Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-25 01:59:19.437 00:00:00.000 UDP 28.104.0.1:33497 -> 198.28.0.2:53 1 64 1 2025-10-25 01:59:19.437 00:00:00.000 UDP 28.104.0.1:49735 -> 198.28.0.2:53 1 64 1 2025-10-25 01:59:19.447 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33497 1 80 1 2025-10-25 01:59:19.447 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49735 1 109 1 2025-10-25 01:58:56.201 00:01:00.007 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-25 01:55:56.120 00:04:00.081 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-25 02:00:19.735 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39579 1 80 1 2025-10-25 02:00:19.735 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46595 1 109 1 2025-10-25 02:00:19.726 00:00:00.000 UDP 28.104.0.1:39579 -> 198.28.0.2:53 1 64 1 2025-10-25 02:00:19.726 00:00:00.000 UDP 28.104.0.1:46595 -> 198.28.0.2:53 1 64 1 2025-10-25 01:56:47.162 00:05:09.073 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-25 02:01:20.062 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39429 1 80 1 2025-10-25 02:01:20.062 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37045 1 109 1 2025-10-25 02:01:20.051 00:00:00.000 UDP 28.104.0.1:37045 -> 198.28.0.2:53 1 64 1 2025-10-25 02:01:20.051 00:00:00.000 UDP 28.104.0.1:39429 -> 198.28.0.2:53 1 64 1 2025-10-25 01:56:56.200 00:05:50.972 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-25 02:02:20.353 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40133 1 80 1 2025-10-25 02:02:20.353 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54557 1 109 1 2025-10-25 02:02:20.344 00:00:00.000 UDP 28.104.0.1:54557 -> 198.28.0.2:53 1 64 1 2025-10-25 02:02:20.344 00:00:00.000 UDP 28.104.0.1:40133 -> 198.28.0.2:53 1 64 1 2025-10-25 02:02:33.801 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-25 01:58:25.723 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2724 1 2025-10-25 02:03:20.650 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46042 1 109 1 2025-10-25 02:03:20.650 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51689 1 80 1 2025-10-25 02:03:20.639 00:00:00.000 UDP 28.104.0.1:46042 -> 198.28.0.2:53 1 64 1 2025-10-25 02:03:20.640 00:00:00.000 UDP 28.104.0.1:51689 -> 198.28.0.2:53 1 64 1 2025-10-25 01:58:56.224 00:05:50.988 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-25 02:04:20.931 00:00:00.000 UDP 28.104.0.1:48194 -> 198.28.0.2:53 1 64 1 2025-10-25 02:04:20.932 00:00:00.000 UDP 28.104.0.1:58366 -> 198.28.0.2:53 1 64 1 2025-10-25 02:04:20.940 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48194 1 80 1 2025-10-25 02:04:20.940 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58366 1 109 1 2025-10-25 01:59:56.210 00:05:50.952 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-25 02:00:56.202 00:04:00.006 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-10-25 02:00:56.121 00:04:00.081 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-25 02:05:21.239 00:00:00.000 UDP 28.104.0.1:60626 -> 198.28.0.2:53 1 64 1 2025-10-25 02:05:21.239 00:00:00.000 UDP 28.104.0.1:42997 -> 198.28.0.2:53 1 64 1 2025-10-25 02:05:21.249 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60626 1 80 1 2025-10-25 02:05:21.249 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42997 1 109 1 2025-10-25 02:06:21.605 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44242 1 109 1 2025-10-25 02:06:21.605 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49618 1 80 1 2025-10-25 02:06:21.595 00:00:00.000 UDP 28.104.0.1:49618 -> 198.28.0.2:53 1 64 1 2025-10-25 02:06:21.595 00:00:00.000 UDP 28.104.0.1:44242 -> 198.28.0.2:53 1 64 1 2025-10-25 02:02:47.163 00:05:09.073 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-25 02:07:21.900 00:00:00.000 UDP 28.104.0.1:45033 -> 198.28.0.2:53 1 64 1 2025-10-25 02:07:21.900 00:00:00.000 UDP 28.104.0.1:32821 -> 198.28.0.2:53 1 64 1 2025-10-25 02:07:21.910 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45033 1 109 1 2025-10-25 02:07:21.910 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32821 1 80 1 2025-10-25 02:07:33.835 00:00:00.025 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-25 02:02:56.202 00:05:50.971 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-25 02:03:45.729 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2796 1 2025-10-25 02:08:22.219 00:00:00.000 UDP 28.104.0.1:39656 -> 198.28.0.2:53 1 64 1 2025-10-25 02:08:22.219 00:00:00.000 UDP 28.104.0.1:35346 -> 198.28.0.2:53 1 64 1 2025-10-25 02:08:22.231 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35346 1 80 1 2025-10-25 02:08:22.231 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39656 1 109 1 2025-10-25 02:09:22.513 00:00:00.000 UDP 28.104.0.1:45519 -> 198.28.0.2:53 1 64 1 2025-10-25 02:09:22.513 00:00:00.000 UDP 28.104.0.1:47408 -> 198.28.0.2:53 1 64 1 2025-10-25 02:09:22.524 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45519 1 80 1 2025-10-25 02:09:22.524 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47408 1 109 1 2025-10-25 02:04:56.225 00:05:50.988 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-25 02:05:56.201 00:04:00.007 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-10-25 02:05:56.123 00:04:00.080 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-25 02:10:22.811 00:00:00.000 UDP 28.104.0.1:37577 -> 198.28.0.2:53 1 64 1 2025-10-25 02:10:22.811 00:00:00.000 UDP 28.104.0.1:39413 -> 198.28.0.2:53 1 64 1 2025-10-25 02:10:22.821 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37577 1 80 1 2025-10-25 02:10:22.821 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39413 1 109 1 2025-10-25 02:05:56.211 00:05:50.952 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-25 02:11:23.119 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44865 1 80 1 2025-10-25 02:11:23.119 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57744 1 109 1 2025-10-25 02:11:23.109 00:00:00.000 UDP 28.104.0.1:44865 -> 198.28.0.2:53 1 64 1 2025-10-25 02:11:23.109 00:00:00.000 UDP 28.104.0.1:57744 -> 198.28.0.2:53 1 64 1 2025-10-25 02:12:23.422 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50680 1 80 1 2025-10-25 02:12:23.422 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48192 1 109 1 2025-10-25 02:12:23.413 00:00:00.000 UDP 28.104.0.1:48192 -> 198.28.0.2:53 1 64 1 2025-10-25 02:12:23.413 00:00:00.000 UDP 28.104.0.1:50680 -> 198.28.0.2:53 1 64 1 2025-10-25 02:12:33.881 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-25 02:08:47.162 00:05:09.075 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-25 02:09:05.735 00:05:10.034 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2440 1 2025-10-25 02:13:23.723 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52673 1 109 1 2025-10-25 02:13:23.722 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48391 1 80 1 2025-10-25 02:13:23.713 00:00:00.000 UDP 28.104.0.1:52673 -> 198.28.0.2:53 1 64 1 2025-10-25 02:13:23.713 00:00:00.000 UDP 28.104.0.1:48391 -> 198.28.0.2:53 1 64 1 2025-10-25 02:08:56.203 00:05:50.971 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-25 02:14:24.040 00:00:00.000 UDP 28.104.0.1:35646 -> 198.28.0.2:53 1 64 1 2025-10-25 02:14:24.040 00:00:00.000 UDP 28.104.0.1:38430 -> 198.28.0.2:53 1 64 1 2025-10-25 02:14:24.050 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35646 1 80 1 2025-10-25 02:14:24.050 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38430 1 109 1 2025-10-25 02:10:56.204 00:04:00.005 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-10-25 02:10:56.124 00:04:00.082 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-25 02:15:24.353 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38141 1 109 1 2025-10-25 02:15:24.353 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56058 1 80 1 2025-10-25 02:15:24.342 00:00:00.000 UDP 28.104.0.1:56058 -> 198.28.0.2:53 1 64 1 2025-10-25 02:15:24.342 00:00:00.000 UDP 28.104.0.1:38141 -> 198.28.0.2:53 1 64 1 2025-10-25 02:10:56.226 00:05:50.990 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-25 02:16:24.593 00:00:00.000 UDP 28.104.0.1:60316 -> 198.28.0.2:53 1 64 1 2025-10-25 02:16:24.593 00:00:00.000 UDP 28.104.0.1:39139 -> 198.28.0.2:53 1 64 1 2025-10-25 02:16:24.605 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60316 1 80 1 2025-10-25 02:16:24.603 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39139 1 109 1 2025-10-25 02:11:56.214 00:05:50.952 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-25 02:17:24.935 00:00:00.000 UDP 28.104.0.1:38143 -> 198.28.0.2:53 1 64 1 2025-10-25 02:17:24.935 00:00:00.000 UDP 28.104.0.1:49107 -> 198.28.0.2:53 1 64 1 2025-10-25 02:17:24.946 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38143 1 80 1 2025-10-25 02:17:24.945 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49107 1 109 1 2025-10-25 02:17:34.030 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-25 02:18:25.239 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56318 1 109 1 2025-10-25 02:18:25.240 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49218 1 80 1 2025-10-25 02:18:25.228 00:00:00.000 UDP 28.104.0.1:56318 -> 198.28.0.2:53 1 64 1 2025-10-25 02:18:25.229 00:00:00.000 UDP 28.104.0.1:49218 -> 198.28.0.2:53 1 64 1 2025-10-25 02:14:25.738 00:05:10.019 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 3124 1 2025-10-25 02:14:47.163 00:05:09.074 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-25 02:19:25.526 00:00:00.000 UDP 28.104.0.1:32832 -> 198.28.0.2:53 1 64 1 2025-10-25 02:19:25.526 00:00:00.000 UDP 28.104.0.1:48602 -> 198.28.0.2:53 1 64 1 2025-10-25 02:19:25.536 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48602 1 109 1 2025-10-25 02:19:25.536 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32832 1 80 1 2025-10-25 02:14:56.207 00:05:50.971 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-25 02:15:56.205 00:04:00.003 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-10-25 02:20:25.849 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44847 1 80 1 2025-10-25 02:20:25.849 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37282 1 109 1 2025-10-25 02:20:25.838 00:00:00.000 UDP 28.104.0.1:37282 -> 198.28.0.2:53 1 64 1 2025-10-25 02:20:25.838 00:00:00.000 UDP 28.104.0.1:44847 -> 198.28.0.2:53 1 64 1 2025-10-25 02:15:56.124 00:06:00.084 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-25 02:21:26.131 00:00:00.000 UDP 28.104.0.1:44400 -> 198.28.0.2:53 1 64 1 2025-10-25 02:21:26.131 00:00:00.000 UDP 28.104.0.1:36406 -> 198.28.0.2:53 1 64 1 2025-10-25 02:21:26.140 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44400 1 109 1 2025-10-25 02:21:26.140 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36406 1 80 1 2025-10-25 02:16:56.227 00:05:50.990 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-25 02:22:26.408 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44226 1 80 1 2025-10-25 02:22:26.409 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38804 1 109 1 2025-10-25 02:22:26.398 00:00:00.000 UDP 28.104.0.1:38804 -> 198.28.0.2:53 1 64 1 2025-10-25 02:22:26.398 00:00:00.000 UDP 28.104.0.1:44226 -> 198.28.0.2:53 1 64 1 2025-10-25 02:22:34.209 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-25 02:17:56.217 00:05:50.951 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-25 02:23:26.651 00:00:00.000 UDP 28.104.0.1:41800 -> 198.28.0.2:53 1 64 1 2025-10-25 02:23:26.652 00:00:00.000 UDP 28.104.0.1:33418 -> 198.28.0.2:53 1 64 1 2025-10-25 02:23:26.662 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33418 1 80 1 2025-10-25 02:23:26.661 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41800 1 109 1 2025-10-25 02:19:36.217 00:05:09.545 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2460 1 2025-10-25 02:24:27.949 00:00:00.000 UDP 28.104.0.1:35432 -> 198.28.0.2:53 1 64 1 2025-10-25 02:24:27.949 00:00:00.000 UDP 28.104.0.1:38659 -> 198.28.0.2:53 1 64 1 2025-10-25 02:24:27.962 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38659 1 109 1 2025-10-25 02:24:27.961 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35432 1 80 1 2025-10-25 02:20:56.209 00:04:00.001 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-10-25 02:20:47.168 00:05:09.073 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-25 02:25:28.245 00:00:00.000 UDP 28.104.0.1:50891 -> 198.28.0.2:53 1 64 1 2025-10-25 02:25:28.245 00:00:00.000 UDP 28.104.0.1:56013 -> 198.28.0.2:53 1 64 1 2025-10-25 02:25:28.256 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50891 1 109 1 2025-10-25 02:25:28.255 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56013 1 80 1 2025-10-25 02:20:56.209 00:05:50.970 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-25 02:26:28.495 00:00:00.000 UDP 28.104.0.1:53825 -> 198.28.0.2:53 1 64 1 2025-10-25 02:26:28.495 00:00:00.000 UDP 28.104.0.1:59621 -> 198.28.0.2:53 1 64 1 2025-10-25 02:26:28.506 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53825 1 80 1 2025-10-25 02:26:28.506 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59621 1 109 1 2025-10-25 02:25:56.209 00:01:00.000 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-25 02:22:56.127 00:04:00.082 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-25 02:27:28.813 00:00:00.000 UDP 28.104.0.1:33872 -> 198.28.0.2:53 1 64 1 2025-10-25 02:27:28.814 00:00:00.000 UDP 28.104.0.1:47377 -> 198.28.0.2:53 1 64 1 2025-10-25 02:27:28.823 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33872 1 109 1 2025-10-25 02:27:28.823 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47377 1 80 1 2025-10-25 02:27:34.199 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-25 02:22:56.229 00:05:50.990 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-25 02:28:29.114 00:00:00.000 UDP 28.104.0.1:49893 -> 198.28.0.2:53 1 64 1 2025-10-25 02:28:29.114 00:00:00.000 UDP 28.104.0.1:37810 -> 198.28.0.2:53 1 64 1 2025-10-25 02:28:29.125 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49893 1 109 1 2025-10-25 02:28:29.125 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37810 1 80 1 2025-10-25 02:23:56.219 00:05:50.949 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-25 02:24:55.761 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2896 1 2025-10-25 02:29:29.415 00:00:00.000 UDP 28.104.0.1:40455 -> 198.28.0.2:53 1 64 1 2025-10-25 02:29:29.415 00:00:00.000 UDP 28.104.0.1:54921 -> 198.28.0.2:53 1 64 1 2025-10-25 02:29:29.427 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54921 1 109 1 2025-10-25 02:29:29.427 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40455 1 80 1 2025-10-25 02:27:56.210 00:02:00.001 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-25 02:30:29.682 00:00:00.000 UDP 28.104.0.1:45457 -> 198.28.0.2:53 1 64 1 2025-10-25 02:30:29.682 00:00:00.000 UDP 28.104.0.1:56881 -> 198.28.0.2:53 1 64 1 2025-10-25 02:30:29.692 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56881 1 109 1 2025-10-25 02:30:29.692 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45457 1 80 1 2025-10-25 02:26:47.169 00:05:09.073 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-25 02:31:29.979 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53109 1 80 1 2025-10-25 02:31:29.979 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50849 1 109 1 2025-10-25 02:31:29.968 00:00:00.000 UDP 28.104.0.1:50849 -> 198.28.0.2:53 1 64 1 2025-10-25 02:31:29.968 00:00:00.000 UDP 28.104.0.1:53109 -> 198.28.0.2:53 1 64 1 2025-10-25 02:26:56.210 00:05:50.970 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-25 02:30:56.211 00:01:00.001 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-25 02:27:56.130 00:04:00.081 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-25 02:32:30.277 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47591 1 109 1 2025-10-25 02:32:30.278 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54065 1 80 1 2025-10-25 02:32:30.268 00:00:00.000 UDP 28.104.0.1:47591 -> 198.28.0.2:53 1 64 1 2025-10-25 02:32:30.268 00:00:00.000 UDP 28.104.0.1:54065 -> 198.28.0.2:53 1 64 1 2025-10-25 02:32:34.256 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-25 02:33:30.534 00:00:00.000 UDP 28.104.0.1:51926 -> 198.28.0.2:53 1 64 1 2025-10-25 02:33:30.534 00:00:00.000 UDP 28.104.0.1:46661 -> 198.28.0.2:53 1 64 1 2025-10-25 02:33:30.544 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51926 1 109 1 2025-10-25 02:33:30.544 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46661 1 80 1 2025-10-25 02:28:56.231 00:05:50.990 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-25 02:30:15.769 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2768 1 2025-10-25 02:34:30.794 00:00:00.000 UDP 28.104.0.1:39082 -> 198.28.0.2:53 1 64 1 2025-10-25 02:34:30.794 00:00:00.000 UDP 28.104.0.1:37548 -> 198.28.0.2:53 1 64 1 2025-10-25 02:34:30.804 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39082 1 80 1 2025-10-25 02:34:30.804 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37548 1 109 1 2025-10-25 02:29:56.220 00:05:50.950 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-25 02:35:31.103 00:00:00.000 UDP 28.104.0.1:34277 -> 198.28.0.2:53 1 64 1 2025-10-25 02:35:31.103 00:00:00.000 UDP 28.104.0.1:49139 -> 198.28.0.2:53 1 64 1 2025-10-25 02:35:31.113 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49139 1 109 1 2025-10-25 02:35:31.113 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34277 1 80 1 2025-10-25 02:36:31.406 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38177 1 80 1 2025-10-25 02:36:31.406 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50653 1 109 1 2025-10-25 02:36:31.395 00:00:00.000 UDP 28.104.0.1:38177 -> 198.28.0.2:53 1 64 1 2025-10-25 02:36:31.395 00:00:00.000 UDP 28.104.0.1:50653 -> 198.28.0.2:53 1 64 1 2025-10-25 02:32:47.169 00:05:09.073 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-25 02:32:56.210 00:04:00.002 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-10-25 02:32:56.130 00:04:00.081 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-25 02:37:31.657 00:00:00.000 UDP 28.104.0.1:35364 -> 198.28.0.2:53 1 64 1 2025-10-25 02:37:31.657 00:00:00.000 UDP 28.104.0.1:37980 -> 198.28.0.2:53 1 64 1 2025-10-25 02:37:31.667 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35364 1 109 1 2025-10-25 02:37:31.667 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37980 1 80 1 2025-10-25 02:37:34.129 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-25 02:32:56.211 00:05:50.972 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-25 02:38:31.910 00:00:00.000 UDP 28.104.0.1:34714 -> 198.28.0.2:53 1 64 1 2025-10-25 02:38:31.910 00:00:00.000 UDP 28.104.0.1:53843 -> 198.28.0.2:53 1 64 1 2025-10-25 02:38:31.919 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34714 1 109 1 2025-10-25 02:38:31.919 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53843 1 80 1 2025-10-25 02:39:32.180 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54265 1 80 1 2025-10-25 02:39:32.180 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33380 1 109 1 2025-10-25 02:39:32.171 00:00:00.000 UDP 28.104.0.1:33380 -> 198.28.0.2:53 1 64 1 2025-10-25 02:39:32.171 00:00:00.000 UDP 28.104.0.1:54265 -> 198.28.0.2:53 1 64 1 2025-10-25 02:35:35.775 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2464 1 2025-10-25 02:34:56.232 00:05:50.992 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-25 02:40:32.471 00:00:00.000 UDP 28.104.0.1:42793 -> 198.28.0.2:53 1 64 1 2025-10-25 02:40:32.471 00:00:00.000 UDP 28.104.0.1:57673 -> 198.28.0.2:53 1 64 1 2025-10-25 02:40:32.481 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57673 1 80 1 2025-10-25 02:40:32.481 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42793 1 109 1 2025-10-25 02:35:56.220 00:05:50.953 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-25 02:41:32.723 00:00:00.000 UDP 28.104.0.1:41592 -> 198.28.0.2:53 1 64 1 2025-10-25 02:41:32.723 00:00:00.000 UDP 28.104.0.1:53884 -> 198.28.0.2:53 1 64 1 2025-10-25 02:41:32.734 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53884 1 109 1 2025-10-25 02:41:32.734 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41592 1 80 1 2025-10-25 02:37:56.211 00:04:00.002 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-10-25 02:37:56.132 00:04:00.080 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-25 02:42:33.038 00:00:00.000 UDP 28.104.0.1:59577 -> 198.28.0.2:53 1 64 1 2025-10-25 02:42:33.038 00:00:00.000 UDP 28.104.0.1:52420 -> 198.28.0.2:53 1 64 1 2025-10-25 02:42:34.446 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-25 02:42:33.050 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52420 1 80 1 2025-10-25 02:42:33.050 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59577 1 109 1 2025-10-25 02:38:47.172 00:05:09.081 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-25 02:43:33.332 00:00:00.000 UDP 28.104.0.1:58114 -> 198.28.0.2:53 1 64 1 2025-10-25 02:43:33.332 00:00:00.000 UDP 28.104.0.1:45466 -> 198.28.0.2:53 1 64 1 2025-10-25 02:43:33.342 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45466 1 109 1 2025-10-25 02:43:33.342 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58114 1 80 1 2025-10-25 02:38:56.211 00:05:50.973 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-25 02:44:33.627 00:00:00.000 UDP 28.104.0.1:43425 -> 198.28.0.2:53 1 64 1 2025-10-25 02:44:33.627 00:00:00.000 UDP 28.104.0.1:40632 -> 198.28.0.2:53 1 64 1 2025-10-25 02:44:33.638 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40632 1 109 1 2025-10-25 02:44:33.638 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43425 1 80 1 2025-10-25 02:40:55.780 00:05:10.013 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 3036 1 2025-10-25 02:45:33.878 00:00:00.000 UDP 28.104.0.1:51038 -> 198.28.0.2:53 1 64 1 2025-10-25 02:45:33.878 00:00:00.000 UDP 28.104.0.1:36361 -> 198.28.0.2:53 1 64 1 2025-10-25 02:45:33.888 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36361 1 80 1 2025-10-25 02:45:33.888 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51038 1 109 1 2025-10-25 02:40:56.243 00:05:50.982 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-25 02:46:34.140 00:00:00.000 UDP 28.104.0.1:54990 -> 198.28.0.2:53 1 64 1 2025-10-25 02:46:34.141 00:00:00.000 UDP 28.104.0.1:51480 -> 198.28.0.2:53 1 64 1 2025-10-25 02:46:34.152 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54990 1 109 1 2025-10-25 02:46:34.152 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51480 1 80 1 2025-10-25 02:41:56.223 00:05:50.953 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-25 02:42:56.212 00:04:00.005 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-10-25 02:42:56.132 00:04:00.081 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-25 02:47:34.440 00:00:00.000 UDP 28.104.0.1:58059 -> 198.28.0.2:53 1 64 1 2025-10-25 02:47:34.440 00:00:00.000 UDP 28.104.0.1:60562 -> 198.28.0.2:53 1 64 1 2025-10-25 02:47:34.720 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-25 02:47:34.449 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60562 1 109 1 2025-10-25 02:47:34.449 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58059 1 80 1 2025-10-25 02:48:34.746 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38284 1 80 1 2025-10-25 02:48:34.745 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39102 1 109 1 2025-10-25 02:48:34.737 00:00:00.000 UDP 28.104.0.1:38284 -> 198.28.0.2:53 1 64 1 2025-10-25 02:48:34.737 00:00:00.000 UDP 28.104.0.1:39102 -> 198.28.0.2:53 1 64 1 2025-10-25 02:44:47.173 00:05:09.080 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-25 02:49:34.993 00:00:00.000 UDP 28.104.0.1:48748 -> 198.28.0.2:53 1 64 1 2025-10-25 02:49:34.993 00:00:00.000 UDP 28.104.0.1:55230 -> 198.28.0.2:53 1 64 1 2025-10-25 02:49:35.005 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55230 1 80 1 2025-10-25 02:49:35.005 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48748 1 109 1 2025-10-25 02:44:56.212 00:05:50.975 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-25 02:46:15.793 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2880 1 2025-10-25 02:50:35.276 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33679 1 80 1 2025-10-25 02:50:35.276 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34218 1 109 1 2025-10-25 02:50:35.266 00:00:00.000 UDP 28.104.0.1:34218 -> 198.28.0.2:53 1 64 1 2025-10-25 02:50:35.266 00:00:00.000 UDP 28.104.0.1:33679 -> 198.28.0.2:53 1 64 1 2025-10-25 02:51:35.621 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48250 1 80 1 2025-10-25 02:51:35.621 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60756 1 109 1 2025-10-25 02:51:35.610 00:00:00.000 UDP 28.104.0.1:60756 -> 198.28.0.2:53 1 64 1 2025-10-25 02:51:35.610 00:00:00.000 UDP 28.104.0.1:48250 -> 198.28.0.2:53 1 64 1 2025-10-25 02:46:56.244 00:05:50.982 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-25 02:47:56.212 00:04:00.005 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-10-25 02:47:56.134 00:04:00.079 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-25 02:52:34.624 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-25 02:52:35.875 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36930 1 109 1 2025-10-25 02:52:35.875 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44526 1 80 1 2025-10-25 02:52:35.865 00:00:00.000 UDP 28.104.0.1:36930 -> 198.28.0.2:53 1 64 1 2025-10-25 02:52:35.866 00:00:00.000 UDP 28.104.0.1:44526 -> 198.28.0.2:53 1 64 1 2025-10-25 02:47:56.222 00:05:50.954 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-25 02:53:36.170 00:00:00.000 UDP 28.104.0.1:51560 -> 198.28.0.2:53 1 64 1 2025-10-25 02:53:36.170 00:00:00.000 UDP 28.104.0.1:52017 -> 198.28.0.2:53 1 64 1 2025-10-25 02:53:36.181 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51560 1 109 1 2025-10-25 02:53:36.181 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52017 1 80 1 2025-10-25 02:54:36.460 00:00:00.000 UDP 28.104.0.1:44665 -> 198.28.0.2:53 1 64 1 2025-10-25 02:54:36.460 00:00:00.000 UDP 28.104.0.1:59819 -> 198.28.0.2:53 1 64 1 2025-10-25 02:54:36.472 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59819 1 109 1 2025-10-25 02:54:36.472 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44665 1 80 1 2025-10-25 02:50:47.177 00:05:09.082 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-25 02:55:36.756 00:00:00.000 UDP 28.104.0.1:52745 -> 198.28.0.2:53 1 64 1 2025-10-25 02:55:36.756 00:00:00.000 UDP 28.104.0.1:57957 -> 198.28.0.2:53 1 64 1 2025-10-25 02:55:36.768 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57957 1 80 1 2025-10-25 02:55:36.768 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52745 1 109 1 2025-10-25 02:51:35.799 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2464 1 2025-10-25 02:50:56.214 00:05:50.974 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-25 02:56:37.058 00:00:00.000 UDP 28.104.0.1:47595 -> 198.28.0.2:53 1 64 1 2025-10-25 02:56:37.058 00:00:00.000 UDP 28.104.0.1:52664 -> 198.28.0.2:53 1 64 1 2025-10-25 02:56:37.069 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47595 1 80 1 2025-10-25 02:56:37.069 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52664 1 109 1 2025-10-25 02:52:56.214 00:04:00.006 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-10-25 02:57:37.309 00:00:00.000 UDP 28.104.0.1:55751 -> 198.28.0.2:53 1 64 1 2025-10-25 02:57:37.308 00:00:00.000 UDP 28.104.0.1:34977 -> 198.28.0.2:53 1 64 1 2025-10-25 02:57:34.797 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-25 02:57:37.319 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34977 1 109 1 2025-10-25 02:57:37.319 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55751 1 80 1 2025-10-25 02:52:56.248 00:05:50.980 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-25 02:52:56.136 00:06:00.078 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-25 02:58:37.616 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60128 1 80 1 2025-10-25 02:58:37.616 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46475 1 109 1 2025-10-25 02:58:37.608 00:00:00.000 UDP 28.104.0.1:46475 -> 198.28.0.2:53 1 64 1 2025-10-25 02:58:37.608 00:00:00.000 UDP 28.104.0.1:60128 -> 198.28.0.2:53 1 64 1 2025-10-25 02:53:56.224 00:05:50.954 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 Summary: total flows: 329, total bytes: 96745, total packets: 1427, avg bps: 202, avg pps: 0, avg bpp: 67 Time window: 2025-10-25 01:55:56 - 2025-10-25 02:59:47 Total flows processed: 329, passed: 329, Blocks skipped: 0, Bytes read: 34280 Sys: 0.0057s User: 0.0014s Wall: 0.0047s flows/second: 70061.2 Runtime: 0.0047s