Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 09:58:56.520 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:35692 9 6412 1 2025-10-30 09:55:51.425 00:05:00.906 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-30 09:55:51.444 00:05:00.826 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-30 10:00:07.566 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 10:00:07.527 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 09:55:52.267 00:05:56.864 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-30 09:56:49.647 00:05:02.663 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-30 10:00:57.331 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42436 9 6412 1 2025-10-30 09:56:52.288 00:05:56.831 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-30 10:01:57.740 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60114 9 6412 1 2025-10-30 09:58:46.577 00:05:10.012 OSPF 23.0.7.2:0 -> 224.0.0.5:0 37 2592 1 2025-10-30 10:02:58.153 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46250 10 6452 1 2025-10-30 10:05:07.682 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 10:05:09.335 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:35306 1 40 1 2025-10-30 10:05:07.613 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 10:01:51.445 00:05:00.825 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-30 10:01:51.426 00:05:00.904 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-30 10:06:09.947 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:57890 1 40 1 2025-10-30 10:01:52.271 00:05:56.863 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-30 10:02:49.650 00:05:02.660 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-30 10:06:59.993 00:00:10.895 TCP 1.101.0.1:3000 -> 23.104.0.1:52316 9 6412 1 2025-10-30 10:02:52.289 00:05:56.824 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-30 10:04:06.589 00:05:10.004 OSPF 23.0.7.2:0 -> 224.0.0.5:0 38 2648 1 2025-10-30 10:09:01.340 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36510 9 6412 1 2025-10-30 10:10:07.734 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 10:10:07.455 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 10:11:02.134 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35726 9 6412 1 2025-10-30 10:07:51.426 00:05:00.905 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-30 10:07:51.446 00:05:00.824 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-30 10:12:02.537 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49422 10 6452 1 2025-10-30 10:07:52.270 00:05:56.864 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-30 10:08:49.651 00:05:02.660 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-30 10:13:13.305 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:36762 1 40 1 2025-10-30 10:09:26.593 00:05:10.008 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2464 1 2025-10-30 10:08:52.291 00:05:56.823 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-30 10:14:03.339 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33072 10 6452 1 2025-10-30 10:15:07.804 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 10:15:07.731 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 10:16:04.123 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56538 10 6452 1 2025-10-30 10:17:04.524 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42532 9 6412 1 2025-10-30 10:13:51.426 00:05:00.905 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-30 10:13:51.447 00:05:00.825 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-30 10:18:04.929 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39522 10 6452 1 2025-10-30 10:13:52.270 00:05:56.865 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-30 10:14:49.654 00:05:02.658 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-30 10:14:46.602 00:05:10.003 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2644 1 2025-10-30 10:19:15.659 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:45916 1 40 1 2025-10-30 10:14:52.292 00:05:56.824 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-30 10:20:07.982 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 10:20:07.950 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 10:20:05.699 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:60982 10 6452 1 2025-10-30 10:21:06.123 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35208 10 6452 1 2025-10-30 10:22:06.528 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57334 9 6412 1 2025-10-30 10:23:06.929 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42206 10 6452 1 2025-10-30 10:19:51.428 00:05:00.905 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-30 10:19:51.450 00:05:00.825 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-30 10:20:06.605 00:05:10.011 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2504 1 2025-10-30 10:24:07.330 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44472 9 6412 1 2025-10-30 10:19:52.270 00:05:56.866 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-30 10:20:49.656 00:05:02.658 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-30 10:25:08.297 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 10:25:08.401 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 10:25:18.102 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:38656 1 40 1 2025-10-30 10:20:52.292 00:05:56.825 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-30 10:27:08.543 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48986 10 6452 1 2025-10-30 10:28:19.413 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:33784 1 40 1 2025-10-30 10:25:26.616 00:05:10.002 OSPF 23.0.7.2:0 -> 224.0.0.5:0 35 2448 1 2025-10-30 10:25:51.450 00:05:00.825 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-30 10:25:51.430 00:05:00.905 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-30 10:30:07.989 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 10:30:08.089 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 10:30:09.856 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:47220 9 6412 1 2025-10-30 10:25:52.273 00:05:56.864 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-30 10:26:49.657 00:05:02.658 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-30 10:31:20.610 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:56850 1 40 1 2025-10-30 10:26:52.294 00:05:56.824 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-30 10:32:10.649 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41390 9 6412 1 2025-10-30 10:33:11.051 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50858 10 6452 1 2025-10-30 10:34:11.414 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52908 9 6412 1 2025-10-30 10:30:46.619 00:05:10.055 OSPF 23.0.7.2:0 -> 224.0.0.5:0 38 2664 1 2025-10-30 10:35:08.295 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 10:35:08.254 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 10:35:11.776 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:46316 10 6452 1 2025-10-30 10:31:51.450 00:05:00.827 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-30 10:31:51.431 00:05:00.907 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-30 10:36:12.137 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:32902 10 6452 1 2025-10-30 10:31:52.274 00:05:56.864 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-30 10:32:49.659 00:05:02.658 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-30 10:37:12.538 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60088 9 6412 1 2025-10-30 10:32:52.297 00:05:56.823 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-30 10:38:12.945 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:40484 9 6412 1 2025-10-30 10:39:13.380 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49112 9 6412 1 2025-10-30 10:40:08.354 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 10:40:08.301 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 10:36:06.623 00:05:10.009 OSPF 23.0.7.2:0 -> 224.0.0.5:0 37 2528 1 2025-10-30 10:40:24.111 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:49076 1 40 1 2025-10-30 10:41:24.526 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:48482 1 40 1 2025-10-30 10:37:51.446 00:05:00.892 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-30 10:37:51.466 00:05:00.812 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-30 10:42:14.562 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49972 10 6452 1 2025-10-30 10:37:52.277 00:05:56.862 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-30 10:38:49.660 00:05:02.658 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-30 10:43:25.338 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:33054 1 40 1 2025-10-30 10:38:52.297 00:05:56.822 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-30 10:45:08.439 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 10:45:08.430 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 10:45:15.823 00:00:10.760 TCP 1.101.0.1:3000 -> 23.104.0.1:39464 9 6412 1 2025-10-30 10:41:26.632 00:05:10.003 OSPF 23.0.7.2:0 -> 224.0.0.5:0 35 2580 1 2025-10-30 10:46:16.618 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:44254 10 6452 1 2025-10-30 10:47:16.981 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40144 10 6452 1 2025-10-30 10:43:51.446 00:05:00.892 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-30 10:43:51.466 00:05:00.812 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-30 10:48:40.271 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:39920 1 40 1 2025-10-30 10:43:52.279 00:05:56.862 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-30 10:44:49.664 00:05:02.655 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-30 10:49:40.706 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:35926 1 40 1 2025-10-30 10:44:52.298 00:05:56.824 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-30 10:50:08.545 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 10:50:08.318 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 10:50:30.750 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50168 9 6412 1 2025-10-30 10:46:46.637 00:05:10.010 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2504 1 2025-10-30 10:51:31.161 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35072 9 6412 1 2025-10-30 10:52:31.561 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:43712 10 6452 1 2025-10-30 10:53:31.932 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43282 10 6452 1 2025-10-30 10:49:51.456 00:05:00.884 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-30 10:49:51.477 00:05:00.803 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-30 10:54:42.699 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:56274 1 40 1 2025-10-30 10:49:52.279 00:05:56.864 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-30 10:50:49.664 00:05:02.656 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-30 10:55:08.538 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 10:55:08.545 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 10:55:43.133 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:38940 1 40 1 2025-10-30 10:50:52.299 00:05:56.824 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-30 10:52:06.646 00:05:10.007 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2592 1 2025-10-30 10:56:33.174 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35504 10 6452 1 2025-10-30 10:57:33.581 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46920 10 6452 1 2025-10-30 10:58:33.986 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:58856 9 6412 1 Summary: total flows: 137, total bytes: 316092, total packets: 1447, avg bps: 670, avg pps: 0, avg bpp: 218 Time window: 2025-10-30 09:55:51 - 2025-10-30 10:58:44 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0031s User: 0.0016s Wall: 0.0012s flows/second: 112406.0 Runtime: 0.0012s