Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-13 03:58:11.613 00:01:00.382 TCP 30.156.0.1:179 -> 30.152.0.1:44791 4 246 1 2025-08-13 03:55:11.995 00:05:01.225 TCP 30.156.0.1:37721 -> 30.155.0.1:179 12 738 1 2025-08-13 04:00:11.615 00:01:00.382 TCP 30.156.0.1:179 -> 30.152.0.1:44791 4 246 1 2025-08-13 03:57:12.077 00:05:01.748 TCP 30.157.0.1:39897 -> 30.156.0.1:179 12 738 1 2025-08-13 04:02:11.615 00:00:00.381 TCP 30.156.0.1:179 -> 30.152.0.1:44791 2 123 1 2025-08-13 04:02:19.842 00:00:00.022 ICMP 31.102.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-13 04:02:19.821 00:00:00.022 ICMP 31.102.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-08-13 04:02:19.825 00:00:00.022 ICMP 31.102.0.1:0 -> 26.0.198.2:0.0 3 252 1 2025-08-13 04:02:19.925 00:00:00.022 ICMP 31.102.0.1:0 -> 24.0.198.2:0.0 3 252 1 2025-08-13 04:02:19.792 00:00:00.025 ICMP 31.102.0.1:0 -> 23.0.198.2:0.0 3 252 1 2025-08-13 03:59:12.056 00:05:01.146 TCP 30.155.0.1:179 -> 30.156.0.1:37721 12 738 1 2025-08-13 03:59:11.594 00:05:00.424 TCP 30.152.0.1:44791 -> 30.156.0.1:179 12 738 1 2025-08-13 03:59:38.882 00:05:10.006 OSPF 30.0.8.1:0 -> 224.0.0.5:0 40 2776 1 2025-08-13 04:03:11.615 00:01:00.382 TCP 30.156.0.1:179 -> 30.152.0.1:44791 4 246 1 2025-08-13 04:00:11.997 00:05:01.849 TCP 30.156.0.1:179 -> 30.157.0.1:39897 12 738 1 2025-08-13 04:01:11.996 00:05:01.227 TCP 30.156.0.1:37721 -> 30.155.0.1:179 12 738 1 2025-08-13 04:05:11.616 00:01:00.381 TCP 30.156.0.1:179 -> 30.152.0.1:44791 4 246 1 2025-08-13 04:07:11.616 00:00:00.382 TCP 30.156.0.1:179 -> 30.152.0.1:44791 2 123 1 2025-08-13 04:03:12.078 00:05:01.750 TCP 30.157.0.1:39897 -> 30.156.0.1:179 12 738 1 2025-08-13 04:07:19.846 00:00:00.023 ICMP 31.102.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-13 04:07:19.947 00:00:00.023 ICMP 31.102.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-08-13 04:07:20.000 00:00:00.022 ICMP 31.102.0.1:0 -> 26.0.198.2:0.0 3 252 1 2025-08-13 04:07:19.927 00:00:00.022 ICMP 31.102.0.1:0 -> 24.0.198.2:0.0 3 252 1 2025-08-13 04:07:20.037 00:00:00.023 ICMP 31.102.0.1:0 -> 23.0.198.2:0.0 3 252 1 2025-08-13 04:04:58.889 00:05:10.004 OSPF 30.0.8.1:0 -> 224.0.0.5:0 39 2884 1 2025-08-13 04:05:12.059 00:05:01.145 TCP 30.155.0.1:179 -> 30.156.0.1:37721 12 738 1 2025-08-13 04:05:11.597 00:05:00.423 TCP 30.152.0.1:44791 -> 30.156.0.1:179 12 738 1 2025-08-13 04:06:11.996 00:05:01.851 TCP 30.156.0.1:179 -> 30.157.0.1:39897 12 738 1 2025-08-13 04:08:11.616 00:03:00.382 TCP 30.156.0.1:179 -> 30.152.0.1:44791 8 492 1 2025-08-13 04:07:11.997 00:05:01.226 TCP 30.156.0.1:37721 -> 30.155.0.1:179 12 738 1 2025-08-13 04:12:20.144 00:00:00.023 ICMP 31.102.0.1:0 -> 23.0.198.2:0.0 3 252 1 2025-08-13 04:12:20.203 00:00:00.021 ICMP 31.102.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-13 04:12:20.026 00:00:00.022 ICMP 31.102.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-08-13 04:12:20.029 00:00:00.022 ICMP 31.102.0.1:0 -> 26.0.198.2:0.0 3 252 1 2025-08-13 04:12:20.193 00:00:00.034 ICMP 31.102.0.1:0 -> 24.0.198.2:0.0 3 252 1 2025-08-13 04:09:12.079 00:05:01.749 TCP 30.157.0.1:39897 -> 30.156.0.1:179 12 738 1 2025-08-13 04:10:18.891 00:05:10.006 OSPF 30.0.8.1:0 -> 224.0.0.5:0 40 2868 1 2025-08-13 04:11:12.058 00:05:01.145 TCP 30.155.0.1:179 -> 30.156.0.1:37721 12 738 1 2025-08-13 04:11:11.596 00:05:00.423 TCP 30.152.0.1:44791 -> 30.156.0.1:179 12 738 1 2025-08-13 04:12:11.618 00:05:00.384 TCP 30.156.0.1:179 -> 30.152.0.1:44791 12 738 1 2025-08-13 04:12:12.001 00:05:01.849 TCP 30.156.0.1:179 -> 30.157.0.1:39897 12 738 1 2025-08-13 04:13:12.002 00:05:01.223 TCP 30.156.0.1:37721 -> 30.155.0.1:179 12 738 1 2025-08-13 04:17:20.068 00:00:00.022 ICMP 31.102.0.1:0 -> 23.0.198.2:0.0 3 252 1 2025-08-13 04:17:20.041 00:00:00.022 ICMP 31.102.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-13 04:17:20.113 00:00:00.022 ICMP 31.102.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-08-13 04:17:20.037 00:00:00.022 ICMP 31.102.0.1:0 -> 26.0.198.2:0.0 3 252 1 2025-08-13 04:17:20.124 00:00:00.022 ICMP 31.102.0.1:0 -> 24.0.198.2:0.0 3 252 1 2025-08-13 04:15:12.081 00:05:01.751 TCP 30.157.0.1:39897 -> 30.156.0.1:179 12 738 1 2025-08-13 04:15:38.898 00:05:10.006 OSPF 30.0.8.1:0 -> 224.0.0.5:0 37 2584 1 2025-08-13 04:17:12.061 00:05:01.166 TCP 30.155.0.1:179 -> 30.156.0.1:37721 12 738 1 2025-08-13 04:17:11.599 00:05:00.424 TCP 30.152.0.1:44791 -> 30.156.0.1:179 12 738 1 2025-08-13 04:18:12.001 00:05:01.852 TCP 30.156.0.1:179 -> 30.157.0.1:39897 12 738 1 2025-08-13 04:18:11.619 00:05:00.383 TCP 30.156.0.1:179 -> 30.152.0.1:44791 12 738 1 2025-08-13 04:22:20.409 00:00:00.021 ICMP 31.102.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-13 04:22:20.493 00:00:00.023 ICMP 31.102.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-08-13 04:22:20.446 00:00:00.023 ICMP 31.102.0.1:0 -> 26.0.198.2:0.0 3 252 1 2025-08-13 04:22:20.289 00:00:00.022 ICMP 31.102.0.1:0 -> 24.0.198.2:0.0 3 252 1 2025-08-13 04:22:20.401 00:00:00.024 ICMP 31.102.0.1:0 -> 23.0.198.2:0.0 3 252 1 2025-08-13 04:19:12.002 00:05:01.246 TCP 30.156.0.1:37721 -> 30.155.0.1:179 12 738 1 2025-08-13 04:20:58.904 00:05:10.004 OSPF 30.0.8.1:0 -> 224.0.0.5:0 35 2464 1 2025-08-13 04:21:12.082 00:05:01.752 TCP 30.157.0.1:39897 -> 30.156.0.1:179 12 738 1 2025-08-13 04:23:12.062 00:05:01.184 TCP 30.155.0.1:179 -> 30.156.0.1:37721 12 738 1 2025-08-13 04:23:11.600 00:05:00.424 TCP 30.152.0.1:44791 -> 30.156.0.1:179 12 738 1 2025-08-13 04:27:20.268 00:00:00.022 ICMP 31.102.0.1:0 -> 23.0.198.2:0.0 3 252 1 2025-08-13 04:27:20.309 00:00:00.023 ICMP 31.102.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-13 04:27:20.299 00:00:00.025 ICMP 31.102.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-08-13 04:27:20.305 00:00:00.021 ICMP 31.102.0.1:0 -> 26.0.198.2:0.0 3 252 1 2025-08-13 04:27:20.341 00:00:00.022 ICMP 31.102.0.1:0 -> 24.0.198.2:0.0 3 252 1 2025-08-13 04:24:12.003 00:05:01.853 TCP 30.156.0.1:179 -> 30.157.0.1:39897 12 738 1 2025-08-13 04:24:11.622 00:05:00.383 TCP 30.156.0.1:179 -> 30.152.0.1:44791 12 738 1 2025-08-13 04:25:12.003 00:05:01.263 TCP 30.156.0.1:37721 -> 30.155.0.1:179 12 738 1 2025-08-13 04:26:18.909 00:05:10.013 OSPF 30.0.8.1:0 -> 224.0.0.5:0 38 2696 1 2025-08-13 04:27:12.083 00:05:01.753 TCP 30.157.0.1:39897 -> 30.156.0.1:179 12 738 1 2025-08-13 04:32:20.364 00:00:00.024 ICMP 31.102.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-13 04:32:20.502 00:00:00.024 ICMP 31.102.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-08-13 04:32:20.478 00:00:00.023 ICMP 31.102.0.1:0 -> 26.0.198.2:0.0 3 252 1 2025-08-13 04:32:20.510 00:00:00.022 ICMP 31.102.0.1:0 -> 24.0.198.2:0.0 3 252 1 2025-08-13 04:32:20.426 00:00:00.021 ICMP 31.102.0.1:0 -> 23.0.198.2:0.0 3 252 1 2025-08-13 04:29:12.063 00:05:01.185 TCP 30.155.0.1:179 -> 30.156.0.1:37721 12 738 1 2025-08-13 04:29:11.603 00:05:00.422 TCP 30.152.0.1:44791 -> 30.156.0.1:179 12 738 1 2025-08-13 04:30:12.005 00:05:01.851 TCP 30.156.0.1:179 -> 30.157.0.1:39897 12 738 1 2025-08-13 04:30:11.625 00:05:00.381 TCP 30.156.0.1:179 -> 30.152.0.1:44791 12 738 1 2025-08-13 04:31:12.005 00:05:01.263 TCP 30.156.0.1:37721 -> 30.155.0.1:179 12 738 1 2025-08-13 04:31:38.922 00:05:10.005 OSPF 30.0.8.1:0 -> 224.0.0.5:0 43 3156 1 2025-08-13 04:33:12.087 00:05:01.749 TCP 30.157.0.1:39897 -> 30.156.0.1:179 12 738 1 2025-08-13 04:37:20.422 00:00:00.022 ICMP 31.102.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-13 04:37:20.397 00:00:00.024 ICMP 31.102.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-08-13 04:37:20.460 00:00:00.023 ICMP 31.102.0.1:0 -> 26.0.198.2:0.0 3 252 1 2025-08-13 04:37:20.568 00:00:00.022 ICMP 31.102.0.1:0 -> 24.0.198.2:0.0 3 252 1 2025-08-13 04:37:20.490 00:00:00.022 ICMP 31.102.0.1:0 -> 23.0.198.2:0.0 3 252 1 2025-08-13 04:35:12.066 00:05:01.183 TCP 30.155.0.1:179 -> 30.156.0.1:37721 12 738 1 2025-08-13 04:35:11.605 00:05:00.422 TCP 30.152.0.1:44791 -> 30.156.0.1:179 12 738 1 2025-08-13 04:36:12.006 00:05:01.850 TCP 30.156.0.1:179 -> 30.157.0.1:39897 12 738 1 2025-08-13 04:36:11.625 00:05:00.382 TCP 30.156.0.1:179 -> 30.152.0.1:44791 12 738 1 2025-08-13 04:36:58.927 00:05:10.011 OSPF 30.0.8.1:0 -> 224.0.0.5:0 38 2724 1 2025-08-13 04:37:12.006 00:05:01.270 TCP 30.156.0.1:37721 -> 30.155.0.1:179 12 738 1 2025-08-13 04:42:20.689 00:00:00.023 ICMP 31.102.0.1:0 -> 23.0.198.2:0.0 3 252 1 2025-08-13 04:42:20.526 00:00:00.029 ICMP 31.102.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-13 04:42:20.652 00:00:00.022 ICMP 31.102.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-08-13 04:42:20.573 00:00:00.021 ICMP 31.102.0.1:0 -> 26.0.198.2:0.0 3 252 1 2025-08-13 04:42:20.607 00:00:00.027 ICMP 31.102.0.1:0 -> 24.0.198.2:0.0 3 252 1 2025-08-13 04:39:12.086 00:05:01.750 TCP 30.157.0.1:39897 -> 30.156.0.1:179 12 738 1 2025-08-13 04:41:12.066 00:05:01.187 TCP 30.155.0.1:179 -> 30.156.0.1:37721 12 738 1 2025-08-13 04:41:11.605 00:05:00.423 TCP 30.152.0.1:44791 -> 30.156.0.1:179 12 738 1 2025-08-13 04:42:12.007 00:05:01.851 TCP 30.156.0.1:179 -> 30.157.0.1:39897 12 738 1 2025-08-13 04:42:11.627 00:05:00.381 TCP 30.156.0.1:179 -> 30.152.0.1:44791 12 738 1 2025-08-13 04:42:18.939 00:05:10.011 OSPF 30.0.8.1:0 -> 224.0.0.5:0 37 2584 1 2025-08-13 04:43:12.007 00:05:01.269 TCP 30.156.0.1:37721 -> 30.155.0.1:179 12 738 1 2025-08-13 04:47:20.639 00:00:00.025 ICMP 31.102.0.1:0 -> 23.0.198.2:0.0 3 252 1 2025-08-13 04:47:20.490 00:00:00.026 ICMP 31.102.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-13 04:47:20.725 00:00:00.023 ICMP 31.102.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-08-13 04:47:20.766 00:00:00.021 ICMP 31.102.0.1:0 -> 26.0.198.2:0.0 3 252 1 2025-08-13 04:47:20.573 00:00:00.020 ICMP 31.102.0.1:0 -> 24.0.198.2:0.0 3 252 1 2025-08-13 04:45:12.088 00:05:01.750 TCP 30.157.0.1:39897 -> 30.156.0.1:179 12 738 1 2025-08-13 04:47:12.069 00:05:01.189 TCP 30.155.0.1:179 -> 30.156.0.1:37721 12 738 1 2025-08-13 04:47:11.610 00:05:00.420 TCP 30.152.0.1:44791 -> 30.156.0.1:179 12 738 1 2025-08-13 04:47:38.950 00:05:10.003 OSPF 30.0.8.1:0 -> 224.0.0.5:0 35 2400 1 2025-08-13 04:48:12.009 00:05:01.851 TCP 30.156.0.1:179 -> 30.157.0.1:39897 12 738 1 2025-08-13 04:48:11.630 00:05:00.381 TCP 30.156.0.1:179 -> 30.152.0.1:44791 12 738 1 2025-08-13 04:52:20.768 00:00:00.022 ICMP 31.102.0.1:0 -> 23.0.198.2:0.0 3 252 1 2025-08-13 04:52:20.613 00:00:00.023 ICMP 31.102.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-13 04:52:20.732 00:00:00.022 ICMP 31.102.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-08-13 04:52:20.825 00:00:00.021 ICMP 31.102.0.1:0 -> 26.0.198.2:0.0 3 252 1 2025-08-13 04:52:20.901 00:00:00.022 ICMP 31.102.0.1:0 -> 24.0.198.2:0.0 3 252 1 2025-08-13 04:49:12.011 00:05:01.269 TCP 30.156.0.1:37721 -> 30.155.0.1:179 12 738 1 2025-08-13 04:51:12.089 00:05:01.752 TCP 30.157.0.1:39897 -> 30.156.0.1:179 12 738 1 2025-08-13 04:52:58.955 00:05:10.010 OSPF 30.0.8.1:0 -> 224.0.0.5:0 37 2672 1 2025-08-13 04:53:12.069 00:05:01.189 TCP 30.155.0.1:179 -> 30.156.0.1:37721 12 738 1 2025-08-13 04:53:11.613 00:05:00.417 TCP 30.152.0.1:44791 -> 30.156.0.1:179 12 738 1 2025-08-13 04:57:20.831 00:00:00.022 ICMP 31.102.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-13 04:57:20.915 00:00:00.022 ICMP 31.102.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-08-13 04:57:20.967 00:00:00.024 ICMP 31.102.0.1:0 -> 26.0.198.2:0.0 3 252 1 2025-08-13 04:57:20.842 00:00:00.023 ICMP 31.102.0.1:0 -> 24.0.198.2:0.0 3 252 1 2025-08-13 04:57:20.742 00:00:00.023 ICMP 31.102.0.1:0 -> 23.0.198.2:0.0 3 252 1 2025-08-13 04:54:12.011 00:05:01.850 TCP 30.156.0.1:179 -> 30.157.0.1:39897 12 738 1 2025-08-13 04:54:11.632 00:05:00.380 TCP 30.156.0.1:179 -> 30.152.0.1:44791 12 738 1 Summary: total flows: 136, total bytes: 89454, total packets: 1323, avg bps: 186, avg pps: 0, avg bpp: 67 Time window: 2025-08-13 03:55:11 - 2025-08-13 04:59:13 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0030s User: 0.0010s Wall: 0.0020s flows/second: 66467.6 Runtime: 0.0021s