Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-04 07:59:04.896 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43477 1 80 1 2025-10-04 07:59:04.897 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43422 1 109 1 2025-10-04 07:59:04.886 00:00:00.000 UDP 28.104.0.1:43477 -> 198.28.0.2:53 1 64 1 2025-10-04 07:59:04.887 00:00:00.000 UDP 28.104.0.1:43422 -> 198.28.0.2:53 1 64 1 2025-10-04 07:54:46.369 00:05:50.726 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-04 07:55:37.044 00:05:09.334 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-04 07:55:37.043 00:05:09.489 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-04 08:00:05.201 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47196 1 80 1 2025-10-04 08:00:05.201 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40270 1 109 1 2025-10-04 08:00:05.191 00:00:00.000 UDP 28.104.0.1:47196 -> 198.28.0.2:53 1 64 1 2025-10-04 08:00:05.191 00:00:00.000 UDP 28.104.0.1:40270 -> 198.28.0.2:53 1 64 1 2025-10-04 08:01:05.494 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55717 1 109 1 2025-10-04 07:56:53.919 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2624 1 2025-10-04 08:01:05.494 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39886 1 80 1 2025-10-04 08:01:05.484 00:00:00.000 UDP 28.104.0.1:39886 -> 198.28.0.2:53 1 64 1 2025-10-04 08:01:05.484 00:00:00.000 UDP 28.104.0.1:55717 -> 198.28.0.2:53 1 64 1 2025-10-04 07:56:46.522 00:05:50.534 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-04 07:59:46.450 00:02:00.072 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-04 07:59:46.371 00:02:00.151 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-04 08:02:05.779 00:00:00.000 UDP 28.104.0.1:59947 -> 198.28.0.2:53 1 64 1 2025-10-04 08:02:05.779 00:00:00.000 UDP 28.104.0.1:42227 -> 198.28.0.2:53 1 64 1 2025-10-04 08:02:05.789 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42227 1 109 1 2025-10-04 08:02:05.789 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59947 1 80 1 2025-10-04 08:02:34.055 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 08:03:06.078 00:00:00.000 UDP 28.104.0.1:45069 -> 198.28.0.2:53 1 64 1 2025-10-04 08:03:06.078 00:00:00.000 UDP 28.104.0.1:39789 -> 198.28.0.2:53 1 64 1 2025-10-04 08:03:06.089 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39789 1 80 1 2025-10-04 08:03:06.089 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45069 1 109 1 2025-10-04 08:02:46.451 00:01:00.072 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 08:02:46.374 00:01:00.149 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-04 08:04:06.431 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48394 1 80 1 2025-10-04 08:04:06.433 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42124 1 109 1 2025-10-04 08:04:06.421 00:00:00.000 UDP 28.104.0.1:48394 -> 198.28.0.2:53 1 64 1 2025-10-04 08:04:06.422 00:00:00.000 UDP 28.104.0.1:42124 -> 198.28.0.2:53 1 64 1 2025-10-04 08:05:06.728 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47418 1 80 1 2025-10-04 08:05:06.727 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60803 1 109 1 2025-10-04 08:05:06.716 00:00:00.000 UDP 28.104.0.1:47418 -> 198.28.0.2:53 1 64 1 2025-10-04 08:05:06.716 00:00:00.000 UDP 28.104.0.1:60803 -> 198.28.0.2:53 1 64 1 2025-10-04 08:00:46.368 00:05:50.728 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-04 08:01:37.046 00:05:09.488 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-04 08:01:37.046 00:05:09.334 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-04 08:06:07.044 00:00:00.000 UDP 28.104.0.1:46947 -> 198.28.0.2:53 1 64 1 2025-10-04 08:06:07.044 00:00:00.000 UDP 28.104.0.1:57843 -> 198.28.0.2:53 1 64 1 2025-10-04 08:06:07.053 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46947 1 80 1 2025-10-04 08:06:07.053 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57843 1 109 1 2025-10-04 08:02:13.925 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2676 1 2025-10-04 08:04:46.453 00:02:00.071 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-04 08:07:07.352 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47273 1 80 1 2025-10-04 08:07:07.352 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45799 1 109 1 2025-10-04 08:07:07.342 00:00:00.000 UDP 28.104.0.1:45799 -> 198.28.0.2:53 1 64 1 2025-10-04 08:07:07.342 00:00:00.000 UDP 28.104.0.1:47273 -> 198.28.0.2:53 1 64 1 2025-10-04 08:07:34.294 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 08:02:46.523 00:05:50.535 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-04 08:08:07.640 00:00:00.000 UDP 28.104.0.1:47030 -> 198.28.0.2:53 1 64 1 2025-10-04 08:08:07.640 00:00:00.000 UDP 28.104.0.1:54457 -> 198.28.0.2:53 1 64 1 2025-10-04 08:08:07.650 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54457 1 80 1 2025-10-04 08:08:07.650 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47030 1 109 1 2025-10-04 08:07:46.452 00:01:00.071 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 08:04:46.374 00:04:00.149 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-04 08:09:07.938 00:00:00.000 UDP 28.104.0.1:45689 -> 198.28.0.2:53 1 64 1 2025-10-04 08:09:07.938 00:00:00.000 UDP 28.104.0.1:52510 -> 198.28.0.2:53 1 64 1 2025-10-04 08:09:07.948 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52510 1 109 1 2025-10-04 08:09:07.948 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45689 1 80 1 2025-10-04 08:10:08.244 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45712 1 80 1 2025-10-04 08:10:08.244 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57738 1 109 1 2025-10-04 08:10:08.233 00:00:00.000 UDP 28.104.0.1:57738 -> 198.28.0.2:53 1 64 1 2025-10-04 08:10:08.233 00:00:00.000 UDP 28.104.0.1:45712 -> 198.28.0.2:53 1 64 1 2025-10-04 08:09:46.453 00:01:00.072 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 08:09:46.376 00:01:00.149 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-04 08:11:08.538 00:00:00.000 UDP 28.104.0.1:36471 -> 198.28.0.2:53 1 64 1 2025-10-04 08:11:08.538 00:00:00.000 UDP 28.104.0.1:38148 -> 198.28.0.2:53 1 64 1 2025-10-04 08:11:08.549 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38148 1 109 1 2025-10-04 08:11:08.551 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36471 1 80 1 2025-10-04 08:07:33.933 00:05:00.425 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2828 1 2025-10-04 08:06:46.369 00:05:50.728 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-04 08:11:46.453 00:00:00.072 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 123 1 2025-10-04 08:07:37.047 00:05:09.489 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-04 08:07:37.047 00:05:09.334 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-04 08:12:08.864 00:00:00.000 UDP 28.104.0.1:55042 -> 198.28.0.2:53 1 64 1 2025-10-04 08:12:08.863 00:00:00.000 UDP 28.104.0.1:40716 -> 198.28.0.2:53 1 64 1 2025-10-04 08:12:08.873 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55042 1 109 1 2025-10-04 08:12:08.873 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40716 1 80 1 2025-10-04 08:12:34.301 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 08:13:09.157 00:00:00.000 UDP 28.104.0.1:37316 -> 198.28.0.2:53 1 64 1 2025-10-04 08:13:09.158 00:00:00.000 UDP 28.104.0.1:35508 -> 198.28.0.2:53 1 64 1 2025-10-04 08:13:09.169 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37316 1 80 1 2025-10-04 08:13:09.169 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35508 1 109 1 2025-10-04 08:08:46.523 00:05:50.537 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-04 08:12:46.453 00:01:00.073 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 08:11:46.376 00:02:00.150 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-04 08:14:09.468 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40861 1 80 1 2025-10-04 08:14:09.466 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59122 1 109 1 2025-10-04 08:14:09.457 00:00:00.000 UDP 28.104.0.1:59122 -> 198.28.0.2:53 1 64 1 2025-10-04 08:14:09.457 00:00:00.000 UDP 28.104.0.1:40861 -> 198.28.0.2:53 1 64 1 2025-10-04 08:15:09.859 00:00:00.000 UDP 28.104.0.1:48009 -> 198.28.0.2:53 1 64 1 2025-10-04 08:15:09.859 00:00:00.000 UDP 28.104.0.1:49909 -> 198.28.0.2:53 1 64 1 2025-10-04 08:15:09.868 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49909 1 80 1 2025-10-04 08:15:09.868 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48009 1 109 1 2025-10-04 08:14:46.453 00:01:00.073 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 08:14:46.378 00:01:00.147 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-04 08:16:10.170 00:00:00.000 UDP 28.104.0.1:37318 -> 198.28.0.2:53 1 64 1 2025-10-04 08:16:10.170 00:00:00.000 UDP 28.104.0.1:49033 -> 198.28.0.2:53 1 64 1 2025-10-04 08:16:10.180 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37318 1 80 1 2025-10-04 08:16:10.180 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49033 1 109 1 2025-10-04 08:16:46.455 00:00:00.072 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 123 1 2025-10-04 08:12:43.934 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2588 1 2025-10-04 08:17:10.462 00:00:00.000 UDP 28.104.0.1:60181 -> 198.28.0.2:53 1 64 1 2025-10-04 08:17:10.462 00:00:00.000 UDP 28.104.0.1:59296 -> 198.28.0.2:53 1 64 1 2025-10-04 08:17:10.474 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60181 1 80 1 2025-10-04 08:17:10.474 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59296 1 109 1 2025-10-04 08:17:34.439 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 08:12:46.371 00:05:50.728 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-04 08:13:37.047 00:05:09.489 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-04 08:13:37.047 00:05:09.333 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-04 08:18:11.238 00:00:00.000 UDP 28.104.0.1:60079 -> 198.28.0.2:53 1 64 1 2025-10-04 08:18:11.238 00:00:00.000 UDP 28.104.0.1:46016 -> 198.28.0.2:53 1 64 1 2025-10-04 08:18:11.248 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60079 1 80 1 2025-10-04 08:18:11.249 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46016 1 109 1 2025-10-04 08:16:46.380 00:02:00.147 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-04 08:17:46.456 00:01:00.071 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 08:19:11.497 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52523 1 80 1 2025-10-04 08:19:11.497 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39383 1 109 1 2025-10-04 08:19:11.487 00:00:00.000 UDP 28.104.0.1:52523 -> 198.28.0.2:53 1 64 1 2025-10-04 08:19:11.487 00:00:00.000 UDP 28.104.0.1:39383 -> 198.28.0.2:53 1 64 1 2025-10-04 08:14:46.527 00:05:50.533 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-04 08:20:11.784 00:00:00.000 UDP 28.104.0.1:42914 -> 198.28.0.2:53 1 64 1 2025-10-04 08:20:11.784 00:00:00.000 UDP 28.104.0.1:52357 -> 198.28.0.2:53 1 64 1 2025-10-04 08:20:11.794 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52357 1 109 1 2025-10-04 08:20:11.794 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42914 1 80 1 2025-10-04 08:19:46.457 00:01:00.071 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 08:19:46.381 00:01:00.147 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-04 08:21:12.088 00:00:00.000 UDP 28.104.0.1:34797 -> 198.28.0.2:53 1 64 1 2025-10-04 08:21:12.088 00:00:00.000 UDP 28.104.0.1:58413 -> 198.28.0.2:53 1 64 1 2025-10-04 08:21:12.099 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34797 1 80 1 2025-10-04 08:21:12.098 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58413 1 109 1 2025-10-04 08:22:12.393 00:00:00.000 UDP 28.104.0.1:40200 -> 198.28.0.2:53 1 64 1 2025-10-04 08:22:12.393 00:00:00.000 UDP 28.104.0.1:38618 -> 198.28.0.2:53 1 64 1 2025-10-04 08:18:03.938 00:05:10.012 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2624 1 2025-10-04 08:22:12.403 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40200 1 109 1 2025-10-04 08:22:12.403 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38618 1 80 1 2025-10-04 08:22:34.486 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 08:23:12.697 00:00:00.000 UDP 28.104.0.1:45137 -> 198.28.0.2:53 1 64 1 2025-10-04 08:23:12.697 00:00:00.000 UDP 28.104.0.1:33646 -> 198.28.0.2:53 1 64 1 2025-10-04 08:23:12.708 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33646 1 80 1 2025-10-04 08:23:12.707 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45137 1 109 1 2025-10-04 08:18:46.371 00:05:50.731 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-04 08:21:46.456 00:02:00.072 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-04 08:21:46.381 00:02:00.147 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-04 08:19:37.050 00:05:09.491 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-04 08:19:37.050 00:05:09.333 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-04 08:24:12.989 00:00:00.000 UDP 28.104.0.1:60297 -> 198.28.0.2:53 1 64 1 2025-10-04 08:24:12.989 00:00:00.000 UDP 28.104.0.1:39060 -> 198.28.0.2:53 1 64 1 2025-10-04 08:24:13.000 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60297 1 80 1 2025-10-04 08:24:13.000 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39060 1 109 1 2025-10-04 08:25:13.288 00:00:00.000 UDP 28.104.0.1:54582 -> 198.28.0.2:53 1 64 1 2025-10-04 08:25:13.288 00:00:00.000 UDP 28.104.0.1:40103 -> 198.28.0.2:53 1 64 1 2025-10-04 08:25:13.299 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54582 1 80 1 2025-10-04 08:25:13.299 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40103 1 109 1 2025-10-04 08:20:46.527 00:05:50.534 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-04 08:24:46.456 00:01:00.074 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 08:24:46.381 00:01:00.149 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-04 08:26:13.592 00:00:00.000 UDP 28.104.0.1:38453 -> 198.28.0.2:53 1 64 1 2025-10-04 08:26:13.593 00:00:00.000 UDP 28.104.0.1:52614 -> 198.28.0.2:53 1 64 1 2025-10-04 08:26:13.603 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52614 1 109 1 2025-10-04 08:26:13.602 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38453 1 80 1 2025-10-04 08:27:13.856 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47851 1 109 1 2025-10-04 08:27:13.856 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49640 1 80 1 2025-10-04 08:27:13.845 00:00:00.000 UDP 28.104.0.1:47851 -> 198.28.0.2:53 1 64 1 2025-10-04 08:27:13.845 00:00:00.000 UDP 28.104.0.1:49640 -> 198.28.0.2:53 1 64 1 2025-10-04 08:27:34.660 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 08:23:23.950 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2848 1 2025-10-04 08:28:14.104 00:00:00.000 UDP 28.104.0.1:48189 -> 198.28.0.2:53 1 64 1 2025-10-04 08:28:14.104 00:00:00.000 UDP 28.104.0.1:34926 -> 198.28.0.2:53 1 64 1 2025-10-04 08:28:14.114 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48189 1 80 1 2025-10-04 08:28:14.114 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34926 1 109 1 2025-10-04 08:26:46.457 00:02:00.074 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-04 08:26:46.385 00:02:00.146 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-04 08:29:14.404 00:00:00.000 UDP 28.104.0.1:52958 -> 198.28.0.2:53 1 64 1 2025-10-04 08:29:14.404 00:00:00.000 UDP 28.104.0.1:49243 -> 198.28.0.2:53 1 64 1 2025-10-04 08:29:14.415 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52958 1 80 1 2025-10-04 08:29:14.415 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49243 1 109 1 2025-10-04 08:24:46.372 00:05:50.736 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-04 08:25:37.051 00:05:09.490 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-04 08:25:37.051 00:05:09.334 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-04 08:30:14.714 00:00:00.000 UDP 28.104.0.1:38945 -> 198.28.0.2:53 1 64 1 2025-10-04 08:30:14.714 00:00:00.000 UDP 28.104.0.1:45156 -> 198.28.0.2:53 1 64 1 2025-10-04 08:30:14.725 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38945 1 109 1 2025-10-04 08:30:14.725 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45156 1 80 1 2025-10-04 08:29:46.457 00:01:00.074 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 08:29:46.383 00:01:00.148 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-04 08:31:15.010 00:00:00.000 UDP 28.104.0.1:35889 -> 198.28.0.2:53 1 64 1 2025-10-04 08:31:15.013 00:00:00.000 UDP 28.104.0.1:49789 -> 198.28.0.2:53 1 64 1 2025-10-04 08:31:15.025 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49789 1 109 1 2025-10-04 08:31:15.021 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35889 1 80 1 2025-10-04 08:26:46.531 00:05:50.539 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-04 08:32:15.323 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47015 1 80 1 2025-10-04 08:32:15.323 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49491 1 109 1 2025-10-04 08:32:15.313 00:00:00.000 UDP 28.104.0.1:47015 -> 198.28.0.2:53 1 64 1 2025-10-04 08:32:15.313 00:00:00.000 UDP 28.104.0.1:49491 -> 198.28.0.2:53 1 64 1 2025-10-04 08:32:34.739 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 08:28:43.955 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2756 1 2025-10-04 08:33:15.582 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36433 1 109 1 2025-10-04 08:33:15.582 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35988 1 80 1 2025-10-04 08:33:15.571 00:00:00.000 UDP 28.104.0.1:35988 -> 198.28.0.2:53 1 64 1 2025-10-04 08:33:15.571 00:00:00.000 UDP 28.104.0.1:36433 -> 198.28.0.2:53 1 64 1 2025-10-04 08:31:46.457 00:02:00.076 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-04 08:31:46.382 00:02:00.151 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-04 08:34:15.912 00:00:00.000 UDP 28.104.0.1:36814 -> 198.28.0.2:53 1 64 1 2025-10-04 08:34:15.912 00:00:00.000 UDP 28.104.0.1:57180 -> 198.28.0.2:53 1 64 1 2025-10-04 08:34:15.923 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36814 1 80 1 2025-10-04 08:34:15.924 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57180 1 109 1 2025-10-04 08:35:16.748 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37539 1 80 1 2025-10-04 08:35:16.748 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54427 1 109 1 2025-10-04 08:35:16.738 00:00:00.000 UDP 28.104.0.1:54427 -> 198.28.0.2:53 1 64 1 2025-10-04 08:35:16.737 00:00:00.000 UDP 28.104.0.1:37539 -> 198.28.0.2:53 1 64 1 2025-10-04 08:30:46.375 00:05:50.735 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-04 08:34:46.457 00:01:00.077 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 08:34:46.384 00:01:00.150 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-04 08:31:37.060 00:05:09.486 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-04 08:31:37.060 00:05:09.327 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-04 08:36:17.064 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33624 1 80 1 2025-10-04 08:36:17.064 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43698 1 109 1 2025-10-04 08:36:17.055 00:00:00.000 UDP 28.104.0.1:43698 -> 198.28.0.2:53 1 64 1 2025-10-04 08:36:17.055 00:00:00.000 UDP 28.104.0.1:33624 -> 198.28.0.2:53 1 64 1 2025-10-04 08:37:17.653 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40730 1 80 1 2025-10-04 08:37:17.653 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51326 1 109 1 2025-10-04 08:37:17.643 00:00:00.000 UDP 28.104.0.1:51326 -> 198.28.0.2:53 1 64 1 2025-10-04 08:37:17.643 00:00:00.000 UDP 28.104.0.1:40730 -> 198.28.0.2:53 1 64 1 2025-10-04 08:37:34.668 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 08:32:46.534 00:05:50.537 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-04 08:38:17.945 00:00:00.000 UDP 28.104.0.1:36190 -> 198.28.0.2:53 1 64 1 2025-10-04 08:38:17.944 00:00:00.000 UDP 28.104.0.1:40978 -> 198.28.0.2:53 1 64 1 2025-10-04 08:34:03.962 00:05:10.011 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2900 1 2025-10-04 08:38:17.955 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36190 1 109 1 2025-10-04 08:38:17.955 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40978 1 80 1 2025-10-04 08:36:46.459 00:02:00.077 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-04 08:36:46.385 00:02:00.151 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-04 08:39:18.259 00:00:00.000 UDP 28.104.0.1:38614 -> 198.28.0.2:53 1 64 1 2025-10-04 08:39:18.259 00:00:00.000 UDP 28.104.0.1:43520 -> 198.28.0.2:53 1 64 1 2025-10-04 08:39:18.269 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38614 1 80 1 2025-10-04 08:39:18.269 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43520 1 109 1 2025-10-04 08:40:18.544 00:00:00.000 UDP 28.104.0.1:45478 -> 198.28.0.2:53 1 64 1 2025-10-04 08:40:18.544 00:00:00.000 UDP 28.104.0.1:59168 -> 198.28.0.2:53 1 64 1 2025-10-04 08:40:18.556 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45478 1 80 1 2025-10-04 08:40:18.556 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59168 1 109 1 2025-10-04 08:39:46.460 00:01:00.076 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 08:39:46.385 00:01:00.151 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-04 08:41:18.837 00:00:00.000 UDP 28.104.0.1:45432 -> 198.28.0.2:53 1 64 1 2025-10-04 08:41:18.837 00:00:00.000 UDP 28.104.0.1:35219 -> 198.28.0.2:53 1 64 1 2025-10-04 08:41:18.849 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45432 1 109 1 2025-10-04 08:41:18.849 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35219 1 80 1 2025-10-04 08:36:46.376 00:05:50.736 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-04 08:37:37.060 00:05:09.326 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-04 08:37:37.060 00:05:09.486 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-04 08:42:20.975 00:00:00.000 UDP 28.104.0.1:48607 -> 198.28.0.2:53 1 64 1 2025-10-04 08:42:20.976 00:00:00.000 UDP 28.104.0.1:41541 -> 198.28.0.2:53 1 64 1 2025-10-04 08:42:20.987 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41541 1 80 1 2025-10-04 08:42:20.986 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48607 1 109 1 2025-10-04 08:42:34.639 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 08:41:46.460 00:01:00.077 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 08:41:46.386 00:01:00.151 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-04 08:43:21.274 00:00:00.000 UDP 28.104.0.1:49857 -> 198.28.0.2:53 1 64 1 2025-10-04 08:43:21.274 00:00:00.000 UDP 28.104.0.1:52574 -> 198.28.0.2:53 1 64 1 2025-10-04 08:43:21.284 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52574 1 80 1 2025-10-04 08:43:21.284 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49857 1 109 1 2025-10-04 08:39:23.974 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2652 1 2025-10-04 08:38:46.536 00:05:50.537 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-04 08:43:46.461 00:00:00.075 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 123 1 2025-10-04 08:44:21.577 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35354 1 109 1 2025-10-04 08:44:21.576 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36148 1 80 1 2025-10-04 08:44:21.567 00:00:00.000 UDP 28.104.0.1:36148 -> 198.28.0.2:53 1 64 1 2025-10-04 08:44:21.567 00:00:00.000 UDP 28.104.0.1:35354 -> 198.28.0.2:53 1 64 1 2025-10-04 08:45:21.859 00:00:00.000 UDP 28.104.0.1:60394 -> 198.28.0.2:53 1 64 1 2025-10-04 08:45:21.859 00:00:00.000 UDP 28.104.0.1:32900 -> 198.28.0.2:53 1 64 1 2025-10-04 08:45:21.869 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60394 1 80 1 2025-10-04 08:45:21.869 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32900 1 109 1 2025-10-04 08:44:46.461 00:01:00.077 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 08:43:46.386 00:02:00.152 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-04 08:46:22.181 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42614 1 80 1 2025-10-04 08:46:22.181 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51049 1 109 1 2025-10-04 08:46:22.170 00:00:00.000 UDP 28.104.0.1:51049 -> 198.28.0.2:53 1 64 1 2025-10-04 08:46:22.170 00:00:00.000 UDP 28.104.0.1:42614 -> 198.28.0.2:53 1 64 1 2025-10-04 08:47:22.475 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50510 1 80 1 2025-10-04 08:47:22.475 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59495 1 109 1 2025-10-04 08:47:22.465 00:00:00.000 UDP 28.104.0.1:59495 -> 198.28.0.2:53 1 64 1 2025-10-04 08:47:22.465 00:00:00.000 UDP 28.104.0.1:50510 -> 198.28.0.2:53 1 64 1 2025-10-04 08:47:34.859 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 08:42:46.377 00:05:50.736 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-04 08:46:46.461 00:01:00.077 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 08:46:46.386 00:01:00.152 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-04 08:43:37.063 00:05:09.488 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-04 08:43:37.063 00:05:09.327 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-04 08:48:22.714 00:00:00.000 UDP 28.104.0.1:47802 -> 198.28.0.2:53 1 64 1 2025-10-04 08:48:22.714 00:00:00.000 UDP 28.104.0.1:53411 -> 198.28.0.2:53 1 64 1 2025-10-04 08:48:22.724 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47802 1 80 1 2025-10-04 08:48:22.724 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53411 1 109 1 2025-10-04 08:48:46.461 00:00:00.079 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 123 1 2025-10-04 08:44:43.980 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2464 1 2025-10-04 08:49:23.011 00:00:00.000 UDP 28.104.0.1:57758 -> 198.28.0.2:53 1 64 1 2025-10-04 08:49:23.012 00:00:00.000 UDP 28.104.0.1:55123 -> 198.28.0.2:53 1 64 1 2025-10-04 08:49:23.026 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57758 1 109 1 2025-10-04 08:49:23.022 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55123 1 80 1 2025-10-04 08:44:46.536 00:05:50.537 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-04 08:50:23.486 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55016 1 109 1 2025-10-04 08:50:23.486 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47311 1 80 1 2025-10-04 08:50:23.476 00:00:00.000 UDP 28.104.0.1:55016 -> 198.28.0.2:53 1 64 1 2025-10-04 08:50:23.476 00:00:00.000 UDP 28.104.0.1:47311 -> 198.28.0.2:53 1 64 1 2025-10-04 08:49:46.462 00:01:00.079 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 08:48:46.386 00:02:00.155 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-04 08:51:23.779 00:00:00.000 UDP 28.104.0.1:35938 -> 198.28.0.2:53 1 64 1 2025-10-04 08:51:23.779 00:00:00.000 UDP 28.104.0.1:59914 -> 198.28.0.2:53 1 64 1 2025-10-04 08:51:23.788 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59914 1 80 1 2025-10-04 08:51:23.788 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35938 1 109 1 2025-10-04 08:52:24.056 00:00:00.000 UDP 28.104.0.1:53871 -> 198.28.0.2:53 1 64 1 2025-10-04 08:52:24.056 00:00:00.000 UDP 28.104.0.1:45022 -> 198.28.0.2:53 1 64 1 2025-10-04 08:52:24.065 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53871 1 109 1 2025-10-04 08:52:24.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45022 1 80 1 2025-10-04 08:52:34.873 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 08:51:46.462 00:01:00.080 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 08:51:46.387 00:01:00.155 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-04 08:53:24.355 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37299 1 109 1 2025-10-04 08:53:24.355 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44417 1 80 1 2025-10-04 08:53:24.346 00:00:00.000 UDP 28.104.0.1:44417 -> 198.28.0.2:53 1 64 1 2025-10-04 08:53:24.346 00:00:00.000 UDP 28.104.0.1:37299 -> 198.28.0.2:53 1 64 1 2025-10-04 08:48:46.379 00:05:50.734 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-04 08:49:37.063 00:05:09.489 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-04 08:49:37.063 00:05:09.328 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-04 08:50:03.984 00:05:10.011 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2832 1 2025-10-04 08:54:24.639 00:00:00.000 UDP 28.104.0.1:53425 -> 198.28.0.2:53 1 64 1 2025-10-04 08:54:24.640 00:00:00.000 UDP 28.104.0.1:40316 -> 198.28.0.2:53 1 64 1 2025-10-04 08:54:24.650 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40316 1 80 1 2025-10-04 08:54:24.650 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53425 1 109 1 2025-10-04 08:55:24.901 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37715 1 109 1 2025-10-04 08:55:24.901 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54565 1 80 1 2025-10-04 08:55:24.890 00:00:00.000 UDP 28.104.0.1:54565 -> 198.28.0.2:53 1 64 1 2025-10-04 08:55:24.890 00:00:00.000 UDP 28.104.0.1:37715 -> 198.28.0.2:53 1 64 1 2025-10-04 08:50:46.541 00:05:50.533 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-04 08:53:46.464 00:02:00.080 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-04 08:53:46.390 00:02:00.154 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-04 08:56:25.180 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51859 1 80 1 2025-10-04 08:56:25.180 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47863 1 109 1 2025-10-04 08:56:25.169 00:00:00.000 UDP 28.104.0.1:51859 -> 198.28.0.2:53 1 64 1 2025-10-04 08:56:25.170 00:00:00.000 UDP 28.104.0.1:47863 -> 198.28.0.2:53 1 64 1 2025-10-04 08:57:25.474 00:00:00.000 UDP 28.104.0.1:37655 -> 198.28.0.2:53 1 64 1 2025-10-04 08:57:25.473 00:00:00.000 UDP 28.104.0.1:41179 -> 198.28.0.2:53 1 64 1 2025-10-04 08:57:25.485 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37655 1 109 1 2025-10-04 08:57:25.484 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41179 1 80 1 2025-10-04 08:57:35.062 00:00:00.025 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 08:56:46.469 00:01:00.075 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 08:56:46.390 00:01:00.154 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-04 08:58:25.775 00:00:00.000 UDP 28.104.0.1:46647 -> 198.28.0.2:53 1 64 1 2025-10-04 08:58:25.775 00:00:00.000 UDP 28.104.0.1:44339 -> 198.28.0.2:53 1 64 1 2025-10-04 08:58:25.787 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46647 1 80 1 2025-10-04 08:58:25.787 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44339 1 109 1 Summary: total flows: 354, total bytes: 95870, total packets: 1412, avg bps: 200, avg pps: 0, avg bpp: 67 Time window: 2025-10-04 07:54:46 - 2025-10-04 08:58:25 Total flows processed: 354, passed: 354, Blocks skipped: 0, Bytes read: 36880 Sys: 0.0010s User: 0.0058s Wall: 0.0043s flows/second: 82634.9 Runtime: 0.0043s