Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-27 11:58:55.236 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59940 10 6452 1 2025-10-27 11:56:49.998 00:05:00.893 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-27 12:01:06.373 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:49468 1 40 1 2025-10-27 11:57:20.572 00:05:10.005 OSPF 23.0.7.2:0 -> 224.0.0.5:0 37 2648 1 2025-10-27 11:57:48.224 00:05:02.707 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-27 11:57:47.600 00:05:03.292 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-27 12:01:56.414 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:50052 12 10375 1 2025-10-27 11:58:47.578 00:05:03.333 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-27 12:03:43.150 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 12:03:43.357 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 11:59:49.980 00:05:00.973 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-27 12:04:57.710 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:45864 9 6412 1 2025-10-27 12:06:08.501 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:48790 1 40 1 2025-10-27 12:02:40.576 00:05:10.009 OSPF 23.0.7.2:0 -> 224.0.0.5:0 37 2560 1 2025-10-27 12:06:58.538 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:37158 10 6452 1 2025-10-27 12:03:48.224 00:05:02.708 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-27 12:02:50.003 00:06:00.000 TCP 23.155.0.1:179 -> 23.156.0.1:36051 13 790 1 2025-10-27 12:03:47.601 00:05:03.293 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-27 12:08:43.499 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 12:08:43.904 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 12:04:47.583 00:05:03.330 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-27 12:05:49.981 00:05:00.972 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-27 12:09:59.707 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44696 9 6412 1 2025-10-27 12:08:00.585 00:05:10.010 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2588 1 2025-10-27 12:13:00.960 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56750 9 6412 1 2025-10-27 12:13:43.482 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 12:13:43.652 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 12:08:50.893 00:05:59.112 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-27 12:09:47.601 00:05:03.293 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-27 12:09:48.227 00:05:02.708 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-27 12:14:11.705 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:36412 1 40 1 2025-10-27 12:10:47.581 00:05:03.334 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-27 12:14:50.894 00:01:00.002 TCP 23.155.0.1:179 -> 23.156.0.1:36051 3 194 1 2025-10-27 12:11:49.981 00:05:00.974 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-27 12:16:02.158 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:37138 9 6412 1 2025-10-27 12:17:02.528 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58006 9 6412 1 2025-10-27 12:13:20.596 00:05:10.007 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2520 1 2025-10-27 12:18:02.940 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38242 9 6412 1 2025-10-27 12:18:43.468 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 12:18:43.586 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 12:19:13.720 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:46818 1 40 1 2025-10-27 12:15:47.603 00:05:03.293 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-27 12:15:48.229 00:05:02.708 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-27 12:20:03.752 00:00:11.141 TCP 1.101.0.1:3000 -> 23.104.0.1:37890 9 6412 1 2025-10-27 12:16:47.582 00:05:03.334 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-27 12:16:50.006 00:06:00.001 TCP 23.155.0.1:179 -> 23.156.0.1:36051 13 790 1 2025-10-27 12:17:49.985 00:05:00.972 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-27 12:22:05.303 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41488 9 6412 1 2025-10-27 12:18:40.603 00:05:10.009 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2488 1 2025-10-27 12:23:43.684 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 12:23:43.602 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 12:25:06.497 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:55552 11 6504 1 2025-10-27 12:21:48.231 00:05:02.708 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-27 12:21:47.606 00:05:03.292 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-27 12:22:47.586 00:05:03.332 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-27 12:27:07.366 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48560 9 6412 1 2025-10-27 12:22:50.896 00:05:59.112 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-27 12:23:49.986 00:05:00.973 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-27 12:24:00.612 00:05:10.007 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2528 1 2025-10-27 12:28:43.815 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 12:28:43.735 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 12:29:08.136 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:57872 10 6452 1 2025-10-27 12:31:08.960 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:58724 10 6452 1 2025-10-27 12:27:48.232 00:05:02.707 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-27 12:27:47.608 00:05:03.292 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-27 12:32:09.372 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54604 9 6412 1 2025-10-27 12:28:47.588 00:05:03.331 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-27 12:33:09.770 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48106 9 6412 1 2025-10-27 12:29:20.619 00:05:10.008 OSPF 23.0.7.2:0 -> 224.0.0.5:0 37 2568 1 2025-10-27 12:33:44.051 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 12:33:44.313 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 12:28:50.898 00:05:59.113 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-27 12:29:49.988 00:05:00.974 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-27 12:35:10.577 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49216 9 6412 1 2025-10-27 12:33:47.611 00:05:03.291 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-27 12:33:48.234 00:05:02.708 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-27 12:38:22.120 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:32860 1 40 1 2025-10-27 12:38:43.859 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 12:38:44.009 00:00:00.020 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 12:34:40.626 00:05:10.343 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2480 1 2025-10-27 12:34:47.594 00:05:03.326 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-27 12:35:49.990 00:04:00.971 TCP 23.156.0.1:36051 -> 23.155.0.1:179 10 615 1 2025-10-27 12:34:50.903 00:05:59.110 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-27 12:40:12.521 00:00:10.903 TCP 1.101.0.1:3000 -> 23.104.0.1:43704 10 6452 1 2025-10-27 12:41:13.462 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51794 10 6452 1 2025-10-27 12:42:13.867 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:57854 10 6452 1 2025-10-27 12:43:24.635 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:32790 1 40 1 2025-10-27 12:43:44.113 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 12:43:44.002 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 12:39:48.238 00:05:02.704 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-27 12:39:47.615 00:05:03.286 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-27 12:40:00.634 00:05:10.007 OSPF 23.0.7.2:0 -> 224.0.0.5:0 35 2564 1 2025-10-27 12:44:14.676 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41230 10 6452 1 2025-10-27 12:40:49.994 00:05:00.969 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-27 12:40:47.597 00:05:03.326 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-27 12:45:25.454 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:34208 1 40 1 2025-10-27 12:40:50.899 00:05:59.114 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-27 12:46:25.855 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:34432 1 40 1 2025-10-27 12:47:15.893 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39018 10 6452 1 2025-10-27 12:46:50.901 00:01:00.000 TCP 23.155.0.1:179 -> 23.156.0.1:36051 3 194 1 2025-10-27 12:48:16.296 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52920 9 6412 1 2025-10-27 12:48:44.083 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 12:48:44.305 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 12:49:27.069 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:39546 1 40 1 2025-10-27 12:45:20.641 00:05:10.004 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2464 1 2025-10-27 12:45:47.618 00:05:03.285 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-27 12:45:48.241 00:05:02.703 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-27 12:46:49.992 00:05:00.970 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-27 12:46:47.597 00:05:03.325 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-27 12:51:28.120 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:50200 1 40 1 2025-10-27 12:52:18.160 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:53102 10 6452 1 2025-10-27 12:53:44.513 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 12:53:44.514 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 12:48:50.014 00:06:00.007 TCP 23.155.0.1:179 -> 23.156.0.1:36051 13 790 1 2025-10-27 12:54:18.959 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:42144 10 6452 1 2025-10-27 12:50:40.645 00:05:10.005 OSPF 23.0.7.2:0 -> 224.0.0.5:0 37 2632 1 2025-10-27 12:55:19.338 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58188 9 6412 1 2025-10-27 12:51:48.242 00:05:02.706 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-27 12:51:47.619 00:05:03.290 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-27 12:56:19.747 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38224 9 6412 1 2025-10-27 12:52:49.993 00:05:00.977 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-27 12:52:47.598 00:05:03.332 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-27 12:57:31.310 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:59972 1 40 1 2025-10-27 12:58:21.365 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46496 10 6452 1 2025-10-27 12:58:44.446 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 12:58:44.438 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 Summary: total flows: 126, total bytes: 261594, total packets: 1355, avg bps: 563, avg pps: 0, avg bpp: 193 Time window: 2025-10-27 11:56:49 - 2025-10-27 12:58:44 Total flows processed: 126, passed: 126, Blocks skipped: 0, Bytes read: 13168 Sys: 0.0027s User: 0.0009s Wall: 0.0018s flows/second: 70109.1 Runtime: 0.0018s