Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-27 00:58:54.609 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38160 10 6452 1 2025-11-27 00:54:06.774 00:05:57.480 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-27 00:59:54.973 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58358 9 6412 1 2025-11-27 00:56:04.322 00:05:02.472 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-27 00:57:12.728 00:05:10.402 OSPF 23.0.7.2:0 -> 224.0.0.5:0 38 2712 1 2025-11-27 01:01:55.794 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43066 9 6412 1 2025-11-27 00:58:04.828 00:05:01.928 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-27 00:58:06.813 00:05:57.995 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-27 01:02:56.207 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51236 9 6412 1 2025-11-27 01:03:26.907 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 01:03:26.967 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 01:00:04.275 00:05:02.481 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-27 01:00:06.774 00:05:57.482 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-27 01:04:57.014 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:49696 10 6452 1 2025-11-27 01:02:04.325 00:05:02.470 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-27 01:02:32.736 00:05:10.004 OSPF 23.0.7.2:0 -> 224.0.0.5:0 33 2256 1 2025-11-27 01:06:57.782 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:33612 10 6452 1 2025-11-27 01:04:04.829 00:05:01.927 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-27 01:08:27.237 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 01:08:27.159 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 01:04:06.815 00:05:57.996 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-27 01:09:08.917 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:52304 1 40 1 2025-11-27 01:06:04.276 00:05:02.480 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-27 01:09:58.953 00:00:10.934 TCP 1.101.0.1:3000 -> 23.104.0.1:45278 9 6412 1 2025-11-27 01:06:06.775 00:05:57.510 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-27 01:07:52.740 00:05:10.006 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2560 1 2025-11-27 01:08:04.327 00:05:02.470 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-27 01:12:10.693 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:55630 1 40 1 2025-11-27 01:13:00.733 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59916 10 6452 1 2025-11-27 01:13:27.187 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 01:13:27.183 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 01:10:04.832 00:05:01.925 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-27 01:14:11.464 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:35274 1 40 1 2025-11-27 01:10:06.816 00:05:57.998 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-27 01:12:04.306 00:05:02.451 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-27 01:12:06.776 00:05:57.510 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-27 01:17:02.422 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:36360 12 10375 1 2025-11-27 01:13:12.747 00:05:10.006 OSPF 23.0.7.2:0 -> 224.0.0.5:0 35 2540 1 2025-11-27 01:14:04.327 00:05:02.471 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-27 01:18:13.261 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:46254 1 40 1 2025-11-27 01:18:27.379 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 01:18:27.169 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 01:19:13.628 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:34116 1 40 1 2025-11-27 01:16:04.835 00:05:01.925 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-27 01:20:03.673 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59414 9 6412 1 2025-11-27 01:16:06.818 00:05:58.000 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-27 01:21:14.473 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:46456 1 40 1 2025-11-27 01:18:04.306 00:05:02.453 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-27 01:22:04.516 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44404 10 6452 1 2025-11-27 01:18:32.753 00:05:10.032 OSPF 23.0.7.2:0 -> 224.0.0.5:0 39 2768 1 2025-11-27 01:18:06.778 00:05:57.509 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-27 01:23:15.289 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:44734 1 40 1 2025-11-27 01:23:27.368 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 01:23:27.372 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 01:20:04.328 00:05:02.471 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-27 01:25:05.732 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50382 9 6412 1 2025-11-27 01:22:04.838 00:05:01.922 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-27 01:22:06.819 00:05:58.000 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-27 01:23:52.761 00:05:10.044 OSPF 23.0.7.2:0 -> 224.0.0.5:0 38 2656 1 2025-11-27 01:24:04.307 00:05:02.454 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-27 01:28:06.886 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36312 9 6412 1 2025-11-27 01:28:27.642 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 01:28:27.571 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 01:24:06.778 00:05:57.511 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-27 01:29:07.301 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38260 10 6452 1 2025-11-27 01:26:04.331 00:05:02.472 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-27 01:30:07.706 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58600 10 6452 1 2025-11-27 01:31:08.134 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55856 10 6452 1 2025-11-27 01:28:04.838 00:05:01.925 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-27 01:28:06.819 00:05:58.000 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-27 01:33:08.899 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49000 9 6412 1 2025-11-27 01:29:12.766 00:05:10.007 OSPF 23.0.7.2:0 -> 224.0.0.5:0 35 2440 1 2025-11-27 01:33:27.437 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 01:33:27.534 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 01:30:04.310 00:05:02.452 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-27 01:34:19.623 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:47950 1 40 1 2025-11-27 01:30:06.781 00:05:57.509 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-27 01:32:04.332 00:05:02.471 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-27 01:36:10.030 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44498 9 6412 1 2025-11-27 01:37:10.396 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38030 9 6412 1 2025-11-27 01:34:04.840 00:05:01.924 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-27 01:38:21.161 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:33342 1 40 1 2025-11-27 01:38:27.929 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 01:38:28.142 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 01:34:32.773 00:05:10.004 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2560 1 2025-11-27 01:34:06.822 00:05:57.998 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-27 01:39:21.521 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:51692 1 40 1 2025-11-27 01:36:04.310 00:05:02.453 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-27 01:40:21.928 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:36370 1 40 1 2025-11-27 01:36:06.782 00:05:57.509 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-27 01:38:04.335 00:05:02.470 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-27 01:43:12.739 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49346 10 6452 1 2025-11-27 01:43:27.776 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 01:43:27.778 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 01:39:52.777 00:05:10.006 OSPF 23.0.7.2:0 -> 224.0.0.5:0 35 2524 1 2025-11-27 01:40:04.842 00:05:01.927 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-27 01:40:06.824 00:05:57.998 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-27 01:45:23.897 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:40960 1 40 1 2025-11-27 01:42:04.312 00:05:02.461 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-27 01:46:13.936 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:33502 12 10375 1 2025-11-27 01:42:06.784 00:05:57.509 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-27 01:47:14.375 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37142 9 6412 1 2025-11-27 01:44:04.334 00:05:02.479 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-27 01:48:14.777 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:43992 9 6412 1 2025-11-27 01:48:28.767 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 01:48:28.767 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 01:45:12.783 00:05:10.002 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2464 1 2025-11-27 01:46:04.842 00:05:01.932 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-27 01:46:06.835 00:05:57.990 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-27 01:51:23.760 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:57202 12 10375 1 2025-11-27 01:48:04.313 00:05:02.461 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-27 01:48:06.792 00:05:57.504 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-27 01:53:27.986 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 01:53:28.256 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 01:53:24.608 00:00:10.428 TCP 1.101.0.1:3000 -> 23.104.0.1:33242 10 6452 1 2025-11-27 01:50:04.335 00:05:02.480 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-27 01:50:32.786 00:05:10.005 OSPF 23.0.7.2:0 -> 224.0.0.5:0 38 2592 1 2025-11-27 01:52:04.844 00:05:01.930 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-27 01:56:25.888 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47854 9 6412 1 2025-11-27 01:52:06.835 00:05:57.990 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-27 01:57:26.301 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51828 9 6412 1 2025-11-27 01:54:04.316 00:05:02.459 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-27 01:58:28.158 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-27 01:58:28.114 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-27 01:58:26.664 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50428 9 6412 1 Summary: total flows: 125, total bytes: 263325, total packets: 1354, avg bps: 540, avg pps: 0, avg bpp: 194 Time window: 2025-11-27 00:54:06 - 2025-11-27 01:59:06 Total flows processed: 125, passed: 125, Blocks skipped: 0, Bytes read: 13064 Sys: 0.0041s User: 0.0016s Wall: 0.0019s flows/second: 66916.1 Runtime: 0.0019s