Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-10 16:59:07.825 00:00:00.000 UDP 28.104.0.1:42252 -> 198.28.0.2:53 1 64 1 2025-08-10 16:59:07.825 00:00:00.000 UDP 28.104.0.1:47008 -> 198.28.0.2:53 1 64 1 2025-08-10 16:59:07.837 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42252 1 109 1 2025-08-10 16:59:07.837 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47008 1 80 1 2025-08-10 17:00:08.128 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58699 1 80 1 2025-08-10 17:00:08.128 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57752 1 109 1 2025-08-10 17:00:08.118 00:00:00.000 UDP 28.104.0.1:58699 -> 198.28.0.2:53 1 64 1 2025-08-10 16:56:10.420 00:05:01.080 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-10 17:00:08.118 00:00:00.000 UDP 28.104.0.1:57752 -> 198.28.0.2:53 1 64 1 2025-08-10 16:56:10.411 00:05:01.029 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-10 17:01:08.373 00:00:00.000 UDP 28.104.0.1:48474 -> 198.28.0.2:53 1 64 1 2025-08-10 16:59:11.379 00:02:00.121 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-08-10 16:59:11.351 00:02:00.149 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-08-10 17:01:08.373 00:00:00.000 UDP 28.104.0.1:60140 -> 198.28.0.2:53 1 64 1 2025-08-10 17:01:09.043 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-10 17:01:08.383 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60140 1 109 1 2025-08-10 17:01:08.383 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48474 1 80 1 2025-08-10 16:57:14.905 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2752 1 2025-08-10 17:02:08.675 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46653 1 109 1 2025-08-10 17:02:08.675 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60544 1 80 1 2025-08-10 17:02:08.666 00:00:00.000 UDP 28.104.0.1:60544 -> 198.28.0.2:53 1 64 1 2025-08-10 17:02:08.666 00:00:00.000 UDP 28.104.0.1:46653 -> 198.28.0.2:53 1 64 1 2025-08-10 16:58:10.410 00:05:01.105 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-10 17:02:11.381 00:01:00.124 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-08-10 17:02:11.355 00:01:00.150 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-08-10 17:03:09.047 00:00:00.000 UDP 28.104.0.1:50807 -> 198.28.0.2:53 1 64 1 2025-08-10 17:03:09.047 00:00:00.000 UDP 28.104.0.1:34540 -> 198.28.0.2:53 1 64 1 2025-08-10 17:03:09.058 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50807 1 109 1 2025-08-10 17:03:09.058 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34540 1 80 1 2025-08-10 17:00:10.462 00:05:00.970 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-10 17:04:09.340 00:00:00.000 UDP 28.104.0.1:60611 -> 198.28.0.2:53 1 64 1 2025-08-10 17:04:09.340 00:00:00.000 UDP 28.104.0.1:38123 -> 198.28.0.2:53 1 64 1 2025-08-10 17:04:09.351 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38123 1 109 1 2025-08-10 17:04:09.351 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60611 1 80 1 2025-08-10 17:05:09.640 00:00:00.000 UDP 28.104.0.1:54873 -> 198.28.0.2:53 1 64 1 2025-08-10 17:05:09.640 00:00:00.000 UDP 28.104.0.1:42673 -> 198.28.0.2:53 1 64 1 2025-08-10 17:05:09.651 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42673 1 80 1 2025-08-10 17:05:09.651 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54873 1 109 1 2025-08-10 17:06:08.911 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-10 17:02:10.412 00:05:01.039 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-10 17:06:09.954 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47019 1 109 1 2025-08-10 17:06:09.953 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50692 1 80 1 2025-08-10 17:06:09.943 00:00:00.000 UDP 28.104.0.1:47019 -> 198.28.0.2:53 1 64 1 2025-08-10 17:04:11.380 00:02:00.127 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-08-10 17:04:11.353 00:02:00.154 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-08-10 17:06:09.943 00:00:00.000 UDP 28.104.0.1:50692 -> 198.28.0.2:53 1 64 1 2025-08-10 17:02:10.422 00:05:01.085 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-10 17:02:34.916 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2672 1 2025-08-10 17:07:10.252 00:00:00.000 UDP 28.104.0.1:45519 -> 198.28.0.2:53 1 64 1 2025-08-10 17:07:10.252 00:00:00.000 UDP 28.104.0.1:36452 -> 198.28.0.2:53 1 64 1 2025-08-10 17:07:10.263 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45519 1 80 1 2025-08-10 17:07:10.263 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36452 1 109 1 2025-08-10 17:08:10.505 00:00:00.000 UDP 28.104.0.1:41859 -> 198.28.0.2:53 1 64 1 2025-08-10 17:08:10.505 00:00:00.000 UDP 28.104.0.1:46046 -> 198.28.0.2:53 1 64 1 2025-08-10 17:07:11.387 00:01:00.122 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-08-10 17:07:11.354 00:01:00.155 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-08-10 17:08:10.515 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41859 1 109 1 2025-08-10 17:08:10.515 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46046 1 80 1 2025-08-10 17:04:10.414 00:05:01.105 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-10 17:09:10.806 00:00:00.000 UDP 28.104.0.1:40570 -> 198.28.0.2:53 1 64 1 2025-08-10 17:09:10.806 00:00:00.000 UDP 28.104.0.1:40479 -> 198.28.0.2:53 1 64 1 2025-08-10 17:09:10.817 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40570 1 109 1 2025-08-10 17:09:10.816 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40479 1 80 1 2025-08-10 17:06:10.465 00:05:00.976 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-10 17:10:11.104 00:00:00.000 UDP 28.104.0.1:38641 -> 198.28.0.2:53 1 64 1 2025-08-10 17:10:11.104 00:00:00.000 UDP 28.104.0.1:39069 -> 198.28.0.2:53 1 64 1 2025-08-10 17:10:11.115 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38641 1 80 1 2025-08-10 17:10:11.115 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39069 1 109 1 2025-08-10 17:09:11.382 00:02:00.133 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-08-10 17:11:11.402 00:00:00.000 UDP 28.104.0.1:37454 -> 198.28.0.2:53 1 64 1 2025-08-10 17:11:11.402 00:00:00.000 UDP 28.104.0.1:43956 -> 198.28.0.2:53 1 64 1 2025-08-10 17:09:11.355 00:02:00.160 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-08-10 17:11:08.978 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-10 17:11:11.411 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43956 1 109 1 2025-08-10 17:11:11.411 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37454 1 80 1 2025-08-10 17:07:54.921 00:05:00.200 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2416 1 2025-08-10 17:08:10.425 00:05:01.088 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-10 17:12:11.707 00:00:00.000 UDP 28.104.0.1:41915 -> 198.28.0.2:53 1 64 1 2025-08-10 17:12:11.707 00:00:00.000 UDP 28.104.0.1:33464 -> 198.28.0.2:53 1 64 1 2025-08-10 17:12:11.717 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33464 1 80 1 2025-08-10 17:12:11.717 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41915 1 109 1 2025-08-10 17:08:10.415 00:05:01.045 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-10 17:12:11.380 00:01:00.134 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-08-10 17:12:11.356 00:01:00.158 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-08-10 17:13:12.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44584 1 80 1 2025-08-10 17:13:12.067 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55588 1 109 1 2025-08-10 17:13:12.057 00:00:00.000 UDP 28.104.0.1:44584 -> 198.28.0.2:53 1 64 1 2025-08-10 17:13:12.058 00:00:00.000 UDP 28.104.0.1:55588 -> 198.28.0.2:53 1 64 1 2025-08-10 17:10:10.416 00:05:01.108 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-10 17:14:12.372 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37325 1 80 1 2025-08-10 17:14:12.372 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37321 1 109 1 2025-08-10 17:14:12.362 00:00:00.000 UDP 28.104.0.1:37325 -> 198.28.0.2:53 1 64 1 2025-08-10 17:14:12.362 00:00:00.000 UDP 28.104.0.1:37321 -> 198.28.0.2:53 1 64 1 2025-08-10 17:15:12.685 00:00:00.000 UDP 28.104.0.1:34004 -> 198.28.0.2:53 1 64 1 2025-08-10 17:15:12.685 00:00:00.000 UDP 28.104.0.1:49079 -> 198.28.0.2:53 1 64 1 2025-08-10 17:15:12.696 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49079 1 109 1 2025-08-10 17:15:12.696 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34004 1 80 1 2025-08-10 17:14:11.382 00:02:00.132 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-08-10 17:16:08.901 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-10 17:16:12.953 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59488 1 80 1 2025-08-10 17:16:12.953 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54083 1 109 1 2025-08-10 17:12:10.466 00:05:00.985 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-10 17:16:12.942 00:00:00.000 UDP 28.104.0.1:54083 -> 198.28.0.2:53 1 64 1 2025-08-10 17:16:12.942 00:00:00.000 UDP 28.104.0.1:59488 -> 198.28.0.2:53 1 64 1 2025-08-10 17:17:13.259 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54180 1 109 1 2025-08-10 17:13:04.931 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2692 1 2025-08-10 17:17:13.259 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45894 1 80 1 2025-08-10 17:17:13.249 00:00:00.000 UDP 28.104.0.1:45894 -> 198.28.0.2:53 1 64 1 2025-08-10 17:17:13.249 00:00:00.000 UDP 28.104.0.1:54180 -> 198.28.0.2:53 1 64 1 2025-08-10 17:14:10.416 00:05:01.045 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-10 17:17:11.384 00:01:00.129 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-08-10 17:14:11.356 00:04:00.157 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-08-10 17:18:13.496 00:00:00.000 UDP 28.104.0.1:45161 -> 198.28.0.2:53 1 64 1 2025-08-10 17:14:10.427 00:05:01.087 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-10 17:18:13.496 00:00:00.000 UDP 28.104.0.1:55694 -> 198.28.0.2:53 1 64 1 2025-08-10 17:18:13.505 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45161 1 80 1 2025-08-10 17:18:13.505 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55694 1 109 1 2025-08-10 17:19:13.787 00:00:00.000 UDP 28.104.0.1:51486 -> 198.28.0.2:53 1 64 1 2025-08-10 17:19:13.787 00:00:00.000 UDP 28.104.0.1:46024 -> 198.28.0.2:53 1 64 1 2025-08-10 17:19:13.798 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51486 1 109 1 2025-08-10 17:19:13.798 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46024 1 80 1 2025-08-10 17:19:11.385 00:01:00.129 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-08-10 17:19:11.358 00:01:00.156 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-08-10 17:20:14.127 00:00:00.000 UDP 28.104.0.1:56297 -> 198.28.0.2:53 1 64 1 2025-08-10 17:20:14.127 00:00:00.000 UDP 28.104.0.1:40127 -> 198.28.0.2:53 1 64 1 2025-08-10 17:16:10.418 00:05:01.106 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-10 17:20:14.137 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56297 1 80 1 2025-08-10 17:20:14.137 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40127 1 109 1 2025-08-10 17:21:10.010 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-10 17:21:14.434 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43318 1 80 1 2025-08-10 17:21:14.434 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53620 1 109 1 2025-08-10 17:21:14.424 00:00:00.000 UDP 28.104.0.1:53620 -> 198.28.0.2:53 1 64 1 2025-08-10 17:21:14.424 00:00:00.000 UDP 28.104.0.1:43318 -> 198.28.0.2:53 1 64 1 2025-08-10 17:18:10.468 00:05:00.986 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-10 17:22:14.718 00:00:00.000 UDP 28.104.0.1:38523 -> 198.28.0.2:53 1 64 1 2025-08-10 17:22:14.717 00:00:00.000 UDP 28.104.0.1:44827 -> 198.28.0.2:53 1 64 1 2025-08-10 17:22:14.729 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44827 1 109 1 2025-08-10 17:22:14.729 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38523 1 80 1 2025-08-10 17:18:24.935 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2880 1 2025-08-10 17:21:11.385 00:02:00.129 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-08-10 17:21:11.358 00:02:00.156 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-08-10 17:23:14.989 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37380 1 109 1 2025-08-10 17:23:14.989 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37294 1 80 1 2025-08-10 17:23:14.978 00:00:00.000 UDP 28.104.0.1:37380 -> 198.28.0.2:53 1 64 1 2025-08-10 17:23:14.978 00:00:00.000 UDP 28.104.0.1:37294 -> 198.28.0.2:53 1 64 1 2025-08-10 17:20:10.429 00:05:01.086 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-10 17:24:15.275 00:00:00.000 UDP 28.104.0.1:42394 -> 198.28.0.2:53 1 64 1 2025-08-10 17:24:15.274 00:00:00.000 UDP 28.104.0.1:45261 -> 198.28.0.2:53 1 64 1 2025-08-10 17:20:10.418 00:05:01.047 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-10 17:24:15.285 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42394 1 109 1 2025-08-10 17:24:15.284 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45261 1 80 1 2025-08-10 17:24:11.388 00:01:00.128 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-08-10 17:24:11.368 00:01:00.148 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-08-10 17:25:15.572 00:00:00.000 UDP 28.104.0.1:46055 -> 198.28.0.2:53 1 64 1 2025-08-10 17:25:15.572 00:00:00.000 UDP 28.104.0.1:41657 -> 198.28.0.2:53 1 64 1 2025-08-10 17:25:15.582 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41657 1 80 1 2025-08-10 17:25:15.582 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46055 1 109 1 2025-08-10 17:26:09.249 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-10 17:22:10.418 00:05:01.108 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-10 17:26:15.928 00:00:00.000 UDP 28.104.0.1:33486 -> 198.28.0.2:53 1 64 1 2025-08-10 17:26:15.928 00:00:00.000 UDP 28.104.0.1:55822 -> 198.28.0.2:53 1 64 1 2025-08-10 17:26:15.939 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55822 1 80 1 2025-08-10 17:26:15.939 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33486 1 109 1 2025-08-10 17:27:16.274 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47182 1 80 1 2025-08-10 17:27:16.275 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35986 1 109 1 2025-08-10 17:27:16.265 00:00:00.000 UDP 28.104.0.1:47182 -> 198.28.0.2:53 1 64 1 2025-08-10 17:27:16.266 00:00:00.000 UDP 28.104.0.1:35986 -> 198.28.0.2:53 1 64 1 2025-08-10 17:23:44.938 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 3040 1 2025-08-10 17:26:11.387 00:02:00.129 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-08-10 17:26:11.367 00:02:00.149 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-08-10 17:24:10.470 00:05:01.007 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-10 17:28:16.584 00:00:00.000 UDP 28.104.0.1:33797 -> 198.28.0.2:53 1 64 1 2025-08-10 17:28:16.584 00:00:00.000 UDP 28.104.0.1:53208 -> 198.28.0.2:53 1 64 1 2025-08-10 17:28:16.594 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53208 1 80 1 2025-08-10 17:28:16.595 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33797 1 109 1 2025-08-10 17:29:16.887 00:00:00.000 UDP 28.104.0.1:42442 -> 198.28.0.2:53 1 64 1 2025-08-10 17:29:16.887 00:00:00.000 UDP 28.104.0.1:49026 -> 198.28.0.2:53 1 64 1 2025-08-10 17:29:16.898 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49026 1 80 1 2025-08-10 17:29:16.898 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42442 1 109 1 2025-08-10 17:29:11.389 00:01:00.127 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-08-10 17:29:11.370 00:01:00.146 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-08-10 17:26:10.422 00:05:01.066 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-10 17:26:10.432 00:05:01.086 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-10 17:30:17.193 00:00:00.000 UDP 28.104.0.1:45921 -> 198.28.0.2:53 1 64 1 2025-08-10 17:30:17.193 00:00:00.000 UDP 28.104.0.1:43668 -> 198.28.0.2:53 1 64 1 2025-08-10 17:30:17.202 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45921 1 80 1 2025-08-10 17:30:17.202 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43668 1 109 1 2025-08-10 17:31:09.531 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-10 17:31:17.482 00:00:00.000 UDP 28.104.0.1:43587 -> 198.28.0.2:53 1 64 1 2025-08-10 17:31:17.482 00:00:00.000 UDP 28.104.0.1:41335 -> 198.28.0.2:53 1 64 1 2025-08-10 17:31:17.492 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41335 1 80 1 2025-08-10 17:31:17.492 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43587 1 109 1 2025-08-10 17:28:10.420 00:05:01.106 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-10 17:32:17.791 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43185 1 109 1 2025-08-10 17:32:17.791 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38883 1 80 1 2025-08-10 17:32:17.781 00:00:00.000 UDP 28.104.0.1:43185 -> 198.28.0.2:53 1 64 1 2025-08-10 17:32:17.781 00:00:00.000 UDP 28.104.0.1:38883 -> 198.28.0.2:53 1 64 1 2025-08-10 17:31:11.390 00:02:00.128 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-08-10 17:31:11.372 00:02:00.146 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-08-10 17:29:04.944 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2528 1 2025-08-10 17:33:18.078 00:00:00.000 UDP 28.104.0.1:58734 -> 198.28.0.2:53 1 64 1 2025-08-10 17:33:18.078 00:00:00.000 UDP 28.104.0.1:38494 -> 198.28.0.2:53 1 64 1 2025-08-10 17:33:18.089 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58734 1 109 1 2025-08-10 17:33:18.089 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38494 1 80 1 2025-08-10 17:30:10.472 00:05:01.007 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-10 17:34:18.372 00:00:00.000 UDP 28.104.0.1:59719 -> 198.28.0.2:53 1 64 1 2025-08-10 17:34:18.372 00:00:00.000 UDP 28.104.0.1:40751 -> 198.28.0.2:53 1 64 1 2025-08-10 17:34:18.383 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40751 1 80 1 2025-08-10 17:34:18.383 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59719 1 109 1 2025-08-10 17:34:11.392 00:01:00.126 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-08-10 17:34:11.378 00:01:00.140 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-08-10 17:35:18.663 00:00:00.000 UDP 28.104.0.1:54476 -> 198.28.0.2:53 1 64 1 2025-08-10 17:35:18.663 00:00:00.000 UDP 28.104.0.1:45764 -> 198.28.0.2:53 1 64 1 2025-08-10 17:35:18.673 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54476 1 80 1 2025-08-10 17:35:18.673 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45764 1 109 1 2025-08-10 17:36:09.464 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-10 17:32:10.422 00:05:01.067 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-10 17:32:10.432 00:05:01.086 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-10 17:36:18.971 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42156 1 109 1 2025-08-10 17:36:18.974 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52731 1 80 1 2025-08-10 17:36:18.961 00:00:00.000 UDP 28.104.0.1:52731 -> 198.28.0.2:53 1 64 1 2025-08-10 17:36:18.961 00:00:00.000 UDP 28.104.0.1:42156 -> 198.28.0.2:53 1 64 1 2025-08-10 17:37:19.218 00:00:00.000 UDP 28.104.0.1:34257 -> 198.28.0.2:53 1 64 1 2025-08-10 17:37:19.218 00:00:00.000 UDP 28.104.0.1:44677 -> 198.28.0.2:53 1 64 1 2025-08-10 17:37:19.228 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44677 1 80 1 2025-08-10 17:37:19.228 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34257 1 109 1 2025-08-10 17:36:11.393 00:02:00.126 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-08-10 17:36:11.372 00:02:00.147 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-08-10 17:34:10.423 00:05:01.107 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-10 17:38:19.481 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33197 1 80 1 2025-08-10 17:38:19.480 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58803 1 109 1 2025-08-10 17:38:19.470 00:00:00.000 UDP 28.104.0.1:33197 -> 198.28.0.2:53 1 64 1 2025-08-10 17:38:19.469 00:00:00.000 UDP 28.104.0.1:58803 -> 198.28.0.2:53 1 64 1 2025-08-10 17:34:24.954 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2464 1 2025-08-10 17:39:19.767 00:00:00.000 UDP 28.104.0.1:47770 -> 198.28.0.2:53 1 64 1 2025-08-10 17:39:19.768 00:00:00.000 UDP 28.104.0.1:42895 -> 198.28.0.2:53 1 64 1 2025-08-10 17:39:19.778 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47770 1 109 1 2025-08-10 17:39:19.778 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42895 1 80 1 2025-08-10 17:39:11.393 00:01:00.127 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-08-10 17:39:11.372 00:01:00.148 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-08-10 17:36:10.474 00:05:01.007 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-10 17:40:20.068 00:00:00.000 UDP 28.104.0.1:37651 -> 198.28.0.2:53 1 64 1 2025-08-10 17:40:20.068 00:00:00.000 UDP 28.104.0.1:47626 -> 198.28.0.2:53 1 64 1 2025-08-10 17:40:20.078 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47626 1 109 1 2025-08-10 17:40:20.078 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37651 1 80 1 2025-08-10 17:41:09.921 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-10 17:41:20.366 00:00:00.000 UDP 28.104.0.1:48202 -> 198.28.0.2:53 1 64 1 2025-08-10 17:41:20.366 00:00:00.000 UDP 28.104.0.1:45642 -> 198.28.0.2:53 1 64 1 2025-08-10 17:41:20.376 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45642 1 109 1 2025-08-10 17:41:20.376 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48202 1 80 1 2025-08-10 17:38:10.433 00:05:01.091 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-10 17:38:10.424 00:05:01.067 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-10 17:42:20.667 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51918 1 80 1 2025-08-10 17:42:20.669 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57080 1 109 1 2025-08-10 17:42:20.658 00:00:00.000 UDP 28.104.0.1:57080 -> 198.28.0.2:53 1 64 1 2025-08-10 17:42:20.656 00:00:00.000 UDP 28.104.0.1:51918 -> 198.28.0.2:53 1 64 1 2025-08-10 17:41:11.394 00:02:00.131 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-08-10 17:41:11.373 00:02:00.152 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-08-10 17:43:21.056 00:00:00.000 UDP 28.104.0.1:44268 -> 198.28.0.2:53 1 64 1 2025-08-10 17:43:21.057 00:00:00.000 UDP 28.104.0.1:47920 -> 198.28.0.2:53 1 64 1 2025-08-10 17:43:21.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47920 1 109 1 2025-08-10 17:43:21.067 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44268 1 80 1 2025-08-10 17:39:44.964 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2732 1 2025-08-10 17:40:10.426 00:05:01.105 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-10 17:44:21.362 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60278 1 109 1 2025-08-10 17:44:21.362 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51995 1 80 1 2025-08-10 17:44:21.354 00:00:00.000 UDP 28.104.0.1:51995 -> 198.28.0.2:53 1 64 1 2025-08-10 17:44:21.354 00:00:00.000 UDP 28.104.0.1:60278 -> 198.28.0.2:53 1 64 1 2025-08-10 17:44:11.395 00:01:00.126 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-08-10 17:44:11.373 00:01:00.148 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-08-10 17:45:21.645 00:00:00.000 UDP 28.104.0.1:39854 -> 198.28.0.2:53 1 64 1 2025-08-10 17:45:21.645 00:00:00.000 UDP 28.104.0.1:34198 -> 198.28.0.2:53 1 64 1 2025-08-10 17:45:21.655 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34198 1 80 1 2025-08-10 17:45:21.655 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39854 1 109 1 2025-08-10 17:46:09.807 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-10 17:42:10.476 00:05:01.006 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-10 17:46:21.945 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56191 1 80 1 2025-08-10 17:46:21.946 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34334 1 109 1 2025-08-10 17:46:21.935 00:00:00.000 UDP 28.104.0.1:56191 -> 198.28.0.2:53 1 64 1 2025-08-10 17:46:21.935 00:00:00.000 UDP 28.104.0.1:34334 -> 198.28.0.2:53 1 64 1 2025-08-10 17:47:22.195 00:00:00.000 UDP 28.104.0.1:57386 -> 198.28.0.2:53 1 64 1 2025-08-10 17:47:22.194 00:00:00.000 UDP 28.104.0.1:49479 -> 198.28.0.2:53 1 64 1 2025-08-10 17:47:22.204 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49479 1 80 1 2025-08-10 17:47:22.204 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57386 1 109 1 2025-08-10 17:46:11.395 00:02:00.132 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-08-10 17:46:11.374 00:02:00.153 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-08-10 17:44:10.426 00:05:01.065 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-10 17:44:10.437 00:05:01.091 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-10 17:48:22.458 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34026 1 80 1 2025-08-10 17:48:22.458 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43978 1 109 1 2025-08-10 17:48:22.448 00:00:00.000 UDP 28.104.0.1:43978 -> 198.28.0.2:53 1 64 1 2025-08-10 17:48:22.448 00:00:00.000 UDP 28.104.0.1:34026 -> 198.28.0.2:53 1 64 1 2025-08-10 17:45:04.971 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2732 1 2025-08-10 17:49:22.739 00:00:00.000 UDP 28.104.0.1:33237 -> 198.28.0.2:53 1 64 1 2025-08-10 17:49:22.740 00:00:00.000 UDP 28.104.0.1:46082 -> 198.28.0.2:53 1 64 1 2025-08-10 17:49:22.750 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46082 1 109 1 2025-08-10 17:49:22.750 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33237 1 80 1 2025-08-10 17:49:11.396 00:01:00.132 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-08-10 17:49:11.376 00:01:00.152 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-08-10 17:46:10.427 00:05:01.111 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-10 17:50:22.998 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45519 1 109 1 2025-08-10 17:50:22.998 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48599 1 80 1 2025-08-10 17:50:22.987 00:00:00.000 UDP 28.104.0.1:48599 -> 198.28.0.2:53 1 64 1 2025-08-10 17:50:22.987 00:00:00.000 UDP 28.104.0.1:45519 -> 198.28.0.2:53 1 64 1 2025-08-10 17:51:09.924 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-10 17:51:23.303 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40591 1 80 1 2025-08-10 17:51:23.303 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54643 1 109 1 2025-08-10 17:51:23.294 00:00:00.000 UDP 28.104.0.1:54643 -> 198.28.0.2:53 1 64 1 2025-08-10 17:51:23.294 00:00:00.000 UDP 28.104.0.1:40591 -> 198.28.0.2:53 1 64 1 2025-08-10 17:51:11.397 00:01:00.132 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-08-10 17:51:11.378 00:01:00.151 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-08-10 17:48:10.478 00:05:01.004 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-10 17:52:23.593 00:00:00.000 UDP 28.104.0.1:51900 -> 198.28.0.2:53 1 64 1 2025-08-10 17:52:23.593 00:00:00.000 UDP 28.104.0.1:43119 -> 198.28.0.2:53 1 64 1 2025-08-10 17:52:23.604 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43119 1 109 1 2025-08-10 17:52:23.604 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51900 1 80 1 2025-08-10 17:53:23.861 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52563 1 80 1 2025-08-10 17:53:23.862 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52962 1 109 1 2025-08-10 17:53:23.851 00:00:00.000 UDP 28.104.0.1:52563 -> 198.28.0.2:53 1 64 1 2025-08-10 17:53:23.851 00:00:00.000 UDP 28.104.0.1:52962 -> 198.28.0.2:53 1 64 1 2025-08-10 17:50:10.438 00:05:01.093 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-10 17:50:10.429 00:05:01.065 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-10 17:54:24.169 00:00:00.000 UDP 28.104.0.1:36368 -> 198.28.0.2:53 1 64 1 2025-08-10 17:54:24.169 00:00:00.000 UDP 28.104.0.1:59629 -> 198.28.0.2:53 1 64 1 2025-08-10 17:54:24.179 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59629 1 80 1 2025-08-10 17:54:24.179 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36368 1 109 1 2025-08-10 17:50:24.978 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 45 3168 1 2025-08-10 17:53:11.398 00:02:00.134 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-08-10 17:53:11.377 00:02:00.155 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-08-10 17:55:24.470 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55814 1 109 1 2025-08-10 17:55:24.469 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57175 1 80 1 2025-08-10 17:55:24.461 00:00:00.000 UDP 28.104.0.1:55814 -> 198.28.0.2:53 1 64 1 2025-08-10 17:55:24.461 00:00:00.000 UDP 28.104.0.1:57175 -> 198.28.0.2:53 1 64 1 2025-08-10 17:56:09.990 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-10 17:52:10.428 00:05:01.113 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-10 17:56:24.718 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60984 1 80 1 2025-08-10 17:56:24.718 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35998 1 109 1 2025-08-10 17:56:24.708 00:00:00.000 UDP 28.104.0.1:35998 -> 198.28.0.2:53 1 64 1 2025-08-10 17:56:24.708 00:00:00.000 UDP 28.104.0.1:60984 -> 198.28.0.2:53 1 64 1 2025-08-10 17:56:11.378 00:01:00.153 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-08-10 17:56:11.398 00:01:00.133 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-08-10 17:57:25.029 00:00:00.000 UDP 28.104.0.1:44167 -> 198.28.0.2:53 1 64 1 2025-08-10 17:57:25.030 00:00:00.000 UDP 28.104.0.1:50357 -> 198.28.0.2:53 1 64 1 2025-08-10 17:57:25.040 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50357 1 109 1 2025-08-10 17:57:25.039 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44167 1 80 1 2025-08-10 17:54:10.478 00:05:01.006 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-10 17:58:25.443 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51301 1 109 1 2025-08-10 17:58:25.443 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59428 1 80 1 2025-08-10 17:58:25.432 00:00:00.000 UDP 28.104.0.1:51301 -> 198.28.0.2:53 1 64 1 2025-08-10 17:58:25.432 00:00:00.000 UDP 28.104.0.1:59428 -> 198.28.0.2:53 1 64 1 Summary: total flows: 350, total bytes: 96154, total packets: 1419, avg bps: 203, avg pps: 0, avg bpp: 67 Time window: 2025-08-10 16:56:10 - 2025-08-10 17:59:11 Total flows processed: 350, passed: 350, Blocks skipped: 0, Bytes read: 36464 Sys: 0.0036s User: 0.0027s Wall: 0.0069s flows/second: 50841.8 Runtime: 0.0069s