Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-10 17:54:04.236 00:05:51.629 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 17:54:04.186 00:06:00.145 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-10 17:54:55.814 00:05:08.385 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 17:59:28.744 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57926 1 80 1 2025-11-10 17:59:28.744 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36746 1 109 1 2025-11-10 17:59:28.733 00:00:00.000 UDP 28.104.0.1:36746 -> 198.28.0.2:53 1 64 1 2025-11-10 17:59:28.733 00:00:00.000 UDP 28.104.0.1:57926 -> 198.28.0.2:53 1 64 1 2025-11-10 18:00:29.053 00:00:00.000 UDP 28.104.0.1:55944 -> 198.28.0.2:53 1 64 1 2025-11-10 18:00:29.053 00:00:00.000 UDP 28.104.0.1:38307 -> 198.28.0.2:53 1 64 1 2025-11-10 18:00:29.063 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38307 1 109 1 2025-11-10 18:00:29.063 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55944 1 80 1 2025-11-10 18:00:34.915 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 17:56:55.814 00:05:08.433 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 17:56:55.824 00:05:08.366 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 18:01:29.375 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56008 1 80 1 2025-11-10 18:01:29.375 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48770 1 109 1 2025-11-10 18:01:29.365 00:00:00.000 UDP 28.104.0.1:56008 -> 198.28.0.2:53 1 64 1 2025-11-10 18:01:29.365 00:00:00.000 UDP 28.104.0.1:48770 -> 198.28.0.2:53 1 64 1 2025-11-10 18:02:29.667 00:00:00.000 UDP 28.104.0.1:36054 -> 198.28.0.2:53 1 64 1 2025-11-10 18:02:29.667 00:00:00.000 UDP 28.104.0.1:57949 -> 198.28.0.2:53 1 64 1 2025-11-10 18:02:29.680 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36054 1 80 1 2025-11-10 18:02:29.678 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57949 1 109 1 2025-11-10 18:03:29.974 00:00:00.000 UDP 28.104.0.1:50736 -> 198.28.0.2:53 1 64 1 2025-11-10 18:03:29.974 00:00:00.000 UDP 28.104.0.1:43503 -> 198.28.0.2:53 1 64 1 2025-11-10 18:03:29.984 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43503 1 80 1 2025-11-10 18:03:29.984 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50736 1 109 1 2025-11-10 17:59:39.343 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2712 1 2025-11-10 17:59:04.189 00:06:00.291 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-10 18:04:30.242 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40246 1 80 1 2025-11-10 18:04:30.242 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59721 1 109 1 2025-11-10 18:04:30.232 00:00:00.000 UDP 28.104.0.1:40246 -> 198.28.0.2:53 1 64 1 2025-11-10 18:04:30.232 00:00:00.000 UDP 28.104.0.1:59721 -> 198.28.0.2:53 1 64 1 2025-11-10 18:00:04.237 00:05:51.630 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 18:00:55.814 00:05:08.387 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 18:05:30.527 00:00:00.000 UDP 28.104.0.1:40653 -> 198.28.0.2:53 1 64 1 2025-11-10 18:05:30.527 00:00:00.000 UDP 28.104.0.1:39711 -> 198.28.0.2:53 1 64 1 2025-11-10 18:05:30.537 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40653 1 109 1 2025-11-10 18:05:30.537 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39711 1 80 1 2025-11-10 18:05:34.994 00:00:00.025 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 18:01:04.189 00:06:00.143 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-10 18:06:30.818 00:00:00.000 UDP 28.104.0.1:34817 -> 198.28.0.2:53 1 64 1 2025-11-10 18:06:30.818 00:00:00.000 UDP 28.104.0.1:46255 -> 198.28.0.2:53 1 64 1 2025-11-10 18:06:30.829 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46255 1 80 1 2025-11-10 18:06:30.829 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34817 1 109 1 2025-11-10 18:02:55.825 00:05:08.366 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 18:02:55.815 00:05:08.433 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 18:07:31.084 00:00:00.000 UDP 28.104.0.1:44564 -> 198.28.0.2:53 1 64 1 2025-11-10 18:07:31.084 00:00:00.000 UDP 28.104.0.1:55299 -> 198.28.0.2:53 1 64 1 2025-11-10 18:07:31.093 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55299 1 109 1 2025-11-10 18:07:31.093 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44564 1 80 1 2025-11-10 18:08:31.382 00:00:00.000 UDP 28.104.0.1:52125 -> 198.28.0.2:53 1 64 1 2025-11-10 18:08:31.382 00:00:00.000 UDP 28.104.0.1:44248 -> 198.28.0.2:53 1 64 1 2025-11-10 18:08:31.394 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44248 1 109 1 2025-11-10 18:08:31.394 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52125 1 80 1 2025-11-10 18:04:59.347 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2304 1 2025-11-10 18:09:31.647 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38174 1 109 1 2025-11-10 18:09:31.647 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56344 1 80 1 2025-11-10 18:09:31.636 00:00:00.000 UDP 28.104.0.1:56344 -> 198.28.0.2:53 1 64 1 2025-11-10 18:09:31.636 00:00:00.000 UDP 28.104.0.1:38174 -> 198.28.0.2:53 1 64 1 2025-11-10 18:10:31.947 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36008 1 80 1 2025-11-10 18:10:31.947 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50175 1 109 1 2025-11-10 18:10:31.936 00:00:00.000 UDP 28.104.0.1:36008 -> 198.28.0.2:53 1 64 1 2025-11-10 18:10:31.936 00:00:00.000 UDP 28.104.0.1:50175 -> 198.28.0.2:53 1 64 1 2025-11-10 18:10:35.060 00:00:00.049 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 18:06:04.239 00:05:51.630 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 18:06:04.191 00:06:00.291 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-10 18:06:55.817 00:05:08.385 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 18:11:32.250 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57231 1 109 1 2025-11-10 18:11:32.250 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33019 1 80 1 2025-11-10 18:11:32.241 00:00:00.000 UDP 28.104.0.1:57231 -> 198.28.0.2:53 1 64 1 2025-11-10 18:11:32.241 00:00:00.000 UDP 28.104.0.1:33019 -> 198.28.0.2:53 1 64 1 2025-11-10 18:12:32.539 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48430 1 80 1 2025-11-10 18:12:32.539 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53849 1 109 1 2025-11-10 18:12:32.530 00:00:00.000 UDP 28.104.0.1:53849 -> 198.28.0.2:53 1 64 1 2025-11-10 18:12:32.530 00:00:00.000 UDP 28.104.0.1:48430 -> 198.28.0.2:53 1 64 1 2025-11-10 18:08:55.817 00:05:08.432 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 18:08:04.191 00:06:00.145 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-10 18:08:55.827 00:05:08.365 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 18:13:32.829 00:00:00.000 UDP 28.104.0.1:39985 -> 198.28.0.2:53 1 64 1 2025-11-10 18:13:32.829 00:00:00.000 UDP 28.104.0.1:44915 -> 198.28.0.2:53 1 64 1 2025-11-10 18:13:32.840 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44915 1 109 1 2025-11-10 18:13:32.840 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39985 1 80 1 2025-11-10 18:10:19.357 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 3080 1 2025-11-10 18:14:33.097 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52398 1 109 1 2025-11-10 18:14:33.097 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37247 1 80 1 2025-11-10 18:14:33.086 00:00:00.000 UDP 28.104.0.1:52398 -> 198.28.0.2:53 1 64 1 2025-11-10 18:14:33.087 00:00:00.000 UDP 28.104.0.1:37247 -> 198.28.0.2:53 1 64 1 2025-11-10 18:15:35.221 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 18:15:33.396 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38754 1 80 1 2025-11-10 18:15:33.396 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49632 1 109 1 2025-11-10 18:15:33.386 00:00:00.000 UDP 28.104.0.1:49632 -> 198.28.0.2:53 1 64 1 2025-11-10 18:15:33.386 00:00:00.000 UDP 28.104.0.1:38754 -> 198.28.0.2:53 1 64 1 2025-11-10 18:16:33.694 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35079 1 109 1 2025-11-10 18:16:33.694 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58926 1 80 1 2025-11-10 18:16:33.683 00:00:00.000 UDP 28.104.0.1:58926 -> 198.28.0.2:53 1 64 1 2025-11-10 18:16:33.683 00:00:00.000 UDP 28.104.0.1:35079 -> 198.28.0.2:53 1 64 1 2025-11-10 18:12:04.239 00:05:51.631 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 18:12:55.820 00:05:08.384 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 18:17:33.995 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34805 1 109 1 2025-11-10 18:17:33.995 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40908 1 80 1 2025-11-10 18:17:33.984 00:00:00.000 UDP 28.104.0.1:40908 -> 198.28.0.2:53 1 64 1 2025-11-10 18:17:33.984 00:00:00.000 UDP 28.104.0.1:34805 -> 198.28.0.2:53 1 64 1 2025-11-10 18:13:04.193 00:06:00.289 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-10 18:18:34.292 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50559 1 109 1 2025-11-10 18:18:34.292 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46512 1 80 1 2025-11-10 18:18:34.282 00:00:00.000 UDP 28.104.0.1:46512 -> 198.28.0.2:53 1 64 1 2025-11-10 18:18:34.282 00:00:00.000 UDP 28.104.0.1:50559 -> 198.28.0.2:53 1 64 1 2025-11-10 18:14:55.819 00:05:08.431 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 18:14:55.829 00:05:08.365 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 18:19:34.586 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35363 1 109 1 2025-11-10 18:19:34.586 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55585 1 80 1 2025-11-10 18:19:34.577 00:00:00.000 UDP 28.104.0.1:55585 -> 198.28.0.2:53 1 64 1 2025-11-10 18:19:34.576 00:00:00.000 UDP 28.104.0.1:35363 -> 198.28.0.2:53 1 64 1 2025-11-10 18:15:39.367 00:05:10.013 OSPF 28.0.2.1:0 -> 224.0.0.5:0 44 3080 1 2025-11-10 18:15:04.194 00:06:00.148 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-10 18:20:35.337 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 18:20:34.838 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58945 1 109 1 2025-11-10 18:20:34.838 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32929 1 80 1 2025-11-10 18:20:34.828 00:00:00.000 UDP 28.104.0.1:58945 -> 198.28.0.2:53 1 64 1 2025-11-10 18:20:34.828 00:00:00.000 UDP 28.104.0.1:32929 -> 198.28.0.2:53 1 64 1 2025-11-10 18:21:35.126 00:00:00.000 UDP 28.104.0.1:44185 -> 198.28.0.2:53 1 64 1 2025-11-10 18:21:35.126 00:00:00.000 UDP 28.104.0.1:47748 -> 198.28.0.2:53 1 64 1 2025-11-10 18:21:35.138 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44185 1 80 1 2025-11-10 18:21:35.137 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47748 1 109 1 2025-11-10 18:22:35.436 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33921 1 109 1 2025-11-10 18:22:35.436 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50701 1 80 1 2025-11-10 18:22:35.425 00:00:00.000 UDP 28.104.0.1:33921 -> 198.28.0.2:53 1 64 1 2025-11-10 18:22:35.425 00:00:00.000 UDP 28.104.0.1:50701 -> 198.28.0.2:53 1 64 1 2025-11-10 18:18:04.240 00:05:51.635 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 18:18:55.820 00:05:08.387 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 18:23:35.735 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50662 1 109 1 2025-11-10 18:23:35.735 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56207 1 80 1 2025-11-10 18:23:35.724 00:00:00.000 UDP 28.104.0.1:50662 -> 198.28.0.2:53 1 64 1 2025-11-10 18:23:35.724 00:00:00.000 UDP 28.104.0.1:56207 -> 198.28.0.2:53 1 64 1 2025-11-10 18:24:35.987 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36534 1 80 1 2025-11-10 18:24:35.987 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33205 1 109 1 2025-11-10 18:24:35.977 00:00:00.000 UDP 28.104.0.1:33205 -> 198.28.0.2:53 1 64 1 2025-11-10 18:24:35.977 00:00:00.000 UDP 28.104.0.1:36534 -> 198.28.0.2:53 1 64 1 2025-11-10 18:20:55.821 00:05:08.431 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 18:20:55.830 00:05:08.366 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 18:20:04.194 00:06:00.289 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-10 18:20:59.379 00:05:10.429 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 2880 1 2025-11-10 18:25:36.287 00:00:00.000 UDP 28.104.0.1:58086 -> 198.28.0.2:53 1 64 1 2025-11-10 18:25:36.287 00:00:00.000 UDP 28.104.0.1:36403 -> 198.28.0.2:53 1 64 1 2025-11-10 18:25:36.297 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36403 1 80 1 2025-11-10 18:25:36.298 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58086 1 109 1 2025-11-10 18:25:35.405 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 18:26:36.538 00:00:00.000 UDP 28.104.0.1:37664 -> 198.28.0.2:53 1 64 1 2025-11-10 18:26:36.538 00:00:00.000 UDP 28.104.0.1:45957 -> 198.28.0.2:53 1 64 1 2025-11-10 18:26:36.549 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37664 1 80 1 2025-11-10 18:26:36.549 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45957 1 109 1 2025-11-10 18:22:04.197 00:06:00.145 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-10 18:27:36.843 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35922 1 109 1 2025-11-10 18:27:36.843 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55121 1 80 1 2025-11-10 18:27:36.833 00:00:00.000 UDP 28.104.0.1:55121 -> 198.28.0.2:53 1 64 1 2025-11-10 18:27:36.833 00:00:00.000 UDP 28.104.0.1:35922 -> 198.28.0.2:53 1 64 1 2025-11-10 18:28:37.127 00:00:00.000 UDP 28.104.0.1:47378 -> 198.28.0.2:53 1 64 1 2025-11-10 18:28:37.127 00:00:00.000 UDP 28.104.0.1:53918 -> 198.28.0.2:53 1 64 1 2025-11-10 18:28:37.138 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53918 1 80 1 2025-11-10 18:28:37.138 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47378 1 109 1 2025-11-10 18:24:04.241 00:05:51.633 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 18:24:55.821 00:05:08.386 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 18:29:37.428 00:00:00.000 UDP 28.104.0.1:48040 -> 198.28.0.2:53 1 64 1 2025-11-10 18:29:37.428 00:00:00.000 UDP 28.104.0.1:49976 -> 198.28.0.2:53 1 64 1 2025-11-10 18:29:37.439 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48040 1 109 1 2025-11-10 18:29:37.439 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49976 1 80 1 2025-11-10 18:26:19.388 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2568 1 2025-11-10 18:30:35.206 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 18:30:37.722 00:00:00.000 UDP 28.104.0.1:39601 -> 198.28.0.2:53 1 64 1 2025-11-10 18:30:37.722 00:00:00.000 UDP 28.104.0.1:39855 -> 198.28.0.2:53 1 64 1 2025-11-10 18:30:37.733 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39855 1 80 1 2025-11-10 18:30:37.733 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39601 1 109 1 2025-11-10 18:26:55.821 00:05:08.438 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 18:26:55.832 00:05:08.367 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 18:31:38.052 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55897 1 109 1 2025-11-10 18:31:38.052 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40639 1 80 1 2025-11-10 18:31:38.042 00:00:00.000 UDP 28.104.0.1:40639 -> 198.28.0.2:53 1 64 1 2025-11-10 18:31:38.042 00:00:00.000 UDP 28.104.0.1:55897 -> 198.28.0.2:53 1 64 1 2025-11-10 18:27:04.196 00:06:00.288 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-10 18:32:38.355 00:00:00.000 UDP 28.104.0.1:57425 -> 198.28.0.2:53 1 64 1 2025-11-10 18:32:38.355 00:00:00.000 UDP 28.104.0.1:38165 -> 198.28.0.2:53 1 64 1 2025-11-10 18:32:38.364 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38165 1 80 1 2025-11-10 18:32:38.364 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57425 1 109 1 2025-11-10 18:33:38.641 00:00:00.000 UDP 28.104.0.1:36549 -> 198.28.0.2:53 1 64 1 2025-11-10 18:33:38.642 00:00:00.000 UDP 28.104.0.1:44052 -> 198.28.0.2:53 1 64 1 2025-11-10 18:33:38.653 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36549 1 80 1 2025-11-10 18:33:38.653 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44052 1 109 1 2025-11-10 18:29:04.197 00:06:00.149 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-10 18:34:38.904 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49681 1 80 1 2025-11-10 18:34:38.904 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59125 1 109 1 2025-11-10 18:34:38.894 00:00:00.000 UDP 28.104.0.1:49681 -> 198.28.0.2:53 1 64 1 2025-11-10 18:34:38.894 00:00:00.000 UDP 28.104.0.1:59125 -> 198.28.0.2:53 1 64 1 2025-11-10 18:30:04.241 00:05:51.635 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 18:30:55.825 00:05:08.387 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 18:35:35.542 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 18:35:39.217 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41400 1 109 1 2025-11-10 18:35:39.217 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35774 1 80 1 2025-11-10 18:35:39.206 00:00:00.000 UDP 28.104.0.1:41400 -> 198.28.0.2:53 1 64 1 2025-11-10 18:35:39.206 00:00:00.000 UDP 28.104.0.1:35774 -> 198.28.0.2:53 1 64 1 2025-11-10 18:31:39.398 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2320 1 2025-11-10 18:36:39.499 00:00:00.000 UDP 28.104.0.1:56191 -> 198.28.0.2:53 1 64 1 2025-11-10 18:36:39.499 00:00:00.000 UDP 28.104.0.1:33991 -> 198.28.0.2:53 1 64 1 2025-11-10 18:36:39.510 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33991 1 109 1 2025-11-10 18:36:39.510 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56191 1 80 1 2025-11-10 18:32:55.826 00:05:08.430 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 18:32:55.836 00:05:08.366 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 18:37:39.792 00:00:00.000 UDP 28.104.0.1:38498 -> 198.28.0.2:53 1 64 1 2025-11-10 18:37:39.792 00:00:00.000 UDP 28.104.0.1:53559 -> 198.28.0.2:53 1 64 1 2025-11-10 18:37:39.802 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53559 1 80 1 2025-11-10 18:37:39.803 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38498 1 109 1 2025-11-10 18:38:40.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57441 1 109 1 2025-11-10 18:38:40.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41562 1 80 1 2025-11-10 18:38:40.058 00:00:00.000 UDP 28.104.0.1:57441 -> 198.28.0.2:53 1 64 1 2025-11-10 18:38:40.058 00:00:00.000 UDP 28.104.0.1:41562 -> 198.28.0.2:53 1 64 1 2025-11-10 18:34:04.202 00:06:00.287 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-10 18:39:40.370 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57087 1 109 1 2025-11-10 18:39:40.370 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39096 1 80 1 2025-11-10 18:39:40.360 00:00:00.000 UDP 28.104.0.1:39096 -> 198.28.0.2:53 1 64 1 2025-11-10 18:39:40.360 00:00:00.000 UDP 28.104.0.1:57087 -> 198.28.0.2:53 1 64 1 2025-11-10 18:40:35.562 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 18:40:40.674 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48006 1 80 1 2025-11-10 18:40:40.674 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34007 1 109 1 2025-11-10 18:40:40.663 00:00:00.000 UDP 28.104.0.1:48006 -> 198.28.0.2:53 1 64 1 2025-11-10 18:40:40.663 00:00:00.000 UDP 28.104.0.1:34007 -> 198.28.0.2:53 1 64 1 2025-11-10 18:36:04.246 00:05:51.632 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 18:36:04.202 00:06:00.145 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-10 18:36:55.826 00:05:08.387 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 18:36:59.403 00:05:10.020 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2856 1 2025-11-10 18:41:40.979 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42040 1 80 1 2025-11-10 18:41:40.979 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37077 1 109 1 2025-11-10 18:41:40.969 00:00:00.000 UDP 28.104.0.1:37077 -> 198.28.0.2:53 1 64 1 2025-11-10 18:41:40.969 00:00:00.000 UDP 28.104.0.1:42040 -> 198.28.0.2:53 1 64 1 2025-11-10 18:42:41.289 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35262 1 80 1 2025-11-10 18:42:41.289 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45295 1 109 1 2025-11-10 18:42:41.279 00:00:00.000 UDP 28.104.0.1:45295 -> 198.28.0.2:53 1 64 1 2025-11-10 18:42:41.279 00:00:00.000 UDP 28.104.0.1:35262 -> 198.28.0.2:53 1 64 1 2025-11-10 18:38:55.837 00:05:08.367 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 18:38:55.827 00:05:08.431 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 18:43:41.547 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38061 1 80 1 2025-11-10 18:43:41.547 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59146 1 109 1 2025-11-10 18:43:41.536 00:00:00.000 UDP 28.104.0.1:59146 -> 198.28.0.2:53 1 64 1 2025-11-10 18:43:41.536 00:00:00.000 UDP 28.104.0.1:38061 -> 198.28.0.2:53 1 64 1 2025-11-10 18:44:41.837 00:00:00.000 UDP 28.104.0.1:40923 -> 198.28.0.2:53 1 64 1 2025-11-10 18:44:41.837 00:00:00.000 UDP 28.104.0.1:35399 -> 198.28.0.2:53 1 64 1 2025-11-10 18:44:41.846 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35399 1 80 1 2025-11-10 18:44:41.847 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40923 1 109 1 2025-11-10 18:45:36.186 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 18:45:42.120 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46473 1 80 1 2025-11-10 18:45:42.120 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48936 1 109 1 2025-11-10 18:45:42.109 00:00:00.000 UDP 28.104.0.1:46473 -> 198.28.0.2:53 1 64 1 2025-11-10 18:45:42.109 00:00:00.000 UDP 28.104.0.1:48936 -> 198.28.0.2:53 1 64 1 2025-11-10 18:41:04.205 00:06:00.297 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-10 18:42:19.423 00:05:10.002 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2848 1 2025-11-10 18:46:42.821 00:00:00.000 UDP 28.104.0.1:45658 -> 198.28.0.2:53 1 64 1 2025-11-10 18:46:42.821 00:00:00.000 UDP 28.104.0.1:39475 -> 198.28.0.2:53 1 64 1 2025-11-10 18:46:42.838 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39475 1 109 1 2025-11-10 18:46:42.838 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45658 1 80 1 2025-11-10 18:42:04.248 00:05:51.632 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 18:42:55.827 00:05:08.387 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 18:47:43.119 00:00:00.000 UDP 28.104.0.1:56310 -> 198.28.0.2:53 1 64 1 2025-11-10 18:47:43.119 00:00:00.000 UDP 28.104.0.1:53436 -> 198.28.0.2:53 1 64 1 2025-11-10 18:47:43.129 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56310 1 80 1 2025-11-10 18:47:43.129 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53436 1 109 1 2025-11-10 18:43:04.205 00:06:00.144 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-10 18:48:43.597 00:00:00.000 UDP 28.104.0.1:57639 -> 198.28.0.2:53 1 64 1 2025-11-10 18:48:43.596 00:00:00.000 UDP 28.104.0.1:42408 -> 198.28.0.2:53 1 64 1 2025-11-10 18:48:43.607 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42408 1 80 1 2025-11-10 18:48:43.608 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57639 1 109 1 2025-11-10 18:44:55.838 00:05:08.367 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 18:44:55.827 00:05:08.431 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 18:49:43.900 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47176 1 80 1 2025-11-10 18:49:43.900 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34797 1 109 1 2025-11-10 18:49:43.890 00:00:00.000 UDP 28.104.0.1:34797 -> 198.28.0.2:53 1 64 1 2025-11-10 18:49:43.890 00:00:00.000 UDP 28.104.0.1:47176 -> 198.28.0.2:53 1 64 1 2025-11-10 18:50:35.782 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 18:50:44.234 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33024 1 80 1 2025-11-10 18:50:44.234 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39673 1 109 1 2025-11-10 18:50:44.225 00:00:00.000 UDP 28.104.0.1:39673 -> 198.28.0.2:53 1 64 1 2025-11-10 18:50:44.225 00:00:00.000 UDP 28.104.0.1:33024 -> 198.28.0.2:53 1 64 1 2025-11-10 18:51:44.524 00:00:00.000 UDP 28.104.0.1:41017 -> 198.28.0.2:53 1 64 1 2025-11-10 18:51:44.524 00:00:00.000 UDP 28.104.0.1:59569 -> 198.28.0.2:53 1 64 1 2025-11-10 18:51:44.534 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59569 1 80 1 2025-11-10 18:51:44.535 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41017 1 109 1 2025-11-10 18:47:39.425 00:05:10.856 OSPF 28.0.2.1:0 -> 224.0.0.5:0 45 3104 1 2025-11-10 18:52:44.849 00:00:00.000 UDP 28.104.0.1:51072 -> 198.28.0.2:53 1 64 1 2025-11-10 18:52:44.849 00:00:00.000 UDP 28.104.0.1:46073 -> 198.28.0.2:53 1 64 1 2025-11-10 18:52:44.860 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51072 1 109 1 2025-11-10 18:52:44.860 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46073 1 80 1 2025-11-10 18:48:04.248 00:05:51.631 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 18:48:55.828 00:05:08.388 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 18:48:04.206 00:06:00.302 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-10 18:53:45.173 00:00:00.000 UDP 28.104.0.1:59183 -> 198.28.0.2:53 1 64 1 2025-11-10 18:53:45.173 00:00:00.000 UDP 28.104.0.1:41590 -> 198.28.0.2:53 1 64 1 2025-11-10 18:53:45.184 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59183 1 80 1 2025-11-10 18:53:45.183 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41590 1 109 1 2025-11-10 18:54:45.486 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60675 1 80 1 2025-11-10 18:54:45.486 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40566 1 109 1 2025-11-10 18:54:45.476 00:00:00.000 UDP 28.104.0.1:60675 -> 198.28.0.2:53 1 64 1 2025-11-10 18:54:45.476 00:00:00.000 UDP 28.104.0.1:40566 -> 198.28.0.2:53 1 64 1 2025-11-10 18:50:55.828 00:05:08.432 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 18:50:04.206 00:06:00.149 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-10 18:50:55.840 00:05:08.367 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 18:55:35.936 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 18:55:45.767 00:00:00.000 UDP 28.104.0.1:47451 -> 198.28.0.2:53 1 64 1 2025-11-10 18:55:45.767 00:00:00.000 UDP 28.104.0.1:34106 -> 198.28.0.2:53 1 64 1 2025-11-10 18:55:45.777 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47451 1 80 1 2025-11-10 18:55:45.777 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34106 1 109 1 2025-11-10 18:56:46.546 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40483 1 80 1 2025-11-10 18:56:46.546 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60354 1 109 1 2025-11-10 18:56:46.535 00:00:00.000 UDP 28.104.0.1:40483 -> 198.28.0.2:53 1 64 1 2025-11-10 18:56:46.535 00:00:00.000 UDP 28.104.0.1:60354 -> 198.28.0.2:53 1 64 1 2025-11-10 18:52:59.427 00:05:00.930 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2460 1 2025-11-10 18:57:46.848 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55073 1 109 1 2025-11-10 18:57:46.848 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49959 1 80 1 2025-11-10 18:57:46.839 00:00:00.000 UDP 28.104.0.1:55073 -> 198.28.0.2:53 1 64 1 2025-11-10 18:57:46.839 00:00:00.000 UDP 28.104.0.1:49959 -> 198.28.0.2:53 1 64 1 2025-11-10 18:58:47.147 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60871 1 80 1 2025-11-10 18:58:47.147 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32802 1 109 1 2025-11-10 18:58:47.137 00:00:00.000 UDP 28.104.0.1:32802 -> 198.28.0.2:53 1 64 1 2025-11-10 18:58:47.137 00:00:00.000 UDP 28.104.0.1:60871 -> 198.28.0.2:53 1 64 1 Summary: total flows: 320, total bytes: 96413, total packets: 1422, avg bps: 198, avg pps: 0, avg bpp: 67 Time window: 2025-11-10 17:54:04 - 2025-11-10 18:58:47 Total flows processed: 320, passed: 320, Blocks skipped: 0, Bytes read: 33344 Sys: 0.0050s User: 0.0020s Wall: 0.0045s flows/second: 71716.7 Runtime: 0.0045s