Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-04 04:54:52.682 00:05:08.499 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 04:59:39.522 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41868 1 80 1 2025-11-04 04:59:39.522 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34275 1 109 1 2025-11-04 04:59:39.514 00:00:00.000 UDP 28.104.0.1:34275 -> 198.28.0.2:53 1 64 1 2025-11-04 04:59:39.514 00:00:00.000 UDP 28.104.0.1:41868 -> 198.28.0.2:53 1 64 1 2025-11-04 04:56:26.076 00:05:10.015 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 3220 1 2025-11-04 05:00:39.808 00:00:00.000 UDP 28.104.0.1:60892 -> 198.28.0.2:53 1 64 1 2025-11-04 05:00:39.808 00:00:00.000 UDP 28.104.0.1:36292 -> 198.28.0.2:53 1 64 1 2025-11-04 05:00:39.818 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60892 1 80 1 2025-11-04 05:00:39.818 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36292 1 109 1 2025-11-04 04:56:52.632 00:05:08.490 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 05:01:40.117 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50501 1 80 1 2025-11-04 05:01:40.117 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52619 1 109 1 2025-11-04 05:01:40.106 00:00:00.000 UDP 28.104.0.1:52619 -> 198.28.0.2:53 1 64 1 2025-11-04 05:01:40.106 00:00:00.000 UDP 28.104.0.1:50501 -> 198.28.0.2:53 1 64 1 2025-11-04 04:58:01.111 00:04:00.141 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 04:58:01.111 00:04:00.103 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 05:02:25.905 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 05:02:40.401 00:00:00.000 UDP 28.104.0.1:40042 -> 198.28.0.2:53 1 64 1 2025-11-04 05:02:40.401 00:00:00.000 UDP 28.104.0.1:60521 -> 198.28.0.2:53 1 64 1 2025-11-04 05:02:40.414 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60521 1 80 1 2025-11-04 05:02:40.413 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40042 1 109 1 2025-11-04 04:58:52.632 00:05:08.560 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 05:03:40.702 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50812 1 109 1 2025-11-04 05:03:40.702 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46384 1 80 1 2025-11-04 05:03:40.693 00:00:00.000 UDP 28.104.0.1:46384 -> 198.28.0.2:53 1 64 1 2025-11-04 05:03:40.693 00:00:00.000 UDP 28.104.0.1:50812 -> 198.28.0.2:53 1 64 1 2025-11-04 04:59:52.642 00:05:08.469 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 05:04:40.998 00:00:00.000 UDP 28.104.0.1:44453 -> 198.28.0.2:53 1 64 1 2025-11-04 05:04:40.998 00:00:00.000 UDP 28.104.0.1:41055 -> 198.28.0.2:53 1 64 1 2025-11-04 05:04:41.010 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41055 1 109 1 2025-11-04 05:04:41.010 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44453 1 80 1 2025-11-04 05:00:52.683 00:05:08.500 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 05:05:41.304 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60188 1 109 1 2025-11-04 05:05:41.304 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48691 1 80 1 2025-11-04 05:05:41.293 00:00:00.000 UDP 28.104.0.1:48691 -> 198.28.0.2:53 1 64 1 2025-11-04 05:05:41.293 00:00:00.000 UDP 28.104.0.1:60188 -> 198.28.0.2:53 1 64 1 2025-11-04 05:01:46.092 00:05:10.282 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2592 1 2025-11-04 05:06:41.545 00:00:00.000 UDP 28.104.0.1:59641 -> 198.28.0.2:53 1 64 1 2025-11-04 05:06:41.545 00:00:00.000 UDP 28.104.0.1:48003 -> 198.28.0.2:53 1 64 1 2025-11-04 05:06:41.556 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59641 1 109 1 2025-11-04 05:06:41.556 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48003 1 80 1 2025-11-04 05:02:52.632 00:05:08.490 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 05:03:01.111 00:04:00.143 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 05:03:01.111 00:04:00.107 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 05:07:25.985 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 05:07:41.839 00:00:00.000 UDP 28.104.0.1:52768 -> 198.28.0.2:53 1 64 1 2025-11-04 05:07:41.839 00:00:00.000 UDP 28.104.0.1:60284 -> 198.28.0.2:53 1 64 1 2025-11-04 05:07:41.849 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60284 1 80 1 2025-11-04 05:07:41.849 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52768 1 109 1 2025-11-04 05:08:42.135 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40411 1 80 1 2025-11-04 05:08:42.135 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42102 1 109 1 2025-11-04 05:08:42.124 00:00:00.000 UDP 28.104.0.1:42102 -> 198.28.0.2:53 1 64 1 2025-11-04 05:08:42.124 00:00:00.000 UDP 28.104.0.1:40411 -> 198.28.0.2:53 1 64 1 2025-11-04 05:04:52.635 00:05:08.559 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 05:09:42.424 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47925 1 109 1 2025-11-04 05:09:42.424 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47558 1 80 1 2025-11-04 05:09:42.413 00:00:00.000 UDP 28.104.0.1:47925 -> 198.28.0.2:53 1 64 1 2025-11-04 05:09:42.413 00:00:00.000 UDP 28.104.0.1:47558 -> 198.28.0.2:53 1 64 1 2025-11-04 05:05:52.645 00:05:08.468 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 05:10:43.820 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43814 1 109 1 2025-11-04 05:10:43.820 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55291 1 80 1 2025-11-04 05:10:43.810 00:00:00.000 UDP 28.104.0.1:55291 -> 198.28.0.2:53 1 64 1 2025-11-04 05:10:43.810 00:00:00.000 UDP 28.104.0.1:43814 -> 198.28.0.2:53 1 64 1 2025-11-04 05:06:52.684 00:05:08.499 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 05:07:06.097 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2956 1 2025-11-04 05:11:44.107 00:00:00.000 UDP 28.104.0.1:41633 -> 198.28.0.2:53 1 64 1 2025-11-04 05:11:44.107 00:00:00.000 UDP 28.104.0.1:45586 -> 198.28.0.2:53 1 64 1 2025-11-04 05:11:44.116 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41633 1 109 1 2025-11-04 05:11:44.116 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45586 1 80 1 2025-11-04 05:12:26.386 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 05:12:44.391 00:00:00.000 UDP 28.104.0.1:47541 -> 198.28.0.2:53 1 64 1 2025-11-04 05:12:44.391 00:00:00.000 UDP 28.104.0.1:53988 -> 198.28.0.2:53 1 64 1 2025-11-04 05:12:44.402 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47541 1 109 1 2025-11-04 05:12:44.402 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53988 1 80 1 2025-11-04 05:08:01.112 00:06:00.145 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-04 05:08:01.112 00:06:00.110 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-04 05:08:52.635 00:05:08.489 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 05:13:45.697 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39901 1 109 1 2025-11-04 05:13:45.697 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56480 1 80 1 2025-11-04 05:13:45.687 00:00:00.000 UDP 28.104.0.1:56480 -> 198.28.0.2:53 1 64 1 2025-11-04 05:13:45.686 00:00:00.000 UDP 28.104.0.1:39901 -> 198.28.0.2:53 1 64 1 2025-11-04 05:14:45.993 00:00:00.000 UDP 28.104.0.1:55206 -> 198.28.0.2:53 1 64 1 2025-11-04 05:14:45.993 00:00:00.000 UDP 28.104.0.1:39113 -> 198.28.0.2:53 1 64 1 2025-11-04 05:14:46.005 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55206 1 109 1 2025-11-04 05:14:46.005 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39113 1 80 1 2025-11-04 05:10:52.635 00:05:08.560 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 05:15:46.312 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56591 1 109 1 2025-11-04 05:15:46.312 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58282 1 80 1 2025-11-04 05:15:46.301 00:00:00.000 UDP 28.104.0.1:58282 -> 198.28.0.2:53 1 64 1 2025-11-04 05:15:46.301 00:00:00.000 UDP 28.104.0.1:56591 -> 198.28.0.2:53 1 64 1 2025-11-04 05:11:52.644 00:05:08.469 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 05:12:26.101 00:05:10.012 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2672 1 2025-11-04 05:16:46.625 00:00:00.000 UDP 28.104.0.1:57606 -> 198.28.0.2:53 1 64 1 2025-11-04 05:16:46.625 00:00:00.000 UDP 28.104.0.1:51006 -> 198.28.0.2:53 1 64 1 2025-11-04 05:16:46.634 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51006 1 109 1 2025-11-04 05:16:46.634 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57606 1 80 1 2025-11-04 05:12:52.686 00:05:08.500 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 05:17:26.141 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 05:17:47.067 00:00:00.000 UDP 28.104.0.1:51673 -> 198.28.0.2:53 1 64 1 2025-11-04 05:17:47.067 00:00:00.000 UDP 28.104.0.1:38065 -> 198.28.0.2:53 1 64 1 2025-11-04 05:17:47.077 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51673 1 109 1 2025-11-04 05:17:47.077 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38065 1 80 1 2025-11-04 05:18:47.379 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58685 1 109 1 2025-11-04 05:18:47.379 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36366 1 80 1 2025-11-04 05:18:47.370 00:00:00.000 UDP 28.104.0.1:36366 -> 198.28.0.2:53 1 64 1 2025-11-04 05:18:47.370 00:00:00.000 UDP 28.104.0.1:58685 -> 198.28.0.2:53 1 64 1 2025-11-04 05:14:52.636 00:05:08.489 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 05:19:48.105 00:00:00.000 UDP 28.104.0.1:32825 -> 198.28.0.2:53 1 64 1 2025-11-04 05:19:48.105 00:00:00.000 UDP 28.104.0.1:48510 -> 198.28.0.2:53 1 64 1 2025-11-04 05:19:48.133 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32825 1 80 1 2025-11-04 05:19:48.133 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48510 1 109 1 2025-11-04 05:15:01.113 00:06:00.143 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-04 05:15:01.113 00:06:00.109 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-04 05:20:48.414 00:00:00.000 UDP 28.104.0.1:59978 -> 198.28.0.2:53 1 64 1 2025-11-04 05:20:48.414 00:00:00.000 UDP 28.104.0.1:59275 -> 198.28.0.2:53 1 64 1 2025-11-04 05:20:48.424 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59978 1 80 1 2025-11-04 05:20:48.424 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59275 1 109 1 2025-11-04 05:16:52.635 00:05:08.561 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 05:21:48.703 00:00:00.000 UDP 28.104.0.1:44908 -> 198.28.0.2:53 1 64 1 2025-11-04 05:21:48.703 00:00:00.000 UDP 28.104.0.1:41639 -> 198.28.0.2:53 1 64 1 2025-11-04 05:21:48.713 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41639 1 80 1 2025-11-04 05:21:48.713 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44908 1 109 1 2025-11-04 05:17:46.112 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2384 1 2025-11-04 05:17:52.645 00:05:08.469 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 05:22:26.511 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 05:22:49.020 00:00:00.000 UDP 28.104.0.1:50938 -> 198.28.0.2:53 1 64 1 2025-11-04 05:22:49.019 00:00:00.000 UDP 28.104.0.1:48138 -> 198.28.0.2:53 1 64 1 2025-11-04 05:22:49.031 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50938 1 80 1 2025-11-04 05:22:49.031 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48138 1 109 1 2025-11-04 05:18:52.686 00:05:08.501 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 05:23:49.281 00:00:00.000 UDP 28.104.0.1:59041 -> 198.28.0.2:53 1 64 1 2025-11-04 05:23:49.281 00:00:00.000 UDP 28.104.0.1:53729 -> 198.28.0.2:53 1 64 1 2025-11-04 05:23:49.291 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59041 1 80 1 2025-11-04 05:23:49.291 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53729 1 109 1 2025-11-04 05:22:01.115 00:02:00.142 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-04 05:22:01.115 00:02:00.108 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-04 05:24:49.574 00:00:00.000 UDP 28.104.0.1:43232 -> 198.28.0.2:53 1 64 1 2025-11-04 05:24:49.574 00:00:00.000 UDP 28.104.0.1:45951 -> 198.28.0.2:53 1 64 1 2025-11-04 05:24:49.586 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45951 1 80 1 2025-11-04 05:24:49.585 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43232 1 109 1 2025-11-04 05:20:52.642 00:05:08.483 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 05:25:49.870 00:00:00.000 UDP 28.104.0.1:58208 -> 198.28.0.2:53 1 64 1 2025-11-04 05:25:49.870 00:00:00.000 UDP 28.104.0.1:42147 -> 198.28.0.2:53 1 64 1 2025-11-04 05:25:49.880 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58208 1 80 1 2025-11-04 05:25:49.880 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42147 1 109 1 2025-11-04 05:26:50.209 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55499 1 80 1 2025-11-04 05:26:50.209 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42143 1 109 1 2025-11-04 05:26:50.199 00:00:00.000 UDP 28.104.0.1:42143 -> 198.28.0.2:53 1 64 1 2025-11-04 05:26:50.199 00:00:00.000 UDP 28.104.0.1:55499 -> 198.28.0.2:53 1 64 1 2025-11-04 05:22:52.636 00:05:08.563 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 05:23:06.118 00:05:10.042 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2504 1 2025-11-04 05:27:26.528 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 05:27:50.463 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40096 1 109 1 2025-11-04 05:27:50.463 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57470 1 80 1 2025-11-04 05:27:50.453 00:00:00.000 UDP 28.104.0.1:57470 -> 198.28.0.2:53 1 64 1 2025-11-04 05:27:50.453 00:00:00.000 UDP 28.104.0.1:40096 -> 198.28.0.2:53 1 64 1 2025-11-04 05:23:52.646 00:05:08.470 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 05:28:50.755 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44004 1 109 1 2025-11-04 05:28:50.755 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51163 1 80 1 2025-11-04 05:28:50.747 00:00:00.000 UDP 28.104.0.1:44004 -> 198.28.0.2:53 1 64 1 2025-11-04 05:28:50.747 00:00:00.000 UDP 28.104.0.1:51163 -> 198.28.0.2:53 1 64 1 2025-11-04 05:25:01.116 00:04:00.143 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 05:25:01.116 00:04:00.110 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 05:24:52.686 00:05:08.504 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 05:29:51.072 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38788 1 109 1 2025-11-04 05:29:51.072 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58647 1 80 1 2025-11-04 05:29:51.062 00:00:00.000 UDP 28.104.0.1:38788 -> 198.28.0.2:53 1 64 1 2025-11-04 05:29:51.062 00:00:00.000 UDP 28.104.0.1:58647 -> 198.28.0.2:53 1 64 1 2025-11-04 05:30:51.375 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39765 1 109 1 2025-11-04 05:30:51.375 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51949 1 80 1 2025-11-04 05:30:51.365 00:00:00.000 UDP 28.104.0.1:39765 -> 198.28.0.2:53 1 64 1 2025-11-04 05:30:51.365 00:00:00.000 UDP 28.104.0.1:51949 -> 198.28.0.2:53 1 64 1 2025-11-04 05:26:52.637 00:05:08.489 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 05:31:51.676 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53686 1 80 1 2025-11-04 05:31:51.676 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52156 1 109 1 2025-11-04 05:31:51.666 00:00:00.000 UDP 28.104.0.1:53686 -> 198.28.0.2:53 1 64 1 2025-11-04 05:31:51.666 00:00:00.000 UDP 28.104.0.1:52156 -> 198.28.0.2:53 1 64 1 2025-11-04 05:32:26.647 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 05:28:16.739 00:05:09.387 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 3140 1 2025-11-04 05:32:51.939 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37615 1 80 1 2025-11-04 05:32:51.939 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48491 1 109 1 2025-11-04 05:32:51.930 00:00:00.000 UDP 28.104.0.1:48491 -> 198.28.0.2:53 1 64 1 2025-11-04 05:32:51.930 00:00:00.000 UDP 28.104.0.1:37615 -> 198.28.0.2:53 1 64 1 2025-11-04 05:28:52.638 00:05:08.564 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 05:33:52.229 00:00:00.000 UDP 28.104.0.1:48349 -> 198.28.0.2:53 1 64 1 2025-11-04 05:33:52.229 00:00:00.000 UDP 28.104.0.1:41028 -> 198.28.0.2:53 1 64 1 2025-11-04 05:33:52.240 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41028 1 80 1 2025-11-04 05:33:52.240 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48349 1 109 1 2025-11-04 05:30:01.116 00:04:00.146 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 05:30:01.116 00:04:00.109 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 05:29:52.648 00:05:08.469 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 05:34:52.488 00:00:00.000 UDP 28.104.0.1:45958 -> 198.28.0.2:53 1 64 1 2025-11-04 05:34:52.488 00:00:00.000 UDP 28.104.0.1:46451 -> 198.28.0.2:53 1 64 1 2025-11-04 05:34:52.499 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45958 1 109 1 2025-11-04 05:34:52.499 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46451 1 80 1 2025-11-04 05:30:52.689 00:05:08.502 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 05:35:52.778 00:00:00.000 UDP 28.104.0.1:39001 -> 198.28.0.2:53 1 64 1 2025-11-04 05:35:52.778 00:00:00.000 UDP 28.104.0.1:36620 -> 198.28.0.2:53 1 64 1 2025-11-04 05:35:52.788 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39001 1 80 1 2025-11-04 05:35:52.788 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36620 1 109 1 2025-11-04 05:36:53.075 00:00:00.000 UDP 28.104.0.1:57368 -> 198.28.0.2:53 1 64 1 2025-11-04 05:36:53.075 00:00:00.000 UDP 28.104.0.1:58111 -> 198.28.0.2:53 1 64 1 2025-11-04 05:36:53.086 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58111 1 109 1 2025-11-04 05:36:53.086 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57368 1 80 1 2025-11-04 05:32:52.640 00:05:08.489 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 05:37:26.622 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 05:33:36.126 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 3088 1 2025-11-04 05:37:53.367 00:00:00.000 UDP 28.104.0.1:50976 -> 198.28.0.2:53 1 64 1 2025-11-04 05:37:53.367 00:00:00.000 UDP 28.104.0.1:45944 -> 198.28.0.2:53 1 64 1 2025-11-04 05:37:53.378 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45944 1 80 1 2025-11-04 05:37:53.378 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50976 1 109 1 2025-11-04 05:38:53.667 00:00:00.000 UDP 28.104.0.1:53375 -> 198.28.0.2:53 1 64 1 2025-11-04 05:38:53.667 00:00:00.000 UDP 28.104.0.1:56752 -> 198.28.0.2:53 1 64 1 2025-11-04 05:35:01.118 00:04:00.148 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 05:35:01.118 00:04:00.108 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 05:38:53.676 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53375 1 80 1 2025-11-04 05:38:53.676 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56752 1 109 1 2025-11-04 05:34:52.639 00:05:08.563 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 05:39:53.977 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41209 1 109 1 2025-11-04 05:39:53.977 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49146 1 80 1 2025-11-04 05:39:53.966 00:00:00.000 UDP 28.104.0.1:41209 -> 198.28.0.2:53 1 64 1 2025-11-04 05:39:53.967 00:00:00.000 UDP 28.104.0.1:49146 -> 198.28.0.2:53 1 64 1 2025-11-04 05:35:52.649 00:05:08.469 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 05:40:54.280 00:00:00.000 UDP 28.104.0.1:36068 -> 198.28.0.2:53 1 64 1 2025-11-04 05:40:54.279 00:00:00.000 UDP 28.104.0.1:36430 -> 198.28.0.2:53 1 64 1 2025-11-04 05:40:54.289 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36068 1 109 1 2025-11-04 05:40:54.289 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36430 1 80 1 2025-11-04 05:36:52.690 00:05:08.503 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 05:41:54.598 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56932 1 80 1 2025-11-04 05:41:54.597 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46193 1 109 1 2025-11-04 05:41:54.588 00:00:00.000 UDP 28.104.0.1:46193 -> 198.28.0.2:53 1 64 1 2025-11-04 05:41:54.588 00:00:00.000 UDP 28.104.0.1:56932 -> 198.28.0.2:53 1 64 1 2025-11-04 05:42:27.054 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 05:42:54.892 00:00:00.000 UDP 28.104.0.1:49272 -> 198.28.0.2:53 1 64 1 2025-11-04 05:42:54.892 00:00:00.000 UDP 28.104.0.1:39405 -> 198.28.0.2:53 1 64 1 2025-11-04 05:42:54.902 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39405 1 80 1 2025-11-04 05:42:54.902 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49272 1 109 1 2025-11-04 05:38:52.639 00:05:08.490 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 05:38:56.130 00:05:10.846 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2736 1 2025-11-04 05:43:55.205 00:00:00.000 UDP 28.104.0.1:39675 -> 198.28.0.2:53 1 64 1 2025-11-04 05:43:55.205 00:00:00.000 UDP 28.104.0.1:36365 -> 198.28.0.2:53 1 64 1 2025-11-04 05:43:55.215 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36365 1 109 1 2025-11-04 05:43:55.215 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39675 1 80 1 2025-11-04 05:44:55.520 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50865 1 109 1 2025-11-04 05:44:55.520 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45593 1 80 1 2025-11-04 05:40:52.640 00:05:08.563 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 05:44:55.510 00:00:00.000 UDP 28.104.0.1:45593 -> 198.28.0.2:53 1 64 1 2025-11-04 05:44:55.509 00:00:00.000 UDP 28.104.0.1:50865 -> 198.28.0.2:53 1 64 1 2025-11-04 05:40:01.118 00:06:00.146 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-04 05:40:01.118 00:06:00.110 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-04 05:45:55.766 00:00:00.000 UDP 28.104.0.1:52965 -> 198.28.0.2:53 1 64 1 2025-11-04 05:45:55.766 00:00:00.000 UDP 28.104.0.1:59299 -> 198.28.0.2:53 1 64 1 2025-11-04 05:45:55.777 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52965 1 109 1 2025-11-04 05:45:55.777 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59299 1 80 1 2025-11-04 05:41:52.650 00:05:08.470 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 05:46:56.073 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49331 1 109 1 2025-11-04 05:46:56.073 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60973 1 80 1 2025-11-04 05:46:56.062 00:00:00.000 UDP 28.104.0.1:49331 -> 198.28.0.2:53 1 64 1 2025-11-04 05:46:56.062 00:00:00.000 UDP 28.104.0.1:60973 -> 198.28.0.2:53 1 64 1 2025-11-04 05:42:52.692 00:05:08.505 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 05:47:26.842 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 05:47:56.314 00:00:00.000 UDP 28.104.0.1:52243 -> 198.28.0.2:53 1 64 1 2025-11-04 05:47:56.314 00:00:00.000 UDP 28.104.0.1:60590 -> 198.28.0.2:53 1 64 1 2025-11-04 05:47:56.324 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52243 1 80 1 2025-11-04 05:47:56.324 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60590 1 109 1 2025-11-04 05:44:16.148 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2400 1 2025-11-04 05:48:56.608 00:00:00.000 UDP 28.104.0.1:34710 -> 198.28.0.2:53 1 64 1 2025-11-04 05:48:56.607 00:00:00.000 UDP 28.104.0.1:59039 -> 198.28.0.2:53 1 64 1 2025-11-04 05:48:56.618 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34710 1 80 1 2025-11-04 05:48:56.617 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59039 1 109 1 2025-11-04 05:44:52.641 00:05:08.490 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 05:49:56.865 00:00:00.000 UDP 28.104.0.1:56707 -> 198.28.0.2:53 1 64 1 2025-11-04 05:49:56.874 00:00:00.000 UDP 28.104.0.1:50184 -> 198.28.0.2:53 1 64 1 2025-11-04 05:49:56.875 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56707 1 109 1 2025-11-04 05:49:56.884 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50184 1 80 1 2025-11-04 05:50:57.186 00:00:00.000 UDP 28.104.0.1:40054 -> 198.28.0.2:53 1 64 1 2025-11-04 05:50:57.186 00:00:00.000 UDP 28.104.0.1:59936 -> 198.28.0.2:53 1 64 1 2025-11-04 05:50:57.197 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59936 1 109 1 2025-11-04 05:50:57.197 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40054 1 80 1 2025-11-04 05:46:52.641 00:05:08.563 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 05:51:57.483 00:00:00.000 UDP 28.104.0.1:50184 -> 198.28.0.2:53 1 64 1 2025-11-04 05:47:01.120 00:06:00.146 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-04 05:47:52.650 00:05:08.470 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 05:47:01.120 00:06:00.111 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-04 05:51:57.483 00:00:00.000 UDP 28.104.0.1:40374 -> 198.28.0.2:53 1 64 1 2025-11-04 05:51:57.493 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50184 1 109 1 2025-11-04 05:51:57.493 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40374 1 80 1 2025-11-04 05:52:27.027 00:00:00.027 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 05:52:57.786 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40146 1 80 1 2025-11-04 05:52:57.786 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33831 1 109 1 2025-11-04 05:48:52.691 00:05:08.502 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 05:52:57.775 00:00:00.000 UDP 28.104.0.1:40146 -> 198.28.0.2:53 1 64 1 2025-11-04 05:52:57.775 00:00:00.000 UDP 28.104.0.1:33831 -> 198.28.0.2:53 1 64 1 2025-11-04 05:49:27.086 00:05:09.070 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2236 1 2025-11-04 05:53:58.076 00:00:00.000 UDP 28.104.0.1:50590 -> 198.28.0.2:53 1 64 1 2025-11-04 05:53:58.077 00:00:00.000 UDP 28.104.0.1:37166 -> 198.28.0.2:53 1 64 1 2025-11-04 05:53:58.088 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50590 1 80 1 2025-11-04 05:53:58.088 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37166 1 109 1 2025-11-04 05:54:58.327 00:00:00.000 UDP 28.104.0.1:43301 -> 198.28.0.2:53 1 64 1 2025-11-04 05:54:58.327 00:00:00.000 UDP 28.104.0.1:33018 -> 198.28.0.2:53 1 64 1 2025-11-04 05:54:58.338 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43301 1 80 1 2025-11-04 05:50:52.642 00:05:08.490 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 05:54:58.338 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33018 1 109 1 2025-11-04 05:55:58.617 00:00:00.000 UDP 28.104.0.1:59089 -> 198.28.0.2:53 1 64 1 2025-11-04 05:55:58.617 00:00:00.000 UDP 28.104.0.1:59996 -> 198.28.0.2:53 1 64 1 2025-11-04 05:54:01.121 00:02:00.146 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-04 05:54:01.121 00:02:00.110 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-04 05:55:58.627 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59996 1 80 1 2025-11-04 05:55:58.627 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59089 1 109 1 2025-11-04 05:56:58.910 00:00:00.000 UDP 28.104.0.1:51550 -> 198.28.0.2:53 1 64 1 2025-11-04 05:56:58.910 00:00:00.000 UDP 28.104.0.1:42489 -> 198.28.0.2:53 1 64 1 2025-11-04 05:56:58.920 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51550 1 109 1 2025-11-04 05:52:52.641 00:05:08.563 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 05:56:58.920 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42489 1 80 1 2025-11-04 05:57:26.995 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 05:57:59.218 00:00:00.000 UDP 28.104.0.1:47526 -> 198.28.0.2:53 1 64 1 2025-11-04 05:57:59.218 00:00:00.000 UDP 28.104.0.1:39172 -> 198.28.0.2:53 1 64 1 2025-11-04 05:53:52.652 00:05:08.471 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 05:57:59.229 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39172 1 80 1 2025-11-04 05:57:59.229 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47526 1 109 1 Summary: total flows: 321, total bytes: 95689, total packets: 1411, avg bps: 198, avg pps: 0, avg bpp: 67 Time window: 2025-11-04 04:54:52 - 2025-11-04 05:59:01 Total flows processed: 321, passed: 321, Blocks skipped: 0, Bytes read: 33448 Sys: 0.0042s User: 0.0031s Wall: 0.0036s flows/second: 88044.2 Runtime: 0.0037s