Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-10 18:54:04.251 00:05:51.630 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 18:54:55.830 00:05:08.387 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 18:59:47.447 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55413 1 109 1 2025-11-10 18:59:47.447 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37445 1 80 1 2025-11-10 18:59:47.437 00:00:00.000 UDP 28.104.0.1:55413 -> 198.28.0.2:53 1 64 1 2025-11-10 18:59:47.438 00:00:00.000 UDP 28.104.0.1:37445 -> 198.28.0.2:53 1 64 1 2025-11-10 18:55:04.206 00:06:00.304 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-10 19:00:36.013 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 19:00:47.743 00:00:00.000 UDP 28.104.0.1:46952 -> 198.28.0.2:53 1 64 1 2025-11-10 19:00:47.743 00:00:00.000 UDP 28.104.0.1:57361 -> 198.28.0.2:53 1 64 1 2025-11-10 19:00:47.754 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57361 1 80 1 2025-11-10 19:00:47.754 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46952 1 109 1 2025-11-10 18:56:55.841 00:05:08.366 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 18:56:55.831 00:05:08.432 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 19:01:48.057 00:00:00.000 UDP 28.104.0.1:33507 -> 198.28.0.2:53 1 64 1 2025-11-10 19:01:48.058 00:00:00.000 UDP 28.104.0.1:48446 -> 198.28.0.2:53 1 64 1 2025-11-10 19:01:48.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48446 1 109 1 2025-11-10 19:01:48.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33507 1 80 1 2025-11-10 18:57:04.206 00:06:00.149 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-10 18:58:09.435 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2568 1 2025-11-10 19:02:48.358 00:00:00.000 UDP 28.104.0.1:41267 -> 198.28.0.2:53 1 64 1 2025-11-10 19:02:48.358 00:00:00.000 UDP 28.104.0.1:43201 -> 198.28.0.2:53 1 64 1 2025-11-10 19:02:48.368 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43201 1 80 1 2025-11-10 19:02:48.367 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41267 1 109 1 2025-11-10 19:03:48.657 00:00:00.000 UDP 28.104.0.1:53589 -> 198.28.0.2:53 1 64 1 2025-11-10 19:03:48.657 00:00:00.000 UDP 28.104.0.1:35495 -> 198.28.0.2:53 1 64 1 2025-11-10 19:03:48.667 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35495 1 80 1 2025-11-10 19:03:48.667 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53589 1 109 1 2025-11-10 19:04:48.978 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34821 1 109 1 2025-11-10 19:04:48.978 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57838 1 80 1 2025-11-10 19:04:48.967 00:00:00.000 UDP 28.104.0.1:57838 -> 198.28.0.2:53 1 64 1 2025-11-10 19:04:48.967 00:00:00.000 UDP 28.104.0.1:34821 -> 198.28.0.2:53 1 64 1 2025-11-10 19:00:04.253 00:05:51.629 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 19:00:55.831 00:05:08.387 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 19:05:36.402 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 19:05:49.279 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33569 1 109 1 2025-11-10 19:05:49.282 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38150 1 80 1 2025-11-10 19:05:49.269 00:00:00.000 UDP 28.104.0.1:38150 -> 198.28.0.2:53 1 64 1 2025-11-10 19:05:49.269 00:00:00.000 UDP 28.104.0.1:33569 -> 198.28.0.2:53 1 64 1 2025-11-10 19:06:49.586 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51942 1 109 1 2025-11-10 19:06:49.586 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36743 1 80 1 2025-11-10 19:06:49.575 00:00:00.000 UDP 28.104.0.1:51942 -> 198.28.0.2:53 1 64 1 2025-11-10 19:06:49.575 00:00:00.000 UDP 28.104.0.1:36743 -> 198.28.0.2:53 1 64 1 2025-11-10 19:02:55.832 00:05:08.435 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 19:02:55.842 00:05:08.368 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 19:02:04.208 00:06:00.303 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-10 19:03:29.441 00:05:10.011 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2240 1 2025-11-10 19:07:49.881 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47668 1 109 1 2025-11-10 19:07:49.881 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49605 1 80 1 2025-11-10 19:07:49.871 00:00:00.000 UDP 28.104.0.1:49605 -> 198.28.0.2:53 1 64 1 2025-11-10 19:07:49.871 00:00:00.000 UDP 28.104.0.1:47668 -> 198.28.0.2:53 1 64 1 2025-11-10 19:08:50.183 00:00:00.000 UDP 28.104.0.1:42948 -> 198.28.0.2:53 1 64 1 2025-11-10 19:08:50.183 00:00:00.000 UDP 28.104.0.1:58883 -> 198.28.0.2:53 1 64 1 2025-11-10 19:08:50.193 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42948 1 109 1 2025-11-10 19:08:50.193 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58883 1 80 1 2025-11-10 19:04:04.209 00:06:00.147 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-10 19:09:50.487 00:00:00.000 UDP 28.104.0.1:39622 -> 198.28.0.2:53 1 64 1 2025-11-10 19:09:50.488 00:00:00.000 UDP 28.104.0.1:46194 -> 198.28.0.2:53 1 64 1 2025-11-10 19:09:50.498 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46194 1 80 1 2025-11-10 19:09:50.498 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39622 1 109 1 2025-11-10 19:10:36.164 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 19:10:50.795 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36803 1 109 1 2025-11-10 19:10:50.795 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45314 1 80 1 2025-11-10 19:10:50.785 00:00:00.000 UDP 28.104.0.1:45314 -> 198.28.0.2:53 1 64 1 2025-11-10 19:10:50.784 00:00:00.000 UDP 28.104.0.1:36803 -> 198.28.0.2:53 1 64 1 2025-11-10 19:06:04.253 00:05:51.630 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 19:06:55.832 00:05:08.388 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 19:11:51.056 00:00:00.000 UDP 28.104.0.1:54976 -> 198.28.0.2:53 1 64 1 2025-11-10 19:11:51.057 00:00:00.000 UDP 28.104.0.1:57352 -> 198.28.0.2:53 1 64 1 2025-11-10 19:11:51.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57352 1 109 1 2025-11-10 19:11:51.067 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54976 1 80 1 2025-11-10 19:12:51.380 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35332 1 109 1 2025-11-10 19:12:51.380 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45980 1 80 1 2025-11-10 19:12:51.370 00:00:00.000 UDP 28.104.0.1:35332 -> 198.28.0.2:53 1 64 1 2025-11-10 19:12:51.370 00:00:00.000 UDP 28.104.0.1:45980 -> 198.28.0.2:53 1 64 1 2025-11-10 19:08:49.453 00:05:10.016 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 3080 1 2025-11-10 19:08:55.841 00:05:08.369 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 19:08:55.832 00:05:08.435 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 19:13:51.682 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41577 1 109 1 2025-11-10 19:13:51.682 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45331 1 80 1 2025-11-10 19:13:51.672 00:00:00.000 UDP 28.104.0.1:41577 -> 198.28.0.2:53 1 64 1 2025-11-10 19:13:51.672 00:00:00.000 UDP 28.104.0.1:45331 -> 198.28.0.2:53 1 64 1 2025-11-10 19:09:04.210 00:06:00.301 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-10 19:14:51.971 00:00:00.000 UDP 28.104.0.1:54671 -> 198.28.0.2:53 1 64 1 2025-11-10 19:14:51.971 00:00:00.000 UDP 28.104.0.1:39156 -> 198.28.0.2:53 1 64 1 2025-11-10 19:14:51.980 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39156 1 109 1 2025-11-10 19:14:51.980 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54671 1 80 1 2025-11-10 19:15:36.290 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 19:15:52.272 00:00:00.000 UDP 28.104.0.1:51603 -> 198.28.0.2:53 1 64 1 2025-11-10 19:15:52.272 00:00:00.000 UDP 28.104.0.1:53593 -> 198.28.0.2:53 1 64 1 2025-11-10 19:15:52.282 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53593 1 80 1 2025-11-10 19:15:52.282 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51603 1 109 1 2025-11-10 19:11:04.210 00:06:00.148 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-10 19:16:52.585 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45338 1 109 1 2025-11-10 19:16:52.585 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33268 1 80 1 2025-11-10 19:12:04.256 00:05:51.627 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 19:16:52.574 00:00:00.000 UDP 28.104.0.1:33268 -> 198.28.0.2:53 1 64 1 2025-11-10 19:16:52.574 00:00:00.000 UDP 28.104.0.1:45338 -> 198.28.0.2:53 1 64 1 2025-11-10 19:12:55.832 00:05:08.389 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 19:17:52.869 00:00:00.000 UDP 28.104.0.1:50095 -> 198.28.0.2:53 1 64 1 2025-11-10 19:17:52.869 00:00:00.000 UDP 28.104.0.1:55257 -> 198.28.0.2:53 1 64 1 2025-11-10 19:17:52.880 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50095 1 80 1 2025-11-10 19:17:52.880 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55257 1 109 1 2025-11-10 19:14:09.468 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 45 3180 1 2025-11-10 19:18:53.184 00:00:00.000 UDP 28.104.0.1:49402 -> 198.28.0.2:53 1 64 1 2025-11-10 19:18:53.184 00:00:00.000 UDP 28.104.0.1:40177 -> 198.28.0.2:53 1 64 1 2025-11-10 19:18:53.195 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49402 1 80 1 2025-11-10 19:18:53.195 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40177 1 109 1 2025-11-10 19:14:55.835 00:05:08.437 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 19:14:55.843 00:05:08.372 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 19:19:53.497 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60278 1 80 1 2025-11-10 19:19:53.497 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35949 1 109 1 2025-11-10 19:19:53.486 00:00:00.000 UDP 28.104.0.1:35949 -> 198.28.0.2:53 1 64 1 2025-11-10 19:19:53.486 00:00:00.000 UDP 28.104.0.1:60278 -> 198.28.0.2:53 1 64 1 2025-11-10 19:20:36.591 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 19:20:53.915 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41869 1 109 1 2025-11-10 19:20:53.915 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45890 1 80 1 2025-11-10 19:20:53.907 00:00:00.000 UDP 28.104.0.1:45890 -> 198.28.0.2:53 1 64 1 2025-11-10 19:20:53.907 00:00:00.000 UDP 28.104.0.1:41869 -> 198.28.0.2:53 1 64 1 2025-11-10 19:16:04.210 00:06:00.301 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-10 19:21:54.184 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42456 1 80 1 2025-11-10 19:21:54.185 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47141 1 109 1 2025-11-10 19:21:54.174 00:00:00.000 UDP 28.104.0.1:47141 -> 198.28.0.2:53 1 64 1 2025-11-10 19:21:54.174 00:00:00.000 UDP 28.104.0.1:42456 -> 198.28.0.2:53 1 64 1 2025-11-10 19:22:54.496 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45923 1 80 1 2025-11-10 19:22:54.496 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55709 1 109 1 2025-11-10 19:18:04.259 00:05:51.625 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 19:22:54.486 00:00:00.000 UDP 28.104.0.1:45923 -> 198.28.0.2:53 1 64 1 2025-11-10 19:22:54.485 00:00:00.000 UDP 28.104.0.1:55709 -> 198.28.0.2:53 1 64 1 2025-11-10 19:18:55.834 00:05:08.392 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 19:18:04.210 00:06:00.151 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-10 19:19:29.479 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2464 1 2025-11-10 19:23:54.789 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54955 1 80 1 2025-11-10 19:23:54.789 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52041 1 109 1 2025-11-10 19:23:54.780 00:00:00.000 UDP 28.104.0.1:54955 -> 198.28.0.2:53 1 64 1 2025-11-10 19:23:54.780 00:00:00.000 UDP 28.104.0.1:52041 -> 198.28.0.2:53 1 64 1 2025-11-10 19:24:55.077 00:00:00.000 UDP 28.104.0.1:46300 -> 198.28.0.2:53 1 64 1 2025-11-10 19:24:55.077 00:00:00.000 UDP 28.104.0.1:35858 -> 198.28.0.2:53 1 64 1 2025-11-10 19:24:55.089 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35858 1 109 1 2025-11-10 19:24:55.088 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46300 1 80 1 2025-11-10 19:20:55.845 00:05:08.371 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 19:20:55.835 00:05:08.437 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 19:25:36.546 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 19:25:55.372 00:00:00.000 UDP 28.104.0.1:39210 -> 198.28.0.2:53 1 64 1 2025-11-10 19:25:55.372 00:00:00.000 UDP 28.104.0.1:36255 -> 198.28.0.2:53 1 64 1 2025-11-10 19:25:55.383 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36255 1 109 1 2025-11-10 19:25:55.383 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39210 1 80 1 2025-11-10 19:26:55.675 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50736 1 80 1 2025-11-10 19:26:55.675 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43511 1 109 1 2025-11-10 19:26:55.663 00:00:00.000 UDP 28.104.0.1:43511 -> 198.28.0.2:53 1 64 1 2025-11-10 19:26:55.663 00:00:00.000 UDP 28.104.0.1:50736 -> 198.28.0.2:53 1 64 1 2025-11-10 19:27:55.958 00:00:00.000 UDP 28.104.0.1:41748 -> 198.28.0.2:53 1 64 1 2025-11-10 19:27:55.958 00:00:00.000 UDP 28.104.0.1:58425 -> 198.28.0.2:53 1 64 1 2025-11-10 19:27:55.968 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58425 1 80 1 2025-11-10 19:27:55.968 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41748 1 109 1 2025-11-10 19:23:04.216 00:06:00.296 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-10 19:28:56.228 00:00:00.000 UDP 28.104.0.1:45472 -> 198.28.0.2:53 1 64 1 2025-11-10 19:24:04.261 00:05:51.625 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 19:28:56.228 00:00:00.000 UDP 28.104.0.1:54018 -> 198.28.0.2:53 1 64 1 2025-11-10 19:28:56.238 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54018 1 80 1 2025-11-10 19:28:56.238 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45472 1 109 1 2025-11-10 19:24:49.485 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2712 1 2025-11-10 19:24:55.834 00:05:08.392 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 19:29:56.529 00:00:00.000 UDP 28.104.0.1:58657 -> 198.28.0.2:53 1 64 1 2025-11-10 19:29:56.529 00:00:00.000 UDP 28.104.0.1:45984 -> 198.28.0.2:53 1 64 1 2025-11-10 19:29:56.539 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45984 1 80 1 2025-11-10 19:29:56.539 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58657 1 109 1 2025-11-10 19:25:04.216 00:06:00.148 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-10 19:30:36.544 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 19:30:56.838 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43182 1 109 1 2025-11-10 19:30:56.838 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35727 1 80 1 2025-11-10 19:30:56.828 00:00:00.000 UDP 28.104.0.1:43182 -> 198.28.0.2:53 1 64 1 2025-11-10 19:30:56.828 00:00:00.000 UDP 28.104.0.1:35727 -> 198.28.0.2:53 1 64 1 2025-11-10 19:26:55.845 00:05:08.374 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 19:26:55.835 00:05:08.437 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 19:31:57.129 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33134 1 109 1 2025-11-10 19:31:57.129 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37260 1 80 1 2025-11-10 19:31:57.119 00:00:00.000 UDP 28.104.0.1:33134 -> 198.28.0.2:53 1 64 1 2025-11-10 19:31:57.119 00:00:00.000 UDP 28.104.0.1:37260 -> 198.28.0.2:53 1 64 1 2025-11-10 19:32:57.421 00:00:00.000 UDP 28.104.0.1:58328 -> 198.28.0.2:53 1 64 1 2025-11-10 19:32:57.421 00:00:00.000 UDP 28.104.0.1:37779 -> 198.28.0.2:53 1 64 1 2025-11-10 19:32:57.432 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58328 1 109 1 2025-11-10 19:32:57.431 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37779 1 80 1 2025-11-10 19:33:57.691 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50312 1 109 1 2025-11-10 19:33:57.691 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50431 1 80 1 2025-11-10 19:33:57.679 00:00:00.000 UDP 28.104.0.1:50431 -> 198.28.0.2:53 1 64 1 2025-11-10 19:33:57.678 00:00:00.000 UDP 28.104.0.1:50312 -> 198.28.0.2:53 1 64 1 2025-11-10 19:30:09.494 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2240 1 2025-11-10 19:30:04.262 00:05:51.625 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 19:34:57.967 00:00:00.000 UDP 28.104.0.1:37802 -> 198.28.0.2:53 1 64 1 2025-11-10 19:34:57.967 00:00:00.000 UDP 28.104.0.1:36796 -> 198.28.0.2:53 1 64 1 2025-11-10 19:34:57.976 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37802 1 80 1 2025-11-10 19:34:57.976 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36796 1 109 1 2025-11-10 19:30:55.835 00:05:08.392 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 19:30:04.217 00:06:00.297 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-10 19:35:36.628 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 19:35:58.262 00:00:00.000 UDP 28.104.0.1:40136 -> 198.28.0.2:53 1 64 1 2025-11-10 19:35:58.263 00:00:00.000 UDP 28.104.0.1:52598 -> 198.28.0.2:53 1 64 1 2025-11-10 19:35:58.273 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40136 1 109 1 2025-11-10 19:35:58.273 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52598 1 80 1 2025-11-10 19:36:58.558 00:00:00.000 UDP 28.104.0.1:36130 -> 198.28.0.2:53 1 64 1 2025-11-10 19:36:58.558 00:00:00.000 UDP 28.104.0.1:51424 -> 198.28.0.2:53 1 64 1 2025-11-10 19:36:58.570 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36130 1 109 1 2025-11-10 19:36:58.570 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51424 1 80 1 2025-11-10 19:32:55.836 00:05:08.438 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 19:32:04.218 00:06:00.146 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-10 19:32:55.845 00:05:08.371 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 19:37:58.861 00:00:00.000 UDP 28.104.0.1:44615 -> 198.28.0.2:53 1 64 1 2025-11-10 19:37:58.861 00:00:00.000 UDP 28.104.0.1:38960 -> 198.28.0.2:53 1 64 1 2025-11-10 19:37:58.872 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44615 1 80 1 2025-11-10 19:37:58.871 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38960 1 109 1 2025-11-10 19:38:59.203 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48446 1 109 1 2025-11-10 19:38:59.202 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33073 1 80 1 2025-11-10 19:38:59.192 00:00:00.000 UDP 28.104.0.1:33073 -> 198.28.0.2:53 1 64 1 2025-11-10 19:38:59.192 00:00:00.000 UDP 28.104.0.1:48446 -> 198.28.0.2:53 1 64 1 2025-11-10 19:35:29.497 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2900 1 2025-11-10 19:39:59.523 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58439 1 80 1 2025-11-10 19:39:59.523 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51185 1 109 1 2025-11-10 19:39:59.512 00:00:00.000 UDP 28.104.0.1:51185 -> 198.28.0.2:53 1 64 1 2025-11-10 19:39:59.512 00:00:00.000 UDP 28.104.0.1:58439 -> 198.28.0.2:53 1 64 1 2025-11-10 19:40:36.793 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 19:36:04.263 00:05:51.626 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 19:40:59.827 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55048 1 80 1 2025-11-10 19:40:59.827 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54928 1 109 1 2025-11-10 19:40:59.816 00:00:00.000 UDP 28.104.0.1:54928 -> 198.28.0.2:53 1 64 1 2025-11-10 19:40:59.816 00:00:00.000 UDP 28.104.0.1:55048 -> 198.28.0.2:53 1 64 1 2025-11-10 19:36:55.838 00:05:08.389 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 19:42:00.121 00:00:00.000 UDP 28.104.0.1:36197 -> 198.28.0.2:53 1 64 1 2025-11-10 19:42:00.121 00:00:00.000 UDP 28.104.0.1:42563 -> 198.28.0.2:53 1 64 1 2025-11-10 19:42:00.131 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36197 1 109 1 2025-11-10 19:42:00.131 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42563 1 80 1 2025-11-10 19:37:04.217 00:06:00.298 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-10 19:43:00.417 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54697 1 80 1 2025-11-10 19:43:00.417 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55015 1 109 1 2025-11-10 19:43:00.408 00:00:00.000 UDP 28.104.0.1:55015 -> 198.28.0.2:53 1 64 1 2025-11-10 19:43:00.408 00:00:00.000 UDP 28.104.0.1:54697 -> 198.28.0.2:53 1 64 1 2025-11-10 19:38:55.837 00:05:08.438 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 19:38:55.848 00:05:08.371 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 19:44:00.704 00:00:00.000 UDP 28.104.0.1:40888 -> 198.28.0.2:53 1 64 1 2025-11-10 19:44:00.704 00:00:00.000 UDP 28.104.0.1:56892 -> 198.28.0.2:53 1 64 1 2025-11-10 19:44:00.715 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56892 1 109 1 2025-11-10 19:44:00.715 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40888 1 80 1 2025-11-10 19:39:04.217 00:06:00.149 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-10 19:40:49.507 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2972 1 2025-11-10 19:45:01.024 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58308 1 109 1 2025-11-10 19:45:01.020 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44664 1 80 1 2025-11-10 19:45:01.008 00:00:00.000 UDP 28.104.0.1:44664 -> 198.28.0.2:53 1 64 1 2025-11-10 19:45:01.008 00:00:00.000 UDP 28.104.0.1:58308 -> 198.28.0.2:53 1 64 1 2025-11-10 19:45:37.068 00:00:00.026 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 19:46:01.307 00:00:00.000 UDP 28.104.0.1:48191 -> 198.28.0.2:53 1 64 1 2025-11-10 19:46:01.307 00:00:00.000 UDP 28.104.0.1:56764 -> 198.28.0.2:53 1 64 1 2025-11-10 19:46:01.318 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56764 1 80 1 2025-11-10 19:46:01.318 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48191 1 109 1 2025-11-10 19:42:04.265 00:05:51.625 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 19:47:01.609 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47031 1 109 1 2025-11-10 19:47:01.609 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60140 1 80 1 2025-11-10 19:47:01.598 00:00:00.000 UDP 28.104.0.1:60140 -> 198.28.0.2:53 1 64 1 2025-11-10 19:47:01.598 00:00:00.000 UDP 28.104.0.1:47031 -> 198.28.0.2:53 1 64 1 2025-11-10 19:42:55.838 00:05:08.392 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 19:48:01.849 00:00:00.000 UDP 28.104.0.1:42258 -> 198.28.0.2:53 1 64 1 2025-11-10 19:48:01.849 00:00:00.000 UDP 28.104.0.1:50079 -> 198.28.0.2:53 1 64 1 2025-11-10 19:48:01.859 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42258 1 80 1 2025-11-10 19:48:01.858 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50079 1 109 1 2025-11-10 19:49:02.187 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46665 1 109 1 2025-11-10 19:49:02.187 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36674 1 80 1 2025-11-10 19:44:55.838 00:05:08.439 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 19:49:02.177 00:00:00.000 UDP 28.104.0.1:46665 -> 198.28.0.2:53 1 64 1 2025-11-10 19:44:55.849 00:05:08.372 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 19:44:04.220 00:06:00.299 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-10 19:49:02.177 00:00:00.000 UDP 28.104.0.1:36674 -> 198.28.0.2:53 1 64 1 2025-11-10 19:50:02.485 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51563 1 80 1 2025-11-10 19:50:02.485 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34260 1 109 1 2025-11-10 19:50:02.476 00:00:00.000 UDP 28.104.0.1:51563 -> 198.28.0.2:53 1 64 1 2025-11-10 19:50:02.476 00:00:00.000 UDP 28.104.0.1:34260 -> 198.28.0.2:53 1 64 1 2025-11-10 19:46:09.516 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 44 3024 1 2025-11-10 19:50:37.049 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 19:51:02.784 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58213 1 80 1 2025-11-10 19:51:02.784 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40388 1 109 1 2025-11-10 19:51:02.772 00:00:00.000 UDP 28.104.0.1:58213 -> 198.28.0.2:53 1 64 1 2025-11-10 19:46:04.219 00:06:00.153 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-10 19:51:02.772 00:00:00.000 UDP 28.104.0.1:40388 -> 198.28.0.2:53 1 64 1 2025-11-10 19:52:03.067 00:00:00.000 UDP 28.104.0.1:40310 -> 198.28.0.2:53 1 64 1 2025-11-10 19:52:03.067 00:00:00.000 UDP 28.104.0.1:41565 -> 198.28.0.2:53 1 64 1 2025-11-10 19:52:03.079 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41565 1 80 1 2025-11-10 19:52:03.078 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40310 1 109 1 2025-11-10 19:48:04.266 00:05:51.625 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 19:53:03.362 00:00:00.000 UDP 28.104.0.1:38880 -> 198.28.0.2:53 1 64 1 2025-11-10 19:53:03.362 00:00:00.000 UDP 28.104.0.1:42690 -> 198.28.0.2:53 1 64 1 2025-11-10 19:48:55.840 00:05:08.395 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 19:53:03.372 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38880 1 109 1 2025-11-10 19:53:03.372 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42690 1 80 1 2025-11-10 19:54:03.737 00:00:00.000 UDP 28.104.0.1:58383 -> 198.28.0.2:53 1 64 1 2025-11-10 19:54:03.737 00:00:00.000 UDP 28.104.0.1:38973 -> 198.28.0.2:53 1 64 1 2025-11-10 19:54:03.746 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38973 1 80 1 2025-11-10 19:54:03.747 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58383 1 109 1 2025-11-10 19:50:55.840 00:05:08.443 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 19:55:04.071 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59860 1 109 1 2025-11-10 19:55:04.071 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53791 1 80 1 2025-11-10 19:55:04.061 00:00:00.000 UDP 28.104.0.1:53791 -> 198.28.0.2:53 1 64 1 2025-11-10 19:50:55.851 00:05:08.375 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 19:55:04.061 00:00:00.000 UDP 28.104.0.1:59860 -> 198.28.0.2:53 1 64 1 2025-11-10 19:55:37.000 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 19:51:29.521 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2568 1 2025-11-10 19:56:04.358 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43051 1 109 1 2025-11-10 19:56:04.358 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45385 1 80 1 2025-11-10 19:56:04.348 00:00:00.000 UDP 28.104.0.1:45385 -> 198.28.0.2:53 1 64 1 2025-11-10 19:56:04.348 00:00:00.000 UDP 28.104.0.1:43051 -> 198.28.0.2:53 1 64 1 2025-11-10 19:51:04.221 00:06:00.300 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-10 19:57:04.648 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51626 1 80 1 2025-11-10 19:57:04.648 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42162 1 109 1 2025-11-10 19:57:04.639 00:00:00.000 UDP 28.104.0.1:51626 -> 198.28.0.2:53 1 64 1 2025-11-10 19:57:04.639 00:00:00.000 UDP 28.104.0.1:42162 -> 198.28.0.2:53 1 64 1 2025-11-10 19:58:05.228 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44044 1 80 1 2025-11-10 19:58:05.227 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40725 1 109 1 2025-11-10 19:53:04.223 00:06:00.152 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-10 19:58:05.218 00:00:00.000 UDP 28.104.0.1:44044 -> 198.28.0.2:53 1 64 1 2025-11-10 19:58:05.218 00:00:00.000 UDP 28.104.0.1:40725 -> 198.28.0.2:53 1 64 1 Summary: total flows: 317, total bytes: 96693, total packets: 1428, avg bps: 198, avg pps: 0, avg bpp: 67 Time window: 2025-11-10 18:54:04 - 2025-11-10 19:59:04 Total flows processed: 317, passed: 317, Blocks skipped: 0, Bytes read: 33032 Sys: 0.0050s User: 0.0014s Wall: 0.0025s flows/second: 124458.9 Runtime: 0.0026s