Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-17 08:59:19.926 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:42054 1 40 1 2025-10-17 08:55:44.840 00:05:00.746 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-17 09:00:09.967 00:00:10.750 TCP 1.101.0.1:3000 -> 23.104.0.1:35108 10 6452 1 2025-10-17 08:56:44.819 00:05:00.827 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-17 08:57:43.511 00:05:02.116 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-17 09:02:11.161 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60126 9 6412 1 2025-10-17 08:58:59.953 00:05:10.005 OSPF 23.0.7.2:0 -> 224.0.0.5:0 41 3056 1 2025-10-17 09:03:11.562 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:56768 9 6412 1 2025-10-17 08:59:42.536 00:05:03.071 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-17 08:59:42.557 00:05:03.031 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-17 09:03:50.603 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 09:03:50.652 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 09:04:22.342 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:45724 1 40 1 2025-10-17 09:05:22.705 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:37698 1 40 1 2025-10-17 09:01:44.842 00:05:00.747 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-17 09:02:44.823 00:05:00.826 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-17 09:07:13.161 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50260 9 6412 1 2025-10-17 09:03:43.513 00:05:02.116 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-17 09:08:23.931 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:58944 1 40 1 2025-10-17 09:04:19.957 00:05:10.003 OSPF 23.0.7.2:0 -> 224.0.0.5:0 34 2376 1 2025-10-17 09:08:50.639 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 09:08:50.715 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 09:09:13.964 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:32886 10 6452 1 2025-10-17 09:05:42.559 00:05:03.029 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-17 09:05:42.540 00:05:03.069 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-17 09:10:14.378 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33048 9 6412 1 2025-10-17 09:11:25.114 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:49040 1 40 1 2025-10-17 09:07:44.845 00:05:00.744 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-17 09:08:44.825 00:05:00.824 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-17 09:13:15.556 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49608 10 6452 1 2025-10-17 09:09:43.514 00:05:02.118 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-17 09:13:50.662 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 09:09:39.961 00:05:10.008 OSPF 23.0.7.2:0 -> 224.0.0.5:0 38 2732 1 2025-10-17 09:13:50.749 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 09:15:16.373 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:53970 9 6412 1 2025-10-17 09:11:42.561 00:05:03.033 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-17 09:11:42.541 00:05:03.073 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-17 09:16:16.804 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59404 10 6452 1 2025-10-17 09:13:44.855 00:05:00.739 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-17 09:18:17.607 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42452 10 6452 1 2025-10-17 09:14:44.834 00:05:00.820 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-17 09:18:50.853 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 09:18:50.949 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 09:14:59.968 00:05:10.007 OSPF 23.0.7.2:0 -> 224.0.0.5:0 33 2256 1 2025-10-17 09:19:28.376 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:57184 1 40 1 2025-10-17 09:15:43.514 00:05:02.120 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-17 09:21:29.184 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:57016 1 40 1 2025-10-17 09:17:42.543 00:05:03.072 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-17 09:17:42.563 00:05:03.031 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-17 09:19:44.857 00:05:00.741 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-17 09:23:50.829 00:00:00.032 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 09:23:50.977 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 09:20:19.976 00:05:10.001 OSPF 23.0.7.2:0 -> 224.0.0.5:0 35 2368 1 2025-10-17 09:24:20.027 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49140 9 6412 1 2025-10-17 09:20:44.837 00:05:00.820 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-17 09:21:43.516 00:05:02.121 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-17 09:26:20.789 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37662 10 6452 1 2025-10-17 09:23:42.565 00:05:03.033 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-17 09:23:42.545 00:05:03.073 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-17 09:28:51.202 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 09:28:51.109 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 09:29:22.047 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45362 9 6412 1 2025-10-17 09:25:30.137 00:05:09.846 OSPF 23.0.7.2:0 -> 224.0.0.5:0 38 2760 1 2025-10-17 09:25:44.857 00:05:00.741 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-17 09:26:44.841 00:05:00.819 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-17 09:27:43.519 00:05:02.121 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-17 09:32:23.535 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54370 9 6412 1 2025-10-17 09:29:42.550 00:05:03.069 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-17 09:29:42.571 00:05:03.029 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-17 09:33:51.203 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 09:33:51.127 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 09:34:34.704 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:46354 1 40 1 2025-10-17 09:30:49.982 00:05:10.009 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2520 1 2025-10-17 09:35:24.742 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56200 10 6452 1 2025-10-17 09:31:44.859 00:05:00.741 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-17 09:36:35.917 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:32972 1 40 1 2025-10-17 09:32:44.838 00:05:00.822 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-17 09:33:43.521 00:05:02.119 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-17 09:38:26.329 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:53408 10 6452 1 2025-10-17 09:38:51.415 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 09:38:51.248 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 09:35:42.552 00:05:03.068 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-17 09:35:42.574 00:05:03.028 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-17 09:36:09.991 00:05:00.009 OSPF 23.0.7.2:0 -> 224.0.0.5:0 35 2436 1 2025-10-17 09:40:27.121 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54468 9 6412 1 2025-10-17 09:37:44.860 00:05:00.741 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-17 09:42:27.888 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40776 9 6412 1 2025-10-17 09:38:44.839 00:05:00.822 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-17 09:43:28.294 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:59940 10 6452 1 2025-10-17 09:39:43.522 00:05:02.120 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-17 09:43:51.326 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 09:43:51.550 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 09:41:19.995 00:05:00.008 OSPF 23.0.7.2:0 -> 224.0.0.5:0 34 2456 1 2025-10-17 09:45:39.566 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:46346 1 40 1 2025-10-17 09:41:42.573 00:05:03.029 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-17 09:41:42.553 00:05:03.069 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-17 09:47:40.473 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:54022 1 40 1 2025-10-17 09:43:44.862 00:05:00.740 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-17 09:44:44.842 00:05:00.824 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-17 09:48:51.504 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 09:48:51.507 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 09:45:43.525 00:05:02.123 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-17 09:46:30.003 00:05:10.008 OSPF 23.0.7.2:0 -> 224.0.0.5:0 35 2400 1 2025-10-17 09:50:31.343 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49012 10 6452 1 2025-10-17 09:51:31.750 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34150 10 6452 1 2025-10-17 09:47:42.577 00:05:03.034 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-17 09:47:42.556 00:05:03.074 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-17 09:52:32.124 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39648 9 6412 1 2025-10-17 09:53:32.532 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:45486 10 6452 1 2025-10-17 09:49:44.868 00:05:00.744 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-17 09:53:52.311 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 09:53:52.447 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 09:50:44.849 00:05:00.823 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-17 09:55:33.303 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50680 10 6452 1 2025-10-17 09:51:43.534 00:05:02.118 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-17 09:51:50.012 00:05:10.052 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2448 1 2025-10-17 09:56:33.707 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53916 9 6412 1 2025-10-17 09:53:42.558 00:05:03.075 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-17 09:53:42.578 00:05:03.034 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 Summary: total flows: 119, total bytes: 231512, total packets: 1310, avg bps: 489, avg pps: 0, avg bpp: 176 Time window: 2025-10-17 08:55:44 - 2025-10-17 09:58:45 Total flows processed: 119, passed: 119, Blocks skipped: 0, Bytes read: 12440 Sys: 0.0031s User: 0.0010s Wall: 0.0015s flows/second: 80516.6 Runtime: 0.0015s