Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-12 16:59:11.530 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49247 1 80 1 2025-09-12 16:59:11.530 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57440 1 109 1 2025-09-12 16:59:11.520 00:00:00.000 UDP 28.104.0.1:49247 -> 198.28.0.2:53 1 64 1 2025-09-12 16:59:11.520 00:00:00.000 UDP 28.104.0.1:57440 -> 198.28.0.2:53 1 64 1 2025-09-12 16:55:27.203 00:05:04.357 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-12 17:00:11.828 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38500 1 109 1 2025-09-12 17:00:11.828 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53326 1 80 1 2025-09-12 17:00:11.817 00:00:00.000 UDP 28.104.0.1:38500 -> 198.28.0.2:53 1 64 1 2025-09-12 17:00:11.818 00:00:00.000 UDP 28.104.0.1:53326 -> 198.28.0.2:53 1 64 1 2025-09-12 16:56:27.152 00:05:04.128 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-12 16:59:31.270 00:01:00.300 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-09-12 16:59:31.270 00:01:00.248 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-12 16:57:00.446 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2812 1 2025-09-12 17:01:12.122 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41930 1 109 1 2025-09-12 17:01:12.122 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38497 1 80 1 2025-09-12 17:01:12.112 00:00:00.000 UDP 28.104.0.1:38497 -> 198.28.0.2:53 1 64 1 2025-09-12 17:01:12.112 00:00:00.000 UDP 28.104.0.1:41930 -> 198.28.0.2:53 1 64 1 2025-09-12 16:57:27.164 00:05:04.108 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-12 17:02:09.454 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-12 17:02:12.408 00:00:00.000 UDP 28.104.0.1:51307 -> 198.28.0.2:53 1 64 1 2025-09-12 17:02:12.408 00:00:00.000 UDP 28.104.0.1:33030 -> 198.28.0.2:53 1 64 1 2025-09-12 17:02:12.418 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33030 1 109 1 2025-09-12 17:02:12.418 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51307 1 80 1 2025-09-12 17:03:12.741 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33989 1 109 1 2025-09-12 17:03:12.742 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55030 1 80 1 2025-09-12 17:03:12.732 00:00:00.000 UDP 28.104.0.1:33989 -> 198.28.0.2:53 1 64 1 2025-09-12 17:03:12.732 00:00:00.000 UDP 28.104.0.1:55030 -> 198.28.0.2:53 1 64 1 2025-09-12 17:01:31.272 00:02:00.296 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-09-12 17:01:31.272 00:02:00.241 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-09-12 17:04:13.078 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48737 1 80 1 2025-09-12 17:04:13.078 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55894 1 109 1 2025-09-12 17:04:13.068 00:00:00.000 UDP 28.104.0.1:48737 -> 198.28.0.2:53 1 64 1 2025-09-12 17:04:13.068 00:00:00.000 UDP 28.104.0.1:55894 -> 198.28.0.2:53 1 64 1 2025-09-12 17:00:27.154 00:05:04.417 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-12 17:05:13.380 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44848 1 109 1 2025-09-12 17:05:13.381 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42982 1 80 1 2025-09-12 17:05:13.371 00:00:00.000 UDP 28.104.0.1:42982 -> 198.28.0.2:53 1 64 1 2025-09-12 17:05:13.370 00:00:00.000 UDP 28.104.0.1:44848 -> 198.28.0.2:53 1 64 1 2025-09-12 17:04:31.272 00:01:00.295 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-09-12 17:04:31.272 00:01:00.242 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-12 17:01:27.203 00:05:04.357 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-12 17:06:13.672 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50964 1 80 1 2025-09-12 17:06:13.672 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52012 1 109 1 2025-09-12 17:06:13.662 00:00:00.000 UDP 28.104.0.1:52012 -> 198.28.0.2:53 1 64 1 2025-09-12 17:06:13.662 00:00:00.000 UDP 28.104.0.1:50964 -> 198.28.0.2:53 1 64 1 2025-09-12 17:02:20.454 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 46 3308 1 2025-09-12 17:02:27.154 00:05:04.128 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-12 17:07:09.404 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-12 17:07:13.966 00:00:00.000 UDP 28.104.0.1:33505 -> 198.28.0.2:53 1 64 1 2025-09-12 17:07:13.966 00:00:00.000 UDP 28.104.0.1:35754 -> 198.28.0.2:53 1 64 1 2025-09-12 17:07:13.978 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33505 1 109 1 2025-09-12 17:07:13.978 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35754 1 80 1 2025-09-12 17:03:27.164 00:05:04.107 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-12 17:08:14.262 00:00:00.000 UDP 28.104.0.1:60950 -> 198.28.0.2:53 1 64 1 2025-09-12 17:08:14.263 00:00:00.000 UDP 28.104.0.1:59609 -> 198.28.0.2:53 1 64 1 2025-09-12 17:08:14.273 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59609 1 109 1 2025-09-12 17:08:14.273 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60950 1 80 1 2025-09-12 17:09:15.195 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57092 1 80 1 2025-09-12 17:09:15.195 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45094 1 109 1 2025-09-12 17:09:15.185 00:00:00.000 UDP 28.104.0.1:45094 -> 198.28.0.2:53 1 64 1 2025-09-12 17:09:15.185 00:00:00.000 UDP 28.104.0.1:57092 -> 198.28.0.2:53 1 64 1 2025-09-12 17:10:15.786 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55870 1 80 1 2025-09-12 17:10:15.784 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60226 1 109 1 2025-09-12 17:10:15.774 00:00:00.000 UDP 28.104.0.1:60226 -> 198.28.0.2:53 1 64 1 2025-09-12 17:10:15.775 00:00:00.000 UDP 28.104.0.1:55870 -> 198.28.0.2:53 1 64 1 2025-09-12 17:06:31.271 00:04:00.302 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-09-12 17:06:31.271 00:04:00.243 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-09-12 17:06:27.154 00:05:04.421 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-12 17:11:16.088 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46222 1 109 1 2025-09-12 17:11:16.088 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60201 1 80 1 2025-09-12 17:11:16.079 00:00:00.000 UDP 28.104.0.1:46222 -> 198.28.0.2:53 1 64 1 2025-09-12 17:11:16.079 00:00:00.000 UDP 28.104.0.1:60201 -> 198.28.0.2:53 1 64 1 2025-09-12 17:07:27.205 00:05:04.361 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-12 17:07:40.462 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2424 1 2025-09-12 17:12:09.729 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-12 17:12:16.372 00:00:00.000 UDP 28.104.0.1:45019 -> 198.28.0.2:53 1 64 1 2025-09-12 17:12:16.372 00:00:00.000 UDP 28.104.0.1:34587 -> 198.28.0.2:53 1 64 1 2025-09-12 17:12:16.383 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34587 1 109 1 2025-09-12 17:12:16.382 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45019 1 80 1 2025-09-12 17:08:27.154 00:05:04.128 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-12 17:13:16.637 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45846 1 109 1 2025-09-12 17:13:16.636 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48726 1 80 1 2025-09-12 17:13:16.625 00:00:00.000 UDP 28.104.0.1:45846 -> 198.28.0.2:53 1 64 1 2025-09-12 17:13:16.625 00:00:00.000 UDP 28.104.0.1:48726 -> 198.28.0.2:53 1 64 1 2025-09-12 17:09:27.164 00:05:04.108 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-12 17:14:16.926 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36626 1 80 1 2025-09-12 17:14:16.926 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35812 1 109 1 2025-09-12 17:14:16.915 00:00:00.000 UDP 28.104.0.1:36626 -> 198.28.0.2:53 1 64 1 2025-09-12 17:14:16.915 00:00:00.000 UDP 28.104.0.1:35812 -> 198.28.0.2:53 1 64 1 2025-09-12 17:15:17.232 00:00:00.000 UDP 28.104.0.1:39537 -> 198.28.0.2:53 1 64 1 2025-09-12 17:15:17.232 00:00:00.000 UDP 28.104.0.1:33434 -> 198.28.0.2:53 1 64 1 2025-09-12 17:15:17.242 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39537 1 80 1 2025-09-12 17:15:17.242 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33434 1 109 1 2025-09-12 17:11:31.273 00:04:00.296 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-09-12 17:11:31.273 00:04:00.242 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-09-12 17:16:17.522 00:00:00.000 UDP 28.104.0.1:34947 -> 198.28.0.2:53 1 64 1 2025-09-12 17:16:17.522 00:00:00.000 UDP 28.104.0.1:37534 -> 198.28.0.2:53 1 64 1 2025-09-12 17:16:17.532 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37534 1 80 1 2025-09-12 17:16:17.532 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34947 1 109 1 2025-09-12 17:12:27.155 00:05:04.422 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-12 17:17:09.656 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-12 17:13:00.469 00:05:10.011 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2940 1 2025-09-12 17:17:17.776 00:00:00.000 UDP 28.104.0.1:47790 -> 198.28.0.2:53 1 64 1 2025-09-12 17:17:17.776 00:00:00.000 UDP 28.104.0.1:50926 -> 198.28.0.2:53 1 64 1 2025-09-12 17:17:17.785 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47790 1 109 1 2025-09-12 17:17:17.785 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50926 1 80 1 2025-09-12 17:13:27.205 00:05:04.361 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-12 17:18:18.109 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49216 1 109 1 2025-09-12 17:18:18.109 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56525 1 80 1 2025-09-12 17:18:18.099 00:00:00.000 UDP 28.104.0.1:49216 -> 198.28.0.2:53 1 64 1 2025-09-12 17:18:18.099 00:00:00.000 UDP 28.104.0.1:56525 -> 198.28.0.2:53 1 64 1 2025-09-12 17:14:27.154 00:05:04.129 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-12 17:19:18.400 00:00:00.000 UDP 28.104.0.1:50512 -> 198.28.0.2:53 1 64 1 2025-09-12 17:19:18.399 00:00:00.000 UDP 28.104.0.1:47170 -> 198.28.0.2:53 1 64 1 2025-09-12 17:19:18.410 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47170 1 109 1 2025-09-12 17:19:18.410 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50512 1 80 1 2025-09-12 17:15:27.165 00:05:04.108 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-12 17:20:18.712 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51894 1 109 1 2025-09-12 17:20:18.712 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40195 1 80 1 2025-09-12 17:20:18.702 00:00:00.000 UDP 28.104.0.1:51894 -> 198.28.0.2:53 1 64 1 2025-09-12 17:20:18.702 00:00:00.000 UDP 28.104.0.1:40195 -> 198.28.0.2:53 1 64 1 2025-09-12 17:16:31.273 00:04:00.297 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-09-12 17:16:31.273 00:04:00.242 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-09-12 17:21:18.965 00:00:00.000 UDP 28.104.0.1:57360 -> 198.28.0.2:53 1 64 1 2025-09-12 17:21:18.965 00:00:00.000 UDP 28.104.0.1:43374 -> 198.28.0.2:53 1 64 1 2025-09-12 17:21:18.975 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43374 1 109 1 2025-09-12 17:21:18.975 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57360 1 80 1 2025-09-12 17:22:10.160 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-12 17:22:19.262 00:00:00.000 UDP 28.104.0.1:46304 -> 198.28.0.2:53 1 64 1 2025-09-12 17:22:19.262 00:00:00.000 UDP 28.104.0.1:40863 -> 198.28.0.2:53 1 64 1 2025-09-12 17:22:19.271 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46304 1 80 1 2025-09-12 17:22:19.271 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40863 1 109 1 2025-09-12 17:18:27.158 00:05:04.419 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-12 17:18:20.478 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2240 1 2025-09-12 17:23:19.553 00:00:00.000 UDP 28.104.0.1:48624 -> 198.28.0.2:53 1 64 1 2025-09-12 17:23:19.553 00:00:00.000 UDP 28.104.0.1:48024 -> 198.28.0.2:53 1 64 1 2025-09-12 17:23:19.563 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48624 1 109 1 2025-09-12 17:23:19.563 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48024 1 80 1 2025-09-12 17:19:27.206 00:05:04.361 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-12 17:24:20.588 00:00:00.000 UDP 28.104.0.1:36275 -> 198.28.0.2:53 1 64 1 2025-09-12 17:24:20.587 00:00:00.000 UDP 28.104.0.1:52375 -> 198.28.0.2:53 1 64 1 2025-09-12 17:24:20.596 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52375 1 80 1 2025-09-12 17:24:20.598 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36275 1 109 1 2025-09-12 17:20:27.157 00:05:04.146 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-12 17:25:20.886 00:00:00.000 UDP 28.104.0.1:45842 -> 198.28.0.2:53 1 64 1 2025-09-12 17:25:20.886 00:00:00.000 UDP 28.104.0.1:54394 -> 198.28.0.2:53 1 64 1 2025-09-12 17:25:20.896 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45842 1 109 1 2025-09-12 17:25:20.896 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54394 1 80 1 2025-09-12 17:21:31.274 00:04:00.299 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-09-12 17:21:31.274 00:04:00.242 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-09-12 17:21:27.166 00:05:04.127 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-12 17:26:21.161 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52222 1 109 1 2025-09-12 17:26:21.160 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38460 1 80 1 2025-09-12 17:26:21.150 00:00:00.000 UDP 28.104.0.1:52222 -> 198.28.0.2:53 1 64 1 2025-09-12 17:26:21.150 00:00:00.000 UDP 28.104.0.1:38460 -> 198.28.0.2:53 1 64 1 2025-09-12 17:27:10.055 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-12 17:27:21.474 00:00:00.000 UDP 28.104.0.1:45805 -> 198.28.0.2:53 1 64 1 2025-09-12 17:27:21.475 00:00:00.000 UDP 28.104.0.1:59768 -> 198.28.0.2:53 1 64 1 2025-09-12 17:27:21.486 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59768 1 109 1 2025-09-12 17:27:21.488 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45805 1 80 1 2025-09-12 17:26:31.293 00:01:00.280 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-09-12 17:26:31.293 00:01:00.226 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-12 17:23:40.488 00:05:10.002 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2728 1 2025-09-12 17:28:21.810 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59263 1 109 1 2025-09-12 17:28:21.810 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35571 1 80 1 2025-09-12 17:28:21.800 00:00:00.000 UDP 28.104.0.1:35571 -> 198.28.0.2:53 1 64 1 2025-09-12 17:28:21.800 00:00:00.000 UDP 28.104.0.1:59263 -> 198.28.0.2:53 1 64 1 2025-09-12 17:24:27.158 00:05:04.421 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-12 17:29:22.116 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56534 1 109 1 2025-09-12 17:29:22.116 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47448 1 80 1 2025-09-12 17:29:22.106 00:00:00.000 UDP 28.104.0.1:47448 -> 198.28.0.2:53 1 64 1 2025-09-12 17:29:22.105 00:00:00.000 UDP 28.104.0.1:56534 -> 198.28.0.2:53 1 64 1 2025-09-12 17:25:27.208 00:05:04.362 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-12 17:30:22.399 00:00:00.000 UDP 28.104.0.1:48872 -> 198.28.0.2:53 1 64 1 2025-09-12 17:30:22.399 00:00:00.000 UDP 28.104.0.1:39639 -> 198.28.0.2:53 1 64 1 2025-09-12 17:30:22.409 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39639 1 109 1 2025-09-12 17:30:22.409 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48872 1 80 1 2025-09-12 17:28:31.294 00:02:00.280 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-09-12 17:28:31.294 00:02:00.223 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-09-12 17:26:27.158 00:05:04.146 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-12 17:31:22.708 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48489 1 80 1 2025-09-12 17:31:22.708 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53851 1 109 1 2025-09-12 17:31:22.698 00:00:00.000 UDP 28.104.0.1:53851 -> 198.28.0.2:53 1 64 1 2025-09-12 17:31:22.698 00:00:00.000 UDP 28.104.0.1:48489 -> 198.28.0.2:53 1 64 1 2025-09-12 17:27:27.168 00:05:04.127 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-12 17:32:10.129 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-12 17:32:23.051 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41061 1 80 1 2025-09-12 17:32:23.051 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49654 1 109 1 2025-09-12 17:32:23.041 00:00:00.000 UDP 28.104.0.1:49654 -> 198.28.0.2:53 1 64 1 2025-09-12 17:32:23.040 00:00:00.000 UDP 28.104.0.1:41061 -> 198.28.0.2:53 1 64 1 2025-09-12 17:31:31.295 00:01:00.294 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-09-12 17:31:31.295 00:01:00.230 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-12 17:29:00.490 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 46 3336 1 2025-09-12 17:33:23.303 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60240 1 109 1 2025-09-12 17:33:23.303 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56974 1 80 1 2025-09-12 17:33:23.294 00:00:00.000 UDP 28.104.0.1:60240 -> 198.28.0.2:53 1 64 1 2025-09-12 17:33:23.294 00:00:00.000 UDP 28.104.0.1:56974 -> 198.28.0.2:53 1 64 1 2025-09-12 17:34:23.641 00:00:00.000 UDP 28.104.0.1:41270 -> 198.28.0.2:53 1 64 1 2025-09-12 17:34:23.641 00:00:00.000 UDP 28.104.0.1:40579 -> 198.28.0.2:53 1 64 1 2025-09-12 17:34:23.650 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40579 1 80 1 2025-09-12 17:34:23.650 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41270 1 109 1 2025-09-12 17:30:27.158 00:05:04.430 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-12 17:35:23.945 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58468 1 80 1 2025-09-12 17:35:23.945 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47201 1 109 1 2025-09-12 17:35:23.935 00:00:00.000 UDP 28.104.0.1:47201 -> 198.28.0.2:53 1 64 1 2025-09-12 17:35:23.935 00:00:00.000 UDP 28.104.0.1:58468 -> 198.28.0.2:53 1 64 1 2025-09-12 17:33:31.295 00:02:00.294 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-09-12 17:33:31.295 00:02:00.226 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-09-12 17:31:27.209 00:05:04.369 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-12 17:36:24.234 00:00:00.000 UDP 28.104.0.1:42046 -> 198.28.0.2:53 1 64 1 2025-09-12 17:36:24.234 00:00:00.000 UDP 28.104.0.1:40135 -> 198.28.0.2:53 1 64 1 2025-09-12 17:36:24.245 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40135 1 109 1 2025-09-12 17:36:24.245 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42046 1 80 1 2025-09-12 17:32:27.159 00:05:04.148 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-12 17:37:10.138 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-12 17:37:24.541 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59301 1 80 1 2025-09-12 17:37:24.540 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53882 1 109 1 2025-09-12 17:37:24.531 00:00:00.000 UDP 28.104.0.1:53882 -> 198.28.0.2:53 1 64 1 2025-09-12 17:37:24.531 00:00:00.000 UDP 28.104.0.1:59301 -> 198.28.0.2:53 1 64 1 2025-09-12 17:36:31.296 00:01:00.294 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-09-12 17:36:31.296 00:01:00.226 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-12 17:33:27.169 00:05:04.128 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-12 17:38:24.831 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38733 1 80 1 2025-09-12 17:38:24.830 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33788 1 109 1 2025-09-12 17:38:24.821 00:00:00.000 UDP 28.104.0.1:38733 -> 198.28.0.2:53 1 64 1 2025-09-12 17:38:24.821 00:00:00.000 UDP 28.104.0.1:33788 -> 198.28.0.2:53 1 64 1 2025-09-12 17:34:20.498 00:05:10.013 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2688 1 2025-09-12 17:39:25.160 00:00:00.000 UDP 28.104.0.1:50944 -> 198.28.0.2:53 1 64 1 2025-09-12 17:39:25.160 00:00:00.000 UDP 28.104.0.1:59469 -> 198.28.0.2:53 1 64 1 2025-09-12 17:39:25.172 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50944 1 109 1 2025-09-12 17:39:25.172 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59469 1 80 1 2025-09-12 17:40:25.457 00:00:00.000 UDP 28.104.0.1:56660 -> 198.28.0.2:53 1 64 1 2025-09-12 17:40:25.457 00:00:00.000 UDP 28.104.0.1:45445 -> 198.28.0.2:53 1 64 1 2025-09-12 17:40:25.466 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56660 1 109 1 2025-09-12 17:40:25.467 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45445 1 80 1 2025-09-12 17:38:31.297 00:02:00.293 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-09-12 17:38:31.297 00:02:00.224 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-09-12 17:36:27.159 00:05:04.430 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-12 17:41:25.762 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54138 1 80 1 2025-09-12 17:41:25.762 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50532 1 109 1 2025-09-12 17:41:25.752 00:00:00.000 UDP 28.104.0.1:54138 -> 198.28.0.2:53 1 64 1 2025-09-12 17:41:25.753 00:00:00.000 UDP 28.104.0.1:50532 -> 198.28.0.2:53 1 64 1 2025-09-12 17:37:27.209 00:05:04.382 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-12 17:42:10.352 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-12 17:42:26.054 00:00:00.000 UDP 28.104.0.1:46032 -> 198.28.0.2:53 1 64 1 2025-09-12 17:42:26.054 00:00:00.000 UDP 28.104.0.1:35444 -> 198.28.0.2:53 1 64 1 2025-09-12 17:41:31.297 00:01:00.298 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-09-12 17:41:31.297 00:01:00.225 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-12 17:42:26.064 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35444 1 80 1 2025-09-12 17:42:26.065 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46032 1 109 1 2025-09-12 17:38:27.159 00:05:04.150 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-12 17:43:26.361 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34977 1 80 1 2025-09-12 17:43:26.361 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50338 1 109 1 2025-09-12 17:43:26.350 00:00:00.000 UDP 28.104.0.1:34977 -> 198.28.0.2:53 1 64 1 2025-09-12 17:43:26.350 00:00:00.000 UDP 28.104.0.1:50338 -> 198.28.0.2:53 1 64 1 2025-09-12 17:39:27.169 00:05:04.128 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-12 17:39:40.511 00:05:10.013 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2528 1 2025-09-12 17:44:26.603 00:00:00.000 UDP 28.104.0.1:55366 -> 198.28.0.2:53 1 64 1 2025-09-12 17:44:26.603 00:00:00.000 UDP 28.104.0.1:38672 -> 198.28.0.2:53 1 64 1 2025-09-12 17:44:26.613 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55366 1 109 1 2025-09-12 17:44:26.613 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38672 1 80 1 2025-09-12 17:45:26.908 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47737 1 109 1 2025-09-12 17:45:26.908 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39053 1 80 1 2025-09-12 17:45:26.898 00:00:00.000 UDP 28.104.0.1:47737 -> 198.28.0.2:53 1 64 1 2025-09-12 17:45:26.898 00:00:00.000 UDP 28.104.0.1:39053 -> 198.28.0.2:53 1 64 1 2025-09-12 17:43:31.299 00:02:00.292 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-09-12 17:43:31.299 00:02:00.224 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-09-12 17:46:27.206 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45826 1 80 1 2025-09-12 17:46:27.206 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39102 1 109 1 2025-09-12 17:46:27.195 00:00:00.000 UDP 28.104.0.1:39102 -> 198.28.0.2:53 1 64 1 2025-09-12 17:46:27.195 00:00:00.000 UDP 28.104.0.1:45826 -> 198.28.0.2:53 1 64 1 2025-09-12 17:42:27.160 00:05:04.430 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-12 17:47:10.365 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-12 17:47:27.451 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54943 1 109 1 2025-09-12 17:47:27.451 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46252 1 80 1 2025-09-12 17:46:31.305 00:01:00.287 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-09-12 17:46:31.305 00:01:00.218 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-12 17:47:27.441 00:00:00.000 UDP 28.104.0.1:54943 -> 198.28.0.2:53 1 64 1 2025-09-12 17:47:27.441 00:00:00.000 UDP 28.104.0.1:46252 -> 198.28.0.2:53 1 64 1 2025-09-12 17:43:27.210 00:05:04.370 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-12 17:44:27.159 00:05:04.156 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-12 17:48:27.705 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50919 1 80 1 2025-09-12 17:48:27.705 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50144 1 109 1 2025-09-12 17:48:27.697 00:00:00.000 UDP 28.104.0.1:50144 -> 198.28.0.2:53 1 64 1 2025-09-12 17:48:27.697 00:00:00.000 UDP 28.104.0.1:50919 -> 198.28.0.2:53 1 64 1 2025-09-12 17:45:00.524 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2716 1 2025-09-12 17:49:28.006 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60462 1 109 1 2025-09-12 17:49:28.006 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51083 1 80 1 2025-09-12 17:49:27.996 00:00:00.000 UDP 28.104.0.1:51083 -> 198.28.0.2:53 1 64 1 2025-09-12 17:45:27.172 00:05:04.136 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-12 17:49:27.996 00:00:00.000 UDP 28.104.0.1:60462 -> 198.28.0.2:53 1 64 1 2025-09-12 17:50:28.316 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39936 1 80 1 2025-09-12 17:50:28.316 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60316 1 109 1 2025-09-12 17:50:28.306 00:00:00.000 UDP 28.104.0.1:39936 -> 198.28.0.2:53 1 64 1 2025-09-12 17:50:28.306 00:00:00.000 UDP 28.104.0.1:60316 -> 198.28.0.2:53 1 64 1 2025-09-12 17:51:28.605 00:00:00.000 UDP 28.104.0.1:33383 -> 198.28.0.2:53 1 64 1 2025-09-12 17:51:28.606 00:00:00.000 UDP 28.104.0.1:54324 -> 198.28.0.2:53 1 64 1 2025-09-12 17:51:28.615 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54324 1 109 1 2025-09-12 17:51:28.614 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33383 1 80 1 2025-09-12 17:52:10.559 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-12 17:48:27.160 00:05:04.431 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-12 17:52:28.912 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54365 1 109 1 2025-09-12 17:52:28.912 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46297 1 80 1 2025-09-12 17:52:28.902 00:00:00.000 UDP 28.104.0.1:46297 -> 198.28.0.2:53 1 64 1 2025-09-12 17:48:31.305 00:04:00.287 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-09-12 17:48:31.305 00:04:00.219 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-09-12 17:52:28.901 00:00:00.000 UDP 28.104.0.1:54365 -> 198.28.0.2:53 1 64 1 2025-09-12 17:53:29.218 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59380 1 80 1 2025-09-12 17:53:29.218 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57490 1 109 1 2025-09-12 17:53:29.208 00:00:00.000 UDP 28.104.0.1:57490 -> 198.28.0.2:53 1 64 1 2025-09-12 17:53:29.208 00:00:00.000 UDP 28.104.0.1:59380 -> 198.28.0.2:53 1 64 1 2025-09-12 17:49:27.212 00:05:04.370 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-12 17:50:27.162 00:05:04.162 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-12 17:50:20.530 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2604 1 2025-09-12 17:54:29.660 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48545 1 80 1 2025-09-12 17:54:29.557 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35252 1 109 1 2025-09-12 17:54:29.546 00:00:00.000 UDP 28.104.0.1:35252 -> 198.28.0.2:53 1 64 1 2025-09-12 17:54:29.546 00:00:00.000 UDP 28.104.0.1:48545 -> 198.28.0.2:53 1 64 1 2025-09-12 17:55:29.983 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53800 1 109 1 2025-09-12 17:55:29.983 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48435 1 80 1 2025-09-12 17:55:29.972 00:00:00.000 UDP 28.104.0.1:53800 -> 198.28.0.2:53 1 64 1 2025-09-12 17:55:29.972 00:00:00.000 UDP 28.104.0.1:48435 -> 198.28.0.2:53 1 64 1 2025-09-12 17:51:27.172 00:05:04.142 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-12 17:56:30.278 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50463 1 109 1 2025-09-12 17:56:30.278 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58244 1 80 1 2025-09-12 17:56:30.268 00:00:00.000 UDP 28.104.0.1:58244 -> 198.28.0.2:53 1 64 1 2025-09-12 17:56:30.268 00:00:00.000 UDP 28.104.0.1:50463 -> 198.28.0.2:53 1 64 1 2025-09-12 17:57:10.497 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-12 17:57:30.571 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45589 1 109 1 2025-09-12 17:57:30.571 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60917 1 80 1 2025-09-12 17:53:31.308 00:04:00.287 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-09-12 17:53:31.308 00:04:00.219 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-09-12 17:57:30.562 00:00:00.000 UDP 28.104.0.1:45589 -> 198.28.0.2:53 1 64 1 2025-09-12 17:57:30.562 00:00:00.000 UDP 28.104.0.1:60917 -> 198.28.0.2:53 1 64 1 2025-09-12 17:58:30.852 00:00:00.000 UDP 28.104.0.1:36256 -> 198.28.0.2:53 1 64 1 2025-09-12 17:58:30.852 00:00:00.000 UDP 28.104.0.1:59564 -> 198.28.0.2:53 1 64 1 2025-09-12 17:58:30.861 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36256 1 109 1 2025-09-12 17:58:30.861 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59564 1 80 1 2025-09-12 17:54:27.163 00:05:04.429 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 Summary: total flows: 339, total bytes: 96402, total packets: 1420, avg bps: 200, avg pps: 0, avg bpp: 67 Time window: 2025-09-12 16:55:27 - 2025-09-12 17:59:31 Total flows processed: 339, passed: 339, Blocks skipped: 0, Bytes read: 35320 Sys: 0.0057s User: 0.0009s Wall: 0.0039s flows/second: 85887.6 Runtime: 0.0040s