Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-10 00:54:03.948 00:05:51.575 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 00:59:47.859 00:00:00.000 UDP 28.104.0.1:39839 -> 198.28.0.2:53 1 64 1 2025-11-10 00:59:47.859 00:00:00.000 UDP 28.104.0.1:47232 -> 198.28.0.2:53 1 64 1 2025-11-10 00:59:47.870 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47232 1 80 1 2025-11-10 00:59:47.870 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39839 1 109 1 2025-11-10 00:55:03.868 00:05:51.605 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 01:00:14.475 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 01:00:48.154 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52597 1 80 1 2025-11-10 01:00:48.154 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46721 1 109 1 2025-11-10 01:00:48.143 00:00:00.000 UDP 28.104.0.1:46721 -> 198.28.0.2:53 1 64 1 2025-11-10 01:00:48.143 00:00:00.000 UDP 28.104.0.1:52597 -> 198.28.0.2:53 1 64 1 2025-11-10 01:01:48.893 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37563 1 80 1 2025-11-10 01:01:48.893 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57880 1 109 1 2025-11-10 01:01:48.884 00:00:00.000 UDP 28.104.0.1:57880 -> 198.28.0.2:53 1 64 1 2025-11-10 01:01:48.883 00:00:00.000 UDP 28.104.0.1:37563 -> 198.28.0.2:53 1 64 1 2025-11-10 00:57:03.859 00:05:51.624 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 00:57:03.960 00:05:51.514 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 00:57:03.858 00:06:00.138 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-10 00:58:03.858 00:05:00.310 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-10 00:58:17.815 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2240 1 2025-11-10 01:02:49.200 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41550 1 109 1 2025-11-10 01:02:49.200 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54540 1 80 1 2025-11-10 01:02:49.191 00:00:00.000 UDP 28.104.0.1:54540 -> 198.28.0.2:53 1 64 1 2025-11-10 01:02:49.191 00:00:00.000 UDP 28.104.0.1:41550 -> 198.28.0.2:53 1 64 1 2025-11-10 01:03:49.485 00:00:00.000 UDP 28.104.0.1:51668 -> 198.28.0.2:53 1 64 1 2025-11-10 01:03:49.485 00:00:00.000 UDP 28.104.0.1:36875 -> 198.28.0.2:53 1 64 1 2025-11-10 01:03:49.495 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36875 1 109 1 2025-11-10 01:03:49.495 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51668 1 80 1 2025-11-10 01:04:49.789 00:00:00.000 UDP 28.104.0.1:54153 -> 198.28.0.2:53 1 64 1 2025-11-10 01:04:49.789 00:00:00.000 UDP 28.104.0.1:53742 -> 198.28.0.2:53 1 64 1 2025-11-10 01:04:49.801 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53742 1 109 1 2025-11-10 01:04:49.803 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54153 1 80 1 2025-11-10 01:00:03.950 00:05:51.574 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 01:05:14.497 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 01:05:50.107 00:00:00.000 UDP 28.104.0.1:38547 -> 198.28.0.2:53 1 64 1 2025-11-10 01:05:50.107 00:00:00.000 UDP 28.104.0.1:45184 -> 198.28.0.2:53 1 64 1 2025-11-10 01:05:50.116 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38547 1 109 1 2025-11-10 01:05:50.116 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45184 1 80 1 2025-11-10 01:01:03.869 00:05:51.604 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 01:06:50.370 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40508 1 80 1 2025-11-10 01:06:50.370 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52995 1 109 1 2025-11-10 01:06:50.360 00:00:00.000 UDP 28.104.0.1:52995 -> 198.28.0.2:53 1 64 1 2025-11-10 01:06:50.360 00:00:00.000 UDP 28.104.0.1:40508 -> 198.28.0.2:53 1 64 1 2025-11-10 01:03:37.820 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 3080 1 2025-11-10 01:07:50.667 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46606 1 80 1 2025-11-10 01:07:50.668 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51569 1 109 1 2025-11-10 01:07:50.656 00:00:00.000 UDP 28.104.0.1:51569 -> 198.28.0.2:53 1 64 1 2025-11-10 01:07:50.656 00:00:00.000 UDP 28.104.0.1:46606 -> 198.28.0.2:53 1 64 1 2025-11-10 01:03:03.961 00:05:51.514 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 01:03:03.860 00:05:51.625 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 01:04:03.860 00:05:00.310 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-10 01:08:50.967 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59785 1 80 1 2025-11-10 01:08:50.967 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54386 1 109 1 2025-11-10 01:08:50.955 00:00:00.000 UDP 28.104.0.1:59785 -> 198.28.0.2:53 1 64 1 2025-11-10 01:08:50.955 00:00:00.000 UDP 28.104.0.1:54386 -> 198.28.0.2:53 1 64 1 2025-11-10 01:04:03.859 00:06:00.139 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-10 01:09:51.265 00:00:00.000 UDP 28.104.0.1:34015 -> 198.28.0.2:53 1 64 1 2025-11-10 01:09:51.265 00:00:00.000 UDP 28.104.0.1:55558 -> 198.28.0.2:53 1 64 1 2025-11-10 01:09:51.274 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55558 1 109 1 2025-11-10 01:09:51.274 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34015 1 80 1 2025-11-10 01:10:14.726 00:00:00.016 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 01:10:51.564 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45384 1 80 1 2025-11-10 01:10:51.564 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50170 1 109 1 2025-11-10 01:10:51.553 00:00:00.000 UDP 28.104.0.1:50170 -> 198.28.0.2:53 1 64 1 2025-11-10 01:10:51.553 00:00:00.000 UDP 28.104.0.1:45384 -> 198.28.0.2:53 1 64 1 2025-11-10 01:06:03.950 00:05:51.574 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 01:11:51.861 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50060 1 80 1 2025-11-10 01:11:51.861 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53249 1 109 1 2025-11-10 01:11:51.852 00:00:00.000 UDP 28.104.0.1:53249 -> 198.28.0.2:53 1 64 1 2025-11-10 01:11:51.852 00:00:00.000 UDP 28.104.0.1:50060 -> 198.28.0.2:53 1 64 1 2025-11-10 01:07:03.870 00:05:51.604 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 01:12:52.158 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44899 1 80 1 2025-11-10 01:12:52.158 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55061 1 109 1 2025-11-10 01:12:52.148 00:00:00.000 UDP 28.104.0.1:44899 -> 198.28.0.2:53 1 64 1 2025-11-10 01:12:52.148 00:00:00.000 UDP 28.104.0.1:55061 -> 198.28.0.2:53 1 64 1 2025-11-10 01:08:57.826 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 46 3208 1 2025-11-10 01:13:52.458 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37439 1 109 1 2025-11-10 01:09:03.962 00:05:51.513 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 01:13:52.458 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46750 1 80 1 2025-11-10 01:13:52.448 00:00:00.000 UDP 28.104.0.1:37439 -> 198.28.0.2:53 1 64 1 2025-11-10 01:09:03.861 00:05:51.625 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 01:13:52.448 00:00:00.000 UDP 28.104.0.1:46750 -> 198.28.0.2:53 1 64 1 2025-11-10 01:10:03.861 00:05:00.310 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-10 01:14:52.750 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52381 1 80 1 2025-11-10 01:14:52.750 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50802 1 109 1 2025-11-10 01:14:52.739 00:00:00.000 UDP 28.104.0.1:50802 -> 198.28.0.2:53 1 64 1 2025-11-10 01:14:52.739 00:00:00.000 UDP 28.104.0.1:52381 -> 198.28.0.2:53 1 64 1 2025-11-10 01:15:14.720 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 01:15:53.008 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52680 1 109 1 2025-11-10 01:15:53.008 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48740 1 80 1 2025-11-10 01:15:52.998 00:00:00.000 UDP 28.104.0.1:52680 -> 198.28.0.2:53 1 64 1 2025-11-10 01:15:52.998 00:00:00.000 UDP 28.104.0.1:48740 -> 198.28.0.2:53 1 64 1 2025-11-10 01:11:03.860 00:06:00.141 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-10 01:16:53.278 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40911 1 109 1 2025-11-10 01:16:53.278 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59098 1 80 1 2025-11-10 01:12:03.953 00:05:51.573 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 01:16:53.269 00:00:00.000 UDP 28.104.0.1:59098 -> 198.28.0.2:53 1 64 1 2025-11-10 01:16:53.269 00:00:00.000 UDP 28.104.0.1:40911 -> 198.28.0.2:53 1 64 1 2025-11-10 01:13:03.871 00:05:51.604 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 01:17:53.535 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56788 1 80 1 2025-11-10 01:17:53.535 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37374 1 109 1 2025-11-10 01:17:53.525 00:00:00.000 UDP 28.104.0.1:56788 -> 198.28.0.2:53 1 64 1 2025-11-10 01:17:53.525 00:00:00.000 UDP 28.104.0.1:37374 -> 198.28.0.2:53 1 64 1 2025-11-10 01:14:17.828 00:05:10.412 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2608 1 2025-11-10 01:18:53.826 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40126 1 109 1 2025-11-10 01:18:53.826 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49732 1 80 1 2025-11-10 01:18:53.816 00:00:00.000 UDP 28.104.0.1:49732 -> 198.28.0.2:53 1 64 1 2025-11-10 01:18:53.815 00:00:00.000 UDP 28.104.0.1:40126 -> 198.28.0.2:53 1 64 1 2025-11-10 01:15:03.963 00:05:51.512 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 01:19:54.119 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52513 1 80 1 2025-11-10 01:19:54.119 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35599 1 109 1 2025-11-10 01:19:54.109 00:00:00.000 UDP 28.104.0.1:35599 -> 198.28.0.2:53 1 64 1 2025-11-10 01:19:54.109 00:00:00.000 UDP 28.104.0.1:52513 -> 198.28.0.2:53 1 64 1 2025-11-10 01:15:03.861 00:05:51.624 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 01:16:03.872 00:05:00.302 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-10 01:20:14.967 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 01:20:54.417 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53548 1 80 1 2025-11-10 01:20:54.417 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58996 1 109 1 2025-11-10 01:20:54.409 00:00:00.000 UDP 28.104.0.1:53548 -> 198.28.0.2:53 1 64 1 2025-11-10 01:20:54.409 00:00:00.000 UDP 28.104.0.1:58996 -> 198.28.0.2:53 1 64 1 2025-11-10 01:21:54.673 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40018 1 80 1 2025-11-10 01:21:54.673 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41587 1 109 1 2025-11-10 01:21:54.662 00:00:00.000 UDP 28.104.0.1:41587 -> 198.28.0.2:53 1 64 1 2025-11-10 01:21:54.662 00:00:00.000 UDP 28.104.0.1:40018 -> 198.28.0.2:53 1 64 1 2025-11-10 01:18:03.872 00:05:00.131 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-10 01:22:54.975 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51829 1 80 1 2025-11-10 01:22:54.975 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47130 1 109 1 2025-11-10 01:22:54.965 00:00:00.000 UDP 28.104.0.1:47130 -> 198.28.0.2:53 1 64 1 2025-11-10 01:18:03.953 00:05:51.573 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 01:22:54.965 00:00:00.000 UDP 28.104.0.1:51829 -> 198.28.0.2:53 1 64 1 2025-11-10 01:19:37.856 00:05:10.472 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2712 1 2025-11-10 01:19:03.881 00:05:51.595 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 01:23:55.278 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59519 1 80 1 2025-11-10 01:23:55.278 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46709 1 109 1 2025-11-10 01:23:55.269 00:00:00.000 UDP 28.104.0.1:46709 -> 198.28.0.2:53 1 64 1 2025-11-10 01:23:55.269 00:00:00.000 UDP 28.104.0.1:59519 -> 198.28.0.2:53 1 64 1 2025-11-10 01:24:55.562 00:00:00.000 UDP 28.104.0.1:55174 -> 198.28.0.2:53 1 64 1 2025-11-10 01:24:55.562 00:00:00.000 UDP 28.104.0.1:54255 -> 198.28.0.2:53 1 64 1 2025-11-10 01:24:55.571 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54255 1 109 1 2025-11-10 01:24:55.571 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55174 1 80 1 2025-11-10 01:25:14.917 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 01:25:55.866 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49055 1 80 1 2025-11-10 01:21:03.964 00:05:51.513 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 01:25:55.866 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39495 1 109 1 2025-11-10 01:25:55.855 00:00:00.000 UDP 28.104.0.1:39495 -> 198.28.0.2:53 1 64 1 2025-11-10 01:21:03.872 00:05:51.614 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 01:25:55.855 00:00:00.000 UDP 28.104.0.1:49055 -> 198.28.0.2:53 1 64 1 2025-11-10 01:22:03.873 00:05:00.302 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-10 01:26:56.188 00:00:00.000 UDP 28.104.0.1:52251 -> 198.28.0.2:53 1 64 1 2025-11-10 01:26:56.189 00:00:00.000 UDP 28.104.0.1:58226 -> 198.28.0.2:53 1 64 1 2025-11-10 01:26:56.198 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52251 1 80 1 2025-11-10 01:26:56.199 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58226 1 109 1 2025-11-10 01:27:56.482 00:00:00.000 UDP 28.104.0.1:51808 -> 198.28.0.2:53 1 64 1 2025-11-10 01:27:56.482 00:00:00.000 UDP 28.104.0.1:41251 -> 198.28.0.2:53 1 64 1 2025-11-10 01:27:56.492 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51808 1 80 1 2025-11-10 01:27:56.492 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41251 1 109 1 2025-11-10 01:24:03.874 00:05:00.130 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-10 01:28:56.793 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50924 1 109 1 2025-11-10 01:28:56.792 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52020 1 80 1 2025-11-10 01:24:03.954 00:05:51.572 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 01:28:56.781 00:00:00.000 UDP 28.104.0.1:52020 -> 198.28.0.2:53 1 64 1 2025-11-10 01:28:56.781 00:00:00.000 UDP 28.104.0.1:50924 -> 198.28.0.2:53 1 64 1 2025-11-10 01:24:57.859 00:05:10.011 OSPF 28.0.2.1:0 -> 224.0.0.5:0 32 2176 1 2025-11-10 01:25:03.885 00:05:51.593 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 01:29:57.104 00:00:00.000 UDP 28.104.0.1:51914 -> 198.28.0.2:53 1 64 1 2025-11-10 01:29:57.105 00:00:00.000 UDP 28.104.0.1:59777 -> 198.28.0.2:53 1 64 1 2025-11-10 01:29:57.114 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51914 1 109 1 2025-11-10 01:29:57.115 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59777 1 80 1 2025-11-10 01:30:15.271 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 01:30:57.419 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55715 1 109 1 2025-11-10 01:30:57.419 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56607 1 80 1 2025-11-10 01:30:57.411 00:00:00.000 UDP 28.104.0.1:55715 -> 198.28.0.2:53 1 64 1 2025-11-10 01:30:57.411 00:00:00.000 UDP 28.104.0.1:56607 -> 198.28.0.2:53 1 64 1 2025-11-10 01:27:03.965 00:05:51.513 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 01:27:03.873 00:05:51.614 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 01:31:57.843 00:00:00.000 UDP 28.104.0.1:60252 -> 198.28.0.2:53 1 64 1 2025-11-10 01:31:57.843 00:00:00.000 UDP 28.104.0.1:56902 -> 198.28.0.2:53 1 64 1 2025-11-10 01:31:57.853 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56902 1 80 1 2025-11-10 01:31:57.853 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60252 1 109 1 2025-11-10 01:28:03.874 00:05:00.304 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-10 01:32:58.134 00:00:00.000 UDP 28.104.0.1:44453 -> 198.28.0.2:53 1 64 1 2025-11-10 01:32:58.134 00:00:00.000 UDP 28.104.0.1:51641 -> 198.28.0.2:53 1 64 1 2025-11-10 01:32:58.145 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51641 1 80 1 2025-11-10 01:32:58.145 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44453 1 109 1 2025-11-10 01:33:58.454 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37369 1 80 1 2025-11-10 01:33:58.454 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45394 1 109 1 2025-11-10 01:33:58.446 00:00:00.000 UDP 28.104.0.1:37369 -> 198.28.0.2:53 1 64 1 2025-11-10 01:33:58.446 00:00:00.000 UDP 28.104.0.1:45394 -> 198.28.0.2:53 1 64 1 2025-11-10 01:30:03.874 00:05:00.132 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-10 01:30:17.872 00:05:10.011 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2696 1 2025-11-10 01:34:58.707 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59213 1 109 1 2025-11-10 01:34:58.707 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50663 1 80 1 2025-11-10 01:30:03.955 00:05:51.572 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 01:34:58.697 00:00:00.000 UDP 28.104.0.1:59213 -> 198.28.0.2:53 1 64 1 2025-11-10 01:34:58.697 00:00:00.000 UDP 28.104.0.1:50663 -> 198.28.0.2:53 1 64 1 2025-11-10 01:35:15.216 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 01:31:03.884 00:05:51.594 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 01:35:59.013 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37149 1 109 1 2025-11-10 01:35:59.013 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57610 1 80 1 2025-11-10 01:35:59.002 00:00:00.000 UDP 28.104.0.1:37149 -> 198.28.0.2:53 1 64 1 2025-11-10 01:35:59.002 00:00:00.000 UDP 28.104.0.1:57610 -> 198.28.0.2:53 1 64 1 2025-11-10 01:36:59.327 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37628 1 109 1 2025-11-10 01:36:59.327 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60898 1 80 1 2025-11-10 01:36:59.315 00:00:00.000 UDP 28.104.0.1:37628 -> 198.28.0.2:53 1 64 1 2025-11-10 01:36:59.315 00:00:00.000 UDP 28.104.0.1:60898 -> 198.28.0.2:53 1 64 1 2025-11-10 01:33:03.965 00:05:51.514 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 01:33:03.874 00:05:51.616 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 01:37:59.612 00:00:00.000 UDP 28.104.0.1:33557 -> 198.28.0.2:53 1 64 1 2025-11-10 01:37:59.612 00:00:00.000 UDP 28.104.0.1:48085 -> 198.28.0.2:53 1 64 1 2025-11-10 01:37:59.623 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48085 1 80 1 2025-11-10 01:37:59.622 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33557 1 109 1 2025-11-10 01:34:03.874 00:05:00.305 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-10 01:38:59.923 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60637 1 80 1 2025-11-10 01:38:59.923 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40130 1 109 1 2025-11-10 01:38:59.913 00:00:00.000 UDP 28.104.0.1:40130 -> 198.28.0.2:53 1 64 1 2025-11-10 01:38:59.913 00:00:00.000 UDP 28.104.0.1:60637 -> 198.28.0.2:53 1 64 1 2025-11-10 01:35:37.883 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 45 3404 1 2025-11-10 01:40:00.215 00:00:00.000 UDP 28.104.0.1:39170 -> 198.28.0.2:53 1 64 1 2025-11-10 01:40:00.215 00:00:00.000 UDP 28.104.0.1:54454 -> 198.28.0.2:53 1 64 1 2025-11-10 01:40:00.225 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54454 1 109 1 2025-11-10 01:40:00.225 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39170 1 80 1 2025-11-10 01:36:03.875 00:05:00.132 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-10 01:40:15.158 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 01:41:00.524 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56683 1 80 1 2025-11-10 01:41:00.524 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35019 1 109 1 2025-11-10 01:36:03.956 00:05:51.573 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 01:41:00.512 00:00:00.000 UDP 28.104.0.1:56683 -> 198.28.0.2:53 1 64 1 2025-11-10 01:41:00.512 00:00:00.000 UDP 28.104.0.1:35019 -> 198.28.0.2:53 1 64 1 2025-11-10 01:37:03.885 00:05:51.595 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 01:42:00.809 00:00:00.000 UDP 28.104.0.1:51760 -> 198.28.0.2:53 1 64 1 2025-11-10 01:42:00.809 00:00:00.000 UDP 28.104.0.1:54974 -> 198.28.0.2:53 1 64 1 2025-11-10 01:42:00.819 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54974 1 109 1 2025-11-10 01:42:00.819 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51760 1 80 1 2025-11-10 01:43:01.116 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46787 1 80 1 2025-11-10 01:43:01.116 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58004 1 109 1 2025-11-10 01:43:01.105 00:00:00.000 UDP 28.104.0.1:46787 -> 198.28.0.2:53 1 64 1 2025-11-10 01:43:01.105 00:00:00.000 UDP 28.104.0.1:58004 -> 198.28.0.2:53 1 64 1 2025-11-10 01:39:03.874 00:05:51.616 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 01:44:01.410 00:00:00.000 UDP 28.104.0.1:60730 -> 198.28.0.2:53 1 64 1 2025-11-10 01:44:01.409 00:00:00.000 UDP 28.104.0.1:47892 -> 198.28.0.2:53 1 64 1 2025-11-10 01:39:03.967 00:05:51.513 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 01:44:01.420 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60730 1 80 1 2025-11-10 01:44:01.420 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47892 1 109 1 2025-11-10 01:40:03.875 00:05:00.305 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-10 01:45:01.709 00:00:00.000 UDP 28.104.0.1:54257 -> 198.28.0.2:53 1 64 1 2025-11-10 01:45:01.709 00:00:00.000 UDP 28.104.0.1:40500 -> 198.28.0.2:53 1 64 1 2025-11-10 01:45:01.718 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40500 1 109 1 2025-11-10 01:45:01.718 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54257 1 80 1 2025-11-10 01:40:57.896 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2672 1 2025-11-10 01:45:15.553 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 01:46:02.044 00:00:00.000 UDP 28.104.0.1:49834 -> 198.28.0.2:53 1 64 1 2025-11-10 01:42:03.876 00:05:00.132 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-10 01:46:02.044 00:00:00.000 UDP 28.104.0.1:48424 -> 198.28.0.2:53 1 64 1 2025-11-10 01:46:02.054 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49834 1 109 1 2025-11-10 01:46:02.054 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48424 1 80 1 2025-11-10 01:42:03.957 00:05:51.576 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 01:47:02.347 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37973 1 109 1 2025-11-10 01:47:02.347 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48587 1 80 1 2025-11-10 01:47:02.336 00:00:00.000 UDP 28.104.0.1:48587 -> 198.28.0.2:53 1 64 1 2025-11-10 01:47:02.336 00:00:00.000 UDP 28.104.0.1:37973 -> 198.28.0.2:53 1 64 1 2025-11-10 01:43:03.886 00:05:51.598 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 01:48:02.651 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49946 1 109 1 2025-11-10 01:48:02.650 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53952 1 80 1 2025-11-10 01:48:02.639 00:00:00.000 UDP 28.104.0.1:49946 -> 198.28.0.2:53 1 64 1 2025-11-10 01:48:02.639 00:00:00.000 UDP 28.104.0.1:53952 -> 198.28.0.2:53 1 64 1 2025-11-10 01:49:02.939 00:00:00.000 UDP 28.104.0.1:35733 -> 198.28.0.2:53 1 64 1 2025-11-10 01:49:02.939 00:00:00.000 UDP 28.104.0.1:58420 -> 198.28.0.2:53 1 64 1 2025-11-10 01:49:02.948 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58420 1 109 1 2025-11-10 01:49:02.949 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35733 1 80 1 2025-11-10 01:45:03.876 00:05:51.618 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 01:45:03.967 00:05:51.516 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 01:50:03.246 00:00:00.000 UDP 28.104.0.1:46181 -> 198.28.0.2:53 1 64 1 2025-11-10 01:50:03.247 00:00:00.000 UDP 28.104.0.1:32851 -> 198.28.0.2:53 1 64 1 2025-11-10 01:46:03.876 00:05:00.307 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-10 01:50:03.257 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46181 1 80 1 2025-11-10 01:50:03.257 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32851 1 109 1 2025-11-10 01:50:15.715 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 01:46:17.900 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2792 1 2025-11-10 01:51:03.551 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53443 1 109 1 2025-11-10 01:51:03.551 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45093 1 80 1 2025-11-10 01:51:03.541 00:00:00.000 UDP 28.104.0.1:53443 -> 198.28.0.2:53 1 64 1 2025-11-10 01:51:03.541 00:00:00.000 UDP 28.104.0.1:45093 -> 198.28.0.2:53 1 64 1 2025-11-10 01:52:03.884 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37100 1 109 1 2025-11-10 01:52:03.884 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55074 1 80 1 2025-11-10 01:48:03.876 00:05:00.133 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-10 01:52:03.874 00:00:00.000 UDP 28.104.0.1:37100 -> 198.28.0.2:53 1 64 1 2025-11-10 01:52:03.874 00:00:00.000 UDP 28.104.0.1:55074 -> 198.28.0.2:53 1 64 1 2025-11-10 01:48:03.958 00:05:51.577 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 01:53:04.180 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43457 1 109 1 2025-11-10 01:53:04.180 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33374 1 80 1 2025-11-10 01:53:04.170 00:00:00.000 UDP 28.104.0.1:33374 -> 198.28.0.2:53 1 64 1 2025-11-10 01:53:04.170 00:00:00.000 UDP 28.104.0.1:43457 -> 198.28.0.2:53 1 64 1 2025-11-10 01:49:03.887 00:05:51.598 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 01:54:04.531 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60312 1 109 1 2025-11-10 01:54:04.530 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42489 1 80 1 2025-11-10 01:54:04.521 00:00:00.000 UDP 28.104.0.1:42489 -> 198.28.0.2:53 1 64 1 2025-11-10 01:54:04.520 00:00:00.000 UDP 28.104.0.1:60312 -> 198.28.0.2:53 1 64 1 2025-11-10 01:55:04.828 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40825 1 80 1 2025-11-10 01:55:04.828 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53191 1 109 1 2025-11-10 01:55:04.817 00:00:00.000 UDP 28.104.0.1:53191 -> 198.28.0.2:53 1 64 1 2025-11-10 01:55:04.817 00:00:00.000 UDP 28.104.0.1:40825 -> 198.28.0.2:53 1 64 1 2025-11-10 01:55:15.365 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 01:51:37.906 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2384 1 2025-11-10 01:51:03.970 00:05:51.515 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 01:51:03.878 00:05:51.617 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 01:56:05.109 00:00:00.000 UDP 28.104.0.1:60886 -> 198.28.0.2:53 1 64 1 2025-11-10 01:52:03.878 00:05:00.307 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-10 01:56:05.109 00:00:00.000 UDP 28.104.0.1:59949 -> 198.28.0.2:53 1 64 1 2025-11-10 01:56:05.120 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60886 1 80 1 2025-11-10 01:56:05.119 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59949 1 109 1 2025-11-10 01:57:05.413 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47870 1 109 1 2025-11-10 01:57:05.413 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39333 1 80 1 2025-11-10 01:57:05.403 00:00:00.000 UDP 28.104.0.1:47870 -> 198.28.0.2:53 1 64 1 2025-11-10 01:57:05.403 00:00:00.000 UDP 28.104.0.1:39333 -> 198.28.0.2:53 1 64 1 2025-11-10 01:58:05.707 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56383 1 109 1 2025-11-10 01:58:05.707 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42841 1 80 1 2025-11-10 01:58:05.696 00:00:00.000 UDP 28.104.0.1:56383 -> 198.28.0.2:53 1 64 1 2025-11-10 01:54:03.878 00:05:00.135 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-10 01:58:05.696 00:00:00.000 UDP 28.104.0.1:42841 -> 198.28.0.2:53 1 64 1 Summary: total flows: 319, total bytes: 96348, total packets: 1423, avg bps: 197, avg pps: 0, avg bpp: 67 Time window: 2025-11-10 00:54:03 - 2025-11-10 01:59:04 Total flows processed: 319, passed: 319, Blocks skipped: 0, Bytes read: 33240 Sys: 0.0068s User: 0.0000s Wall: 0.0070s flows/second: 45467.9 Runtime: 0.0070s