Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-16 14:59:07.688 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 14:59:07.688 00:00:00.277 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 14:55:40.738 00:05:10.005 OSPF 28.0.7.1:0 -> 224.0.0.5:0 39 2688 1 2025-11-16 14:55:07.708 00:05:51.073 TCP 28.152.0.1:179 -> 28.155.0.1:36663 12 738 1 2025-11-16 14:59:07.748 00:01:00.197 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 15:00:07.687 00:01:00.003 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 15:00:07.687 00:01:00.279 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 15:01:07.751 00:00:00.196 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 15:02:07.750 00:01:00.199 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 15:02:07.690 00:01:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 15:02:07.690 00:01:00.279 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 15:03:24.552 00:00:00.023 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-16 15:04:07.691 00:00:00.276 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 15:04:07.691 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 14:59:58.801 00:05:08.891 TCP 28.155.0.1:36663 -> 28.152.0.1:179 12 738 1 2025-11-16 15:04:07.751 00:01:00.197 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 15:01:00.743 00:05:10.003 OSPF 28.0.7.1:0 -> 224.0.0.5:0 36 2504 1 2025-11-16 15:01:07.710 00:05:51.071 TCP 28.152.0.1:179 -> 28.155.0.1:36663 12 738 1 2025-11-16 15:05:07.691 00:01:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 15:05:07.691 00:01:00.276 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 15:06:07.752 00:00:00.196 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 15:07:07.753 00:01:00.196 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 15:07:07.692 00:01:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 15:07:07.692 00:01:00.276 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 15:08:24.843 00:00:00.022 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-16 15:09:07.693 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 15:09:07.693 00:00:00.275 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 15:09:07.753 00:01:00.195 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 15:05:58.801 00:05:08.892 TCP 28.155.0.1:36663 -> 28.152.0.1:179 12 738 1 2025-11-16 15:06:20.746 00:05:10.006 OSPF 28.0.7.1:0 -> 224.0.0.5:0 34 2444 1 2025-11-16 15:11:07.753 00:00:00.196 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 15:10:07.693 00:01:00.276 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 15:10:07.693 00:01:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 15:07:07.711 00:05:51.071 TCP 28.152.0.1:179 -> 28.155.0.1:36663 12 738 1 2025-11-16 15:12:07.755 00:00:00.195 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 15:13:07.754 00:00:00.196 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 15:12:07.694 00:01:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 15:12:07.694 00:01:00.276 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 15:13:24.893 00:00:00.023 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-16 15:14:07.694 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 15:14:07.694 00:00:00.275 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 15:14:07.754 00:01:00.195 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 15:11:40.753 00:05:10.009 OSPF 28.0.7.1:0 -> 224.0.0.5:0 39 2792 1 2025-11-16 15:15:07.694 00:01:00.003 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 15:15:07.694 00:01:00.275 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 15:16:07.757 00:00:00.193 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 15:11:58.802 00:05:08.892 TCP 28.155.0.1:36663 -> 28.152.0.1:179 12 738 1 2025-11-16 15:17:07.755 00:00:00.194 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 15:13:07.714 00:05:51.070 TCP 28.152.0.1:179 -> 28.155.0.1:36663 12 738 1 2025-11-16 15:17:07.695 00:01:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 15:17:07.695 00:01:00.274 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 15:18:07.755 00:00:00.194 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 15:18:24.922 00:00:00.023 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-16 15:19:07.695 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 15:19:07.695 00:00:00.281 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 15:19:07.755 00:01:00.195 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 15:20:07.697 00:00:00.274 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 15:20:07.697 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 15:21:07.695 00:00:00.275 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 15:21:07.695 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 15:21:07.755 00:00:00.195 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 15:17:00.761 00:05:10.012 OSPF 28.0.7.1:0 -> 224.0.0.5:0 40 3032 1 2025-11-16 15:17:58.807 00:05:08.888 TCP 28.155.0.1:36663 -> 28.152.0.1:179 12 738 1 2025-11-16 15:22:07.755 00:00:00.195 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 15:23:07.755 00:00:00.197 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 15:22:07.694 00:01:00.001 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 15:22:07.694 00:01:00.278 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 15:23:25.217 00:00:00.022 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-16 15:19:07.715 00:05:51.070 TCP 28.152.0.1:179 -> 28.155.0.1:36663 12 738 1 2025-11-16 15:24:07.696 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 15:24:07.696 00:00:00.280 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 15:24:07.756 00:01:00.198 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 15:25:07.696 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 15:25:07.696 00:00:00.278 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 15:26:07.758 00:00:00.198 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 15:26:07.698 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 15:26:07.698 00:00:00.278 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 15:22:20.773 00:05:00.299 OSPF 28.0.7.1:0 -> 224.0.0.5:0 40 2748 1 2025-11-16 15:27:07.757 00:00:00.199 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 15:28:07.757 00:00:00.199 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 15:27:07.698 00:01:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 15:27:07.698 00:01:00.279 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 15:23:58.804 00:05:08.893 TCP 28.155.0.1:36663 -> 28.152.0.1:179 12 738 1 2025-11-16 15:28:24.973 00:00:00.021 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-16 15:29:07.697 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 15:29:07.697 00:00:00.279 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 15:25:07.716 00:05:51.069 TCP 28.152.0.1:179 -> 28.155.0.1:36663 12 738 1 2025-11-16 15:29:07.758 00:01:00.199 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 15:30:07.698 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 15:30:07.698 00:00:00.278 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 15:31:07.759 00:00:00.198 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 15:31:07.698 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 15:31:07.698 00:00:00.279 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 15:27:30.791 00:05:10.011 OSPF 28.0.7.1:0 -> 224.0.0.5:0 37 2584 1 2025-11-16 15:32:07.765 00:00:00.191 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 15:33:07.759 00:00:00.199 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 15:32:07.705 00:00:59.993 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 15:32:07.705 00:01:00.272 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 15:33:25.468 00:00:00.022 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-16 15:29:58.806 00:05:08.893 TCP 28.155.0.1:36663 -> 28.152.0.1:179 12 738 1 2025-11-16 15:34:07.759 00:01:00.202 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 15:34:07.697 00:01:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 15:34:07.697 00:01:00.283 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 15:31:07.718 00:05:51.071 TCP 28.152.0.1:179 -> 28.155.0.1:36663 12 738 1 2025-11-16 15:36:07.698 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 15:36:07.698 00:00:00.279 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 15:32:50.801 00:05:10.009 OSPF 28.0.7.1:0 -> 224.0.0.5:0 34 2320 1 2025-11-16 15:36:07.758 00:01:00.199 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 15:38:07.759 00:00:00.199 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 15:37:07.699 00:01:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 15:37:07.699 00:01:00.279 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 15:38:25.335 00:00:00.021 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-16 15:39:07.758 00:00:00.199 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 15:40:07.759 00:00:00.199 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 15:39:07.699 00:01:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 15:39:07.699 00:01:00.279 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 15:35:58.809 00:05:08.890 TCP 28.155.0.1:36663 -> 28.152.0.1:179 12 738 1 2025-11-16 15:41:07.698 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 15:41:07.698 00:00:00.279 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 15:37:07.719 00:05:51.074 TCP 28.152.0.1:179 -> 28.155.0.1:36663 12 738 1 2025-11-16 15:41:07.760 00:01:00.200 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 15:38:10.810 00:05:10.010 OSPF 28.0.7.1:0 -> 224.0.0.5:0 36 2628 1 2025-11-16 15:42:07.698 00:01:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 15:42:07.698 00:01:00.280 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 15:43:07.759 00:00:00.200 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 15:43:26.056 00:00:00.022 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-16 15:44:07.760 00:00:00.199 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 15:45:07.759 00:00:00.199 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 15:44:07.699 00:01:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 15:44:07.699 00:01:00.279 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 15:46:07.700 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 15:46:07.700 00:00:00.280 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 15:41:58.813 00:05:08.887 TCP 28.155.0.1:36663 -> 28.152.0.1:179 12 738 1 2025-11-16 15:47:07.700 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 15:47:07.700 00:00:00.279 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 15:46:07.759 00:01:00.200 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 15:43:30.821 00:05:10.008 OSPF 28.0.7.1:0 -> 224.0.0.5:0 42 3108 1 2025-11-16 15:48:07.699 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 15:48:07.699 00:00:00.280 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 15:43:07.718 00:05:51.075 TCP 28.152.0.1:179 -> 28.155.0.1:36663 12 738 1 2025-11-16 15:48:07.760 00:00:00.199 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 15:48:25.551 00:00:00.022 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-16 15:49:07.761 00:00:00.200 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 15:50:07.761 00:00:00.201 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 15:49:07.702 00:01:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 15:49:07.702 00:01:00.281 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 15:51:07.703 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 15:51:07.703 00:00:00.280 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 15:52:07.701 00:00:00.281 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 15:52:07.701 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 15:51:07.761 00:01:00.201 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 15:47:58.813 00:05:08.890 TCP 28.155.0.1:36663 -> 28.152.0.1:179 12 738 1 2025-11-16 15:48:50.828 00:05:10.545 OSPF 28.0.7.1:0 -> 224.0.0.5:0 42 3012 1 2025-11-16 15:53:07.763 00:00:00.199 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 15:53:07.704 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 15:53:07.704 00:00:00.279 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 15:53:25.508 00:00:00.022 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-16 15:49:07.720 00:05:51.074 TCP 28.152.0.1:179 -> 28.155.0.1:36663 12 738 1 2025-11-16 15:54:07.763 00:00:00.199 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 15:55:07.764 00:00:00.199 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 15:54:07.703 00:01:00.279 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-16 15:54:07.703 00:01:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 142 1 2025-11-16 15:56:07.704 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 15:56:07.704 00:00:00.279 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 15:56:07.764 00:01:00.199 TCP 28.156.0.1:37457 -> 28.155.0.1:179 4 246 1 2025-11-16 15:57:07.705 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 15:57:07.705 00:00:00.278 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 15:58:07.765 00:00:00.198 TCP 28.156.0.1:37457 -> 28.155.0.1:179 2 123 1 2025-11-16 15:58:07.705 00:00:00.000 TCP 28.155.0.1:36643 -> 28.154.0.1:179 1 71 1 2025-11-16 15:58:07.705 00:00:00.278 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-16 15:53:58.813 00:05:08.891 TCP 28.155.0.1:36663 -> 28.152.0.1:179 12 738 1 2025-11-16 15:54:10.831 00:05:10.006 OSPF 28.0.7.1:0 -> 224.0.0.5:0 38 2664 1 2025-11-16 15:58:25.798 00:00:00.022 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 Summary: total flows: 173, total bytes: 69328, total packets: 1033, avg bps: 143, avg pps: 0, avg bpp: 67 Time window: 2025-11-16 14:55:07 - 2025-11-16 15:59:20 Total flows processed: 173, passed: 173, Blocks skipped: 0, Bytes read: 18056 Sys: 0.0029s User: 0.0020s Wall: 0.0022s flows/second: 78140.7 Runtime: 0.0022s