Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-17 14:58:57.791 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 14:59:08.139 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51159 1 80 1 2025-10-17 14:59:08.139 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39547 1 109 1 2025-10-17 14:59:08.128 00:00:00.000 UDP 28.104.0.1:51159 -> 198.28.0.2:53 1 64 1 2025-10-17 14:59:08.128 00:00:00.000 UDP 28.104.0.1:39547 -> 198.28.0.2:53 1 64 1 2025-10-17 14:54:52.624 00:05:51.022 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 15:00:08.437 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39164 1 109 1 2025-10-17 15:00:08.436 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41992 1 80 1 2025-10-17 15:00:08.427 00:00:00.000 UDP 28.104.0.1:41992 -> 198.28.0.2:53 1 64 1 2025-10-17 15:00:08.427 00:00:00.000 UDP 28.104.0.1:39164 -> 198.28.0.2:53 1 64 1 2025-10-17 14:55:52.553 00:06:00.157 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 14:56:43.596 00:05:09.125 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 15:01:08.731 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44185 1 80 1 2025-10-17 15:01:08.731 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57740 1 109 1 2025-10-17 15:01:08.722 00:00:00.000 UDP 28.104.0.1:57740 -> 198.28.0.2:53 1 64 1 2025-10-17 15:01:08.722 00:00:00.000 UDP 28.104.0.1:44185 -> 198.28.0.2:53 1 64 1 2025-10-17 14:56:52.634 00:05:50.962 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 15:02:08.986 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46654 1 80 1 2025-10-17 15:02:08.983 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55401 1 109 1 2025-10-17 15:02:08.973 00:00:00.000 UDP 28.104.0.1:55401 -> 198.28.0.2:53 1 64 1 2025-10-17 15:02:08.973 00:00:00.000 UDP 28.104.0.1:46654 -> 198.28.0.2:53 1 64 1 2025-10-17 14:57:52.708 00:05:50.900 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 14:58:40.669 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2956 1 2025-10-17 14:57:52.709 00:06:00.099 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 15:03:09.280 00:00:00.000 UDP 28.104.0.1:45519 -> 198.28.0.2:53 1 64 1 2025-10-17 15:03:09.280 00:00:00.000 UDP 28.104.0.1:55239 -> 198.28.0.2:53 1 64 1 2025-10-17 15:03:09.289 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45519 1 80 1 2025-10-17 15:03:09.289 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55239 1 109 1 2025-10-17 15:03:58.192 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 15:04:09.588 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43238 1 80 1 2025-10-17 15:04:09.588 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39308 1 109 1 2025-10-17 15:04:09.578 00:00:00.000 UDP 28.104.0.1:43238 -> 198.28.0.2:53 1 64 1 2025-10-17 15:04:09.578 00:00:00.000 UDP 28.104.0.1:39308 -> 198.28.0.2:53 1 64 1 2025-10-17 15:05:09.897 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37425 1 109 1 2025-10-17 15:05:09.897 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38933 1 80 1 2025-10-17 15:05:09.887 00:00:00.000 UDP 28.104.0.1:37425 -> 198.28.0.2:53 1 64 1 2025-10-17 15:05:09.886 00:00:00.000 UDP 28.104.0.1:38933 -> 198.28.0.2:53 1 64 1 2025-10-17 15:00:52.626 00:05:51.022 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 15:06:10.219 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38098 1 80 1 2025-10-17 15:06:10.219 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54338 1 109 1 2025-10-17 15:06:10.209 00:00:00.000 UDP 28.104.0.1:38098 -> 198.28.0.2:53 1 64 1 2025-10-17 15:06:10.209 00:00:00.000 UDP 28.104.0.1:54338 -> 198.28.0.2:53 1 64 1 2025-10-17 15:02:43.596 00:05:09.124 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 15:07:10.505 00:00:00.000 UDP 28.104.0.1:45287 -> 198.28.0.2:53 1 64 1 2025-10-17 15:07:10.505 00:00:00.000 UDP 28.104.0.1:54323 -> 198.28.0.2:53 1 64 1 2025-10-17 15:07:10.516 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45287 1 109 1 2025-10-17 15:07:10.515 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54323 1 80 1 2025-10-17 15:02:52.635 00:05:50.962 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 15:02:52.557 00:06:00.153 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 15:08:11.213 00:00:00.000 UDP 28.104.0.1:42623 -> 198.28.0.2:53 1 64 1 2025-10-17 15:08:11.213 00:00:00.000 UDP 28.104.0.1:34716 -> 198.28.0.2:53 1 64 1 2025-10-17 15:08:11.224 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34716 1 80 1 2025-10-17 15:04:00.673 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2672 1 2025-10-17 15:08:11.224 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42623 1 109 1 2025-10-17 15:03:52.710 00:05:50.898 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 15:08:57.966 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 15:09:11.512 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34593 1 80 1 2025-10-17 15:09:11.512 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39685 1 109 1 2025-10-17 15:09:11.501 00:00:00.000 UDP 28.104.0.1:34593 -> 198.28.0.2:53 1 64 1 2025-10-17 15:09:11.501 00:00:00.000 UDP 28.104.0.1:39685 -> 198.28.0.2:53 1 64 1 2025-10-17 15:04:52.710 00:06:00.099 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 15:10:11.812 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45247 1 80 1 2025-10-17 15:10:11.811 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43754 1 109 1 2025-10-17 15:10:11.802 00:00:00.000 UDP 28.104.0.1:45247 -> 198.28.0.2:53 1 64 1 2025-10-17 15:10:11.802 00:00:00.000 UDP 28.104.0.1:43754 -> 198.28.0.2:53 1 64 1 2025-10-17 15:11:12.109 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60913 1 109 1 2025-10-17 15:11:12.109 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57141 1 80 1 2025-10-17 15:11:12.098 00:00:00.000 UDP 28.104.0.1:60913 -> 198.28.0.2:53 1 64 1 2025-10-17 15:11:12.098 00:00:00.000 UDP 28.104.0.1:57141 -> 198.28.0.2:53 1 64 1 2025-10-17 15:06:52.627 00:05:51.021 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 15:12:12.422 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49069 1 109 1 2025-10-17 15:12:12.422 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56576 1 80 1 2025-10-17 15:12:12.411 00:00:00.000 UDP 28.104.0.1:49069 -> 198.28.0.2:53 1 64 1 2025-10-17 15:12:12.411 00:00:00.000 UDP 28.104.0.1:56576 -> 198.28.0.2:53 1 64 1 2025-10-17 15:08:43.597 00:05:09.124 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 15:13:12.666 00:00:00.000 UDP 28.104.0.1:42249 -> 198.28.0.2:53 1 64 1 2025-10-17 15:13:12.667 00:00:00.000 UDP 28.104.0.1:44298 -> 198.28.0.2:53 1 64 1 2025-10-17 15:13:12.676 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42249 1 80 1 2025-10-17 15:13:12.677 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44298 1 109 1 2025-10-17 15:09:20.678 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2692 1 2025-10-17 15:08:52.637 00:05:50.961 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 15:13:58.197 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 15:14:13.378 00:00:00.000 UDP 28.104.0.1:55463 -> 198.28.0.2:53 1 64 1 2025-10-17 15:14:13.378 00:00:00.000 UDP 28.104.0.1:54573 -> 198.28.0.2:53 1 64 1 2025-10-17 15:14:13.388 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55463 1 109 1 2025-10-17 15:14:13.388 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54573 1 80 1 2025-10-17 15:09:52.711 00:05:50.899 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 15:09:52.558 00:06:00.154 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 15:15:13.674 00:00:00.000 UDP 28.104.0.1:45683 -> 198.28.0.2:53 1 64 1 2025-10-17 15:15:13.674 00:00:00.000 UDP 28.104.0.1:38314 -> 198.28.0.2:53 1 64 1 2025-10-17 15:15:13.684 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38314 1 109 1 2025-10-17 15:15:13.684 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45683 1 80 1 2025-10-17 15:16:13.975 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53448 1 80 1 2025-10-17 15:16:13.975 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43925 1 109 1 2025-10-17 15:16:13.965 00:00:00.000 UDP 28.104.0.1:43925 -> 198.28.0.2:53 1 64 1 2025-10-17 15:16:13.965 00:00:00.000 UDP 28.104.0.1:53448 -> 198.28.0.2:53 1 64 1 2025-10-17 15:11:52.712 00:06:00.098 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 15:17:14.360 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58173 1 109 1 2025-10-17 15:17:14.360 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43523 1 80 1 2025-10-17 15:17:14.350 00:00:00.000 UDP 28.104.0.1:58173 -> 198.28.0.2:53 1 64 1 2025-10-17 15:17:14.350 00:00:00.000 UDP 28.104.0.1:43523 -> 198.28.0.2:53 1 64 1 2025-10-17 15:12:52.630 00:05:51.020 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 15:18:14.658 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35887 1 80 1 2025-10-17 15:18:14.658 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36557 1 109 1 2025-10-17 15:18:14.650 00:00:00.000 UDP 28.104.0.1:36557 -> 198.28.0.2:53 1 64 1 2025-10-17 15:18:14.650 00:00:00.000 UDP 28.104.0.1:35887 -> 198.28.0.2:53 1 64 1 2025-10-17 15:14:40.683 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2424 1 2025-10-17 15:14:43.598 00:05:09.123 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 15:18:58.205 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 15:19:14.952 00:00:00.000 UDP 28.104.0.1:46031 -> 198.28.0.2:53 1 64 1 2025-10-17 15:19:14.952 00:00:00.000 UDP 28.104.0.1:57387 -> 198.28.0.2:53 1 64 1 2025-10-17 15:19:14.963 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46031 1 109 1 2025-10-17 15:19:14.963 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57387 1 80 1 2025-10-17 15:14:52.638 00:05:50.961 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 15:20:15.259 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51902 1 80 1 2025-10-17 15:20:15.259 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41674 1 109 1 2025-10-17 15:20:15.248 00:00:00.000 UDP 28.104.0.1:41674 -> 198.28.0.2:53 1 64 1 2025-10-17 15:20:15.248 00:00:00.000 UDP 28.104.0.1:51902 -> 198.28.0.2:53 1 64 1 2025-10-17 15:15:52.712 00:05:50.898 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 15:21:15.543 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34063 1 80 1 2025-10-17 15:21:15.543 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45971 1 109 1 2025-10-17 15:21:15.534 00:00:00.000 UDP 28.104.0.1:45971 -> 198.28.0.2:53 1 64 1 2025-10-17 15:21:15.534 00:00:00.000 UDP 28.104.0.1:34063 -> 198.28.0.2:53 1 64 1 2025-10-17 15:16:52.559 00:06:00.154 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 15:22:15.828 00:00:00.000 UDP 28.104.0.1:43332 -> 198.28.0.2:53 1 64 1 2025-10-17 15:22:15.828 00:00:00.000 UDP 28.104.0.1:58243 -> 198.28.0.2:53 1 64 1 2025-10-17 15:22:15.839 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58243 1 109 1 2025-10-17 15:22:15.839 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43332 1 80 1 2025-10-17 15:23:16.741 00:00:00.000 UDP 28.104.0.1:36334 -> 198.28.0.2:53 1 64 1 2025-10-17 15:23:16.741 00:00:00.000 UDP 28.104.0.1:36345 -> 198.28.0.2:53 1 64 1 2025-10-17 15:23:16.751 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36345 1 109 1 2025-10-17 15:23:16.751 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36334 1 80 1 2025-10-17 15:18:52.629 00:05:51.022 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 15:18:52.712 00:06:00.098 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 15:23:58.359 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 15:20:00.689 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 3024 1 2025-10-17 15:24:17.067 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37858 1 80 1 2025-10-17 15:24:17.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37456 1 109 1 2025-10-17 15:24:17.058 00:00:00.000 UDP 28.104.0.1:37456 -> 198.28.0.2:53 1 64 1 2025-10-17 15:24:17.058 00:00:00.000 UDP 28.104.0.1:37858 -> 198.28.0.2:53 1 64 1 2025-10-17 15:20:43.599 00:05:09.124 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 15:25:17.378 00:00:00.000 UDP 28.104.0.1:52381 -> 198.28.0.2:53 1 64 1 2025-10-17 15:25:17.378 00:00:00.000 UDP 28.104.0.1:59100 -> 198.28.0.2:53 1 64 1 2025-10-17 15:25:17.388 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52381 1 80 1 2025-10-17 15:25:17.388 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59100 1 109 1 2025-10-17 15:20:52.639 00:05:50.961 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 15:26:17.694 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45937 1 80 1 2025-10-17 15:26:17.694 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58474 1 109 1 2025-10-17 15:26:17.684 00:00:00.000 UDP 28.104.0.1:58474 -> 198.28.0.2:53 1 64 1 2025-10-17 15:26:17.684 00:00:00.000 UDP 28.104.0.1:45937 -> 198.28.0.2:53 1 64 1 2025-10-17 15:21:52.712 00:05:50.899 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 15:27:18.059 00:00:00.000 UDP 28.104.0.1:60482 -> 198.28.0.2:53 1 64 1 2025-10-17 15:27:18.059 00:00:00.000 UDP 28.104.0.1:59531 -> 198.28.0.2:53 1 64 1 2025-10-17 15:27:18.069 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60482 1 80 1 2025-10-17 15:27:18.069 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59531 1 109 1 2025-10-17 15:28:18.311 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59482 1 109 1 2025-10-17 15:28:18.311 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50583 1 80 1 2025-10-17 15:28:18.301 00:00:00.000 UDP 28.104.0.1:59482 -> 198.28.0.2:53 1 64 1 2025-10-17 15:28:18.301 00:00:00.000 UDP 28.104.0.1:50583 -> 198.28.0.2:53 1 64 1 2025-10-17 15:23:52.560 00:06:00.153 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 15:28:58.321 00:00:00.030 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 15:29:18.593 00:00:00.000 UDP 28.104.0.1:44049 -> 198.28.0.2:53 1 64 1 2025-10-17 15:29:18.593 00:00:00.000 UDP 28.104.0.1:56310 -> 198.28.0.2:53 1 64 1 2025-10-17 15:29:18.603 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44049 1 109 1 2025-10-17 15:29:18.603 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56310 1 80 1 2025-10-17 15:25:20.698 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2528 1 2025-10-17 15:24:52.630 00:05:51.023 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 15:30:18.889 00:00:00.000 UDP 28.104.0.1:44062 -> 198.28.0.2:53 1 64 1 2025-10-17 15:30:18.889 00:00:00.000 UDP 28.104.0.1:41960 -> 198.28.0.2:53 1 64 1 2025-10-17 15:30:18.901 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41960 1 80 1 2025-10-17 15:30:18.901 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44062 1 109 1 2025-10-17 15:26:43.601 00:05:09.123 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 15:25:52.714 00:06:00.104 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 15:31:19.196 00:00:00.000 UDP 28.104.0.1:36243 -> 198.28.0.2:53 1 64 1 2025-10-17 15:31:19.196 00:00:00.000 UDP 28.104.0.1:46536 -> 198.28.0.2:53 1 64 1 2025-10-17 15:31:19.206 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46536 1 109 1 2025-10-17 15:31:19.205 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36243 1 80 1 2025-10-17 15:26:52.641 00:05:50.962 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 15:32:19.494 00:00:00.000 UDP 28.104.0.1:54019 -> 198.28.0.2:53 1 64 1 2025-10-17 15:32:19.494 00:00:00.000 UDP 28.104.0.1:48245 -> 198.28.0.2:53 1 64 1 2025-10-17 15:32:19.505 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48245 1 109 1 2025-10-17 15:32:19.505 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54019 1 80 1 2025-10-17 15:27:52.713 00:05:50.901 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 15:33:20.303 00:00:00.000 UDP 28.104.0.1:38779 -> 198.28.0.2:53 1 64 1 2025-10-17 15:33:20.303 00:00:00.000 UDP 28.104.0.1:51775 -> 198.28.0.2:53 1 64 1 2025-10-17 15:33:20.314 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38779 1 109 1 2025-10-17 15:33:20.314 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51775 1 80 1 2025-10-17 15:33:58.461 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 15:34:20.612 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50184 1 80 1 2025-10-17 15:34:20.612 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54986 1 109 1 2025-10-17 15:34:20.603 00:00:00.000 UDP 28.104.0.1:54986 -> 198.28.0.2:53 1 64 1 2025-10-17 15:34:20.603 00:00:00.000 UDP 28.104.0.1:50184 -> 198.28.0.2:53 1 64 1 2025-10-17 15:30:40.703 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 3100 1 2025-10-17 15:35:20.891 00:00:00.000 UDP 28.104.0.1:51743 -> 198.28.0.2:53 1 64 1 2025-10-17 15:35:20.891 00:00:00.000 UDP 28.104.0.1:37098 -> 198.28.0.2:53 1 64 1 2025-10-17 15:35:20.900 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51743 1 80 1 2025-10-17 15:35:20.900 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37098 1 109 1 2025-10-17 15:30:52.631 00:05:51.023 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 15:30:52.564 00:06:00.151 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 15:36:21.204 00:00:00.000 UDP 28.104.0.1:43168 -> 198.28.0.2:53 1 64 1 2025-10-17 15:36:21.204 00:00:00.000 UDP 28.104.0.1:51204 -> 198.28.0.2:53 1 64 1 2025-10-17 15:36:21.214 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43168 1 80 1 2025-10-17 15:36:21.214 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51204 1 109 1 2025-10-17 15:32:43.603 00:05:09.124 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 15:37:21.462 00:00:00.000 UDP 28.104.0.1:40885 -> 198.28.0.2:53 1 64 1 2025-10-17 15:37:21.462 00:00:00.000 UDP 28.104.0.1:38728 -> 198.28.0.2:53 1 64 1 2025-10-17 15:37:21.472 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38728 1 109 1 2025-10-17 15:37:21.472 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40885 1 80 1 2025-10-17 15:32:52.644 00:05:50.960 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 15:32:52.714 00:06:00.106 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 15:38:21.765 00:00:00.000 UDP 28.104.0.1:46583 -> 198.28.0.2:53 1 64 1 2025-10-17 15:38:21.765 00:00:00.000 UDP 28.104.0.1:48504 -> 198.28.0.2:53 1 64 1 2025-10-17 15:38:21.777 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46583 1 80 1 2025-10-17 15:38:21.777 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48504 1 109 1 2025-10-17 15:33:52.714 00:05:50.900 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 15:38:58.456 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 15:39:22.092 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48125 1 80 1 2025-10-17 15:39:22.091 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34169 1 109 1 2025-10-17 15:39:22.081 00:00:00.000 UDP 28.104.0.1:48125 -> 198.28.0.2:53 1 64 1 2025-10-17 15:39:22.081 00:00:00.000 UDP 28.104.0.1:34169 -> 198.28.0.2:53 1 64 1 2025-10-17 15:36:00.708 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2628 1 2025-10-17 15:40:22.345 00:00:00.000 UDP 28.104.0.1:40415 -> 198.28.0.2:53 1 64 1 2025-10-17 15:40:22.344 00:00:00.000 UDP 28.104.0.1:52544 -> 198.28.0.2:53 1 64 1 2025-10-17 15:40:22.355 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52544 1 109 1 2025-10-17 15:40:22.356 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40415 1 80 1 2025-10-17 15:41:22.662 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43991 1 109 1 2025-10-17 15:41:22.662 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41245 1 80 1 2025-10-17 15:41:22.653 00:00:00.000 UDP 28.104.0.1:41245 -> 198.28.0.2:53 1 64 1 2025-10-17 15:41:22.653 00:00:00.000 UDP 28.104.0.1:43991 -> 198.28.0.2:53 1 64 1 2025-10-17 15:36:52.634 00:05:51.022 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 15:42:22.956 00:00:00.000 UDP 28.104.0.1:49985 -> 198.28.0.2:53 1 64 1 2025-10-17 15:42:22.956 00:00:00.000 UDP 28.104.0.1:47189 -> 198.28.0.2:53 1 64 1 2025-10-17 15:42:22.967 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49985 1 109 1 2025-10-17 15:42:22.967 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47189 1 80 1 2025-10-17 15:37:52.564 00:06:00.160 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 15:38:43.604 00:05:09.131 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 15:43:23.266 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45753 1 80 1 2025-10-17 15:43:23.266 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47787 1 109 1 2025-10-17 15:43:23.256 00:00:00.000 UDP 28.104.0.1:45753 -> 198.28.0.2:53 1 64 1 2025-10-17 15:43:23.255 00:00:00.000 UDP 28.104.0.1:47787 -> 198.28.0.2:53 1 64 1 2025-10-17 15:38:52.647 00:05:50.958 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 15:43:58.627 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 15:44:23.572 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47267 1 109 1 2025-10-17 15:44:23.572 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42247 1 80 1 2025-10-17 15:44:23.563 00:00:00.000 UDP 28.104.0.1:42247 -> 198.28.0.2:53 1 64 1 2025-10-17 15:44:23.563 00:00:00.000 UDP 28.104.0.1:47267 -> 198.28.0.2:53 1 64 1 2025-10-17 15:39:52.719 00:05:50.896 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 15:39:52.720 00:06:00.102 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 15:45:23.860 00:00:00.000 UDP 28.104.0.1:44014 -> 198.28.0.2:53 1 64 1 2025-10-17 15:45:23.860 00:00:00.000 UDP 28.104.0.1:56238 -> 198.28.0.2:53 1 64 1 2025-10-17 15:45:23.872 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44014 1 80 1 2025-10-17 15:45:23.871 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56238 1 109 1 2025-10-17 15:41:20.715 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2648 1 2025-10-17 15:46:24.181 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53023 1 109 1 2025-10-17 15:46:24.181 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50406 1 80 1 2025-10-17 15:46:24.171 00:00:00.000 UDP 28.104.0.1:53023 -> 198.28.0.2:53 1 64 1 2025-10-17 15:46:24.171 00:00:00.000 UDP 28.104.0.1:50406 -> 198.28.0.2:53 1 64 1 2025-10-17 15:47:24.487 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54891 1 80 1 2025-10-17 15:47:24.487 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50489 1 109 1 2025-10-17 15:47:24.477 00:00:00.000 UDP 28.104.0.1:54891 -> 198.28.0.2:53 1 64 1 2025-10-17 15:47:24.477 00:00:00.000 UDP 28.104.0.1:50489 -> 198.28.0.2:53 1 64 1 2025-10-17 15:42:52.634 00:05:51.022 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 15:48:24.796 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33877 1 109 1 2025-10-17 15:48:24.796 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43314 1 80 1 2025-10-17 15:48:24.786 00:00:00.000 UDP 28.104.0.1:33877 -> 198.28.0.2:53 1 64 1 2025-10-17 15:48:24.786 00:00:00.000 UDP 28.104.0.1:43314 -> 198.28.0.2:53 1 64 1 2025-10-17 15:44:43.605 00:05:09.128 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 15:48:58.820 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 15:49:25.097 00:00:00.000 UDP 28.104.0.1:52082 -> 198.28.0.2:53 1 64 1 2025-10-17 15:49:25.097 00:00:00.000 UDP 28.104.0.1:51495 -> 198.28.0.2:53 1 64 1 2025-10-17 15:49:25.108 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51495 1 80 1 2025-10-17 15:49:25.108 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52082 1 109 1 2025-10-17 15:44:52.645 00:05:50.963 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 15:44:52.567 00:06:00.156 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 15:50:25.397 00:00:00.000 UDP 28.104.0.1:58532 -> 198.28.0.2:53 1 64 1 2025-10-17 15:50:25.396 00:00:00.000 UDP 28.104.0.1:38128 -> 198.28.0.2:53 1 64 1 2025-10-17 15:50:25.408 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38128 1 109 1 2025-10-17 15:50:25.408 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58532 1 80 1 2025-10-17 15:45:52.721 00:05:50.896 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 15:46:40.719 00:05:10.002 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2832 1 2025-10-17 15:51:25.675 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41575 1 80 1 2025-10-17 15:51:25.677 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37481 1 109 1 2025-10-17 15:51:25.666 00:00:00.000 UDP 28.104.0.1:37481 -> 198.28.0.2:53 1 64 1 2025-10-17 15:51:25.665 00:00:00.000 UDP 28.104.0.1:41575 -> 198.28.0.2:53 1 64 1 2025-10-17 15:46:52.722 00:06:00.104 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 15:52:25.971 00:00:00.000 UDP 28.104.0.1:59979 -> 198.28.0.2:53 1 64 1 2025-10-17 15:52:25.971 00:00:00.000 UDP 28.104.0.1:54201 -> 198.28.0.2:53 1 64 1 2025-10-17 15:52:25.980 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59979 1 109 1 2025-10-17 15:52:25.981 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54201 1 80 1 2025-10-17 15:53:26.284 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57008 1 109 1 2025-10-17 15:53:26.284 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39354 1 80 1 2025-10-17 15:53:26.273 00:00:00.000 UDP 28.104.0.1:57008 -> 198.28.0.2:53 1 64 1 2025-10-17 15:53:26.274 00:00:00.000 UDP 28.104.0.1:39354 -> 198.28.0.2:53 1 64 1 2025-10-17 15:48:52.636 00:05:51.022 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 15:53:58.878 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 15:54:26.582 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54535 1 80 1 2025-10-17 15:54:26.582 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56552 1 109 1 2025-10-17 15:54:26.573 00:00:00.000 UDP 28.104.0.1:56552 -> 198.28.0.2:53 1 64 1 2025-10-17 15:54:26.573 00:00:00.000 UDP 28.104.0.1:54535 -> 198.28.0.2:53 1 64 1 2025-10-17 15:50:43.608 00:05:09.127 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 15:55:26.878 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48782 1 109 1 2025-10-17 15:55:26.878 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49479 1 80 1 2025-10-17 15:55:26.867 00:00:00.000 UDP 28.104.0.1:48782 -> 198.28.0.2:53 1 64 1 2025-10-17 15:55:26.868 00:00:00.000 UDP 28.104.0.1:49479 -> 198.28.0.2:53 1 64 1 2025-10-17 15:50:52.646 00:05:50.962 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 15:52:00.721 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2592 1 2025-10-17 15:56:27.157 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55242 1 80 1 2025-10-17 15:56:27.157 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59773 1 109 1 2025-10-17 15:56:27.147 00:00:00.000 UDP 28.104.0.1:59773 -> 198.28.0.2:53 1 64 1 2025-10-17 15:56:27.147 00:00:00.000 UDP 28.104.0.1:55242 -> 198.28.0.2:53 1 64 1 2025-10-17 15:51:52.724 00:05:50.896 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 15:51:52.571 00:06:00.154 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 15:57:27.413 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37499 1 109 1 2025-10-17 15:57:27.414 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35109 1 80 1 2025-10-17 15:57:27.403 00:00:00.000 UDP 28.104.0.1:37499 -> 198.28.0.2:53 1 64 1 2025-10-17 15:57:27.403 00:00:00.000 UDP 28.104.0.1:35109 -> 198.28.0.2:53 1 64 1 2025-10-17 15:58:27.706 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55615 1 109 1 2025-10-17 15:58:27.706 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58895 1 80 1 2025-10-17 15:58:27.697 00:00:00.000 UDP 28.104.0.1:58895 -> 198.28.0.2:53 1 64 1 2025-10-17 15:58:27.697 00:00:00.000 UDP 28.104.0.1:55615 -> 198.28.0.2:53 1 64 1 Summary: total flows: 320, total bytes: 96297, total packets: 1421, avg bps: 201, avg pps: 0, avg bpp: 67 Time window: 2025-10-17 14:54:52 - 2025-10-17 15:58:27 Total flows processed: 320, passed: 320, Blocks skipped: 0, Bytes read: 33344 Sys: 0.0019s User: 0.0057s Wall: 0.0038s flows/second: 84701.3 Runtime: 0.0038s