Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-06 14:59:06.443 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-06 14:55:24.355 00:05:02.572 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-06 14:59:45.548 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45277 1 80 1 2025-09-06 14:59:45.548 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40886 1 109 1 2025-09-06 14:59:45.538 00:00:00.000 UDP 28.104.0.1:45277 -> 198.28.0.2:53 1 64 1 2025-09-06 14:59:45.538 00:00:00.000 UDP 28.104.0.1:40886 -> 198.28.0.2:53 1 64 1 2025-09-06 14:59:26.680 00:01:00.218 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-06 14:56:24.404 00:05:02.512 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-06 14:56:18.672 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2708 1 2025-09-06 15:00:45.840 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33584 1 80 1 2025-09-06 15:00:45.840 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39100 1 109 1 2025-09-06 15:00:45.829 00:00:00.000 UDP 28.104.0.1:39100 -> 198.28.0.2:53 1 64 1 2025-09-06 15:00:45.829 00:00:00.000 UDP 28.104.0.1:33584 -> 198.28.0.2:53 1 64 1 2025-09-06 14:57:24.355 00:05:02.336 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-06 15:01:26.681 00:00:00.217 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-09-06 14:57:26.680 00:05:00.340 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-09-06 15:01:46.122 00:00:00.000 UDP 28.104.0.1:55255 -> 198.28.0.2:53 1 64 1 2025-09-06 15:01:46.123 00:00:00.000 UDP 28.104.0.1:45874 -> 198.28.0.2:53 1 64 1 2025-09-06 15:01:46.134 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55255 1 109 1 2025-09-06 15:01:46.134 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45874 1 80 1 2025-09-06 14:58:24.367 00:05:02.315 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-06 15:02:46.417 00:00:00.000 UDP 28.104.0.1:40900 -> 198.28.0.2:53 1 64 1 2025-09-06 15:02:46.418 00:00:00.000 UDP 28.104.0.1:34602 -> 198.28.0.2:53 1 64 1 2025-09-06 15:02:46.430 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40900 1 109 1 2025-09-06 15:02:46.430 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34602 1 80 1 2025-09-06 15:02:26.680 00:01:00.218 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-06 15:03:46.726 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38382 1 109 1 2025-09-06 15:03:46.726 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40698 1 80 1 2025-09-06 15:03:46.716 00:00:00.000 UDP 28.104.0.1:38382 -> 198.28.0.2:53 1 64 1 2025-09-06 15:03:46.716 00:00:00.000 UDP 28.104.0.1:40698 -> 198.28.0.2:53 1 64 1 2025-09-06 15:04:06.445 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-06 15:04:47.021 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50459 1 109 1 2025-09-06 15:04:47.026 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33410 1 80 1 2025-09-06 15:04:47.017 00:00:00.000 UDP 28.104.0.1:33410 -> 198.28.0.2:53 1 64 1 2025-09-06 15:04:47.011 00:00:00.000 UDP 28.104.0.1:50459 -> 198.28.0.2:53 1 64 1 2025-09-06 15:04:26.681 00:01:00.218 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-06 15:01:24.356 00:05:02.573 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-06 15:05:47.337 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52359 1 109 1 2025-09-06 15:01:38.680 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2484 1 2025-09-06 15:05:47.337 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41163 1 80 1 2025-09-06 15:05:47.326 00:00:00.000 UDP 28.104.0.1:41163 -> 198.28.0.2:53 1 64 1 2025-09-06 15:05:47.326 00:00:00.000 UDP 28.104.0.1:52359 -> 198.28.0.2:53 1 64 1 2025-09-06 15:06:26.683 00:00:00.218 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-09-06 15:02:24.406 00:05:02.513 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-06 15:06:47.589 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42019 1 109 1 2025-09-06 15:06:47.588 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55005 1 80 1 2025-09-06 15:06:47.579 00:00:00.000 UDP 28.104.0.1:42019 -> 198.28.0.2:53 1 64 1 2025-09-06 15:06:47.579 00:00:00.000 UDP 28.104.0.1:55005 -> 198.28.0.2:53 1 64 1 2025-09-06 15:03:24.356 00:05:02.336 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-06 15:07:26.684 00:00:00.217 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-09-06 15:03:26.681 00:05:00.341 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-09-06 15:07:47.874 00:00:00.000 UDP 28.104.0.1:53948 -> 198.28.0.2:53 1 64 1 2025-09-06 15:07:47.874 00:00:00.000 UDP 28.104.0.1:46539 -> 198.28.0.2:53 1 64 1 2025-09-06 15:07:47.884 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46539 1 80 1 2025-09-06 15:07:47.884 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53948 1 109 1 2025-09-06 15:08:26.683 00:00:00.222 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-09-06 15:04:24.368 00:05:02.315 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-06 15:08:48.235 00:00:00.000 UDP 28.104.0.1:58168 -> 198.28.0.2:53 1 64 1 2025-09-06 15:08:48.235 00:00:00.000 UDP 28.104.0.1:42527 -> 198.28.0.2:53 1 64 1 2025-09-06 15:08:48.245 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58168 1 109 1 2025-09-06 15:08:48.245 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42527 1 80 1 2025-09-06 15:09:06.553 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-06 15:09:48.536 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59891 1 109 1 2025-09-06 15:09:48.536 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32781 1 80 1 2025-09-06 15:09:48.527 00:00:00.000 UDP 28.104.0.1:32781 -> 198.28.0.2:53 1 64 1 2025-09-06 15:09:48.526 00:00:00.000 UDP 28.104.0.1:59891 -> 198.28.0.2:53 1 64 1 2025-09-06 15:09:26.683 00:01:00.218 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-06 15:10:48.832 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53879 1 109 1 2025-09-06 15:10:48.831 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37820 1 80 1 2025-09-06 15:10:48.823 00:00:00.000 UDP 28.104.0.1:37820 -> 198.28.0.2:53 1 64 1 2025-09-06 15:10:48.823 00:00:00.000 UDP 28.104.0.1:53879 -> 198.28.0.2:53 1 64 1 2025-09-06 15:06:58.684 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2528 1 2025-09-06 15:11:26.683 00:00:00.217 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-09-06 15:07:24.358 00:05:02.571 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-06 15:11:49.828 00:00:00.000 UDP 28.104.0.1:38183 -> 198.28.0.2:53 1 64 1 2025-09-06 15:11:49.828 00:00:00.000 UDP 28.104.0.1:56157 -> 198.28.0.2:53 1 64 1 2025-09-06 15:11:49.838 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38183 1 80 1 2025-09-06 15:11:49.838 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56157 1 109 1 2025-09-06 15:12:26.682 00:00:00.218 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-09-06 15:08:24.407 00:05:02.513 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-06 15:12:50.134 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51541 1 109 1 2025-09-06 15:12:50.134 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49463 1 80 1 2025-09-06 15:12:50.123 00:00:00.000 UDP 28.104.0.1:51541 -> 198.28.0.2:53 1 64 1 2025-09-06 15:12:50.123 00:00:00.000 UDP 28.104.0.1:49463 -> 198.28.0.2:53 1 64 1 2025-09-06 15:13:26.683 00:00:00.218 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-09-06 15:09:24.357 00:05:02.337 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-06 15:09:26.683 00:05:00.343 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-09-06 15:13:50.415 00:00:00.000 UDP 28.104.0.1:53912 -> 198.28.0.2:53 1 64 1 2025-09-06 15:13:50.415 00:00:00.000 UDP 28.104.0.1:42493 -> 198.28.0.2:53 1 64 1 2025-09-06 15:13:50.426 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53912 1 80 1 2025-09-06 15:13:50.426 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42493 1 109 1 2025-09-06 15:14:06.882 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-06 15:10:24.369 00:05:02.316 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-06 15:14:50.725 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47941 1 80 1 2025-09-06 15:14:50.725 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35764 1 109 1 2025-09-06 15:14:50.714 00:00:00.000 UDP 28.104.0.1:35764 -> 198.28.0.2:53 1 64 1 2025-09-06 15:14:50.714 00:00:00.000 UDP 28.104.0.1:47941 -> 198.28.0.2:53 1 64 1 2025-09-06 15:14:26.685 00:01:00.216 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-06 15:15:51.020 00:00:00.000 UDP 28.104.0.1:45893 -> 198.28.0.2:53 1 64 1 2025-09-06 15:15:51.020 00:00:00.000 UDP 28.104.0.1:34782 -> 198.28.0.2:53 1 64 1 2025-09-06 15:15:51.034 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34782 1 80 1 2025-09-06 15:15:51.033 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45893 1 109 1 2025-09-06 15:12:18.692 00:05:01.018 OSPF 28.0.2.1:0 -> 224.0.0.5:0 48 3536 1 2025-09-06 15:16:26.685 00:00:00.217 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-09-06 15:16:51.299 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36154 1 109 1 2025-09-06 15:16:51.301 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39924 1 80 1 2025-09-06 15:16:51.289 00:00:00.000 UDP 28.104.0.1:39924 -> 198.28.0.2:53 1 64 1 2025-09-06 15:16:51.289 00:00:00.000 UDP 28.104.0.1:36154 -> 198.28.0.2:53 1 64 1 2025-09-06 15:17:26.686 00:00:00.216 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-09-06 15:13:24.358 00:05:02.573 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-06 15:17:51.606 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57516 1 80 1 2025-09-06 15:17:51.606 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38907 1 109 1 2025-09-06 15:17:51.596 00:00:00.000 UDP 28.104.0.1:57516 -> 198.28.0.2:53 1 64 1 2025-09-06 15:17:51.596 00:00:00.000 UDP 28.104.0.1:38907 -> 198.28.0.2:53 1 64 1 2025-09-06 15:18:26.686 00:00:00.215 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-09-06 15:14:24.408 00:05:02.516 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-06 15:18:51.898 00:00:00.000 UDP 28.104.0.1:48371 -> 198.28.0.2:53 1 64 1 2025-09-06 15:18:51.898 00:00:00.000 UDP 28.104.0.1:54308 -> 198.28.0.2:53 1 64 1 2025-09-06 15:18:51.908 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48371 1 80 1 2025-09-06 15:18:51.908 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54308 1 109 1 2025-09-06 15:19:06.657 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-06 15:15:24.360 00:05:02.336 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-06 15:15:26.685 00:05:00.342 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-09-06 15:19:52.173 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54110 1 80 1 2025-09-06 15:19:52.172 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57119 1 109 1 2025-09-06 15:19:52.163 00:00:00.000 UDP 28.104.0.1:57119 -> 198.28.0.2:53 1 64 1 2025-09-06 15:19:52.163 00:00:00.000 UDP 28.104.0.1:54110 -> 198.28.0.2:53 1 64 1 2025-09-06 15:19:26.686 00:01:00.222 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-06 15:16:24.370 00:05:02.319 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-06 15:20:52.462 00:00:00.000 UDP 28.104.0.1:60624 -> 198.28.0.2:53 1 64 1 2025-09-06 15:20:52.462 00:00:00.000 UDP 28.104.0.1:39573 -> 198.28.0.2:53 1 64 1 2025-09-06 15:20:52.473 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39573 1 109 1 2025-09-06 15:20:52.473 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60624 1 80 1 2025-09-06 15:17:28.693 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2360 1 2025-09-06 15:21:52.770 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37962 1 80 1 2025-09-06 15:21:52.770 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35055 1 109 1 2025-09-06 15:21:52.760 00:00:00.000 UDP 28.104.0.1:35055 -> 198.28.0.2:53 1 64 1 2025-09-06 15:21:52.760 00:00:00.000 UDP 28.104.0.1:37962 -> 198.28.0.2:53 1 64 1 2025-09-06 15:21:26.688 00:01:00.219 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-06 15:22:53.085 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53483 1 109 1 2025-09-06 15:22:53.085 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49894 1 80 1 2025-09-06 15:22:53.074 00:00:00.000 UDP 28.104.0.1:53483 -> 198.28.0.2:53 1 64 1 2025-09-06 15:22:53.075 00:00:00.000 UDP 28.104.0.1:49894 -> 198.28.0.2:53 1 64 1 2025-09-06 15:23:26.687 00:00:00.221 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-09-06 15:19:24.360 00:05:02.576 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-06 15:23:53.366 00:00:00.000 UDP 28.104.0.1:56667 -> 198.28.0.2:53 1 64 1 2025-09-06 15:23:53.366 00:00:00.000 UDP 28.104.0.1:49870 -> 198.28.0.2:53 1 64 1 2025-09-06 15:23:53.376 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56667 1 109 1 2025-09-06 15:23:53.377 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49870 1 80 1 2025-09-06 15:24:06.911 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-06 15:20:24.411 00:05:02.515 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-06 15:24:55.997 00:00:00.000 UDP 28.104.0.1:53222 -> 198.28.0.2:53 1 64 1 2025-09-06 15:24:55.997 00:00:00.000 UDP 28.104.0.1:49786 -> 198.28.0.2:53 1 64 1 2025-09-06 15:24:56.009 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53222 1 80 1 2025-09-06 15:24:56.008 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49786 1 109 1 2025-09-06 15:24:26.687 00:01:00.221 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-06 15:21:26.689 00:05:00.340 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-09-06 15:21:24.360 00:05:02.340 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-06 15:25:56.306 00:00:00.000 UDP 28.104.0.1:37728 -> 198.28.0.2:53 1 64 1 2025-09-06 15:25:56.306 00:00:00.000 UDP 28.104.0.1:48009 -> 198.28.0.2:53 1 64 1 2025-09-06 15:25:56.316 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37728 1 109 1 2025-09-06 15:25:56.316 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48009 1 80 1 2025-09-06 15:22:24.372 00:05:02.317 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-06 15:22:48.699 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2776 1 2025-09-06 15:26:57.294 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52086 1 80 1 2025-09-06 15:26:57.294 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51590 1 109 1 2025-09-06 15:26:57.283 00:00:00.000 UDP 28.104.0.1:51590 -> 198.28.0.2:53 1 64 1 2025-09-06 15:26:57.283 00:00:00.000 UDP 28.104.0.1:52086 -> 198.28.0.2:53 1 64 1 2025-09-06 15:26:26.689 00:01:00.220 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-06 15:27:57.576 00:00:00.000 UDP 28.104.0.1:49822 -> 198.28.0.2:53 1 64 1 2025-09-06 15:27:57.576 00:00:00.000 UDP 28.104.0.1:40058 -> 198.28.0.2:53 1 64 1 2025-09-06 15:27:57.587 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49822 1 80 1 2025-09-06 15:27:57.587 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40058 1 109 1 2025-09-06 15:28:26.689 00:00:00.220 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-09-06 15:28:57.863 00:00:00.000 UDP 28.104.0.1:53716 -> 198.28.0.2:53 1 64 1 2025-09-06 15:28:57.863 00:00:00.000 UDP 28.104.0.1:38311 -> 198.28.0.2:53 1 64 1 2025-09-06 15:28:57.873 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38311 1 109 1 2025-09-06 15:28:57.873 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53716 1 80 1 2025-09-06 15:29:07.027 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-06 15:25:24.362 00:05:02.575 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-06 15:29:58.190 00:00:00.000 UDP 28.104.0.1:48197 -> 198.28.0.2:53 1 64 1 2025-09-06 15:29:58.190 00:00:00.000 UDP 28.104.0.1:59369 -> 198.28.0.2:53 1 64 1 2025-09-06 15:29:58.200 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59369 1 109 1 2025-09-06 15:29:58.200 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48197 1 80 1 2025-09-06 15:29:26.688 00:01:00.221 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-06 15:26:24.414 00:05:02.516 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-06 15:30:58.497 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56703 1 109 1 2025-09-06 15:30:58.496 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34205 1 80 1 2025-09-06 15:30:58.486 00:00:00.000 UDP 28.104.0.1:56703 -> 198.28.0.2:53 1 64 1 2025-09-06 15:30:58.486 00:00:00.000 UDP 28.104.0.1:34205 -> 198.28.0.2:53 1 64 1 2025-09-06 15:27:24.362 00:05:02.338 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-06 15:27:26.689 00:05:00.342 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-09-06 15:31:58.791 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44107 1 80 1 2025-09-06 15:31:58.791 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49126 1 109 1 2025-09-06 15:31:58.779 00:00:00.000 UDP 28.104.0.1:44107 -> 198.28.0.2:53 1 64 1 2025-09-06 15:31:58.779 00:00:00.000 UDP 28.104.0.1:49126 -> 198.28.0.2:53 1 64 1 2025-09-06 15:28:08.706 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2668 1 2025-09-06 15:31:26.689 00:01:00.221 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-06 15:28:24.372 00:05:02.317 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-06 15:32:59.087 00:00:00.000 UDP 28.104.0.1:42959 -> 198.28.0.2:53 1 64 1 2025-09-06 15:32:59.087 00:00:00.000 UDP 28.104.0.1:36407 -> 198.28.0.2:53 1 64 1 2025-09-06 15:32:59.099 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42959 1 80 1 2025-09-06 15:32:59.099 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36407 1 109 1 2025-09-06 15:33:26.689 00:00:00.221 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-09-06 15:33:59.398 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49550 1 80 1 2025-09-06 15:33:59.398 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52833 1 109 1 2025-09-06 15:33:59.388 00:00:00.000 UDP 28.104.0.1:49550 -> 198.28.0.2:53 1 64 1 2025-09-06 15:33:59.388 00:00:00.000 UDP 28.104.0.1:52833 -> 198.28.0.2:53 1 64 1 2025-09-06 15:34:07.020 00:00:00.019 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-06 15:34:59.686 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40405 1 109 1 2025-09-06 15:34:59.686 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53244 1 80 1 2025-09-06 15:34:59.676 00:00:00.000 UDP 28.104.0.1:40405 -> 198.28.0.2:53 1 64 1 2025-09-06 15:34:59.676 00:00:00.000 UDP 28.104.0.1:53244 -> 198.28.0.2:53 1 64 1 2025-09-06 15:34:26.690 00:01:00.224 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-06 15:31:24.363 00:05:02.575 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-06 15:35:59.976 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35548 1 80 1 2025-09-06 15:35:59.976 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58755 1 109 1 2025-09-06 15:35:59.965 00:00:00.000 UDP 28.104.0.1:58755 -> 198.28.0.2:53 1 64 1 2025-09-06 15:35:59.965 00:00:00.000 UDP 28.104.0.1:35548 -> 198.28.0.2:53 1 64 1 2025-09-06 15:32:24.414 00:05:02.515 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-06 15:37:00.227 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58233 1 109 1 2025-09-06 15:37:00.227 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55129 1 80 1 2025-09-06 15:37:00.217 00:00:00.000 UDP 28.104.0.1:55129 -> 198.28.0.2:53 1 64 1 2025-09-06 15:37:00.217 00:00:00.000 UDP 28.104.0.1:58233 -> 198.28.0.2:53 1 64 1 2025-09-06 15:33:24.364 00:05:02.340 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-06 15:33:28.716 00:05:00.334 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2588 1 2025-09-06 15:36:26.689 00:01:00.221 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-06 15:33:26.688 00:05:00.343 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-09-06 15:38:00.502 00:00:00.000 UDP 28.104.0.1:38772 -> 198.28.0.2:53 1 64 1 2025-09-06 15:38:00.502 00:00:00.000 UDP 28.104.0.1:36208 -> 198.28.0.2:53 1 64 1 2025-09-06 15:38:00.514 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36208 1 109 1 2025-09-06 15:38:00.513 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38772 1 80 1 2025-09-06 15:38:26.694 00:00:00.218 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-09-06 15:34:24.374 00:05:02.320 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-06 15:39:00.799 00:00:00.000 UDP 28.104.0.1:60371 -> 198.28.0.2:53 1 64 1 2025-09-06 15:39:00.799 00:00:00.000 UDP 28.104.0.1:59864 -> 198.28.0.2:53 1 64 1 2025-09-06 15:39:00.809 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59864 1 80 1 2025-09-06 15:39:00.809 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60371 1 109 1 2025-09-06 15:39:06.470 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-06 15:39:26.694 00:00:00.218 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-09-06 15:40:09.823 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39749 1 80 1 2025-09-06 15:40:09.823 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56575 1 109 1 2025-09-06 15:40:09.814 00:00:00.000 UDP 28.104.0.1:56575 -> 198.28.0.2:53 1 64 1 2025-09-06 15:40:09.814 00:00:00.000 UDP 28.104.0.1:39749 -> 198.28.0.2:53 1 64 1 2025-09-06 15:40:26.694 00:00:00.218 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-09-06 15:41:10.116 00:00:00.000 UDP 28.104.0.1:42790 -> 198.28.0.2:53 1 64 1 2025-09-06 15:41:10.116 00:00:00.000 UDP 28.104.0.1:45173 -> 198.28.0.2:53 1 64 1 2025-09-06 15:41:10.126 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42790 1 80 1 2025-09-06 15:41:10.126 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45173 1 109 1 2025-09-06 15:37:24.364 00:05:02.575 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-06 15:42:10.379 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51820 1 80 1 2025-09-06 15:42:10.379 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39428 1 109 1 2025-09-06 15:42:10.369 00:00:00.000 UDP 28.104.0.1:51820 -> 198.28.0.2:53 1 64 1 2025-09-06 15:42:10.368 00:00:00.000 UDP 28.104.0.1:39428 -> 198.28.0.2:53 1 64 1 2025-09-06 15:41:26.694 00:01:00.219 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-06 15:38:24.414 00:05:02.516 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-06 15:38:38.720 00:05:10.012 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2792 1 2025-09-06 15:43:10.628 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50264 1 109 1 2025-09-06 15:43:10.628 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52627 1 80 1 2025-09-06 15:43:10.618 00:00:00.000 UDP 28.104.0.1:52627 -> 198.28.0.2:53 1 64 1 2025-09-06 15:43:10.618 00:00:00.000 UDP 28.104.0.1:50264 -> 198.28.0.2:53 1 64 1 2025-09-06 15:39:24.367 00:05:02.338 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-06 15:43:26.695 00:00:00.219 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-09-06 15:39:26.695 00:05:00.339 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-09-06 15:44:07.144 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-06 15:44:10.878 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40407 1 80 1 2025-09-06 15:44:10.878 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39095 1 109 1 2025-09-06 15:44:10.867 00:00:00.000 UDP 28.104.0.1:39095 -> 198.28.0.2:53 1 64 1 2025-09-06 15:44:10.867 00:00:00.000 UDP 28.104.0.1:40407 -> 198.28.0.2:53 1 64 1 2025-09-06 15:44:26.695 00:00:00.219 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-09-06 15:40:24.378 00:05:02.318 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-06 15:45:11.180 00:00:00.000 UDP 28.104.0.1:48908 -> 198.28.0.2:53 1 64 1 2025-09-06 15:45:11.181 00:00:00.000 UDP 28.104.0.1:52466 -> 198.28.0.2:53 1 64 1 2025-09-06 15:45:11.191 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48908 1 109 1 2025-09-06 15:45:11.191 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52466 1 80 1 2025-09-06 15:45:26.697 00:00:00.217 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-09-06 15:46:11.485 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36064 1 80 1 2025-09-06 15:46:11.485 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35329 1 109 1 2025-09-06 15:46:11.474 00:00:00.000 UDP 28.104.0.1:35329 -> 198.28.0.2:53 1 64 1 2025-09-06 15:46:11.474 00:00:00.000 UDP 28.104.0.1:36064 -> 198.28.0.2:53 1 64 1 2025-09-06 15:47:11.735 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43833 1 80 1 2025-09-06 15:47:11.735 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47501 1 109 1 2025-09-06 15:47:11.724 00:00:00.000 UDP 28.104.0.1:47501 -> 198.28.0.2:53 1 64 1 2025-09-06 15:47:11.724 00:00:00.000 UDP 28.104.0.1:43833 -> 198.28.0.2:53 1 64 1 2025-09-06 15:46:26.698 00:01:00.218 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-06 15:43:24.368 00:05:02.573 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-06 15:43:58.732 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2792 1 2025-09-06 15:48:12.050 00:00:00.000 UDP 28.104.0.1:35022 -> 198.28.0.2:53 1 64 1 2025-09-06 15:48:12.050 00:00:00.000 UDP 28.104.0.1:58795 -> 198.28.0.2:53 1 64 1 2025-09-06 15:48:12.061 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58795 1 80 1 2025-09-06 15:48:12.060 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35022 1 109 1 2025-09-06 15:48:26.697 00:00:00.218 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-09-06 15:44:24.419 00:05:02.513 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-06 15:49:07.799 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-06 15:49:12.349 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52895 1 109 1 2025-09-06 15:49:12.349 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56342 1 80 1 2025-09-06 15:49:12.338 00:00:00.000 UDP 28.104.0.1:52895 -> 198.28.0.2:53 1 64 1 2025-09-06 15:49:12.338 00:00:00.000 UDP 28.104.0.1:56342 -> 198.28.0.2:53 1 64 1 2025-09-06 15:49:26.697 00:00:00.218 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-09-06 15:45:26.696 00:05:00.339 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-09-06 15:45:24.372 00:05:02.335 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-06 15:50:12.638 00:00:00.000 UDP 28.104.0.1:37655 -> 198.28.0.2:53 1 64 1 2025-09-06 15:50:12.639 00:00:00.000 UDP 28.104.0.1:36119 -> 198.28.0.2:53 1 64 1 2025-09-06 15:50:12.649 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37655 1 80 1 2025-09-06 15:50:12.649 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36119 1 109 1 2025-09-06 15:50:26.697 00:00:00.219 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-09-06 15:46:24.379 00:05:02.318 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-06 15:51:12.929 00:00:00.000 UDP 28.104.0.1:49258 -> 198.28.0.2:53 1 64 1 2025-09-06 15:51:12.930 00:00:00.000 UDP 28.104.0.1:42520 -> 198.28.0.2:53 1 64 1 2025-09-06 15:51:12.940 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49258 1 109 1 2025-09-06 15:51:12.940 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42520 1 80 1 2025-09-06 15:52:13.240 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58139 1 80 1 2025-09-06 15:52:13.240 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38579 1 109 1 2025-09-06 15:52:13.230 00:00:00.000 UDP 28.104.0.1:58139 -> 198.28.0.2:53 1 64 1 2025-09-06 15:52:13.229 00:00:00.000 UDP 28.104.0.1:38579 -> 198.28.0.2:53 1 64 1 2025-09-06 15:51:26.698 00:01:00.233 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-06 15:53:13.487 00:00:00.000 UDP 28.104.0.1:58941 -> 198.28.0.2:53 1 64 1 2025-09-06 15:53:13.486 00:00:00.000 UDP 28.104.0.1:35399 -> 198.28.0.2:53 1 64 1 2025-09-06 15:53:13.498 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58941 1 109 1 2025-09-06 15:53:13.497 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35399 1 80 1 2025-09-06 15:49:18.740 00:05:00.556 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2684 1 2025-09-06 15:53:26.699 00:00:00.232 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-09-06 15:49:24.373 00:05:02.570 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-06 15:54:07.540 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-06 15:54:13.807 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46216 1 109 1 2025-09-06 15:54:13.807 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58270 1 80 1 2025-09-06 15:54:13.796 00:00:00.000 UDP 28.104.0.1:46216 -> 198.28.0.2:53 1 64 1 2025-09-06 15:54:13.796 00:00:00.000 UDP 28.104.0.1:58270 -> 198.28.0.2:53 1 64 1 2025-09-06 15:54:26.699 00:00:00.231 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-09-06 15:50:24.423 00:05:02.510 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-06 15:55:14.119 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36715 1 80 1 2025-09-06 15:55:14.119 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41002 1 109 1 2025-09-06 15:55:14.108 00:00:00.000 UDP 28.104.0.1:36715 -> 198.28.0.2:53 1 64 1 2025-09-06 15:55:14.108 00:00:00.000 UDP 28.104.0.1:41002 -> 198.28.0.2:53 1 64 1 2025-09-06 15:55:26.700 00:00:00.232 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-09-06 15:51:26.698 00:05:00.339 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-09-06 15:51:24.373 00:05:02.337 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-06 15:56:14.401 00:00:00.000 UDP 28.104.0.1:37226 -> 198.28.0.2:53 1 64 1 2025-09-06 15:56:14.402 00:00:00.000 UDP 28.104.0.1:33944 -> 198.28.0.2:53 1 64 1 2025-09-06 15:56:14.411 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37226 1 80 1 2025-09-06 15:56:14.412 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33944 1 109 1 2025-09-06 15:52:24.383 00:05:02.317 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-06 15:57:22.263 00:00:00.000 UDP 28.104.0.1:36558 -> 198.28.0.2:53 1 64 1 2025-09-06 15:56:26.700 00:01:00.232 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-06 15:57:22.262 00:00:00.000 UDP 28.104.0.1:45860 -> 198.28.0.2:53 1 64 1 2025-09-06 15:57:22.272 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36558 1 80 1 2025-09-06 15:57:22.272 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45860 1 109 1 2025-09-06 15:58:22.565 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46110 1 80 1 2025-09-06 15:58:22.566 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38727 1 109 1 2025-09-06 15:58:22.555 00:00:00.000 UDP 28.104.0.1:46110 -> 198.28.0.2:53 1 64 1 2025-09-06 15:58:22.556 00:00:00.000 UDP 28.104.0.1:38727 -> 198.28.0.2:53 1 64 1 2025-09-06 15:54:28.747 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2668 1 Summary: total flows: 352, total bytes: 98468, total packets: 1449, avg bps: 204, avg pps: 0, avg bpp: 67 Time window: 2025-09-06 14:55:24 - 2025-09-06 15:59:38 Total flows processed: 352, passed: 352, Blocks skipped: 0, Bytes read: 36672 Sys: 0.0011s User: 0.0034s Wall: 0.0024s flows/second: 147772.5 Runtime: 0.0024s