Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-26 09:59:12.742 00:00:00.212 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 09:59:12.824 00:00:00.130 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 09:55:03.979 00:05:08.980 TCP 28.155.0.1:36663 -> 28.152.0.1:179 12 738 1 2025-11-26 09:56:50.104 00:05:10.006 OSPF 28.0.7.1:0 -> 224.0.0.5:0 33 2256 1 2025-11-26 10:00:12.743 00:01:00.215 TCP 28.155.0.1:36643 -> 28.154.0.1:179 4 246 1 2025-11-26 10:00:12.825 00:01:00.133 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-26 10:02:12.824 00:00:00.133 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:02:12.744 00:01:00.214 TCP 28.155.0.1:36643 -> 28.154.0.1:179 4 246 1 2025-11-26 10:03:12.825 00:00:00.133 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:03:09.006 00:00:00.022 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-26 09:59:03.960 00:05:09.018 TCP 28.152.0.1:179 -> 28.155.0.1:36663 12 738 1 2025-11-26 09:59:12.804 00:05:00.215 TCP 28.156.0.1:37457 -> 28.155.0.1:179 12 738 1 2025-11-26 10:04:12.745 00:00:00.214 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:04:12.826 00:00:00.133 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:05:12.744 00:00:00.214 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:05:12.826 00:00:00.132 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:01:03.981 00:05:08.978 TCP 28.155.0.1:36663 -> 28.152.0.1:179 12 738 1 2025-11-26 10:06:12.746 00:00:00.214 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:06:12.827 00:00:00.133 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:02:10.109 00:05:01.302 OSPF 28.0.7.1:0 -> 224.0.0.5:0 39 2940 1 2025-11-26 10:07:12.828 00:00:00.134 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:08:09.344 00:00:00.023 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-26 10:07:12.747 00:01:00.215 TCP 28.155.0.1:36643 -> 28.154.0.1:179 4 246 1 2025-11-26 10:08:12.828 00:00:00.134 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:09:12.747 00:00:00.214 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:09:12.830 00:00:00.131 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:05:12.806 00:05:00.215 TCP 28.156.0.1:37457 -> 28.155.0.1:179 12 738 1 2025-11-26 10:05:03.962 00:05:09.019 TCP 28.152.0.1:179 -> 28.155.0.1:36663 12 738 1 2025-11-26 10:10:12.748 00:00:00.213 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:10:12.829 00:00:00.132 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:11:12.749 00:00:00.216 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:11:12.830 00:00:00.135 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:07:03.983 00:05:08.983 TCP 28.155.0.1:36663 -> 28.152.0.1:179 12 738 1 2025-11-26 10:07:20.114 00:05:10.003 OSPF 28.0.7.1:0 -> 224.0.0.5:0 40 2808 1 2025-11-26 10:12:12.752 00:01:00.214 TCP 28.155.0.1:36643 -> 28.154.0.1:179 4 246 1 2025-11-26 10:12:12.831 00:01:00.135 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-26 10:13:09.538 00:00:00.023 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-26 10:14:12.752 00:00:00.213 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:14:12.831 00:00:00.134 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:15:12.751 00:00:00.214 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:15:12.830 00:00:00.135 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:11:12.811 00:05:00.216 TCP 28.156.0.1:37457 -> 28.155.0.1:179 12 738 1 2025-11-26 10:11:03.964 00:05:09.023 TCP 28.152.0.1:179 -> 28.155.0.1:36663 12 738 1 2025-11-26 10:16:12.752 00:00:00.214 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:16:12.831 00:00:00.135 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:12:40.118 00:05:10.005 OSPF 28.0.7.1:0 -> 224.0.0.5:0 42 2976 1 2025-11-26 10:13:03.983 00:05:08.983 TCP 28.155.0.1:36663 -> 28.152.0.1:179 12 738 1 2025-11-26 10:17:12.753 00:01:00.214 TCP 28.155.0.1:36643 -> 28.154.0.1:179 4 246 1 2025-11-26 10:17:12.832 00:01:00.135 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-26 10:18:09.363 00:00:00.021 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-26 10:19:12.754 00:00:00.214 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:19:12.832 00:00:00.136 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:20:12.755 00:00:00.213 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:20:12.832 00:00:00.136 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:21:12.755 00:00:00.215 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:21:12.832 00:00:00.138 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:17:12.812 00:05:00.219 TCP 28.156.0.1:37457 -> 28.155.0.1:179 12 738 1 2025-11-26 10:17:03.966 00:05:09.025 TCP 28.152.0.1:179 -> 28.155.0.1:36663 12 738 1 2025-11-26 10:18:00.123 00:05:10.004 OSPF 28.0.7.1:0 -> 224.0.0.5:0 36 2620 1 2025-11-26 10:23:09.588 00:00:00.021 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-26 10:22:12.754 00:01:00.215 TCP 28.155.0.1:36643 -> 28.154.0.1:179 4 246 1 2025-11-26 10:22:12.832 00:01:00.137 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-26 10:19:03.988 00:05:08.981 TCP 28.155.0.1:36663 -> 28.152.0.1:179 12 738 1 2025-11-26 10:24:12.754 00:00:00.215 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:24:12.832 00:00:00.137 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:25:12.754 00:00:00.215 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:25:12.832 00:00:00.137 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:26:12.757 00:00:00.216 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:26:12.834 00:00:00.139 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:23:12.812 00:05:00.221 TCP 28.156.0.1:37457 -> 28.155.0.1:179 12 738 1 2025-11-26 10:23:03.969 00:05:09.024 TCP 28.152.0.1:179 -> 28.155.0.1:36663 12 738 1 2025-11-26 10:23:20.127 00:05:10.004 OSPF 28.0.7.1:0 -> 224.0.0.5:0 34 2320 1 2025-11-26 10:28:09.642 00:00:00.022 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-26 10:27:12.755 00:01:00.217 TCP 28.155.0.1:36643 -> 28.154.0.1:179 4 246 1 2025-11-26 10:27:12.832 00:01:00.140 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-26 10:29:12.757 00:00:00.216 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:29:12.834 00:00:00.139 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:25:03.990 00:05:08.983 TCP 28.155.0.1:36663 -> 28.152.0.1:179 12 738 1 2025-11-26 10:30:12.756 00:00:00.217 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:30:12.834 00:00:00.139 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:31:12.756 00:00:00.217 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:31:12.834 00:00:00.139 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:28:40.130 00:05:10.007 OSPF 28.0.7.1:0 -> 224.0.0.5:0 36 2656 1 2025-11-26 10:33:09.885 00:00:00.023 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-26 10:32:12.757 00:01:00.230 TCP 28.155.0.1:36643 -> 28.154.0.1:179 4 246 1 2025-11-26 10:32:12.834 00:01:00.153 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-26 10:29:12.814 00:05:00.234 TCP 28.156.0.1:37457 -> 28.155.0.1:179 12 738 1 2025-11-26 10:29:03.970 00:05:09.038 TCP 28.152.0.1:179 -> 28.155.0.1:36663 12 738 1 2025-11-26 10:34:12.834 00:00:00.153 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:34:12.756 00:01:00.231 TCP 28.155.0.1:36643 -> 28.154.0.1:179 4 246 1 2025-11-26 10:35:12.834 00:00:00.153 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:31:03.990 00:05:08.997 TCP 28.155.0.1:36663 -> 28.152.0.1:179 12 738 1 2025-11-26 10:36:12.756 00:00:00.231 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:36:12.834 00:00:00.153 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:37:12.759 00:00:00.230 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:37:12.836 00:00:00.153 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:38:12.757 00:00:00.231 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:38:12.835 00:00:00.153 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:34:00.140 00:05:10.004 OSPF 28.0.7.1:0 -> 224.0.0.5:0 45 3224 1 2025-11-26 10:38:09.849 00:00:00.024 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-26 10:39:12.836 00:00:00.153 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:35:12.815 00:05:00.234 TCP 28.156.0.1:37457 -> 28.155.0.1:179 12 738 1 2025-11-26 10:35:03.971 00:05:09.039 TCP 28.152.0.1:179 -> 28.155.0.1:36663 12 738 1 2025-11-26 10:39:12.757 00:01:00.232 TCP 28.155.0.1:36643 -> 28.154.0.1:179 4 246 1 2025-11-26 10:40:12.840 00:00:00.149 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:41:12.758 00:00:00.231 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:41:12.836 00:00:00.153 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:37:03.992 00:05:08.998 TCP 28.155.0.1:36663 -> 28.152.0.1:179 12 738 1 2025-11-26 10:42:12.836 00:00:00.154 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:42:12.759 00:00:00.231 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:43:12.759 00:00:00.231 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:43:12.837 00:00:00.153 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:43:09.708 00:00:00.023 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-26 10:39:20.144 00:05:10.003 OSPF 28.0.7.1:0 -> 224.0.0.5:0 39 2768 1 2025-11-26 10:44:12.759 00:01:00.231 TCP 28.155.0.1:36643 -> 28.154.0.1:179 4 246 1 2025-11-26 10:44:12.840 00:01:00.150 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-26 10:41:12.816 00:05:00.234 TCP 28.156.0.1:37457 -> 28.155.0.1:179 12 738 1 2025-11-26 10:41:03.972 00:05:09.038 TCP 28.152.0.1:179 -> 28.155.0.1:36663 12 738 1 2025-11-26 10:46:12.759 00:00:00.231 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:46:12.836 00:00:00.154 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:47:12.759 00:00:00.231 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:47:12.836 00:00:00.154 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:43:03.992 00:05:08.998 TCP 28.155.0.1:36663 -> 28.152.0.1:179 12 738 1 2025-11-26 10:48:12.758 00:00:00.232 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:48:12.836 00:00:00.154 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:48:10.104 00:00:00.023 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-26 10:44:40.147 00:05:10.005 OSPF 28.0.7.1:0 -> 224.0.0.5:0 36 2464 1 2025-11-26 10:49:12.760 00:01:00.232 TCP 28.155.0.1:36643 -> 28.154.0.1:179 4 246 1 2025-11-26 10:49:12.838 00:01:00.154 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-26 10:51:12.838 00:00:00.153 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:51:12.760 00:00:00.231 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:47:12.816 00:05:00.236 TCP 28.156.0.1:37457 -> 28.155.0.1:179 12 738 1 2025-11-26 10:47:03.974 00:05:09.039 TCP 28.152.0.1:179 -> 28.155.0.1:36663 12 738 1 2025-11-26 10:52:12.761 00:00:00.231 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:52:12.838 00:00:00.154 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:53:10.318 00:00:00.021 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 2025-11-26 10:53:12.759 00:00:00.231 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:53:12.837 00:00:00.153 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:49:03.996 00:05:08.995 TCP 28.155.0.1:36663 -> 28.152.0.1:179 12 738 1 2025-11-26 10:50:00.151 00:05:10.011 OSPF 28.0.7.1:0 -> 224.0.0.5:0 38 2748 1 2025-11-26 10:54:12.760 00:01:00.232 TCP 28.155.0.1:36643 -> 28.154.0.1:179 4 246 1 2025-11-26 10:54:12.838 00:01:00.154 TCP 28.155.0.1:179 -> 28.156.0.1:37457 4 246 1 2025-11-26 10:56:12.840 00:00:00.151 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:56:12.759 00:01:00.232 TCP 28.155.0.1:36643 -> 28.154.0.1:179 4 246 1 2025-11-26 10:57:12.837 00:00:00.154 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:53:03.980 00:05:09.033 TCP 28.152.0.1:179 -> 28.155.0.1:36663 12 738 1 2025-11-26 10:53:12.819 00:05:00.235 TCP 28.156.0.1:37457 -> 28.155.0.1:179 12 738 1 2025-11-26 10:58:12.759 00:00:00.232 TCP 28.155.0.1:36643 -> 28.154.0.1:179 2 123 1 2025-11-26 10:58:12.838 00:00:00.153 TCP 28.155.0.1:179 -> 28.156.0.1:37457 2 123 1 2025-11-26 10:58:10.230 00:00:00.024 ICMP 29.107.0.1:0 -> 25.0.198.2:0.0 3 252 1 Summary: total flows: 150, total bytes: 69704, total packets: 1054, avg bps: 147, avg pps: 0, avg bpp: 66 Time window: 2025-11-26 09:55:03 - 2025-11-26 10:58:13 Total flows processed: 150, passed: 150, Blocks skipped: 0, Bytes read: 15664 Sys: 0.0056s User: 0.0009s Wall: 0.0030s flows/second: 50235.2 Runtime: 0.0030s