Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 16:55:01.005 00:05:02.681 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 16:59:01.042 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:33744 9 6412 1 2025-11-20 16:56:01.025 00:05:02.681 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 17:00:01.401 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36808 9 6412 1 2025-11-20 17:00:23.980 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:00:23.810 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:01:01.799 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54326 10 6452 1 2025-11-20 16:59:01.721 00:05:02.007 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 16:59:01.741 00:05:01.926 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 16:59:00.227 00:05:10.005 OSPF 23.0.7.2:0 -> 224.0.0.5:0 37 2640 1 2025-11-20 17:03:12.928 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:47122 1 40 1 2025-11-20 17:00:01.027 00:05:02.641 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 17:04:02.969 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:36366 10 6452 1 2025-11-20 17:01:01.008 00:05:02.679 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 17:05:24.145 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:05:24.145 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:02:01.027 00:05:02.680 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 17:06:03.749 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:57208 10 6452 1 2025-11-20 17:07:04.157 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52036 9 6412 1 2025-11-20 17:08:04.562 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43878 9 6412 1 2025-11-20 17:04:20.232 00:05:10.004 OSPF 23.0.7.2:0 -> 224.0.0.5:0 38 2712 1 2025-11-20 17:05:01.723 00:05:02.005 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 17:05:01.743 00:05:01.925 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 17:09:04.974 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39212 10 6452 1 2025-11-20 17:06:01.026 00:05:02.641 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 17:10:05.382 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42830 10 6452 1 2025-11-20 17:10:24.217 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:10:24.142 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:07:01.007 00:05:02.681 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 17:11:16.140 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:48854 1 40 1 2025-11-20 17:08:01.028 00:05:02.680 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 17:12:06.219 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49154 9 6412 1 2025-11-20 17:13:06.579 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:44240 10 6452 1 2025-11-20 17:09:40.235 00:05:10.010 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2572 1 2025-11-20 17:14:17.286 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:46828 1 40 1 2025-11-20 17:11:01.722 00:05:02.006 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 17:11:01.742 00:05:01.926 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 17:15:07.327 00:00:10.798 TCP 1.101.0.1:3000 -> 23.104.0.1:54092 10 6452 1 2025-11-20 17:15:24.297 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:15:24.384 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:12:01.028 00:05:02.641 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 17:16:08.167 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36022 9 6412 1 2025-11-20 17:13:01.009 00:05:02.680 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 17:14:01.029 00:05:02.680 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 17:18:19.345 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:50166 1 40 1 2025-11-20 17:15:00.245 00:05:10.003 OSPF 23.0.7.2:0 -> 224.0.0.5:0 34 2304 1 2025-11-20 17:20:09.789 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:59052 10 6452 1 2025-11-20 17:20:24.434 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:20:24.350 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:17:01.746 00:05:01.929 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 17:17:01.726 00:05:02.010 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 17:18:01.029 00:05:02.646 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 17:22:10.604 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:42980 9 6412 1 2025-11-20 17:19:01.010 00:05:02.685 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 17:23:21.339 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:53262 1 40 1 2025-11-20 17:20:01.029 00:05:02.687 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 17:24:21.744 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:37668 1 40 1 2025-11-20 17:20:20.248 00:05:10.008 OSPF 23.0.7.2:0 -> 224.0.0.5:0 37 2544 1 2025-11-20 17:25:24.683 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:25:24.687 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:23:01.729 00:05:02.007 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 17:23:01.748 00:05:01.928 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 17:27:12.640 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37448 10 6452 1 2025-11-20 17:24:01.032 00:05:02.644 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 17:25:01.012 00:05:02.684 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 17:29:23.773 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:54264 1 40 1 2025-11-20 17:25:40.255 00:05:10.008 OSPF 23.0.7.2:0 -> 224.0.0.5:0 37 2640 1 2025-11-20 17:26:01.029 00:05:02.687 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 17:30:24.613 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:30:24.434 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:31:14.213 00:00:10.578 TCP 1.101.0.1:3000 -> 23.104.0.1:33702 10 6452 1 2025-11-20 17:32:25.191 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:53072 1 40 1 2025-11-20 17:29:01.729 00:05:02.008 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 17:29:01.750 00:05:01.927 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 17:33:25.605 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:52732 1 40 1 2025-11-20 17:30:01.031 00:05:02.645 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 17:34:26.009 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:36950 1 40 1 2025-11-20 17:31:01.012 00:05:02.685 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 17:31:00.264 00:05:10.006 OSPF 23.0.7.2:0 -> 224.0.0.5:0 38 2672 1 2025-11-20 17:35:24.731 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:35:24.536 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:35:16.052 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35174 9 6412 1 2025-11-20 17:32:01.062 00:05:02.655 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 17:36:26.828 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:60284 1 40 1 2025-11-20 17:37:16.860 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:49486 10 6452 1 2025-11-20 17:38:17.245 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55754 9 6412 1 2025-11-20 17:35:01.753 00:05:01.925 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 17:35:01.733 00:05:02.005 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 17:39:27.977 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:53434 1 40 1 2025-11-20 17:36:01.033 00:05:02.646 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 17:40:24.872 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:40:24.716 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:36:20.271 00:05:10.046 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2628 1 2025-11-20 17:37:01.015 00:05:02.685 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 17:41:28.785 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:36586 1 40 1 2025-11-20 17:38:01.076 00:05:02.646 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 17:44:19.613 00:00:18.349 TCP 1.101.0.1:3000 -> 23.104.0.1:42312 9 6412 1 2025-11-20 17:41:01.735 00:05:02.007 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 17:41:01.756 00:05:01.927 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 17:45:24.885 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:45:24.885 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:45:38.376 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:43368 1 40 1 2025-11-20 17:41:40.280 00:05:10.007 OSPF 23.0.7.2:0 -> 224.0.0.5:0 33 2240 1 2025-11-20 17:42:01.036 00:05:02.646 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 17:46:28.419 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42114 9 6412 1 2025-11-20 17:43:01.016 00:05:02.686 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 17:47:28.818 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37410 10 6452 1 2025-11-20 17:44:01.099 00:05:02.622 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 17:49:29.627 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55326 10 6452 1 2025-11-20 17:50:25.768 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:50:25.994 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:50:40.365 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:56952 1 40 1 2025-11-20 17:47:01.737 00:05:02.006 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 17:47:01.757 00:05:01.926 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 17:47:00.286 00:05:10.005 OSPF 23.0.7.2:0 -> 224.0.0.5:0 37 2528 1 2025-11-20 17:51:40.763 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:47598 1 40 1 2025-11-20 17:48:01.036 00:05:02.647 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 17:52:30.801 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38292 9 6412 1 2025-11-20 17:49:01.017 00:05:02.686 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 17:50:01.105 00:05:02.618 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 17:54:41.994 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:33144 1 40 1 2025-11-20 17:55:25.217 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:55:24.917 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:55:32.044 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44612 10 6452 1 2025-11-20 17:52:20.291 00:05:10.010 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2464 1 2025-11-20 17:56:32.453 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37766 11 6516 1 2025-11-20 17:53:01.741 00:05:02.005 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 17:53:01.761 00:05:01.925 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 17:57:43.211 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:56746 1 40 1 2025-11-20 17:54:01.040 00:05:02.647 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 17:58:33.262 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:52680 10 6452 1 Summary: total flows: 131, total bytes: 251852, total packets: 1358, avg bps: 524, avg pps: 0, avg bpp: 185 Time window: 2025-11-20 16:55:01 - 2025-11-20 17:59:03 Total flows processed: 131, passed: 131, Blocks skipped: 0, Bytes read: 13688 Sys: 0.0042s User: 0.0011s Wall: 0.0018s flows/second: 71154.3 Runtime: 0.0019s