Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-16 13:58:07.730 00:01:00.172 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 13:58:07.669 00:00:59.987 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 13:58:07.669 00:01:00.252 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 13:55:07.676 00:05:51.091 TCP 28.152.0.1:179 -> 28.155.0.1:36663 12 738 1 2025-11-16 14:00:07.657 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 14:00:07.657 00:00:00.265 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 14:00:07.718 00:01:00.185 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 13:57:10.672 00:05:10.008 OSPF 28.0.7.1:0 -> 224.0.0.5:0 41 2832 1 2025-11-16 14:02:07.717 00:00:00.184 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 14:01:07.656 00:01:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 14:01:07.656 00:01:00.265 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 14:03:07.717 00:00:00.185 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 14:03:23.466 00:00:00.022 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-16 14:04:07.718 00:00:00.184 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 14:03:07.657 00:01:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 14:03:07.657 00:01:00.264 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 13:59:58.786 00:05:08.871 TCP 28.155.0.1:36663 -> 28.152.0.1:179 12 738 1 2025-11-16 14:05:07.658 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 14:05:07.658 00:00:00.273 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 14:01:07.677 00:05:51.093 TCP 28.152.0.1:179 -> 28.155.0.1:36663 12 738 1 2025-11-16 14:05:07.719 00:01:00.193 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 14:02:30.681 00:05:10.006 OSPF 28.0.7.1:0 -> 224.0.0.5:0 38 2648 1 2025-11-16 14:07:07.722 00:00:00.189 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 14:06:07.657 00:01:00.003 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 14:06:07.657 00:01:00.273 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 14:08:07.719 00:00:00.192 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 14:08:23.709 00:00:00.023 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-16 14:09:07.717 00:00:00.193 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 14:08:07.659 00:01:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 14:08:07.659 00:01:00.273 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 14:10:07.658 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 14:10:07.658 00:00:00.273 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 14:05:58.787 00:05:08.870 TCP 28.155.0.1:36663 -> 28.152.0.1:179 12 738 1 2025-11-16 14:10:07.719 00:01:00.192 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 14:11:07.660 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 14:11:07.660 00:00:00.272 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 14:07:50.687 00:05:10.008 OSPF 28.0.7.1:0 -> 224.0.0.5:0 32 2176 1 2025-11-16 14:07:07.681 00:05:51.087 TCP 28.152.0.1:179 -> 28.155.0.1:36663 12 738 1 2025-11-16 14:12:07.723 00:00:00.189 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 14:12:07.659 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 14:12:07.659 00:00:00.273 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 14:13:07.718 00:00:00.193 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 14:13:23.665 00:00:00.022 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-16 14:14:07.718 00:00:00.194 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 14:13:07.659 00:01:00.001 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 14:13:07.659 00:01:00.275 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 14:15:07.658 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 14:15:07.658 00:00:00.273 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 14:15:07.719 00:01:00.193 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 14:16:07.659 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 14:16:07.659 00:00:00.272 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 14:11:58.789 00:05:08.883 TCP 28.155.0.1:36663 -> 28.152.0.1:179 12 738 1 2025-11-16 14:17:07.732 00:00:00.180 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 14:17:07.672 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 14:17:07.672 00:00:00.260 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 14:13:10.694 00:05:10.006 OSPF 28.0.7.1:0 -> 224.0.0.5:0 37 2708 1 2025-11-16 14:13:07.679 00:05:51.092 TCP 28.152.0.1:179 -> 28.155.0.1:36663 12 738 1 2025-11-16 14:18:07.735 00:00:00.179 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 14:18:23.675 00:00:00.022 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-16 14:18:07.674 00:01:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 4 246 1 2025-11-16 14:18:07.674 00:01:00.259 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 14:19:07.734 00:00:00.179 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 14:20:07.675 00:00:00.258 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 14:20:07.675 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 14:21:07.674 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 14:21:07.674 00:00:00.265 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 14:20:07.735 00:01:00.185 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 14:22:07.737 00:00:00.182 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 14:22:07.677 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 14:22:07.677 00:00:00.263 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 14:17:58.790 00:05:08.888 TCP 28.155.0.1:36663 -> 28.152.0.1:179 12 738 1 2025-11-16 14:18:22.056 00:05:08.648 OSPF 28.0.7.1:0 -> 224.0.0.5:0 40 2960 1 2025-11-16 14:23:07.739 00:00:00.181 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 14:23:23.731 00:00:00.022 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-16 14:19:07.693 00:05:51.079 TCP 28.152.0.1:179 -> 28.155.0.1:36663 12 738 1 2025-11-16 14:23:07.679 00:01:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 14:23:07.679 00:01:00.262 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 14:24:07.739 00:00:00.182 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 14:25:07.739 00:01:00.182 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 14:25:07.678 00:01:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 14:25:07.678 00:01:00.263 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 14:27:07.679 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 14:27:07.679 00:00:00.262 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 14:23:40.704 00:05:10.015 OSPF 28.0.7.1:0 -> 224.0.0.5:0 44 3140 1 2025-11-16 14:23:58.791 00:05:08.888 TCP 28.155.0.1:36663 -> 28.152.0.1:179 12 738 1 2025-11-16 14:27:07.739 00:01:00.182 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 14:28:23.903 00:00:00.022 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-16 14:28:07.680 00:01:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 14:28:07.680 00:01:00.263 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 14:29:07.740 00:00:00.182 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 14:25:07.700 00:05:51.077 TCP 28.152.0.1:179 -> 28.155.0.1:36663 12 738 1 2025-11-16 14:30:07.741 00:01:00.182 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 14:30:07.679 00:01:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 14:30:07.679 00:01:00.263 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 14:32:07.679 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 14:32:07.679 00:00:00.264 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 14:32:07.740 00:01:00.184 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 14:29:00.709 00:05:10.011 OSPF 28.0.7.1:0 -> 224.0.0.5:0 38 2664 1 2025-11-16 14:33:23.955 00:00:00.022 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-16 14:33:07.679 00:01:00.001 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 14:33:07.679 00:01:00.264 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 14:34:07.740 00:00:00.184 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 14:29:58.793 00:05:08.887 TCP 28.155.0.1:36663 -> 28.152.0.1:179 12 738 1 2025-11-16 14:35:07.740 00:00:00.184 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 14:31:07.699 00:05:51.075 TCP 28.152.0.1:179 -> 28.155.0.1:36663 12 738 1 2025-11-16 14:36:07.741 00:00:00.183 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 14:35:07.681 00:01:00.001 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 14:35:07.681 00:01:00.265 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 14:37:07.682 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 14:37:07.682 00:00:00.264 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 14:37:07.740 00:01:00.185 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 14:38:24.049 00:00:00.022 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-16 14:34:20.720 00:05:10.004 OSPF 28.0.7.1:0 -> 224.0.0.5:0 34 2320 1 2025-11-16 14:38:07.681 00:01:00.003 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 14:38:07.681 00:01:00.266 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 14:39:07.744 00:00:00.183 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 14:35:58.795 00:05:08.888 TCP 28.155.0.1:36663 -> 28.152.0.1:179 12 738 1 2025-11-16 14:40:07.743 00:01:00.184 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 14:40:07.683 00:01:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 14:40:07.683 00:01:00.264 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 14:37:07.701 00:05:51.076 TCP 28.152.0.1:179 -> 28.155.0.1:36663 12 738 1 2025-11-16 14:42:07.682 00:00:00.266 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 14:42:07.682 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 14:43:07.684 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 14:43:07.684 00:00:00.266 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 14:42:07.743 00:01:00.186 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 14:43:24.088 00:00:00.022 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-16 14:39:40.725 00:05:10.007 OSPF 28.0.7.1:0 -> 224.0.0.5:0 34 2444 1 2025-11-16 14:44:07.685 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 14:44:07.685 00:00:00.265 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 14:44:07.746 00:00:00.185 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 14:45:07.744 00:00:00.185 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 14:46:07.744 00:00:00.185 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 14:45:07.685 00:01:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 14:45:07.685 00:01:00.265 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 14:41:58.797 00:05:08.888 TCP 28.155.0.1:36663 -> 28.152.0.1:179 12 738 1 2025-11-16 14:47:07.685 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 14:47:07.685 00:00:00.265 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 14:43:07.703 00:05:51.074 TCP 28.152.0.1:179 -> 28.155.0.1:36663 12 738 1 2025-11-16 14:48:07.685 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 14:48:07.685 00:00:00.265 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 14:47:07.744 00:01:00.186 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 14:48:24.224 00:00:00.022 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-16 14:49:07.748 00:00:00.182 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 14:49:07.685 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 14:49:07.685 00:00:00.265 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 14:45:00.732 00:05:10.002 OSPF 28.0.7.1:0 -> 224.0.0.5:0 43 3212 1 2025-11-16 14:50:07.746 00:00:00.185 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 14:51:07.745 00:00:00.186 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 14:50:07.685 00:01:00.267 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 14:50:07.685 00:01:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 14:52:07.686 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 14:52:07.686 00:00:00.265 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 14:47:58.797 00:05:08.889 TCP 28.155.0.1:36663 -> 28.152.0.1:179 12 738 1 2025-11-16 14:53:07.687 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 14:53:07.687 00:00:00.265 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 14:52:07.748 00:01:00.185 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 14:53:24.323 00:00:00.022 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-16 14:49:07.705 00:05:51.075 TCP 28.152.0.1:179 -> 28.155.0.1:36663 12 738 1 2025-11-16 14:54:07.688 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 14:54:07.688 00:00:00.265 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 14:54:07.747 00:00:00.185 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 14:50:20.734 00:05:10.947 OSPF 28.0.7.1:0 -> 224.0.0.5:0 41 2968 1 2025-11-16 14:55:07.748 00:00:00.185 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 14:55:07.688 00:01:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 14:55:07.688 00:01:00.266 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 14:56:07.749 00:00:00.185 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 14:57:07.688 00:01:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 14:57:07.688 00:01:00.277 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 14:57:07.747 00:01:00.197 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 14:53:58.800 00:05:08.888 TCP 28.155.0.1:36663 -> 28.152.0.1:179 12 738 1 2025-11-16 14:58:24.560 00:00:00.023 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 Summary: total flows: 172, total bytes: 67297, total packets: 1005, avg bps: 140, avg pps: 0, avg bpp: 66 Time window: 2025-11-16 13:55:07 - 2025-11-16 14:59:07 Total flows processed: 172, passed: 172, Blocks skipped: 0, Bytes read: 17952 Sys: 0.0038s User: 0.0019s Wall: 0.0022s flows/second: 76445.9 Runtime: 0.0023s