Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-02 09:59:13.637 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59040 10 6452 1 2025-11-02 09:56:51.524 00:05:02.497 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-02 09:56:50.863 00:05:03.117 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-02 10:01:14.448 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40834 10 6452 1 2025-11-02 10:01:34.169 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 10:01:34.167 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 09:57:50.843 00:05:03.159 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-02 09:58:13.009 00:05:10.061 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2448 1 2025-11-02 09:58:52.836 00:05:01.204 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-02 09:58:52.855 00:05:01.124 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-02 10:03:25.532 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:50760 1 40 1 2025-11-02 10:04:15.571 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41750 9 6412 1 2025-11-02 10:05:15.975 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48960 10 6452 1 2025-11-02 10:06:26.752 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:47870 1 40 1 2025-11-02 10:06:34.340 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 10:06:34.464 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 10:02:51.533 00:05:02.489 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-02 10:02:50.864 00:05:03.116 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-02 10:07:27.107 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:35142 2 80 1 2025-11-02 10:03:33.052 00:05:10.007 OSPF 23.0.7.2:0 -> 224.0.0.5:0 38 2608 1 2025-11-02 10:03:50.844 00:05:03.157 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-02 10:08:17.149 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:56402 10 6452 1 2025-11-02 10:04:52.856 00:05:01.124 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-02 10:04:52.837 00:05:01.204 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-02 10:10:17.878 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:37802 9 6412 1 2025-11-02 10:11:34.427 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 10:11:34.417 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 10:08:50.864 00:05:03.116 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-02 10:08:51.535 00:05:02.487 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-02 10:08:53.058 00:05:10.004 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2560 1 2025-11-02 10:09:50.846 00:05:03.157 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-02 10:14:19.633 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43250 9 6412 1 2025-11-02 10:10:52.861 00:05:01.119 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-02 10:10:52.842 00:05:01.207 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-02 10:15:20.038 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57374 10 6452 1 2025-11-02 10:16:20.402 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44426 9 6412 1 2025-11-02 10:16:34.395 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 10:16:34.511 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 10:14:13.065 00:05:10.005 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2644 1 2025-11-02 10:14:51.535 00:05:02.490 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-02 10:14:50.865 00:05:03.118 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-02 10:19:21.598 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:59220 10 6452 1 2025-11-02 10:15:50.847 00:05:03.158 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-02 10:20:21.964 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:36048 9 6412 1 2025-11-02 10:16:52.843 00:05:01.201 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-02 10:16:52.863 00:05:01.121 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-02 10:21:34.408 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 10:21:32.711 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:35402 1 40 1 2025-11-02 10:21:34.614 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 10:22:22.764 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48232 9 6412 1 2025-11-02 10:23:23.170 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48830 9 6412 1 2025-11-02 10:19:33.070 00:05:10.008 OSPF 23.0.7.2:0 -> 224.0.0.5:0 35 2528 1 2025-11-02 10:24:23.569 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42162 9 6412 1 2025-11-02 10:20:50.867 00:05:03.118 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-02 10:20:51.539 00:05:02.487 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-02 10:25:23.968 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48388 9 6412 1 2025-11-02 10:21:50.848 00:05:03.158 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-02 10:26:34.788 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 10:26:24.374 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54764 9 6412 1 2025-11-02 10:26:34.727 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 10:22:52.866 00:05:01.120 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-02 10:22:52.846 00:05:01.201 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-02 10:27:24.774 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43422 9 6412 1 2025-11-02 10:28:35.502 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:39146 1 40 1 2025-11-02 10:24:53.079 00:05:10.007 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2448 1 2025-11-02 10:29:25.537 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39490 9 6412 1 2025-11-02 10:30:36.260 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:35964 1 40 1 2025-11-02 10:26:50.868 00:05:03.118 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-02 10:26:51.541 00:05:02.486 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-02 10:31:34.875 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 10:31:34.751 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 10:31:26.291 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46704 9 6412 1 2025-11-02 10:27:50.848 00:05:03.159 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-02 10:32:26.698 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:59564 10 6452 1 2025-11-02 10:28:52.848 00:05:01.199 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-02 10:28:52.868 00:05:01.119 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-02 10:33:27.087 00:00:10.529 TCP 1.101.0.1:3000 -> 23.104.0.1:37204 9 6412 1 2025-11-02 10:30:13.085 00:05:10.004 OSPF 23.0.7.2:0 -> 224.0.0.5:0 37 2528 1 2025-11-02 10:34:38.020 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:43440 1 40 1 2025-11-02 10:35:28.058 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55838 10 6452 1 2025-11-02 10:36:34.979 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 10:36:34.690 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 10:36:28.465 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39918 10 6452 1 2025-11-02 10:32:50.869 00:05:03.118 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-02 10:32:51.542 00:05:02.486 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-02 10:37:28.862 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:37890 9 6412 1 2025-11-02 10:33:50.850 00:05:03.160 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-02 10:34:52.850 00:05:01.201 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-02 10:34:52.870 00:05:01.120 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-02 10:39:40.003 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:58044 1 40 1 2025-11-02 10:35:33.091 00:05:10.009 OSPF 23.0.7.2:0 -> 224.0.0.5:0 37 2544 1 2025-11-02 10:41:34.993 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 10:41:35.070 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 10:42:41.214 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:38122 1 40 1 2025-11-02 10:38:50.870 00:05:03.122 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-02 10:38:51.543 00:05:02.490 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-02 10:43:31.245 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35928 10 6452 1 2025-11-02 10:39:50.851 00:05:03.164 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-02 10:44:41.979 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:34564 1 40 1 2025-11-02 10:40:52.875 00:05:01.119 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-02 10:40:52.854 00:05:01.200 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-02 10:40:53.099 00:05:10.020 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2700 1 2025-11-02 10:46:35.233 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 10:46:35.161 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 10:47:43.208 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:50660 1 40 1 2025-11-02 10:48:33.243 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40042 10 6452 1 2025-11-02 10:44:51.555 00:05:02.480 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-02 10:44:50.872 00:05:03.122 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-02 10:49:33.652 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58996 9 6412 1 2025-11-02 10:45:50.852 00:05:03.163 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-02 10:46:13.119 00:05:10.006 OSPF 23.0.7.2:0 -> 224.0.0.5:0 35 2504 1 2025-11-02 10:50:44.424 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:41534 1 40 1 2025-11-02 10:46:52.858 00:05:01.196 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-02 10:46:52.880 00:05:01.115 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-02 10:51:34.925 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 10:51:35.019 00:00:00.043 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 10:51:44.835 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:59096 1 40 1 2025-11-02 10:52:34.877 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:40530 10 6452 1 2025-11-02 10:54:46.624 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:38364 1 40 1 2025-11-02 10:50:50.873 00:05:03.121 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-02 10:50:51.555 00:05:02.480 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-02 10:51:33.126 00:05:10.004 OSPF 23.0.7.2:0 -> 224.0.0.5:0 37 2592 1 2025-11-02 10:55:36.666 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36878 9 6412 1 2025-11-02 10:51:50.853 00:05:03.164 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-02 10:56:35.341 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-02 10:56:35.390 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-02 10:56:37.069 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50210 9 6412 1 2025-11-02 10:52:52.861 00:05:01.195 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-02 10:52:52.881 00:05:01.114 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-02 10:57:37.478 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39272 9 6412 1 Summary: total flows: 130, total bytes: 270904, total packets: 1377, avg bps: 591, avg pps: 0, avg bpp: 196 Time window: 2025-11-02 09:56:50 - 2025-11-02 10:57:54 Total flows processed: 130, passed: 130, Blocks skipped: 0, Bytes read: 13584 Sys: 0.0032s User: 0.0011s Wall: 0.0013s flows/second: 99228.3 Runtime: 0.0013s