Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-17 11:53:52.494 00:06:00.161 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 11:58:54.166 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 11:59:05.892 00:00:00.000 UDP 28.104.0.1:46018 -> 198.28.0.2:53 1 64 1 2025-10-17 11:59:05.892 00:00:00.000 UDP 28.104.0.1:41383 -> 198.28.0.2:53 1 64 1 2025-10-17 11:59:05.902 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46018 1 80 1 2025-10-17 11:59:05.902 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41383 1 109 1 2025-10-17 11:54:52.566 00:05:51.017 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 12:00:06.200 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56190 1 109 1 2025-10-17 12:00:06.200 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32950 1 80 1 2025-10-17 12:00:06.190 00:00:00.000 UDP 28.104.0.1:32950 -> 198.28.0.2:53 1 64 1 2025-10-17 12:00:06.189 00:00:00.000 UDP 28.104.0.1:56190 -> 198.28.0.2:53 1 64 1 2025-10-17 11:56:43.531 00:05:09.134 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 11:55:52.656 00:06:00.082 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 12:01:06.492 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59431 1 80 1 2025-10-17 12:01:06.492 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53741 1 109 1 2025-10-17 12:01:06.483 00:00:00.000 UDP 28.104.0.1:59431 -> 198.28.0.2:53 1 64 1 2025-10-17 12:01:06.483 00:00:00.000 UDP 28.104.0.1:53741 -> 198.28.0.2:53 1 64 1 2025-10-17 11:56:52.578 00:05:50.956 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 11:57:40.466 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 2960 1 2025-10-17 12:02:06.783 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57305 1 80 1 2025-10-17 12:02:06.783 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56678 1 109 1 2025-10-17 12:02:06.773 00:00:00.000 UDP 28.104.0.1:57305 -> 198.28.0.2:53 1 64 1 2025-10-17 12:02:06.773 00:00:00.000 UDP 28.104.0.1:56678 -> 198.28.0.2:53 1 64 1 2025-10-17 11:57:52.656 00:05:50.890 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 12:03:07.084 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60183 1 80 1 2025-10-17 12:03:07.083 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53128 1 109 1 2025-10-17 12:03:07.073 00:00:00.000 UDP 28.104.0.1:53128 -> 198.28.0.2:53 1 64 1 2025-10-17 12:03:07.074 00:00:00.000 UDP 28.104.0.1:60183 -> 198.28.0.2:53 1 64 1 2025-10-17 12:03:54.114 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 12:04:07.328 00:00:00.000 UDP 28.104.0.1:56495 -> 198.28.0.2:53 1 64 1 2025-10-17 12:04:07.328 00:00:00.000 UDP 28.104.0.1:41134 -> 198.28.0.2:53 1 64 1 2025-10-17 12:04:07.338 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56495 1 80 1 2025-10-17 12:04:07.338 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41134 1 109 1 2025-10-17 12:05:07.636 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46897 1 80 1 2025-10-17 12:05:07.635 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34167 1 109 1 2025-10-17 12:05:07.626 00:00:00.000 UDP 28.104.0.1:34167 -> 198.28.0.2:53 1 64 1 2025-10-17 12:05:07.626 00:00:00.000 UDP 28.104.0.1:46897 -> 198.28.0.2:53 1 64 1 2025-10-17 12:00:52.569 00:05:51.017 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 12:00:52.497 00:06:00.160 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 12:06:07.933 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52022 1 109 1 2025-10-17 12:06:07.933 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48729 1 80 1 2025-10-17 12:06:07.925 00:00:00.000 UDP 28.104.0.1:52022 -> 198.28.0.2:53 1 64 1 2025-10-17 12:06:07.925 00:00:00.000 UDP 28.104.0.1:48729 -> 198.28.0.2:53 1 64 1 2025-10-17 12:02:43.534 00:05:09.132 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 12:03:00.472 00:05:10.002 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2672 1 2025-10-17 12:07:08.235 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54832 1 109 1 2025-10-17 12:07:08.235 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40089 1 80 1 2025-10-17 12:07:08.226 00:00:00.000 UDP 28.104.0.1:40089 -> 198.28.0.2:53 1 64 1 2025-10-17 12:07:08.226 00:00:00.000 UDP 28.104.0.1:54832 -> 198.28.0.2:53 1 64 1 2025-10-17 12:02:52.579 00:05:50.958 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 12:02:52.656 00:06:00.083 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 12:08:08.523 00:00:00.000 UDP 28.104.0.1:42679 -> 198.28.0.2:53 1 64 1 2025-10-17 12:08:08.523 00:00:00.000 UDP 28.104.0.1:47868 -> 198.28.0.2:53 1 64 1 2025-10-17 12:08:08.533 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47868 1 109 1 2025-10-17 12:08:08.533 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42679 1 80 1 2025-10-17 12:03:52.655 00:05:50.891 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 12:08:54.363 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 12:09:08.820 00:00:00.000 UDP 28.104.0.1:45280 -> 198.28.0.2:53 1 64 1 2025-10-17 12:09:08.820 00:00:00.000 UDP 28.104.0.1:39542 -> 198.28.0.2:53 1 64 1 2025-10-17 12:09:08.830 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45280 1 80 1 2025-10-17 12:09:08.830 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39542 1 109 1 2025-10-17 12:10:09.121 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34808 1 109 1 2025-10-17 12:10:09.121 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53439 1 80 1 2025-10-17 12:10:09.111 00:00:00.000 UDP 28.104.0.1:53439 -> 198.28.0.2:53 1 64 1 2025-10-17 12:10:09.111 00:00:00.000 UDP 28.104.0.1:34808 -> 198.28.0.2:53 1 64 1 2025-10-17 12:11:09.411 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49633 1 109 1 2025-10-17 12:11:09.411 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34774 1 80 1 2025-10-17 12:11:09.400 00:00:00.000 UDP 28.104.0.1:49633 -> 198.28.0.2:53 1 64 1 2025-10-17 12:11:09.400 00:00:00.000 UDP 28.104.0.1:34774 -> 198.28.0.2:53 1 64 1 2025-10-17 12:06:52.569 00:05:51.017 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 12:12:09.688 00:00:00.000 UDP 28.104.0.1:46325 -> 198.28.0.2:53 1 64 1 2025-10-17 12:12:09.688 00:00:00.000 UDP 28.104.0.1:34358 -> 198.28.0.2:53 1 64 1 2025-10-17 12:12:09.698 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46325 1 109 1 2025-10-17 12:12:09.698 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34358 1 80 1 2025-10-17 12:08:20.473 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2876 1 2025-10-17 12:07:52.501 00:06:00.159 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 12:08:43.536 00:05:09.133 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 12:13:09.983 00:00:00.000 UDP 28.104.0.1:37375 -> 198.28.0.2:53 1 64 1 2025-10-17 12:13:09.983 00:00:00.000 UDP 28.104.0.1:50650 -> 198.28.0.2:53 1 64 1 2025-10-17 12:13:09.994 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37375 1 80 1 2025-10-17 12:13:09.994 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50650 1 109 1 2025-10-17 12:08:52.580 00:05:50.958 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 12:13:54.481 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 12:14:10.278 00:00:00.000 UDP 28.104.0.1:32993 -> 198.28.0.2:53 1 64 1 2025-10-17 12:14:10.278 00:00:00.000 UDP 28.104.0.1:33470 -> 198.28.0.2:53 1 64 1 2025-10-17 12:14:10.289 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32993 1 80 1 2025-10-17 12:14:10.289 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33470 1 109 1 2025-10-17 12:09:52.661 00:05:50.887 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 12:09:52.661 00:06:00.082 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 12:15:10.582 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53437 1 109 1 2025-10-17 12:15:10.582 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48911 1 80 1 2025-10-17 12:15:10.572 00:00:00.000 UDP 28.104.0.1:53437 -> 198.28.0.2:53 1 64 1 2025-10-17 12:15:10.572 00:00:00.000 UDP 28.104.0.1:48911 -> 198.28.0.2:53 1 64 1 2025-10-17 12:16:10.875 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35374 1 109 1 2025-10-17 12:16:10.875 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35887 1 80 1 2025-10-17 12:16:10.864 00:00:00.000 UDP 28.104.0.1:35374 -> 198.28.0.2:53 1 64 1 2025-10-17 12:16:10.864 00:00:00.000 UDP 28.104.0.1:35887 -> 198.28.0.2:53 1 64 1 2025-10-17 12:17:11.175 00:00:00.000 UDP 28.104.0.1:39998 -> 198.28.0.2:53 1 64 1 2025-10-17 12:17:11.175 00:00:00.000 UDP 28.104.0.1:46821 -> 198.28.0.2:53 1 64 1 2025-10-17 12:17:11.186 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39998 1 109 1 2025-10-17 12:17:11.186 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46821 1 80 1 2025-10-17 12:12:52.569 00:05:51.018 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 12:13:40.477 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2544 1 2025-10-17 12:18:11.471 00:00:00.000 UDP 28.104.0.1:57375 -> 198.28.0.2:53 1 64 1 2025-10-17 12:18:11.471 00:00:00.000 UDP 28.104.0.1:44020 -> 198.28.0.2:53 1 64 1 2025-10-17 12:18:11.486 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44020 1 109 1 2025-10-17 12:18:11.482 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57375 1 80 1 2025-10-17 12:18:54.626 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 12:14:43.537 00:05:09.133 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 12:19:11.727 00:00:00.000 UDP 28.104.0.1:51207 -> 198.28.0.2:53 1 64 1 2025-10-17 12:19:11.727 00:00:00.000 UDP 28.104.0.1:35551 -> 198.28.0.2:53 1 64 1 2025-10-17 12:19:11.737 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51207 1 80 1 2025-10-17 12:19:11.737 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35551 1 109 1 2025-10-17 12:14:52.581 00:05:50.956 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 12:14:52.504 00:06:00.157 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 12:20:12.048 00:00:00.000 UDP 28.104.0.1:44014 -> 198.28.0.2:53 1 64 1 2025-10-17 12:20:12.048 00:00:00.000 UDP 28.104.0.1:49568 -> 198.28.0.2:53 1 64 1 2025-10-17 12:20:12.058 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44014 1 109 1 2025-10-17 12:20:12.058 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49568 1 80 1 2025-10-17 12:15:52.660 00:05:50.888 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 12:21:12.364 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58523 1 109 1 2025-10-17 12:21:12.364 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35310 1 80 1 2025-10-17 12:21:12.353 00:00:00.000 UDP 28.104.0.1:35310 -> 198.28.0.2:53 1 64 1 2025-10-17 12:21:12.353 00:00:00.000 UDP 28.104.0.1:58523 -> 198.28.0.2:53 1 64 1 2025-10-17 12:16:52.660 00:06:00.084 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 12:22:12.618 00:00:00.000 UDP 28.104.0.1:48650 -> 198.28.0.2:53 1 64 1 2025-10-17 12:22:12.618 00:00:00.000 UDP 28.104.0.1:36046 -> 198.28.0.2:53 1 64 1 2025-10-17 12:22:12.628 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36046 1 80 1 2025-10-17 12:22:12.628 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48650 1 109 1 2025-10-17 12:19:00.483 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2692 1 2025-10-17 12:23:12.917 00:00:00.000 UDP 28.104.0.1:36593 -> 198.28.0.2:53 1 64 1 2025-10-17 12:23:12.917 00:00:00.000 UDP 28.104.0.1:45164 -> 198.28.0.2:53 1 64 1 2025-10-17 12:23:12.930 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36593 1 109 1 2025-10-17 12:23:12.929 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45164 1 80 1 2025-10-17 12:18:52.571 00:05:51.017 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 12:23:54.609 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 12:24:13.201 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51456 1 109 1 2025-10-17 12:24:13.200 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35537 1 80 1 2025-10-17 12:24:13.192 00:00:00.000 UDP 28.104.0.1:35537 -> 198.28.0.2:53 1 64 1 2025-10-17 12:24:13.192 00:00:00.000 UDP 28.104.0.1:51456 -> 198.28.0.2:53 1 64 1 2025-10-17 12:20:43.538 00:05:09.138 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 12:25:13.521 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59509 1 109 1 2025-10-17 12:25:13.521 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49955 1 80 1 2025-10-17 12:25:13.510 00:00:00.000 UDP 28.104.0.1:59509 -> 198.28.0.2:53 1 64 1 2025-10-17 12:25:13.510 00:00:00.000 UDP 28.104.0.1:49955 -> 198.28.0.2:53 1 64 1 2025-10-17 12:20:52.582 00:05:50.957 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 12:26:13.768 00:00:00.000 UDP 28.104.0.1:39851 -> 198.28.0.2:53 1 64 1 2025-10-17 12:26:13.767 00:00:00.000 UDP 28.104.0.1:50920 -> 198.28.0.2:53 1 64 1 2025-10-17 12:26:13.779 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50920 1 80 1 2025-10-17 12:26:13.779 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39851 1 109 1 2025-10-17 12:21:52.664 00:05:50.884 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 12:21:52.504 00:06:00.165 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 12:27:14.063 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60560 1 80 1 2025-10-17 12:27:14.064 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57151 1 109 1 2025-10-17 12:27:14.053 00:00:00.000 UDP 28.104.0.1:57151 -> 198.28.0.2:53 1 64 1 2025-10-17 12:27:14.053 00:00:00.000 UDP 28.104.0.1:60560 -> 198.28.0.2:53 1 64 1 2025-10-17 12:28:14.349 00:00:00.000 UDP 28.104.0.1:49505 -> 198.28.0.2:53 1 64 1 2025-10-17 12:28:14.349 00:00:00.000 UDP 28.104.0.1:43319 -> 198.28.0.2:53 1 64 1 2025-10-17 12:28:14.360 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49505 1 80 1 2025-10-17 12:28:14.360 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43319 1 109 1 2025-10-17 12:24:20.485 00:05:00.682 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2700 1 2025-10-17 12:28:54.808 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 12:23:52.665 00:06:00.086 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 12:29:14.650 00:00:00.000 UDP 28.104.0.1:57968 -> 198.28.0.2:53 1 64 1 2025-10-17 12:29:14.650 00:00:00.000 UDP 28.104.0.1:51471 -> 198.28.0.2:53 1 64 1 2025-10-17 12:29:14.661 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57968 1 109 1 2025-10-17 12:29:14.661 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51471 1 80 1 2025-10-17 12:24:52.572 00:05:51.017 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 12:30:14.900 00:00:00.000 UDP 28.104.0.1:49160 -> 198.28.0.2:53 1 64 1 2025-10-17 12:30:14.900 00:00:00.000 UDP 28.104.0.1:51196 -> 198.28.0.2:53 1 64 1 2025-10-17 12:30:14.910 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51196 1 80 1 2025-10-17 12:30:14.910 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49160 1 109 1 2025-10-17 12:26:43.538 00:05:09.141 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 12:31:15.199 00:00:00.000 UDP 28.104.0.1:40704 -> 198.28.0.2:53 1 64 1 2025-10-17 12:31:15.199 00:00:00.000 UDP 28.104.0.1:36807 -> 198.28.0.2:53 1 64 1 2025-10-17 12:31:15.210 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36807 1 80 1 2025-10-17 12:31:15.209 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40704 1 109 1 2025-10-17 12:26:52.582 00:05:50.958 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 12:32:15.550 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47770 1 109 1 2025-10-17 12:32:15.530 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47050 1 80 1 2025-10-17 12:32:15.520 00:00:00.000 UDP 28.104.0.1:47050 -> 198.28.0.2:53 1 64 1 2025-10-17 12:32:15.541 00:00:00.000 UDP 28.104.0.1:47770 -> 198.28.0.2:53 1 64 1 2025-10-17 12:27:52.669 00:05:50.882 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 12:33:15.811 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33010 1 80 1 2025-10-17 12:33:15.811 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50658 1 109 1 2025-10-17 12:33:15.800 00:00:00.000 UDP 28.104.0.1:33010 -> 198.28.0.2:53 1 64 1 2025-10-17 12:33:15.800 00:00:00.000 UDP 28.104.0.1:50658 -> 198.28.0.2:53 1 64 1 2025-10-17 12:29:30.489 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2696 1 2025-10-17 12:33:54.877 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 12:28:52.508 00:06:00.163 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 12:34:16.105 00:00:00.000 UDP 28.104.0.1:37737 -> 198.28.0.2:53 1 64 1 2025-10-17 12:34:16.106 00:00:00.000 UDP 28.104.0.1:58780 -> 198.28.0.2:53 1 64 1 2025-10-17 12:34:16.116 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37737 1 109 1 2025-10-17 12:34:16.116 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58780 1 80 1 2025-10-17 12:35:16.399 00:00:00.000 UDP 28.104.0.1:57532 -> 198.28.0.2:53 1 64 1 2025-10-17 12:35:16.399 00:00:00.000 UDP 28.104.0.1:44079 -> 198.28.0.2:53 1 64 1 2025-10-17 12:35:16.410 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57532 1 109 1 2025-10-17 12:35:16.410 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44079 1 80 1 2025-10-17 12:30:52.573 00:05:51.020 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 12:30:52.669 00:06:00.086 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 12:36:16.696 00:00:00.000 UDP 28.104.0.1:44593 -> 198.28.0.2:53 1 64 1 2025-10-17 12:36:16.696 00:00:00.000 UDP 28.104.0.1:55635 -> 198.28.0.2:53 1 64 1 2025-10-17 12:36:16.706 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55635 1 109 1 2025-10-17 12:36:16.706 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44593 1 80 1 2025-10-17 12:32:43.540 00:05:09.140 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 12:37:16.989 00:00:00.000 UDP 28.104.0.1:42926 -> 198.28.0.2:53 1 64 1 2025-10-17 12:37:16.989 00:00:00.000 UDP 28.104.0.1:42070 -> 198.28.0.2:53 1 64 1 2025-10-17 12:37:16.999 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42926 1 109 1 2025-10-17 12:37:16.999 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42070 1 80 1 2025-10-17 12:32:52.584 00:05:50.961 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 12:38:17.299 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50792 1 109 1 2025-10-17 12:38:17.299 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43923 1 80 1 2025-10-17 12:38:17.289 00:00:00.000 UDP 28.104.0.1:50792 -> 198.28.0.2:53 1 64 1 2025-10-17 12:38:17.289 00:00:00.000 UDP 28.104.0.1:43923 -> 198.28.0.2:53 1 64 1 2025-10-17 12:33:52.671 00:05:50.884 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 12:38:54.968 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 12:34:50.499 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2688 1 2025-10-17 12:39:17.579 00:00:00.000 UDP 28.104.0.1:49288 -> 198.28.0.2:53 1 64 1 2025-10-17 12:39:17.579 00:00:00.000 UDP 28.104.0.1:56325 -> 198.28.0.2:53 1 64 1 2025-10-17 12:39:17.588 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56325 1 109 1 2025-10-17 12:39:17.588 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49288 1 80 1 2025-10-17 12:40:17.886 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45535 1 109 1 2025-10-17 12:40:17.886 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41192 1 80 1 2025-10-17 12:40:17.876 00:00:00.000 UDP 28.104.0.1:45535 -> 198.28.0.2:53 1 64 1 2025-10-17 12:40:17.876 00:00:00.000 UDP 28.104.0.1:41192 -> 198.28.0.2:53 1 64 1 2025-10-17 12:35:52.508 00:06:00.164 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 12:41:18.256 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60216 1 80 1 2025-10-17 12:41:18.256 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45248 1 109 1 2025-10-17 12:41:18.246 00:00:00.000 UDP 28.104.0.1:60216 -> 198.28.0.2:53 1 64 1 2025-10-17 12:41:18.246 00:00:00.000 UDP 28.104.0.1:45248 -> 198.28.0.2:53 1 64 1 2025-10-17 12:36:52.575 00:05:51.020 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 12:42:18.541 00:00:00.000 UDP 28.104.0.1:43479 -> 198.28.0.2:53 1 64 1 2025-10-17 12:42:18.541 00:00:00.000 UDP 28.104.0.1:36289 -> 198.28.0.2:53 1 64 1 2025-10-17 12:42:18.550 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43479 1 109 1 2025-10-17 12:42:18.550 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36289 1 80 1 2025-10-17 12:38:43.544 00:05:09.137 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 12:37:52.671 00:06:00.085 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 12:43:18.837 00:00:00.000 UDP 28.104.0.1:35313 -> 198.28.0.2:53 1 64 1 2025-10-17 12:43:18.837 00:00:00.000 UDP 28.104.0.1:59407 -> 198.28.0.2:53 1 64 1 2025-10-17 12:43:18.847 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35313 1 80 1 2025-10-17 12:43:18.847 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59407 1 109 1 2025-10-17 12:38:52.585 00:05:50.961 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 12:43:54.959 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 12:44:19.103 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38738 1 80 1 2025-10-17 12:44:19.103 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38292 1 109 1 2025-10-17 12:40:10.503 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 2896 1 2025-10-17 12:44:19.092 00:00:00.000 UDP 28.104.0.1:38738 -> 198.28.0.2:53 1 64 1 2025-10-17 12:44:19.092 00:00:00.000 UDP 28.104.0.1:38292 -> 198.28.0.2:53 1 64 1 2025-10-17 12:39:52.670 00:05:50.885 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 12:45:19.386 00:00:00.000 UDP 28.104.0.1:55626 -> 198.28.0.2:53 1 64 1 2025-10-17 12:45:19.386 00:00:00.000 UDP 28.104.0.1:36088 -> 198.28.0.2:53 1 64 1 2025-10-17 12:45:19.399 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36088 1 80 1 2025-10-17 12:45:19.399 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55626 1 109 1 2025-10-17 12:46:19.675 00:00:00.000 UDP 28.104.0.1:38075 -> 198.28.0.2:53 1 64 1 2025-10-17 12:46:19.675 00:00:00.000 UDP 28.104.0.1:37906 -> 198.28.0.2:53 1 64 1 2025-10-17 12:46:19.686 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38075 1 80 1 2025-10-17 12:46:19.686 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37906 1 109 1 2025-10-17 12:47:19.969 00:00:00.000 UDP 28.104.0.1:54022 -> 198.28.0.2:53 1 64 1 2025-10-17 12:47:19.969 00:00:00.000 UDP 28.104.0.1:37096 -> 198.28.0.2:53 1 64 1 2025-10-17 12:47:19.979 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54022 1 80 1 2025-10-17 12:47:19.979 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37096 1 109 1 2025-10-17 12:42:52.577 00:05:51.018 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 12:42:52.510 00:06:00.163 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 12:48:20.273 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59909 1 109 1 2025-10-17 12:48:20.272 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49797 1 80 1 2025-10-17 12:48:20.264 00:00:00.000 UDP 28.104.0.1:49797 -> 198.28.0.2:53 1 64 1 2025-10-17 12:48:20.264 00:00:00.000 UDP 28.104.0.1:59909 -> 198.28.0.2:53 1 64 1 2025-10-17 12:48:55.260 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 12:44:43.544 00:05:09.139 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 12:49:20.554 00:00:00.000 UDP 28.104.0.1:35623 -> 198.28.0.2:53 1 64 1 2025-10-17 12:49:20.554 00:00:00.000 UDP 28.104.0.1:39476 -> 198.28.0.2:53 1 64 1 2025-10-17 12:49:20.564 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39476 1 109 1 2025-10-17 12:49:20.564 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35623 1 80 1 2025-10-17 12:45:30.510 00:05:10.002 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2628 1 2025-10-17 12:44:52.589 00:05:50.957 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 12:44:52.671 00:06:00.088 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 12:50:20.855 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57765 1 109 1 2025-10-17 12:50:20.855 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50083 1 80 1 2025-10-17 12:50:20.846 00:00:00.000 UDP 28.104.0.1:50083 -> 198.28.0.2:53 1 64 1 2025-10-17 12:50:20.846 00:00:00.000 UDP 28.104.0.1:57765 -> 198.28.0.2:53 1 64 1 2025-10-17 12:45:52.672 00:05:50.885 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 12:51:21.146 00:00:00.000 UDP 28.104.0.1:46719 -> 198.28.0.2:53 1 64 1 2025-10-17 12:51:21.145 00:00:00.000 UDP 28.104.0.1:34534 -> 198.28.0.2:53 1 64 1 2025-10-17 12:51:21.157 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46719 1 109 1 2025-10-17 12:51:21.155 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34534 1 80 1 2025-10-17 12:52:21.450 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59202 1 109 1 2025-10-17 12:52:21.450 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34658 1 80 1 2025-10-17 12:52:21.439 00:00:00.000 UDP 28.104.0.1:59202 -> 198.28.0.2:53 1 64 1 2025-10-17 12:52:21.439 00:00:00.000 UDP 28.104.0.1:34658 -> 198.28.0.2:53 1 64 1 2025-10-17 12:53:21.752 00:00:00.000 UDP 28.104.0.1:58696 -> 198.28.0.2:53 1 64 1 2025-10-17 12:53:21.753 00:00:00.000 UDP 28.104.0.1:40743 -> 198.28.0.2:53 1 64 1 2025-10-17 12:53:21.763 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40743 1 109 1 2025-10-17 12:53:21.763 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58696 1 80 1 2025-10-17 12:48:52.580 00:05:51.018 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 12:53:55.548 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 12:54:22.100 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46740 1 80 1 2025-10-17 12:54:22.100 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46320 1 109 1 2025-10-17 12:54:22.089 00:00:00.000 UDP 28.104.0.1:46740 -> 198.28.0.2:53 1 64 1 2025-10-17 12:54:22.089 00:00:00.000 UDP 28.104.0.1:46320 -> 198.28.0.2:53 1 64 1 2025-10-17 12:50:43.546 00:05:09.139 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 12:49:52.514 00:06:00.161 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 12:50:50.513 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2632 1 2025-10-17 12:55:22.386 00:00:00.000 UDP 28.104.0.1:53541 -> 198.28.0.2:53 1 64 1 2025-10-17 12:55:22.385 00:00:00.000 UDP 28.104.0.1:36881 -> 198.28.0.2:53 1 64 1 2025-10-17 12:55:22.397 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53541 1 109 1 2025-10-17 12:55:22.397 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36881 1 80 1 2025-10-17 12:50:52.589 00:05:50.957 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 12:56:22.693 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60719 1 109 1 2025-10-17 12:56:22.694 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40895 1 80 1 2025-10-17 12:56:22.683 00:00:00.000 UDP 28.104.0.1:60719 -> 198.28.0.2:53 1 64 1 2025-10-17 12:56:22.683 00:00:00.000 UDP 28.104.0.1:40895 -> 198.28.0.2:53 1 64 1 2025-10-17 12:51:52.673 00:05:50.884 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 12:51:52.674 00:06:00.087 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 12:57:22.973 00:00:00.000 UDP 28.104.0.1:52394 -> 198.28.0.2:53 1 64 1 2025-10-17 12:57:22.973 00:00:00.000 UDP 28.104.0.1:54023 -> 198.28.0.2:53 1 64 1 2025-10-17 12:57:22.985 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54023 1 109 1 2025-10-17 12:57:22.985 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52394 1 80 1 2025-10-17 12:58:23.560 00:00:00.000 UDP 28.104.0.1:45543 -> 198.28.0.2:53 1 64 1 2025-10-17 12:58:23.560 00:00:00.000 UDP 28.104.0.1:44746 -> 198.28.0.2:53 1 64 1 2025-10-17 12:58:23.570 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44746 1 109 1 2025-10-17 12:58:23.570 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45543 1 80 1 Summary: total flows: 321, total bytes: 97046, total packets: 1433, avg bps: 200, avg pps: 0, avg bpp: 67 Time window: 2025-10-17 11:53:52 - 2025-10-17 12:58:23 Total flows processed: 321, passed: 321, Blocks skipped: 0, Bytes read: 33448 Sys: 0.0037s User: 0.0037s Wall: 0.0045s flows/second: 71033.6 Runtime: 0.0045s