Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-01 22:00:01.854 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:45310 10 6452 1 2025-11-01 21:56:51.142 00:05:02.643 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-01 21:56:50.606 00:05:03.138 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-01 22:01:19.896 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 22:01:19.899 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 21:57:50.587 00:05:03.177 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-01 22:02:02.675 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57452 9 6412 1 2025-11-01 21:58:52.615 00:05:01.191 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-01 21:58:52.636 00:05:01.110 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-01 22:03:03.041 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39436 10 6452 1 2025-11-01 21:59:11.952 00:05:10.005 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2448 1 2025-11-01 22:04:13.805 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:39300 1 40 1 2025-11-01 22:05:14.214 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:41886 1 40 1 2025-11-01 22:06:04.252 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36366 10 6452 1 2025-11-01 22:06:19.831 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 22:06:19.755 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 22:02:51.142 00:05:02.644 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-01 22:02:50.609 00:05:03.138 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-01 22:07:04.660 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41698 9 6412 1 2025-11-01 22:03:50.588 00:05:03.178 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-01 22:08:05.027 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:59324 9 6412 1 2025-11-01 22:04:31.958 00:05:10.007 OSPF 23.0.7.2:0 -> 224.0.0.5:0 35 2368 1 2025-11-01 22:04:52.638 00:05:01.108 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-01 22:04:52.618 00:05:01.188 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-01 22:09:15.750 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:55406 1 40 1 2025-11-01 22:10:05.785 00:00:10.459 TCP 1.101.0.1:3000 -> 23.104.0.1:33114 11 10335 1 2025-11-01 22:11:19.764 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 22:11:16.607 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:54800 1 40 1 2025-11-01 22:11:19.859 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 22:12:17.017 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:52130 1 40 1 2025-11-01 22:08:51.143 00:05:02.644 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-01 22:08:50.609 00:05:03.138 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-01 22:09:50.590 00:05:03.177 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-01 22:09:51.965 00:05:10.004 OSPF 23.0.7.2:0 -> 224.0.0.5:0 40 2768 1 2025-11-01 22:14:07.462 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:58886 10 6452 1 2025-11-01 22:10:52.643 00:05:01.105 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-01 22:10:52.621 00:05:01.186 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-01 22:15:18.279 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:40746 1 40 1 2025-11-01 22:16:18.697 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:54808 1 40 1 2025-11-01 22:16:20.063 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 22:16:20.067 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 22:17:08.744 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36446 10 6452 1 2025-11-01 22:18:09.157 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34118 10 6452 1 2025-11-01 22:14:51.145 00:05:02.651 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-01 22:14:50.612 00:05:03.144 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-01 22:19:19.938 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:49682 1 40 1 2025-11-01 22:15:11.969 00:05:10.007 OSPF 23.0.7.2:0 -> 224.0.0.5:0 35 2620 1 2025-11-01 22:15:50.593 00:05:03.184 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-01 22:20:09.979 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:46220 9 6412 1 2025-11-01 22:16:52.623 00:05:01.195 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-01 22:16:52.643 00:05:01.114 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-01 22:21:20.238 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 22:21:20.713 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:56702 1 40 1 2025-11-01 22:21:20.165 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 22:23:11.168 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38128 10 6452 1 2025-11-01 22:24:11.536 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57358 10 6452 1 2025-11-01 22:20:31.977 00:05:10.008 OSPF 23.0.7.2:0 -> 224.0.0.5:0 35 2456 1 2025-11-01 22:20:51.147 00:05:02.651 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-01 22:20:50.614 00:05:03.144 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-01 22:25:22.267 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:59932 1 40 1 2025-11-01 22:21:50.594 00:05:03.185 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-01 22:26:20.394 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 22:26:20.140 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 22:26:22.669 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:36804 1 40 1 2025-11-01 22:22:52.624 00:05:01.195 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-01 22:22:52.643 00:05:01.115 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-01 22:27:23.078 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:52906 1 40 1 2025-11-01 22:28:23.494 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:54154 1 40 1 2025-11-01 22:29:13.535 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52606 9 6412 1 2025-11-01 22:25:51.985 00:05:00.662 OSPF 23.0.7.2:0 -> 224.0.0.5:0 35 2524 1 2025-11-01 22:30:13.936 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57180 10 6452 1 2025-11-01 22:26:50.617 00:05:03.143 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-01 22:26:51.149 00:05:02.652 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-01 22:31:20.466 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 22:31:20.194 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 22:31:14.340 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51858 9 6412 1 2025-11-01 22:27:50.597 00:05:03.183 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-01 22:32:14.746 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43044 9 6412 1 2025-11-01 22:28:52.624 00:05:01.196 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-01 22:28:52.644 00:05:01.116 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-01 22:33:25.548 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:49042 1 40 1 2025-11-01 22:34:15.596 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42138 9 6412 1 2025-11-01 22:31:01.990 00:05:10.006 OSPF 23.0.7.2:0 -> 224.0.0.5:0 34 2320 1 2025-11-01 22:35:15.997 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:48518 9 6412 1 2025-11-01 22:36:20.198 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 22:36:20.431 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 22:36:26.754 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:53530 1 40 1 2025-11-01 22:32:50.622 00:05:03.143 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-01 22:32:51.151 00:05:02.653 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-01 22:37:16.791 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:47896 10 6452 1 2025-11-01 22:33:50.601 00:05:03.181 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-01 22:38:27.526 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:34304 1 40 1 2025-11-01 22:34:52.645 00:05:01.117 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-01 22:34:52.626 00:05:01.198 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-01 22:39:17.559 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42412 10 6452 1 2025-11-01 22:36:21.997 00:05:00.007 OSPF 23.0.7.2:0 -> 224.0.0.5:0 37 2556 1 2025-11-01 22:40:28.302 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:47800 1 40 1 2025-11-01 22:41:20.527 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 22:41:20.520 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 22:42:18.744 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40428 10 6452 1 2025-11-01 22:38:51.152 00:05:02.653 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-01 22:38:50.622 00:05:03.142 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-01 22:43:19.152 00:00:10.619 TCP 1.101.0.1:3000 -> 23.104.0.1:42196 9 6412 1 2025-11-01 22:39:50.602 00:05:03.182 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-01 22:44:19.808 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45830 9 6412 1 2025-11-01 22:40:52.629 00:05:01.194 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-01 22:40:52.651 00:05:01.113 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-01 22:45:30.545 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:32906 1 40 1 2025-11-01 22:41:32.005 00:05:10.112 OSPF 23.0.7.2:0 -> 224.0.0.5:0 39 2784 1 2025-11-01 22:46:20.682 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 22:46:20.782 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 22:46:20.580 00:00:11.965 TCP 1.101.0.1:3000 -> 23.104.0.1:39754 10 6452 1 2025-11-01 22:47:22.582 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47932 9 6412 1 2025-11-01 22:48:22.985 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58608 10 6452 1 2025-11-01 22:44:51.155 00:05:02.651 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-01 22:44:50.623 00:05:03.141 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-01 22:49:23.391 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44086 10 6452 1 2025-11-01 22:45:50.604 00:05:03.181 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-01 22:50:23.807 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59862 10 6452 1 2025-11-01 22:46:52.630 00:05:01.195 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-01 22:46:52.649 00:05:01.116 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-01 22:46:52.006 00:05:10.104 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2660 1 2025-11-01 22:51:20.654 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 22:51:20.729 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 22:51:24.209 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58750 9 6412 1 2025-11-01 22:54:32.309 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38932 10 6452 1 2025-11-01 22:50:51.170 00:05:02.640 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-01 22:50:50.625 00:05:03.144 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-01 22:55:43.422 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:45058 1 40 1 2025-11-01 22:51:50.606 00:05:03.181 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-01 22:56:20.746 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 22:56:20.662 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 22:52:12.012 00:05:10.005 OSPF 23.0.7.2:0 -> 224.0.0.5:0 34 2384 1 2025-11-01 22:56:33.461 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41210 9 6412 1 2025-11-01 22:52:52.655 00:05:01.113 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-01 22:52:52.635 00:05:01.193 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-01 22:57:33.864 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:42550 10 6452 1 2025-11-01 22:58:44.647 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:34696 1 40 1 Summary: total flows: 138, total bytes: 287875, total packets: 1405, avg bps: 620, avg pps: 0, avg bpp: 204 Time window: 2025-11-01 21:56:50 - 2025-11-01 22:58:44 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0067s User: 0.0000s Wall: 0.0023s flows/second: 60659.6 Runtime: 0.0023s