Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-27 23:58:57.631 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 23:58:57.762 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 23:59:18.774 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:52456 1 40 1 2025-10-27 23:55:50.245 00:05:00.980 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-28 00:00:19.139 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:50300 1 40 1 2025-10-27 23:56:41.496 00:05:10.019 OSPF 23.0.7.2:0 -> 224.0.0.5:0 37 2584 1 2025-10-28 00:01:09.177 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35140 9 6412 1 2025-10-27 23:57:48.467 00:05:02.738 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-27 23:57:50.266 00:05:00.900 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-27 23:57:47.856 00:05:03.310 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-28 00:02:09.580 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48674 10 6452 1 2025-10-27 23:58:47.836 00:05:03.350 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-28 00:03:09.981 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51534 9 6412 1 2025-10-28 00:03:57.894 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 00:03:57.878 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 00:04:10.415 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58638 9 6412 1 2025-10-28 00:05:10.815 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50932 10 6452 1 2025-10-28 00:01:50.247 00:05:00.980 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-28 00:02:01.515 00:05:10.002 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2464 1 2025-10-28 00:06:11.219 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:56982 10 6452 1 2025-10-28 00:07:21.950 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:48456 1 40 1 2025-10-28 00:03:47.857 00:05:03.310 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-28 00:03:50.268 00:05:00.899 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-28 00:03:48.467 00:05:02.740 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-28 00:08:11.986 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50700 9 6412 1 2025-10-28 00:04:47.836 00:05:03.351 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-28 00:08:57.957 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 00:08:58.011 00:00:00.056 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 00:09:12.388 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52144 9 6412 1 2025-10-28 00:11:23.573 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:36828 1 40 1 2025-10-28 00:07:21.517 00:05:10.005 OSPF 23.0.7.2:0 -> 224.0.0.5:0 35 2580 1 2025-10-28 00:07:50.248 00:05:00.979 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-28 00:12:13.614 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39450 9 6412 1 2025-10-28 00:13:14.013 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54086 9 6412 1 2025-10-28 00:09:48.467 00:05:02.739 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-28 00:09:47.856 00:05:03.310 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-28 00:09:50.269 00:05:00.897 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-28 00:13:57.897 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 00:13:57.898 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 00:14:24.791 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:49278 1 40 1 2025-10-28 00:10:47.836 00:05:03.350 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-28 00:15:25.499 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:51272 1 40 1 2025-10-28 00:16:15.535 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36992 10 6452 1 2025-10-28 00:12:41.523 00:05:10.010 OSPF 23.0.7.2:0 -> 224.0.0.5:0 38 2712 1 2025-10-28 00:17:15.938 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39604 9 6412 1 2025-10-28 00:13:50.257 00:05:00.971 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-28 00:18:16.345 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46214 10 6452 1 2025-10-28 00:18:58.173 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 00:18:58.086 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 00:15:47.857 00:05:03.310 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-28 00:15:50.269 00:05:00.898 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-28 00:15:48.468 00:05:02.739 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-28 00:16:47.841 00:05:03.347 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-28 00:21:17.566 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59780 9 6412 1 2025-10-28 00:18:01.532 00:05:10.046 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2528 1 2025-10-28 00:22:17.974 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:50638 10 6452 1 2025-10-28 00:23:18.345 00:00:10.652 TCP 1.101.0.1:3000 -> 23.104.0.1:56464 9 6412 1 2025-10-28 00:19:50.249 00:05:00.980 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-28 00:23:58.340 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 00:23:58.278 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 00:21:48.468 00:05:02.742 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-28 00:21:47.860 00:05:03.311 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-28 00:21:50.270 00:05:00.901 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-28 00:26:19.840 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57836 9 6412 1 2025-10-28 00:22:47.839 00:05:03.352 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-28 00:27:20.245 00:00:11.250 TCP 1.101.0.1:3000 -> 23.104.0.1:39412 9 6412 1 2025-10-28 00:23:21.538 00:05:10.030 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2504 1 2025-10-28 00:28:31.859 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:37442 1 40 1 2025-10-28 00:28:57.992 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 00:28:58.289 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 00:29:32.304 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:50512 1 40 1 2025-10-28 00:25:50.252 00:05:00.987 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-28 00:30:32.716 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:55120 1 40 1 2025-10-28 00:31:22.753 00:00:10.994 TCP 1.101.0.1:3000 -> 23.104.0.1:47122 10 6452 1 2025-10-28 00:27:48.469 00:05:02.751 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-28 00:27:47.861 00:05:03.319 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-28 00:27:50.271 00:05:00.909 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-28 00:32:23.787 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:53560 9 6412 1 2025-10-28 00:28:41.568 00:05:10.236 OSPF 23.0.7.2:0 -> 224.0.0.5:0 38 2608 1 2025-10-28 00:28:47.842 00:05:03.359 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-28 00:33:24.204 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35838 9 6412 1 2025-10-28 00:33:58.418 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 00:33:58.212 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 00:35:25.016 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52528 10 6452 1 2025-10-28 00:31:50.253 00:05:00.988 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-28 00:36:36.957 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:45960 1 40 1 2025-10-28 00:33:48.473 00:05:02.749 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-28 00:33:47.862 00:05:03.319 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-28 00:33:50.273 00:05:00.908 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-28 00:34:01.574 00:05:10.002 OSPF 23.0.7.2:0 -> 224.0.0.5:0 34 2500 1 2025-10-28 00:38:27.445 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46874 9 6412 1 2025-10-28 00:34:47.844 00:05:03.359 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-28 00:38:58.429 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 00:38:58.583 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 00:39:27.856 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:44364 10 6452 1 2025-10-28 00:40:28.287 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:55406 10 6452 1 2025-10-28 00:41:28.666 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46162 9 6412 1 2025-10-28 00:37:50.254 00:05:00.988 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-28 00:42:29.072 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33584 9 6412 1 2025-10-28 00:39:21.575 00:05:10.006 OSPF 23.0.7.2:0 -> 224.0.0.5:0 37 2584 1 2025-10-28 00:43:39.844 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:58316 1 40 1 2025-10-28 00:39:47.864 00:05:03.318 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-28 00:39:50.274 00:05:00.908 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-28 00:39:48.472 00:05:02.751 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-28 00:43:58.563 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 00:43:58.490 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 00:44:40.254 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:40116 1 40 1 2025-10-28 00:40:47.844 00:05:03.359 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-28 00:46:30.696 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36004 9 6412 1 2025-10-28 00:47:41.493 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:42692 1 40 1 2025-10-28 00:43:50.255 00:05:00.989 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-28 00:48:31.529 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50862 9 6412 1 2025-10-28 00:44:41.580 00:05:10.008 OSPF 23.0.7.2:0 -> 224.0.0.5:0 35 2448 1 2025-10-28 00:48:58.792 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 00:48:58.792 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 00:49:42.259 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:36264 1 40 1 2025-10-28 00:45:47.866 00:05:03.320 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-28 00:45:50.276 00:05:00.910 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-28 00:45:48.474 00:05:02.752 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-28 00:50:32.298 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:36374 9 6412 1 2025-10-28 00:46:47.847 00:05:03.359 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-28 00:51:32.665 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:51390 9 6412 1 2025-10-28 00:53:43.839 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:37078 1 40 1 2025-10-28 00:49:50.258 00:05:00.988 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-28 00:53:58.799 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 00:53:59.114 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 00:50:01.588 00:05:10.006 OSPF 23.0.7.2:0 -> 224.0.0.5:0 37 2648 1 2025-10-28 00:54:33.882 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60248 9 6412 1 2025-10-28 00:55:34.290 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36484 9 6412 1 2025-10-28 00:51:48.477 00:05:02.751 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-28 00:51:47.868 00:05:03.320 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-28 00:51:50.279 00:05:00.909 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-28 00:56:34.699 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53784 10 6452 1 2025-10-28 00:52:47.847 00:05:03.360 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-28 00:57:35.077 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:57880 9 6412 1 2025-10-28 00:58:35.448 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49562 9 6412 1 Summary: total flows: 136, total bytes: 302980, total packets: 1421, avg bps: 641, avg pps: 0, avg bpp: 213 Time window: 2025-10-27 23:55:50 - 2025-10-28 00:58:45 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0018s User: 0.0027s Wall: 0.0018s flows/second: 76536.3 Runtime: 0.0018s