 2025-10-13 18:29:40.743 00:05:02.997 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-13 18:29:40.762 00:05:02.957 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-13 18:35:03.005 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60376 10 6452 1 2025-10-13 18:31:02.765 00:05:10.004 OSPF 23.0.7.2:0 -> 224.0.0.5:0 37 2684 1 2025-10-13 18:36:03.412 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47686 9 6412 1 2025-10-13 18:31:43.100 00:06:00.681 TCP 23.156.0.1:36051 -> 23.155.0.1:179 14 861 1 2025-10-13 18:31:43.121 00:06:00.602 TCP 23.155.0.1:179 -> 23.156.0.1:36051 14 861 1 2025-10-13 18:37:06.583 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 18:37:06.578 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 18:33:41.747 00:05:02.015 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-13 18:39:04.878 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:47986 9 6412 1 2025-10-13 18:35:40.744 00:05:02.998 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-13 18:35:40.764 00:05:02.958 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-13 18:40:05.293 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:40546 9 6412 1 2025-10-13 18:36:22.769 00:05:10.004 OSPF 23.0.7.2:0 -> 224.0.0.5:0 35 2384 1 2025-10-13 18:41:05.706 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37314 10 6452 1 2025-10-13 18:42:06.833 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 18:42:06.832 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 18:43:06.534 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51808 9 6412 1 2025-10-13 18:38:43.120 00:06:00.604 TCP 23.155.0.1:179 -> 23.156.0.1:36051 14 861 1 2025-10-13 18:39:41.750 00:05:02.015 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-13 18:38:43.102 00:06:00.683 TCP 23.156.0.1:36051 -> 23.155.0.1:179 14 861 1 2025-10-13 18:44:06.938 00:00:10.945 TCP 1.101.0.1:3000 -> 23.104.0.1:60006 9 6412 1 2025-10-13 18:45:07.922 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57354 9 6412 1 2025-10-13 18:41:40.745 00:05:02.999 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-13 18:41:40.766 00:05:02.960 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-13 18:41:42.773 00:05:10.006 OSPF 23.0.7.2:0 -> 224.0.0.5:0 35 2464 1 2025-10-13 18:46:08.335 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51330 9 6412 1 2025-10-13 18:47:06.813 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 18:47:06.828 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 18:47:08.697 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:54264 10 6452 1 2025-10-13 18:48:09.066 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58070 10 6452 1 2025-10-13 18:45:41.752 00:05:02.017 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-13 18:45:43.102 00:06:00.684 TCP 23.156.0.1:36051 -> 23.155.0.1:179 14 861 1 2025-10-13 18:45:43.123 00:06:00.604 TCP 23.155.0.1:179 -> 23.156.0.1:36051 14 861 1 2025-10-13 18:47:02.780 00:05:10.008 OSPF 23.0.7.2:0 -> 224.0.0.5:0 39 2848 1 2025-10-13 18:47:40.747 00:05:02.998 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-13 18:47:40.767 00:05:02.957 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-13 18:52:06.654 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 18:52:06.952 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 18:52:10.747 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:43238 9 6412 1 2025-10-13 18:53:11.130 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:53528 9 6412 1 2025-10-13 18:54:11.488 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35048 9 6412 1 2025-10-13 18:55:22.212 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:59796 1 40 1 2025-10-13 18:51:41.752 00:05:02.015 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-13 18:56:12.254 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42912 9 6412 1 2025-10-13 18:52:22.788 00:05:10.005 OSPF 23.0.7.2:0 -> 224.0.0.5:0 35 2440 1 2025-10-13 18:57:06.864 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 18:57:06.862 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 18:57:23.025 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:55864 1 40 1 2025-10-13 18:53:40.768 00:05:02.959 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-13 18:52:43.125 00:06:00.602 TCP 23.155.0.1:179 -> 23.156.0.1:36051 14 861 1 2025-10-13 18:52:43.105 00:06:00.682 TCP 23.156.0.1:36051 -> 23.155.0.1:179 14 861 1 2025-10-13 18:53:40.748 00:05:02.999 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 Summary: total flows: 128, total bytes: 278134, total packets: 1401, avg bps: 598, avg pps: 0, avg bpp: 198 Time window: 2025-10-13 17:56:43 - 2025-10-13 18:58:43 Total flows processed: 128, passed: 128, Blocks skipped: 0, Bytes read: 13376 Sys: 0.0027s User: 0.0027s Wall: 0.0018s flows/second: 70799.3 Runtime: 0.0018s