Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-25 13:54:48.053 00:05:09.585 TCP 4.157.0.1:179 -> 4.158.0.1:40299 12 738 1 2025-10-25 13:55:57.637 00:05:50.418 TCP 4.157.0.1:179 -> 4.158.0.1:40299 12 738 1 2025-10-25 13:57:48.055 00:05:02.351 TCP 4.157.0.1:37347 -> 4.156.0.1:179 12 738 1 2025-10-25 13:56:57.618 00:05:50.500 TCP 4.158.0.1:40299 -> 4.157.0.1:179 12 738 1 2025-10-25 13:57:48.075 00:05:03.046 TCP 4.153.0.1:38071 -> 4.157.0.1:179 12 738 1 2025-10-25 13:57:48.055 00:05:03.086 TCP 4.157.0.1:179 -> 4.153.0.1:38071 12 738 1 2025-10-25 13:57:47.842 00:05:10.011 OSPF 4.0.12.2:0 -> 224.0.0.5:0 38 2764 1 2025-10-25 13:57:47.842 00:05:10.011 OSPF 4.0.12.2:0 -> 224.0.0.5:0 38 2764 1 2025-10-25 14:02:47.944 00:00:00.023 ICMP 4.0.198.2:0 -> 4.107.0.1:8.0 3 252 1 2025-10-25 13:58:47.020 00:05:01.036 TCP 4.157.0.1:33999 -> 4.154.0.1:179 12 738 1 2025-10-25 14:02:47.945 00:00:00.022 ICMP 4.0.198.2:0 -> 4.107.0.1:8.0 3 252 1 2025-10-25 13:58:47.019 00:05:01.037 TCP 4.157.0.1:33999 -> 4.154.0.1:179 12 738 1 2025-10-25 13:59:48.074 00:05:03.046 TCP 4.153.0.1:38071 -> 4.157.0.1:179 12 738 1 2025-10-25 13:59:48.055 00:05:02.352 TCP 4.157.0.1:37347 -> 4.156.0.1:179 12 738 1 2025-10-25 13:59:48.055 00:05:03.086 TCP 4.157.0.1:179 -> 4.153.0.1:38071 12 738 1 2025-10-25 13:59:57.619 00:05:50.498 TCP 4.158.0.1:40299 -> 4.157.0.1:179 12 738 1 2025-10-25 14:00:48.056 00:05:09.584 TCP 4.157.0.1:179 -> 4.158.0.1:40299 12 738 1 2025-10-25 14:01:57.639 00:05:50.417 TCP 4.157.0.1:179 -> 4.158.0.1:40299 12 738 1 2025-10-25 14:03:07.852 00:05:10.004 OSPF 4.0.12.2:0 -> 224.0.0.5:0 35 2384 1 2025-10-25 14:03:07.854 00:05:10.004 OSPF 4.0.12.2:0 -> 224.0.0.5:0 35 2384 1 2025-10-25 14:02:57.619 00:05:50.499 TCP 4.158.0.1:40299 -> 4.157.0.1:179 12 738 1 2025-10-25 14:07:48.031 00:00:00.045 ICMP 4.0.198.2:0 -> 4.107.0.1:8.0 3 252 1 2025-10-25 14:03:48.055 00:05:02.356 TCP 4.157.0.1:37347 -> 4.156.0.1:179 12 738 1 2025-10-25 14:07:48.031 00:00:00.045 ICMP 4.0.198.2:0 -> 4.107.0.1:8.0 3 252 1 2025-10-25 14:03:48.076 00:05:03.047 TCP 4.153.0.1:38071 -> 4.157.0.1:179 12 738 1 2025-10-25 14:03:48.055 00:05:03.087 TCP 4.157.0.1:179 -> 4.153.0.1:38071 12 738 1 2025-10-25 14:04:47.023 00:05:01.036 TCP 4.157.0.1:33999 -> 4.154.0.1:179 12 738 1 2025-10-25 14:04:47.022 00:05:01.036 TCP 4.157.0.1:33999 -> 4.154.0.1:179 12 738 1 2025-10-25 14:05:48.077 00:05:03.046 TCP 4.153.0.1:38071 -> 4.157.0.1:179 12 738 1 2025-10-25 14:05:48.057 00:05:03.086 TCP 4.157.0.1:179 -> 4.153.0.1:38071 12 738 1 2025-10-25 14:05:48.056 00:05:02.355 TCP 4.157.0.1:37347 -> 4.156.0.1:179 12 738 1 2025-10-25 14:05:57.619 00:05:50.503 TCP 4.158.0.1:40299 -> 4.157.0.1:179 12 738 1 2025-10-25 14:06:48.056 00:05:09.585 TCP 4.157.0.1:179 -> 4.158.0.1:40299 12 738 1 2025-10-25 14:08:27.856 00:05:10.006 OSPF 4.0.12.2:0 -> 224.0.0.5:0 34 2336 1 2025-10-25 14:08:27.857 00:05:10.006 OSPF 4.0.12.2:0 -> 224.0.0.5:0 34 2336 1 2025-10-25 14:12:48.110 00:00:00.022 ICMP 4.0.198.2:0 -> 4.107.0.1:8.0 3 252 1 2025-10-25 14:07:57.640 00:05:50.441 TCP 4.157.0.1:179 -> 4.158.0.1:40299 12 738 1 2025-10-25 14:12:48.111 00:00:00.022 ICMP 4.0.198.2:0 -> 4.107.0.1:8.0 3 252 1 2025-10-25 14:09:48.058 00:05:02.353 TCP 4.157.0.1:37347 -> 4.156.0.1:179 12 738 1 2025-10-25 14:08:57.620 00:05:50.502 TCP 4.158.0.1:40299 -> 4.157.0.1:179 12 738 1 2025-10-25 14:09:48.059 00:05:03.085 TCP 4.157.0.1:179 -> 4.153.0.1:38071 12 738 1 2025-10-25 14:09:48.078 00:05:03.045 TCP 4.153.0.1:38071 -> 4.157.0.1:179 12 738 1 2025-10-25 14:10:47.025 00:05:01.037 TCP 4.157.0.1:33999 -> 4.154.0.1:179 12 738 1 2025-10-25 14:10:47.024 00:05:01.039 TCP 4.157.0.1:33999 -> 4.154.0.1:179 12 738 1 2025-10-25 14:11:48.061 00:05:03.082 TCP 4.157.0.1:179 -> 4.153.0.1:38071 12 738 1 2025-10-25 14:11:48.082 00:05:03.041 TCP 4.153.0.1:38071 -> 4.157.0.1:179 12 738 1 2025-10-25 14:11:48.062 00:05:02.349 TCP 4.157.0.1:37347 -> 4.156.0.1:179 12 738 1 2025-10-25 14:11:57.621 00:05:50.502 TCP 4.158.0.1:40299 -> 4.157.0.1:179 12 738 1 2025-10-25 14:12:48.061 00:05:09.580 TCP 4.157.0.1:179 -> 4.158.0.1:40299 12 738 1 2025-10-25 14:17:48.363 00:00:00.023 ICMP 4.0.198.2:0 -> 4.107.0.1:8.0 3 252 1 2025-10-25 14:17:48.364 00:00:00.023 ICMP 4.0.198.2:0 -> 4.107.0.1:8.0 3 252 1 2025-10-25 14:13:47.863 00:05:10.332 OSPF 4.0.12.2:0 -> 224.0.0.5:0 36 2464 1 2025-10-25 14:13:47.864 00:05:10.332 OSPF 4.0.12.2:0 -> 224.0.0.5:0 36 2464 1 2025-10-25 14:13:57.641 00:05:50.422 TCP 4.157.0.1:179 -> 4.158.0.1:40299 12 738 1 2025-10-25 14:14:57.621 00:05:50.502 TCP 4.158.0.1:40299 -> 4.157.0.1:179 12 738 1 2025-10-25 14:15:48.063 00:05:02.350 TCP 4.157.0.1:37347 -> 4.156.0.1:179 12 738 1 2025-10-25 14:15:48.082 00:05:03.043 TCP 4.153.0.1:38071 -> 4.157.0.1:179 12 738 1 2025-10-25 14:15:48.062 00:05:03.083 TCP 4.157.0.1:179 -> 4.153.0.1:38071 12 738 1 2025-10-25 14:16:47.025 00:05:01.038 TCP 4.157.0.1:33999 -> 4.154.0.1:179 12 738 1 2025-10-25 14:16:47.025 00:05:01.039 TCP 4.157.0.1:33999 -> 4.154.0.1:179 12 738 1 2025-10-25 14:17:48.063 00:05:03.082 TCP 4.157.0.1:179 -> 4.153.0.1:38071 12 738 1 2025-10-25 14:17:48.084 00:05:03.042 TCP 4.153.0.1:38071 -> 4.157.0.1:179 12 738 1 2025-10-25 14:17:48.063 00:05:02.352 TCP 4.157.0.1:37347 -> 4.156.0.1:179 12 738 1 2025-10-25 14:22:48.588 00:00:00.021 ICMP 4.0.198.2:0 -> 4.107.0.1:8.0 3 252 1 2025-10-25 14:17:57.622 00:05:50.502 TCP 4.158.0.1:40299 -> 4.157.0.1:179 12 738 1 2025-10-25 14:22:48.589 00:00:00.021 ICMP 4.0.198.2:0 -> 4.107.0.1:8.0 3 252 1 2025-10-25 14:18:48.063 00:05:09.581 TCP 4.157.0.1:179 -> 4.158.0.1:40299 12 738 1 2025-10-25 14:19:07.871 00:05:10.023 OSPF 4.0.12.2:0 -> 224.0.0.5:0 39 2828 1 2025-10-25 14:19:07.869 00:05:10.023 OSPF 4.0.12.2:0 -> 224.0.0.5:0 39 2828 1 2025-10-25 14:19:57.643 00:05:50.422 TCP 4.157.0.1:179 -> 4.158.0.1:40299 12 738 1 2025-10-25 14:21:48.063 00:05:02.353 TCP 4.157.0.1:37347 -> 4.156.0.1:179 12 738 1 2025-10-25 14:20:57.622 00:05:50.504 TCP 4.158.0.1:40299 -> 4.157.0.1:179 12 738 1 2025-10-25 14:21:48.083 00:05:03.043 TCP 4.153.0.1:38071 -> 4.157.0.1:179 12 738 1 2025-10-25 14:21:48.063 00:05:03.083 TCP 4.157.0.1:179 -> 4.153.0.1:38071 12 738 1 2025-10-25 14:22:47.024 00:05:01.043 TCP 4.157.0.1:33999 -> 4.154.0.1:179 12 738 1 2025-10-25 14:22:47.024 00:05:01.043 TCP 4.157.0.1:33999 -> 4.154.0.1:179 12 738 1 2025-10-25 14:23:48.063 00:05:03.082 TCP 4.157.0.1:179 -> 4.153.0.1:38071 12 738 1 2025-10-25 14:27:48.475 00:00:00.022 ICMP 4.0.198.2:0 -> 4.107.0.1:8.0 3 252 1 2025-10-25 14:23:48.084 00:05:03.042 TCP 4.153.0.1:38071 -> 4.157.0.1:179 12 738 1 2025-10-25 14:23:48.064 00:05:02.353 TCP 4.157.0.1:37347 -> 4.156.0.1:179 12 738 1 2025-10-25 14:27:48.475 00:00:00.022 ICMP 4.0.198.2:0 -> 4.107.0.1:8.0 3 252 1 2025-10-25 14:24:27.874 00:05:10.003 OSPF 4.0.12.2:0 -> 224.0.0.5:0 39 2868 1 2025-10-25 14:24:27.873 00:05:10.004 OSPF 4.0.12.2:0 -> 224.0.0.5:0 39 2868 1 2025-10-25 14:23:57.624 00:05:50.505 TCP 4.158.0.1:40299 -> 4.157.0.1:179 12 738 1 2025-10-25 14:24:48.065 00:05:09.585 TCP 4.157.0.1:179 -> 4.158.0.1:40299 12 738 1 2025-10-25 14:25:57.647 00:05:50.421 TCP 4.157.0.1:179 -> 4.158.0.1:40299 12 738 1 2025-10-25 14:27:48.067 00:05:02.350 TCP 4.157.0.1:37347 -> 4.156.0.1:179 12 738 1 2025-10-25 14:26:57.627 00:05:50.503 TCP 4.158.0.1:40299 -> 4.157.0.1:179 12 738 1 2025-10-25 14:27:48.087 00:05:03.040 TCP 4.153.0.1:38071 -> 4.157.0.1:179 12 738 1 2025-10-25 14:27:48.069 00:05:03.080 TCP 4.157.0.1:179 -> 4.153.0.1:38071 12 738 1 2025-10-25 14:28:47.026 00:05:01.042 TCP 4.157.0.1:33999 -> 4.154.0.1:179 12 738 1 2025-10-25 14:32:48.991 00:00:00.024 ICMP 4.0.198.2:0 -> 4.107.0.1:8.0 3 252 1 2025-10-25 14:32:48.991 00:00:00.024 ICMP 4.0.198.2:0 -> 4.107.0.1:8.0 3 252 1 2025-10-25 14:28:47.027 00:05:01.041 TCP 4.157.0.1:33999 -> 4.154.0.1:179 12 738 1 2025-10-25 14:29:48.068 00:05:03.090 TCP 4.157.0.1:179 -> 4.153.0.1:38071 12 738 1 2025-10-25 14:29:48.089 00:05:03.048 TCP 4.153.0.1:38071 -> 4.157.0.1:179 12 738 1 2025-10-25 14:29:48.067 00:05:02.352 TCP 4.157.0.1:37347 -> 4.156.0.1:179 12 738 1 2025-10-25 14:29:47.877 00:05:10.003 OSPF 4.0.12.2:0 -> 224.0.0.5:0 34 2320 1 2025-10-25 14:29:47.878 00:05:10.002 OSPF 4.0.12.2:0 -> 224.0.0.5:0 34 2320 1 2025-10-25 14:29:57.629 00:05:50.500 TCP 4.158.0.1:40299 -> 4.157.0.1:179 12 738 1 2025-10-25 14:30:48.067 00:05:09.586 TCP 4.157.0.1:179 -> 4.158.0.1:40299 12 738 1 2025-10-25 14:31:57.652 00:05:50.419 TCP 4.157.0.1:179 -> 4.158.0.1:40299 12 738 1 2025-10-25 14:33:48.069 00:05:02.352 TCP 4.157.0.1:37347 -> 4.156.0.1:179 12 738 1 2025-10-25 14:32:57.633 00:05:50.496 TCP 4.158.0.1:40299 -> 4.157.0.1:179 12 738 1 2025-10-25 14:37:48.860 00:00:00.023 ICMP 4.0.198.2:0 -> 4.107.0.1:8.0 3 252 1 2025-10-25 14:37:48.860 00:00:00.023 ICMP 4.0.198.2:0 -> 4.107.0.1:8.0 3 252 1 2025-10-25 14:33:48.088 00:05:03.047 TCP 4.153.0.1:38071 -> 4.157.0.1:179 12 738 1 2025-10-25 14:33:48.068 00:05:03.087 TCP 4.157.0.1:179 -> 4.153.0.1:38071 12 738 1 2025-10-25 14:34:47.027 00:05:01.042 TCP 4.157.0.1:33999 -> 4.154.0.1:179 12 738 1 2025-10-25 14:34:47.027 00:05:01.042 TCP 4.157.0.1:33999 -> 4.154.0.1:179 12 738 1 2025-10-25 14:35:07.879 00:05:10.006 OSPF 4.0.12.2:0 -> 224.0.0.5:0 35 2384 1 2025-10-25 14:35:07.880 00:05:10.006 OSPF 4.0.12.2:0 -> 224.0.0.5:0 35 2384 1 2025-10-25 14:35:48.069 00:05:03.089 TCP 4.157.0.1:179 -> 4.153.0.1:38071 12 738 1 2025-10-25 14:35:48.069 00:05:02.352 TCP 4.157.0.1:37347 -> 4.156.0.1:179 12 738 1 2025-10-25 14:35:48.090 00:05:03.048 TCP 4.153.0.1:38071 -> 4.157.0.1:179 12 738 1 2025-10-25 14:35:57.635 00:05:50.496 TCP 4.158.0.1:40299 -> 4.157.0.1:179 12 738 1 2025-10-25 14:36:48.068 00:05:09.586 TCP 4.157.0.1:179 -> 4.158.0.1:40299 12 738 1 2025-10-25 14:37:57.653 00:05:50.420 TCP 4.157.0.1:179 -> 4.158.0.1:40299 12 738 1 2025-10-25 14:42:48.591 00:00:00.022 ICMP 4.0.198.2:0 -> 4.107.0.1:8.0 3 252 1 2025-10-25 14:42:48.591 00:00:00.021 ICMP 4.0.198.2:0 -> 4.107.0.1:8.0 3 252 1 2025-10-25 14:39:48.070 00:05:02.353 TCP 4.157.0.1:37347 -> 4.156.0.1:179 12 738 1 2025-10-25 14:38:57.635 00:05:50.500 TCP 4.158.0.1:40299 -> 4.157.0.1:179 12 738 1 2025-10-25 14:39:48.089 00:05:03.049 TCP 4.153.0.1:38071 -> 4.157.0.1:179 12 738 1 2025-10-25 14:39:48.069 00:05:03.088 TCP 4.157.0.1:179 -> 4.153.0.1:38071 12 738 1 2025-10-25 14:40:27.885 00:05:10.003 OSPF 4.0.12.2:0 -> 224.0.0.5:0 35 2400 1 2025-10-25 14:40:27.886 00:05:10.003 OSPF 4.0.12.2:0 -> 224.0.0.5:0 35 2400 1 2025-10-25 14:40:47.028 00:05:01.046 TCP 4.157.0.1:33999 -> 4.154.0.1:179 12 738 1 2025-10-25 14:40:47.028 00:05:01.045 TCP 4.157.0.1:33999 -> 4.154.0.1:179 12 738 1 2025-10-25 14:41:48.091 00:05:03.048 TCP 4.153.0.1:38071 -> 4.157.0.1:179 12 738 1 2025-10-25 14:41:48.069 00:05:02.356 TCP 4.157.0.1:37347 -> 4.156.0.1:179 12 738 1 2025-10-25 14:41:48.069 00:05:03.089 TCP 4.157.0.1:179 -> 4.153.0.1:38071 12 738 1 2025-10-25 14:41:57.634 00:05:50.500 TCP 4.158.0.1:40299 -> 4.157.0.1:179 12 738 1 2025-10-25 14:42:48.070 00:05:09.586 TCP 4.157.0.1:179 -> 4.158.0.1:40299 12 738 1 2025-10-25 14:47:48.979 00:00:00.026 ICMP 4.0.198.2:0 -> 4.107.0.1:8.0 3 252 1 2025-10-25 14:47:48.979 00:00:00.026 ICMP 4.0.198.2:0 -> 4.107.0.1:8.0 3 252 1 2025-10-25 14:43:57.655 00:05:50.420 TCP 4.157.0.1:179 -> 4.158.0.1:40299 12 738 1 2025-10-25 14:45:48.074 00:05:02.356 TCP 4.157.0.1:37347 -> 4.156.0.1:179 12 738 1 2025-10-25 14:44:57.635 00:05:50.500 TCP 4.158.0.1:40299 -> 4.157.0.1:179 12 738 1 2025-10-25 14:45:48.074 00:05:03.085 TCP 4.157.0.1:179 -> 4.153.0.1:38071 12 738 1 2025-10-25 14:45:48.094 00:05:03.045 TCP 4.153.0.1:38071 -> 4.157.0.1:179 12 738 1 2025-10-25 14:45:47.890 00:05:10.002 OSPF 4.0.12.2:0 -> 224.0.0.5:0 39 2896 1 2025-10-25 14:45:47.890 00:05:10.001 OSPF 4.0.12.2:0 -> 224.0.0.5:0 39 2896 1 2025-10-25 14:46:47.032 00:05:01.044 TCP 4.157.0.1:33999 -> 4.154.0.1:179 12 738 1 2025-10-25 14:46:47.030 00:05:01.044 TCP 4.157.0.1:33999 -> 4.154.0.1:179 12 738 1 2025-10-25 14:47:48.074 00:05:03.085 TCP 4.157.0.1:179 -> 4.153.0.1:38071 12 738 1 2025-10-25 14:47:48.094 00:05:03.045 TCP 4.153.0.1:38071 -> 4.157.0.1:179 12 738 1 2025-10-25 14:47:48.075 00:05:02.354 TCP 4.157.0.1:37347 -> 4.156.0.1:179 12 738 1 2025-10-25 14:52:49.137 00:00:00.022 ICMP 4.0.198.2:0 -> 4.107.0.1:8.0 3 252 1 2025-10-25 14:47:57.636 00:05:50.500 TCP 4.158.0.1:40299 -> 4.157.0.1:179 12 738 1 2025-10-25 14:52:49.136 00:00:00.023 ICMP 4.0.198.2:0 -> 4.107.0.1:8.0 3 252 1 2025-10-25 14:48:48.074 00:05:09.584 TCP 4.157.0.1:179 -> 4.158.0.1:40299 12 738 1 2025-10-25 14:49:57.656 00:05:50.421 TCP 4.157.0.1:179 -> 4.158.0.1:40299 12 738 1 2025-10-25 14:51:07.890 00:05:10.005 OSPF 4.0.12.2:0 -> 224.0.0.5:0 37 2724 1 2025-10-25 14:51:07.890 00:05:10.005 OSPF 4.0.12.2:0 -> 224.0.0.5:0 37 2724 1 2025-10-25 14:51:48.075 00:05:02.354 TCP 4.157.0.1:37347 -> 4.156.0.1:179 12 738 1 2025-10-25 14:50:57.636 00:05:50.501 TCP 4.158.0.1:40299 -> 4.157.0.1:179 12 738 1 2025-10-25 14:51:48.094 00:05:03.046 TCP 4.153.0.1:38071 -> 4.157.0.1:179 12 738 1 2025-10-25 14:51:48.074 00:05:03.086 TCP 4.157.0.1:179 -> 4.153.0.1:38071 12 738 1 2025-10-25 14:52:47.033 00:05:01.045 TCP 4.157.0.1:33999 -> 4.154.0.1:179 12 738 1 2025-10-25 14:52:47.035 00:05:01.045 TCP 4.157.0.1:33999 -> 4.154.0.1:179 12 738 1 2025-10-25 14:57:49.048 00:00:00.041 ICMP 4.0.198.2:0 -> 4.107.0.1:8.0 3 252 1 2025-10-25 14:53:48.097 00:05:03.044 TCP 4.153.0.1:38071 -> 4.157.0.1:179 12 738 1 2025-10-25 14:53:48.076 00:05:02.359 TCP 4.157.0.1:37347 -> 4.156.0.1:179 12 738 1 2025-10-25 14:57:49.048 00:00:00.041 ICMP 4.0.198.2:0 -> 4.107.0.1:8.0 3 252 1 2025-10-25 14:53:48.077 00:05:03.085 TCP 4.157.0.1:179 -> 4.153.0.1:38071 12 738 1 2025-10-25 14:53:57.638 00:05:50.501 TCP 4.158.0.1:40299 -> 4.157.0.1:179 12 738 1 Summary: total flows: 166, total bytes: 151344, total packets: 2314, avg bps: 310, avg pps: 0, avg bpp: 65 Time window: 2025-10-25 13:54:48 - 2025-10-25 14:59:48 Total flows processed: 166, passed: 166, Blocks skipped: 0, Bytes read: 17328 Sys: 0.0011s User: 0.0034s Wall: 0.0027s flows/second: 60718.1 Runtime: 0.0028s