Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-25 13:57:56.400 00:01:00.021 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-25 13:57:56.344 00:01:00.056 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-25 13:59:07.634 00:00:00.000 UDP 28.104.0.1:44120 -> 198.28.0.2:53 1 64 1 2025-10-25 13:59:07.633 00:00:00.000 UDP 28.104.0.1:41051 -> 198.28.0.2:53 1 64 1 2025-10-25 13:59:07.644 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44120 1 80 1 2025-10-25 13:59:07.644 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41051 1 109 1 2025-10-25 14:00:07.890 00:00:00.000 UDP 28.104.0.1:34789 -> 198.28.0.2:53 1 64 1 2025-10-25 14:00:07.890 00:00:00.000 UDP 28.104.0.1:51614 -> 198.28.0.2:53 1 64 1 2025-10-25 14:00:07.900 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51614 1 80 1 2025-10-25 14:00:07.900 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34789 1 109 1 2025-10-25 13:56:17.466 00:05:09.214 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2440 1 2025-10-25 13:56:47.380 00:05:09.082 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-25 14:01:08.217 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43049 1 109 1 2025-10-25 14:01:08.217 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33135 1 80 1 2025-10-25 14:01:08.206 00:00:00.000 UDP 28.104.0.1:43049 -> 198.28.0.2:53 1 64 1 2025-10-25 14:01:08.206 00:00:00.000 UDP 28.104.0.1:33135 -> 198.28.0.2:53 1 64 1 2025-10-25 13:56:56.400 00:05:50.991 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-25 13:59:56.401 00:02:00.021 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-25 13:59:56.346 00:02:00.055 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-25 14:02:08.474 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56763 1 109 1 2025-10-25 14:02:08.475 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47215 1 80 1 2025-10-25 14:02:08.463 00:00:00.000 UDP 28.104.0.1:56763 -> 198.28.0.2:53 1 64 1 2025-10-25 14:02:08.464 00:00:00.000 UDP 28.104.0.1:47215 -> 198.28.0.2:53 1 64 1 2025-10-25 14:02:48.014 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-25 14:03:08.756 00:00:00.000 UDP 28.104.0.1:47425 -> 198.28.0.2:53 1 64 1 2025-10-25 14:03:08.756 00:00:00.000 UDP 28.104.0.1:53540 -> 198.28.0.2:53 1 64 1 2025-10-25 14:03:08.767 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47425 1 109 1 2025-10-25 14:03:08.766 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53540 1 80 1 2025-10-25 13:58:56.452 00:05:50.982 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-25 14:02:56.402 00:01:00.021 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-25 14:02:56.347 00:01:00.057 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-25 14:04:09.081 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39244 1 80 1 2025-10-25 14:04:09.081 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45688 1 109 1 2025-10-25 14:04:09.072 00:00:00.000 UDP 28.104.0.1:39244 -> 198.28.0.2:53 1 64 1 2025-10-25 14:04:09.072 00:00:00.000 UDP 28.104.0.1:45688 -> 198.28.0.2:53 1 64 1 2025-10-25 13:59:56.411 00:05:50.972 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-25 14:05:09.780 00:00:00.000 UDP 28.104.0.1:38373 -> 198.28.0.2:53 1 64 1 2025-10-25 14:05:09.780 00:00:00.000 UDP 28.104.0.1:58303 -> 198.28.0.2:53 1 64 1 2025-10-25 14:05:09.790 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58303 1 109 1 2025-10-25 14:05:09.790 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38373 1 80 1 2025-10-25 14:01:36.679 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2564 1 2025-10-25 14:06:10.088 00:00:00.000 UDP 28.104.0.1:41289 -> 198.28.0.2:53 1 64 1 2025-10-25 14:06:10.088 00:00:00.000 UDP 28.104.0.1:56115 -> 198.28.0.2:53 1 64 1 2025-10-25 14:06:10.099 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41289 1 80 1 2025-10-25 14:06:10.100 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56115 1 109 1 2025-10-25 14:04:56.402 00:02:00.021 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-25 14:02:47.382 00:05:09.083 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-25 14:07:10.356 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37076 1 80 1 2025-10-25 14:07:10.356 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56219 1 109 1 2025-10-25 14:07:10.346 00:00:00.000 UDP 28.104.0.1:56219 -> 198.28.0.2:53 1 64 1 2025-10-25 14:07:10.346 00:00:00.000 UDP 28.104.0.1:37076 -> 198.28.0.2:53 1 64 1 2025-10-25 14:07:48.234 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-25 14:02:56.402 00:05:50.992 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-25 14:08:10.655 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36680 1 109 1 2025-10-25 14:08:10.655 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56447 1 80 1 2025-10-25 14:08:10.644 00:00:00.000 UDP 28.104.0.1:56447 -> 198.28.0.2:53 1 64 1 2025-10-25 14:08:10.644 00:00:00.000 UDP 28.104.0.1:36680 -> 198.28.0.2:53 1 64 1 2025-10-25 14:07:56.403 00:01:00.019 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-25 14:04:56.346 00:04:00.057 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-25 14:09:10.907 00:00:00.000 UDP 28.104.0.1:40073 -> 198.28.0.2:53 1 64 1 2025-10-25 14:09:10.907 00:00:00.000 UDP 28.104.0.1:44195 -> 198.28.0.2:53 1 64 1 2025-10-25 14:09:10.917 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40073 1 80 1 2025-10-25 14:09:10.917 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44195 1 109 1 2025-10-25 14:04:56.454 00:05:50.981 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-25 14:10:11.214 00:00:00.000 UDP 28.104.0.1:58514 -> 198.28.0.2:53 1 64 1 2025-10-25 14:10:11.214 00:00:00.000 UDP 28.104.0.1:58495 -> 198.28.0.2:53 1 64 1 2025-10-25 14:10:11.224 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58514 1 80 1 2025-10-25 14:10:11.224 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58495 1 109 1 2025-10-25 14:05:56.412 00:05:50.973 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-25 14:11:11.473 00:00:00.000 UDP 28.104.0.1:54673 -> 198.28.0.2:53 1 64 1 2025-10-25 14:11:11.473 00:00:00.000 UDP 28.104.0.1:55358 -> 198.28.0.2:53 1 64 1 2025-10-25 14:11:11.482 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55358 1 109 1 2025-10-25 14:11:11.482 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54673 1 80 1 2025-10-25 14:06:56.684 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 3100 1 2025-10-25 14:09:56.405 00:02:00.018 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-25 14:12:11.727 00:00:00.000 UDP 28.104.0.1:47008 -> 198.28.0.2:53 1 64 1 2025-10-25 14:12:11.727 00:00:00.000 UDP 28.104.0.1:58174 -> 198.28.0.2:53 1 64 1 2025-10-25 14:12:11.737 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47008 1 109 1 2025-10-25 14:12:11.737 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58174 1 80 1 2025-10-25 14:12:48.325 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-25 14:08:47.384 00:05:09.083 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-25 14:13:12.055 00:00:00.000 UDP 28.104.0.1:56898 -> 198.28.0.2:53 1 64 1 2025-10-25 14:13:12.056 00:00:00.000 UDP 28.104.0.1:49001 -> 198.28.0.2:53 1 64 1 2025-10-25 14:13:12.067 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56898 1 109 1 2025-10-25 14:13:12.067 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49001 1 80 1 2025-10-25 14:08:56.404 00:05:50.993 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-25 14:12:56.405 00:01:00.018 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-25 14:09:56.348 00:04:00.057 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-25 14:14:12.502 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40025 1 109 1 2025-10-25 14:14:12.502 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37489 1 80 1 2025-10-25 14:14:12.492 00:00:00.000 UDP 28.104.0.1:40025 -> 198.28.0.2:53 1 64 1 2025-10-25 14:14:12.492 00:00:00.000 UDP 28.104.0.1:37489 -> 198.28.0.2:53 1 64 1 2025-10-25 14:15:12.799 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45486 1 80 1 2025-10-25 14:15:12.799 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44317 1 109 1 2025-10-25 14:15:12.788 00:00:00.000 UDP 28.104.0.1:44317 -> 198.28.0.2:53 1 64 1 2025-10-25 14:15:12.788 00:00:00.000 UDP 28.104.0.1:45486 -> 198.28.0.2:53 1 64 1 2025-10-25 14:10:56.456 00:05:50.981 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-25 14:14:56.405 00:01:00.018 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-25 14:14:56.349 00:01:00.057 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-25 14:16:13.060 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34861 1 80 1 2025-10-25 14:16:13.060 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44203 1 109 1 2025-10-25 14:16:13.049 00:00:00.000 UDP 28.104.0.1:34861 -> 198.28.0.2:53 1 64 1 2025-10-25 14:16:13.049 00:00:00.000 UDP 28.104.0.1:44203 -> 198.28.0.2:53 1 64 1 2025-10-25 14:12:16.695 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2752 1 2025-10-25 14:11:56.416 00:05:50.971 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-25 14:17:13.354 00:00:00.000 UDP 28.104.0.1:57657 -> 198.28.0.2:53 1 64 1 2025-10-25 14:17:13.354 00:00:00.000 UDP 28.104.0.1:50591 -> 198.28.0.2:53 1 64 1 2025-10-25 14:17:13.365 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57657 1 109 1 2025-10-25 14:17:13.365 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50591 1 80 1 2025-10-25 14:17:48.241 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-25 14:18:13.616 00:00:00.000 UDP 28.104.0.1:43690 -> 198.28.0.2:53 1 64 1 2025-10-25 14:18:13.616 00:00:00.000 UDP 28.104.0.1:40225 -> 198.28.0.2:53 1 64 1 2025-10-25 14:18:13.627 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43690 1 109 1 2025-10-25 14:18:13.627 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40225 1 80 1 2025-10-25 14:16:56.409 00:02:00.016 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-25 14:16:56.351 00:02:00.056 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-25 14:14:47.386 00:05:09.085 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-25 14:19:13.911 00:00:00.000 UDP 28.104.0.1:49856 -> 198.28.0.2:53 1 64 1 2025-10-25 14:19:13.910 00:00:00.000 UDP 28.104.0.1:58729 -> 198.28.0.2:53 1 64 1 2025-10-25 14:19:13.922 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49856 1 80 1 2025-10-25 14:19:13.922 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58729 1 109 1 2025-10-25 14:14:56.405 00:05:50.993 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-25 14:20:14.226 00:00:00.000 UDP 28.104.0.1:33624 -> 198.28.0.2:53 1 64 1 2025-10-25 14:20:14.225 00:00:00.000 UDP 28.104.0.1:48743 -> 198.28.0.2:53 1 64 1 2025-10-25 14:20:14.236 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33624 1 109 1 2025-10-25 14:20:14.235 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48743 1 80 1 2025-10-25 14:19:56.407 00:01:00.018 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-25 14:19:56.351 00:01:00.056 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-25 14:21:14.532 00:00:00.000 UDP 28.104.0.1:35966 -> 198.28.0.2:53 1 64 1 2025-10-25 14:21:14.532 00:00:00.000 UDP 28.104.0.1:47593 -> 198.28.0.2:53 1 64 1 2025-10-25 14:21:14.543 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35966 1 80 1 2025-10-25 14:21:14.543 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47593 1 109 1 2025-10-25 14:17:36.704 00:05:10.207 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2752 1 2025-10-25 14:16:56.466 00:05:50.973 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-25 14:22:14.842 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56373 1 80 1 2025-10-25 14:22:14.842 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51897 1 109 1 2025-10-25 14:22:14.832 00:00:00.000 UDP 28.104.0.1:51897 -> 198.28.0.2:53 1 64 1 2025-10-25 14:22:14.832 00:00:00.000 UDP 28.104.0.1:56373 -> 198.28.0.2:53 1 64 1 2025-10-25 14:22:48.560 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-25 14:17:56.417 00:05:50.971 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-25 14:23:15.095 00:00:00.000 UDP 28.104.0.1:41239 -> 198.28.0.2:53 1 64 1 2025-10-25 14:23:15.095 00:00:00.000 UDP 28.104.0.1:57188 -> 198.28.0.2:53 1 64 1 2025-10-25 14:23:15.106 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41239 1 80 1 2025-10-25 14:23:15.106 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57188 1 109 1 2025-10-25 14:21:56.407 00:02:00.018 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-25 14:21:56.353 00:02:00.054 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-25 14:24:15.383 00:00:00.000 UDP 28.104.0.1:32830 -> 198.28.0.2:53 1 64 1 2025-10-25 14:24:15.383 00:00:00.000 UDP 28.104.0.1:43845 -> 198.28.0.2:53 1 64 1 2025-10-25 14:24:15.395 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32830 1 80 1 2025-10-25 14:24:15.396 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43845 1 109 1 2025-10-25 14:20:47.388 00:05:09.085 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-25 14:25:15.686 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43336 1 109 1 2025-10-25 14:25:15.686 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52579 1 80 1 2025-10-25 14:25:15.676 00:00:00.000 UDP 28.104.0.1:43336 -> 198.28.0.2:53 1 64 1 2025-10-25 14:25:15.676 00:00:00.000 UDP 28.104.0.1:52579 -> 198.28.0.2:53 1 64 1 2025-10-25 14:20:56.408 00:05:50.992 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-25 14:24:56.410 00:01:00.017 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-25 14:24:56.356 00:01:00.053 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-25 14:26:15.968 00:00:00.000 UDP 28.104.0.1:52591 -> 198.28.0.2:53 1 64 1 2025-10-25 14:26:15.968 00:00:00.000 UDP 28.104.0.1:45706 -> 198.28.0.2:53 1 64 1 2025-10-25 14:26:15.979 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45706 1 80 1 2025-10-25 14:26:15.979 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52591 1 109 1 2025-10-25 14:22:56.713 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2448 1 2025-10-25 14:27:16.230 00:00:00.000 UDP 28.104.0.1:35579 -> 198.28.0.2:53 1 64 1 2025-10-25 14:27:16.230 00:00:00.000 UDP 28.104.0.1:49075 -> 198.28.0.2:53 1 64 1 2025-10-25 14:27:16.241 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49075 1 80 1 2025-10-25 14:27:16.241 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35579 1 109 1 2025-10-25 14:27:48.439 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-25 14:22:56.461 00:05:50.977 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-25 14:28:16.526 00:00:00.000 UDP 28.104.0.1:60892 -> 198.28.0.2:53 1 64 1 2025-10-25 14:28:16.526 00:00:00.000 UDP 28.104.0.1:42022 -> 198.28.0.2:53 1 64 1 2025-10-25 14:28:16.535 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42022 1 109 1 2025-10-25 14:28:16.535 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60892 1 80 1 2025-10-25 14:23:56.418 00:05:50.971 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-25 14:26:56.411 00:02:00.018 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-25 14:26:56.355 00:02:00.057 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-25 14:29:16.826 00:00:00.000 UDP 28.104.0.1:49496 -> 198.28.0.2:53 1 64 1 2025-10-25 14:29:16.826 00:00:00.000 UDP 28.104.0.1:57638 -> 198.28.0.2:53 1 64 1 2025-10-25 14:29:16.836 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49496 1 109 1 2025-10-25 14:29:16.836 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57638 1 80 1 2025-10-25 14:30:17.123 00:00:00.000 UDP 28.104.0.1:49349 -> 198.28.0.2:53 1 64 1 2025-10-25 14:30:17.123 00:00:00.000 UDP 28.104.0.1:45850 -> 198.28.0.2:53 1 64 1 2025-10-25 14:30:17.135 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45850 1 109 1 2025-10-25 14:30:17.135 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49349 1 80 1 2025-10-25 14:29:56.413 00:01:00.018 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-25 14:29:56.358 00:01:00.055 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-25 14:26:47.389 00:05:09.084 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-25 14:31:17.417 00:00:00.000 UDP 28.104.0.1:56780 -> 198.28.0.2:53 1 64 1 2025-10-25 14:31:17.417 00:00:00.000 UDP 28.104.0.1:44187 -> 198.28.0.2:53 1 64 1 2025-10-25 14:31:17.427 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44187 1 109 1 2025-10-25 14:31:17.427 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56780 1 80 1 2025-10-25 14:26:56.409 00:05:50.990 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-25 14:32:17.712 00:00:00.000 UDP 28.104.0.1:58846 -> 198.28.0.2:53 1 64 1 2025-10-25 14:32:17.713 00:00:00.000 UDP 28.104.0.1:37068 -> 198.28.0.2:53 1 64 1 2025-10-25 14:32:17.723 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58846 1 109 1 2025-10-25 14:32:17.726 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37068 1 80 1 2025-10-25 14:28:16.722 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2668 1 2025-10-25 14:32:49.068 00:00:00.031 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-25 14:33:18.045 00:00:00.000 UDP 28.104.0.1:35393 -> 198.28.0.2:53 1 64 1 2025-10-25 14:33:18.044 00:00:00.000 UDP 28.104.0.1:37368 -> 198.28.0.2:53 1 64 1 2025-10-25 14:33:18.056 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35393 1 80 1 2025-10-25 14:33:18.055 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37368 1 109 1 2025-10-25 14:28:56.462 00:05:50.978 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-25 14:31:56.413 00:02:00.018 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-25 14:31:56.358 00:02:00.055 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-25 14:34:18.339 00:00:00.000 UDP 28.104.0.1:59300 -> 198.28.0.2:53 1 64 1 2025-10-25 14:34:18.339 00:00:00.000 UDP 28.104.0.1:45649 -> 198.28.0.2:53 1 64 1 2025-10-25 14:34:18.350 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45649 1 109 1 2025-10-25 14:34:18.350 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59300 1 80 1 2025-10-25 14:29:56.423 00:05:50.967 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-25 14:35:18.628 00:00:00.000 UDP 28.104.0.1:49120 -> 198.28.0.2:53 1 64 1 2025-10-25 14:35:18.628 00:00:00.000 UDP 28.104.0.1:58954 -> 198.28.0.2:53 1 64 1 2025-10-25 14:35:18.638 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58954 1 80 1 2025-10-25 14:35:18.638 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49120 1 109 1 2025-10-25 14:34:56.358 00:01:00.055 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-25 14:34:56.413 00:01:00.020 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-25 14:36:19.727 00:00:00.000 UDP 28.104.0.1:43075 -> 198.28.0.2:53 1 64 1 2025-10-25 14:36:19.727 00:00:00.000 UDP 28.104.0.1:53871 -> 198.28.0.2:53 1 64 1 2025-10-25 14:36:19.742 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53871 1 109 1 2025-10-25 14:36:19.738 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43075 1 80 1 2025-10-25 14:32:47.390 00:05:09.084 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-25 14:37:20.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40547 1 80 1 2025-10-25 14:37:20.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38920 1 109 1 2025-10-25 14:37:20.057 00:00:00.000 UDP 28.104.0.1:40547 -> 198.28.0.2:53 1 64 1 2025-10-25 14:37:20.057 00:00:00.000 UDP 28.104.0.1:38920 -> 198.28.0.2:53 1 64 1 2025-10-25 14:32:56.413 00:05:50.989 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-25 14:37:48.823 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-25 14:33:36.730 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 3036 1 2025-10-25 14:38:20.322 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51102 1 80 1 2025-10-25 14:38:20.322 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35953 1 109 1 2025-10-25 14:38:20.312 00:00:00.000 UDP 28.104.0.1:35953 -> 198.28.0.2:53 1 64 1 2025-10-25 14:38:20.312 00:00:00.000 UDP 28.104.0.1:51102 -> 198.28.0.2:53 1 64 1 2025-10-25 14:36:56.413 00:02:00.020 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-25 14:36:56.358 00:02:00.058 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-25 14:39:20.614 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47298 1 80 1 2025-10-25 14:39:20.614 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45486 1 109 1 2025-10-25 14:39:20.605 00:00:00.000 UDP 28.104.0.1:45486 -> 198.28.0.2:53 1 64 1 2025-10-25 14:39:20.605 00:00:00.000 UDP 28.104.0.1:47298 -> 198.28.0.2:53 1 64 1 2025-10-25 14:34:56.463 00:05:50.979 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-25 14:40:20.896 00:00:00.000 UDP 28.104.0.1:46571 -> 198.28.0.2:53 1 64 1 2025-10-25 14:40:20.897 00:00:00.000 UDP 28.104.0.1:38086 -> 198.28.0.2:53 1 64 1 2025-10-25 14:40:20.906 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46571 1 80 1 2025-10-25 14:40:20.907 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38086 1 109 1 2025-10-25 14:35:56.423 00:05:50.969 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-25 14:39:56.416 00:01:00.018 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-25 14:39:56.361 00:01:00.054 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-25 14:41:21.170 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58095 1 80 1 2025-10-25 14:41:21.172 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45787 1 109 1 2025-10-25 14:41:21.159 00:00:00.000 UDP 28.104.0.1:58095 -> 198.28.0.2:53 1 64 1 2025-10-25 14:41:21.159 00:00:00.000 UDP 28.104.0.1:45787 -> 198.28.0.2:53 1 64 1 2025-10-25 14:42:21.468 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54077 1 80 1 2025-10-25 14:42:21.468 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43187 1 109 1 2025-10-25 14:42:21.457 00:00:00.000 UDP 28.104.0.1:43187 -> 198.28.0.2:53 1 64 1 2025-10-25 14:42:21.457 00:00:00.000 UDP 28.104.0.1:54077 -> 198.28.0.2:53 1 64 1 2025-10-25 14:42:48.910 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-25 14:41:56.418 00:01:00.019 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-25 14:41:56.364 00:01:00.054 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-25 14:38:47.392 00:05:09.083 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-25 14:38:56.737 00:05:10.023 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2816 1 2025-10-25 14:43:21.721 00:00:00.000 UDP 28.104.0.1:45212 -> 198.28.0.2:53 1 64 1 2025-10-25 14:43:21.721 00:00:00.000 UDP 28.104.0.1:47963 -> 198.28.0.2:53 1 64 1 2025-10-25 14:43:21.732 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47963 1 80 1 2025-10-25 14:43:21.732 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45212 1 109 1 2025-10-25 14:38:56.416 00:05:50.987 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-25 14:43:56.419 00:00:00.020 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 123 1 2025-10-25 14:44:22.058 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55160 1 109 1 2025-10-25 14:44:22.058 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60111 1 80 1 2025-10-25 14:44:22.047 00:00:00.000 UDP 28.104.0.1:55160 -> 198.28.0.2:53 1 64 1 2025-10-25 14:44:22.047 00:00:00.000 UDP 28.104.0.1:60111 -> 198.28.0.2:53 1 64 1 2025-10-25 14:45:22.339 00:00:00.000 UDP 28.104.0.1:37754 -> 198.28.0.2:53 1 64 1 2025-10-25 14:45:22.340 00:00:00.000 UDP 28.104.0.1:32941 -> 198.28.0.2:53 1 64 1 2025-10-25 14:45:22.350 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32941 1 80 1 2025-10-25 14:45:22.350 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37754 1 109 1 2025-10-25 14:40:56.464 00:05:50.979 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-25 14:44:56.419 00:01:00.017 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-25 14:43:56.362 00:02:00.058 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-25 14:46:22.649 00:00:00.000 UDP 28.104.0.1:46793 -> 198.28.0.2:53 1 64 1 2025-10-25 14:46:22.649 00:00:00.000 UDP 28.104.0.1:44720 -> 198.28.0.2:53 1 64 1 2025-10-25 14:46:22.658 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46793 1 109 1 2025-10-25 14:46:22.658 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44720 1 80 1 2025-10-25 14:41:56.425 00:05:50.967 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-25 14:47:22.951 00:00:00.000 UDP 28.104.0.1:45334 -> 198.28.0.2:53 1 64 1 2025-10-25 14:47:22.951 00:00:00.000 UDP 28.104.0.1:33062 -> 198.28.0.2:53 1 64 1 2025-10-25 14:47:22.961 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33062 1 109 1 2025-10-25 14:47:22.961 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45334 1 80 1 2025-10-25 14:47:48.831 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-25 14:46:56.420 00:01:00.018 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-25 14:46:56.363 00:01:00.057 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-25 14:48:23.251 00:00:00.000 UDP 28.104.0.1:60062 -> 198.28.0.2:53 1 64 1 2025-10-25 14:48:23.251 00:00:00.000 UDP 28.104.0.1:34952 -> 198.28.0.2:53 1 64 1 2025-10-25 14:48:23.262 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60062 1 80 1 2025-10-25 14:48:23.262 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34952 1 109 1 2025-10-25 14:44:16.746 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2240 1 2025-10-25 14:44:47.393 00:05:09.082 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-25 14:49:23.505 00:00:00.000 UDP 28.104.0.1:44412 -> 198.28.0.2:53 1 64 1 2025-10-25 14:49:23.501 00:00:00.000 UDP 28.104.0.1:40125 -> 198.28.0.2:53 1 64 1 2025-10-25 14:49:23.512 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40125 1 80 1 2025-10-25 14:49:23.516 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44412 1 109 1 2025-10-25 14:44:56.419 00:05:50.985 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-25 14:50:23.825 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33705 1 109 1 2025-10-25 14:50:23.825 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45442 1 80 1 2025-10-25 14:50:23.814 00:00:00.000 UDP 28.104.0.1:33705 -> 198.28.0.2:53 1 64 1 2025-10-25 14:50:23.814 00:00:00.000 UDP 28.104.0.1:45442 -> 198.28.0.2:53 1 64 1 2025-10-25 14:48:56.420 00:02:00.018 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-25 14:48:56.363 00:02:00.057 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-25 14:51:24.123 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49931 1 109 1 2025-10-25 14:51:24.124 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57904 1 80 1 2025-10-25 14:51:24.113 00:00:00.000 UDP 28.104.0.1:49931 -> 198.28.0.2:53 1 64 1 2025-10-25 14:51:24.113 00:00:00.000 UDP 28.104.0.1:57904 -> 198.28.0.2:53 1 64 1 2025-10-25 14:46:56.465 00:05:50.980 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-25 14:52:24.493 00:00:00.000 UDP 28.104.0.1:60299 -> 198.28.0.2:53 1 64 1 2025-10-25 14:52:24.493 00:00:00.000 UDP 28.104.0.1:53937 -> 198.28.0.2:53 1 64 1 2025-10-25 14:52:24.504 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60299 1 109 1 2025-10-25 14:52:24.504 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53937 1 80 1 2025-10-25 14:52:49.226 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-25 14:47:56.430 00:05:50.964 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-25 14:51:56.420 00:01:00.018 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-25 14:51:56.363 00:01:00.060 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-25 14:53:24.754 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59037 1 80 1 2025-10-25 14:53:24.754 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49880 1 109 1 2025-10-25 14:53:24.742 00:00:00.000 UDP 28.104.0.1:59037 -> 198.28.0.2:53 1 64 1 2025-10-25 14:53:24.743 00:00:00.000 UDP 28.104.0.1:49880 -> 198.28.0.2:53 1 64 1 2025-10-25 14:49:36.754 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2824 1 2025-10-25 14:54:25.052 00:00:00.000 UDP 28.104.0.1:42247 -> 198.28.0.2:53 1 64 1 2025-10-25 14:54:25.052 00:00:00.000 UDP 28.104.0.1:50085 -> 198.28.0.2:53 1 64 1 2025-10-25 14:54:25.061 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50085 1 80 1 2025-10-25 14:54:25.061 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42247 1 109 1 2025-10-25 14:50:47.394 00:05:09.083 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-25 14:55:25.339 00:00:00.000 UDP 28.104.0.1:51756 -> 198.28.0.2:53 1 64 1 2025-10-25 14:55:25.339 00:00:00.000 UDP 28.104.0.1:57588 -> 198.28.0.2:53 1 64 1 2025-10-25 14:55:25.349 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57588 1 80 1 2025-10-25 14:55:25.349 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51756 1 109 1 2025-10-25 14:50:56.419 00:05:50.985 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-25 14:53:56.422 00:02:00.018 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-25 14:53:56.364 00:02:00.058 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-25 14:56:25.653 00:00:00.000 UDP 28.104.0.1:57238 -> 198.28.0.2:53 1 64 1 2025-10-25 14:56:25.653 00:00:00.000 UDP 28.104.0.1:34302 -> 198.28.0.2:53 1 64 1 2025-10-25 14:56:25.663 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34302 1 109 1 2025-10-25 14:56:25.663 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57238 1 80 1 2025-10-25 14:57:25.923 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52203 1 80 1 2025-10-25 14:57:25.923 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41844 1 109 1 2025-10-25 14:57:25.913 00:00:00.000 UDP 28.104.0.1:41844 -> 198.28.0.2:53 1 64 1 2025-10-25 14:57:25.913 00:00:00.000 UDP 28.104.0.1:52203 -> 198.28.0.2:53 1 64 1 2025-10-25 14:52:56.465 00:05:50.979 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-25 14:57:49.260 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-25 14:56:56.422 00:01:00.018 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-25 14:56:56.366 00:01:00.057 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-25 14:58:26.227 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48513 1 109 1 2025-10-25 14:58:26.227 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49564 1 80 1 2025-10-25 14:58:26.217 00:00:00.000 UDP 28.104.0.1:49564 -> 198.28.0.2:53 1 64 1 2025-10-25 14:58:26.217 00:00:00.000 UDP 28.104.0.1:48513 -> 198.28.0.2:53 1 64 1 2025-10-25 14:53:56.432 00:05:50.963 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 Summary: total flows: 352, total bytes: 96210, total packets: 1419, avg bps: 202, avg pps: 0, avg bpp: 67 Time window: 2025-10-25 13:56:17 - 2025-10-25 14:59:47 Total flows processed: 352, passed: 352, Blocks skipped: 0, Bytes read: 36672 Sys: 0.0037s User: 0.0028s Wall: 0.0073s flows/second: 48385.8 Runtime: 0.0073s