Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-15 09:54:57.935 00:05:09.221 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-15 09:59:13.000 00:00:00.000 UDP 28.104.0.1:34317 -> 198.28.0.2:53 1 64 1 2025-11-15 09:59:13.001 00:00:00.000 UDP 28.104.0.1:43841 -> 198.28.0.2:53 1 64 1 2025-11-15 09:59:13.011 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43841 1 80 1 2025-11-15 09:59:13.011 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34317 1 109 1 2025-11-15 09:55:57.947 00:05:09.126 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-15 10:00:13.301 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39640 1 109 1 2025-11-15 10:00:13.302 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55679 1 80 1 2025-11-15 10:00:13.293 00:00:00.000 UDP 28.104.0.1:39640 -> 198.28.0.2:53 1 64 1 2025-11-15 10:00:13.293 00:00:00.000 UDP 28.104.0.1:55679 -> 198.28.0.2:53 1 64 1 2025-11-15 10:01:13.589 00:00:00.000 UDP 28.104.0.1:48302 -> 198.28.0.2:53 1 64 1 2025-11-15 10:01:13.589 00:00:00.000 UDP 28.104.0.1:42710 -> 198.28.0.2:53 1 64 1 2025-11-15 10:01:13.599 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42710 1 80 1 2025-11-15 10:01:13.599 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48302 1 109 1 2025-11-15 10:02:13.885 00:00:00.000 UDP 28.104.0.1:51762 -> 198.28.0.2:53 1 64 1 2025-11-15 10:02:13.885 00:00:00.000 UDP 28.104.0.1:49670 -> 198.28.0.2:53 1 64 1 2025-11-15 10:02:13.896 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51762 1 80 1 2025-11-15 10:02:13.897 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49670 1 109 1 2025-11-15 10:02:49.687 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 10:03:14.211 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55241 1 109 1 2025-11-15 10:03:14.211 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58618 1 80 1 2025-11-15 10:03:14.202 00:00:00.000 UDP 28.104.0.1:55241 -> 198.28.0.2:53 1 64 1 2025-11-15 10:03:14.202 00:00:00.000 UDP 28.104.0.1:58618 -> 198.28.0.2:53 1 64 1 2025-11-15 09:59:18.362 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2240 1 2025-11-15 09:59:57.988 00:05:09.160 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-15 09:59:07.072 00:06:00.175 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-15 09:59:07.072 00:06:00.027 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-15 09:59:57.938 00:05:09.144 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-15 10:04:14.516 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59294 1 109 1 2025-11-15 10:04:14.516 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55144 1 80 1 2025-11-15 10:04:14.506 00:00:00.000 UDP 28.104.0.1:59294 -> 198.28.0.2:53 1 64 1 2025-11-15 10:04:14.506 00:00:00.000 UDP 28.104.0.1:55144 -> 198.28.0.2:53 1 64 1 2025-11-15 10:00:57.937 00:05:09.221 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-15 10:05:14.804 00:00:00.000 UDP 28.104.0.1:38161 -> 198.28.0.2:53 1 64 1 2025-11-15 10:05:14.804 00:00:00.000 UDP 28.104.0.1:50129 -> 198.28.0.2:53 1 64 1 2025-11-15 10:05:14.813 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50129 1 80 1 2025-11-15 10:05:14.813 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38161 1 109 1 2025-11-15 10:01:57.948 00:05:09.125 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-15 10:06:15.072 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34614 1 109 1 2025-11-15 10:06:15.072 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56910 1 80 1 2025-11-15 10:06:15.062 00:00:00.000 UDP 28.104.0.1:34614 -> 198.28.0.2:53 1 64 1 2025-11-15 10:06:15.062 00:00:00.000 UDP 28.104.0.1:56910 -> 198.28.0.2:53 1 64 1 2025-11-15 10:07:16.020 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50054 1 109 1 2025-11-15 10:07:16.018 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45192 1 80 1 2025-11-15 10:07:16.008 00:00:00.000 UDP 28.104.0.1:45192 -> 198.28.0.2:53 1 64 1 2025-11-15 10:07:16.008 00:00:00.000 UDP 28.104.0.1:50054 -> 198.28.0.2:53 1 64 1 2025-11-15 10:07:49.615 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 10:08:16.316 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35665 1 109 1 2025-11-15 10:08:16.316 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33200 1 80 1 2025-11-15 10:08:16.307 00:00:00.000 UDP 28.104.0.1:35665 -> 198.28.0.2:53 1 64 1 2025-11-15 10:08:16.307 00:00:00.000 UDP 28.104.0.1:33200 -> 198.28.0.2:53 1 64 1 2025-11-15 10:04:38.372 00:05:01.438 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2292 1 2025-11-15 10:09:16.593 00:00:00.000 UDP 28.104.0.1:57639 -> 198.28.0.2:53 1 64 1 2025-11-15 10:09:16.593 00:00:00.000 UDP 28.104.0.1:43543 -> 198.28.0.2:53 1 64 1 2025-11-15 10:09:16.605 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43543 1 80 1 2025-11-15 10:09:16.604 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57639 1 109 1 2025-11-15 10:05:57.938 00:05:09.145 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-15 10:05:57.989 00:05:09.161 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-15 10:10:17.478 00:00:00.000 UDP 28.104.0.1:40709 -> 198.28.0.2:53 1 64 1 2025-11-15 10:10:17.478 00:00:00.000 UDP 28.104.0.1:52451 -> 198.28.0.2:53 1 64 1 2025-11-15 10:10:17.486 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40709 1 80 1 2025-11-15 10:10:17.486 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52451 1 109 1 2025-11-15 10:06:57.941 00:05:09.219 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-15 10:06:07.072 00:06:00.177 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-15 10:06:07.072 00:06:00.028 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-15 10:11:17.769 00:00:00.000 UDP 28.104.0.1:36785 -> 198.28.0.2:53 1 64 1 2025-11-15 10:11:17.769 00:00:00.000 UDP 28.104.0.1:54553 -> 198.28.0.2:53 1 64 1 2025-11-15 10:11:17.780 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54553 1 80 1 2025-11-15 10:11:17.780 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36785 1 109 1 2025-11-15 10:07:57.952 00:05:09.123 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-15 10:12:18.085 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44238 1 80 1 2025-11-15 10:12:18.084 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57408 1 109 1 2025-11-15 10:12:18.075 00:00:00.000 UDP 28.104.0.1:44238 -> 198.28.0.2:53 1 64 1 2025-11-15 10:12:18.074 00:00:00.000 UDP 28.104.0.1:57408 -> 198.28.0.2:53 1 64 1 2025-11-15 10:12:49.842 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 10:13:18.370 00:00:00.000 UDP 28.104.0.1:43045 -> 198.28.0.2:53 1 64 1 2025-11-15 10:13:18.370 00:00:00.000 UDP 28.104.0.1:38086 -> 198.28.0.2:53 1 64 1 2025-11-15 10:13:18.380 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38086 1 80 1 2025-11-15 10:13:18.380 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43045 1 109 1 2025-11-15 10:09:48.385 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 3260 1 2025-11-15 10:14:18.666 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60618 1 109 1 2025-11-15 10:14:18.666 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38378 1 80 1 2025-11-15 10:14:18.655 00:00:00.000 UDP 28.104.0.1:38378 -> 198.28.0.2:53 1 64 1 2025-11-15 10:14:18.655 00:00:00.000 UDP 28.104.0.1:60618 -> 198.28.0.2:53 1 64 1 2025-11-15 10:15:18.907 00:00:00.000 UDP 28.104.0.1:37447 -> 198.28.0.2:53 1 64 1 2025-11-15 10:15:18.907 00:00:00.000 UDP 28.104.0.1:44516 -> 198.28.0.2:53 1 64 1 2025-11-15 10:15:18.917 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37447 1 109 1 2025-11-15 10:15:18.917 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44516 1 80 1 2025-11-15 10:11:57.940 00:05:09.145 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-15 10:11:57.996 00:05:09.155 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-15 10:16:19.212 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46168 1 109 1 2025-11-15 10:16:19.212 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57233 1 80 1 2025-11-15 10:16:19.202 00:00:00.000 UDP 28.104.0.1:46168 -> 198.28.0.2:53 1 64 1 2025-11-15 10:16:19.202 00:00:00.000 UDP 28.104.0.1:57233 -> 198.28.0.2:53 1 64 1 2025-11-15 10:12:57.941 00:05:09.220 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-15 10:17:19.453 00:00:00.000 UDP 28.104.0.1:55982 -> 198.28.0.2:53 1 64 1 2025-11-15 10:17:19.453 00:00:00.000 UDP 28.104.0.1:43066 -> 198.28.0.2:53 1 64 1 2025-11-15 10:17:19.464 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43066 1 109 1 2025-11-15 10:17:19.464 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55982 1 80 1 2025-11-15 10:17:50.156 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 10:13:57.951 00:05:09.124 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-15 10:13:07.074 00:06:00.027 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-15 10:13:07.074 00:06:00.176 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-15 10:18:19.752 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53041 1 80 1 2025-11-15 10:18:19.752 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56497 1 109 1 2025-11-15 10:18:19.742 00:00:00.000 UDP 28.104.0.1:56497 -> 198.28.0.2:53 1 64 1 2025-11-15 10:18:19.742 00:00:00.000 UDP 28.104.0.1:53041 -> 198.28.0.2:53 1 64 1 2025-11-15 10:15:08.394 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 45 3140 1 2025-11-15 10:19:20.063 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60977 1 80 1 2025-11-15 10:19:20.063 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57711 1 109 1 2025-11-15 10:19:20.052 00:00:00.000 UDP 28.104.0.1:57711 -> 198.28.0.2:53 1 64 1 2025-11-15 10:19:20.052 00:00:00.000 UDP 28.104.0.1:60977 -> 198.28.0.2:53 1 64 1 2025-11-15 10:20:20.353 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36048 1 109 1 2025-11-15 10:20:20.353 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56377 1 80 1 2025-11-15 10:20:20.343 00:00:00.000 UDP 28.104.0.1:36048 -> 198.28.0.2:53 1 64 1 2025-11-15 10:20:20.343 00:00:00.000 UDP 28.104.0.1:56377 -> 198.28.0.2:53 1 64 1 2025-11-15 10:21:20.643 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52015 1 80 1 2025-11-15 10:21:20.643 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38172 1 109 1 2025-11-15 10:21:20.633 00:00:00.000 UDP 28.104.0.1:38172 -> 198.28.0.2:53 1 64 1 2025-11-15 10:21:20.633 00:00:00.000 UDP 28.104.0.1:52015 -> 198.28.0.2:53 1 64 1 2025-11-15 10:17:57.992 00:05:09.160 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-15 10:17:57.943 00:05:09.144 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-15 10:22:20.997 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32984 1 80 1 2025-11-15 10:22:20.995 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53384 1 109 1 2025-11-15 10:22:20.986 00:00:00.000 UDP 28.104.0.1:32984 -> 198.28.0.2:53 1 64 1 2025-11-15 10:22:20.986 00:00:00.000 UDP 28.104.0.1:53384 -> 198.28.0.2:53 1 64 1 2025-11-15 10:22:50.231 00:00:00.029 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 10:18:57.942 00:05:09.221 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-15 10:23:21.517 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44848 1 109 1 2025-11-15 10:23:21.517 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55369 1 80 1 2025-11-15 10:23:21.507 00:00:00.000 UDP 28.104.0.1:44848 -> 198.28.0.2:53 1 64 1 2025-11-15 10:23:21.507 00:00:00.000 UDP 28.104.0.1:55369 -> 198.28.0.2:53 1 64 1 2025-11-15 10:19:57.952 00:05:09.125 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-15 10:24:21.804 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51160 1 109 1 2025-11-15 10:24:21.804 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41406 1 80 1 2025-11-15 10:24:21.795 00:00:00.000 UDP 28.104.0.1:51160 -> 198.28.0.2:53 1 64 1 2025-11-15 10:24:21.795 00:00:00.000 UDP 28.104.0.1:41406 -> 198.28.0.2:53 1 64 1 2025-11-15 10:20:28.402 00:05:10.019 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2512 1 2025-11-15 10:20:07.076 00:06:00.176 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-15 10:20:07.076 00:06:00.027 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-15 10:25:22.090 00:00:00.000 UDP 28.104.0.1:40582 -> 198.28.0.2:53 1 64 1 2025-11-15 10:25:22.090 00:00:00.000 UDP 28.104.0.1:51791 -> 198.28.0.2:53 1 64 1 2025-11-15 10:25:22.101 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51791 1 109 1 2025-11-15 10:25:22.101 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40582 1 80 1 2025-11-15 10:26:22.385 00:00:00.000 UDP 28.104.0.1:57260 -> 198.28.0.2:53 1 64 1 2025-11-15 10:26:22.385 00:00:00.000 UDP 28.104.0.1:60421 -> 198.28.0.2:53 1 64 1 2025-11-15 10:26:22.396 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57260 1 80 1 2025-11-15 10:26:22.396 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60421 1 109 1 2025-11-15 10:27:22.679 00:00:00.000 UDP 28.104.0.1:37884 -> 198.28.0.2:53 1 64 1 2025-11-15 10:27:22.679 00:00:00.000 UDP 28.104.0.1:45149 -> 198.28.0.2:53 1 64 1 2025-11-15 10:27:22.690 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45149 1 109 1 2025-11-15 10:27:22.690 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37884 1 80 1 2025-11-15 10:27:50.054 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 10:23:57.993 00:05:09.160 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-15 10:23:57.942 00:05:09.145 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-15 10:28:22.968 00:00:00.000 UDP 28.104.0.1:52682 -> 198.28.0.2:53 1 64 1 2025-11-15 10:28:22.968 00:00:00.000 UDP 28.104.0.1:36676 -> 198.28.0.2:53 1 64 1 2025-11-15 10:28:22.979 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52682 1 109 1 2025-11-15 10:28:22.979 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36676 1 80 1 2025-11-15 10:24:57.943 00:05:09.221 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-15 10:29:23.274 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44954 1 80 1 2025-11-15 10:29:23.274 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59342 1 109 1 2025-11-15 10:29:23.265 00:00:00.000 UDP 28.104.0.1:59342 -> 198.28.0.2:53 1 64 1 2025-11-15 10:29:23.265 00:00:00.000 UDP 28.104.0.1:44954 -> 198.28.0.2:53 1 64 1 2025-11-15 10:25:48.421 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2568 1 2025-11-15 10:25:57.953 00:05:09.126 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-15 10:30:23.565 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34440 1 109 1 2025-11-15 10:30:23.565 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45758 1 80 1 2025-11-15 10:30:23.555 00:00:00.000 UDP 28.104.0.1:34440 -> 198.28.0.2:53 1 64 1 2025-11-15 10:30:23.555 00:00:00.000 UDP 28.104.0.1:45758 -> 198.28.0.2:53 1 64 1 2025-11-15 10:31:23.842 00:00:00.000 UDP 28.104.0.1:48444 -> 198.28.0.2:53 1 64 1 2025-11-15 10:31:23.842 00:00:00.000 UDP 28.104.0.1:43057 -> 198.28.0.2:53 1 64 1 2025-11-15 10:31:23.853 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48444 1 80 1 2025-11-15 10:31:23.853 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43057 1 109 1 2025-11-15 10:27:07.079 00:06:00.182 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-15 10:27:07.079 00:06:00.027 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-15 10:32:24.387 00:00:00.000 UDP 28.104.0.1:60494 -> 198.28.0.2:53 1 64 1 2025-11-15 10:32:24.387 00:00:00.000 UDP 28.104.0.1:44194 -> 198.28.0.2:53 1 64 1 2025-11-15 10:32:24.398 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44194 1 109 1 2025-11-15 10:32:24.398 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60494 1 80 1 2025-11-15 10:32:50.266 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 10:33:24.675 00:00:00.000 UDP 28.104.0.1:39496 -> 198.28.0.2:53 1 64 1 2025-11-15 10:33:24.675 00:00:00.000 UDP 28.104.0.1:38391 -> 198.28.0.2:53 1 64 1 2025-11-15 10:33:24.686 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39496 1 109 1 2025-11-15 10:33:24.686 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38391 1 80 1 2025-11-15 10:29:57.994 00:05:09.166 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-15 10:29:57.943 00:05:09.148 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-15 10:34:26.815 00:00:00.000 UDP 28.104.0.1:35993 -> 198.28.0.2:53 1 64 1 2025-11-15 10:34:26.815 00:00:00.000 UDP 28.104.0.1:34965 -> 198.28.0.2:53 1 64 1 2025-11-15 10:34:26.826 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34965 1 80 1 2025-11-15 10:34:26.825 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35993 1 109 1 2025-11-15 10:30:57.944 00:05:09.226 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-15 10:31:08.426 00:05:10.001 OSPF 28.0.2.1:0 -> 224.0.0.5:0 32 2176 1 2025-11-15 10:35:27.111 00:00:00.000 UDP 28.104.0.1:46086 -> 198.28.0.2:53 1 64 1 2025-11-15 10:35:27.111 00:00:00.000 UDP 28.104.0.1:34296 -> 198.28.0.2:53 1 64 1 2025-11-15 10:35:27.121 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34296 1 80 1 2025-11-15 10:35:27.121 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46086 1 109 1 2025-11-15 10:31:57.954 00:05:09.128 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-15 10:36:27.407 00:00:00.000 UDP 28.104.0.1:56765 -> 198.28.0.2:53 1 64 1 2025-11-15 10:36:27.407 00:00:00.000 UDP 28.104.0.1:37734 -> 198.28.0.2:53 1 64 1 2025-11-15 10:36:27.417 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37734 1 80 1 2025-11-15 10:36:27.416 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56765 1 109 1 2025-11-15 10:37:27.709 00:00:00.000 UDP 28.104.0.1:41081 -> 198.28.0.2:53 1 64 1 2025-11-15 10:37:27.709 00:00:00.000 UDP 28.104.0.1:54141 -> 198.28.0.2:53 1 64 1 2025-11-15 10:37:27.719 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41081 1 109 1 2025-11-15 10:37:27.719 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54141 1 80 1 2025-11-15 10:37:50.534 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 10:38:28.000 00:00:00.000 UDP 28.104.0.1:34766 -> 198.28.0.2:53 1 64 1 2025-11-15 10:38:28.001 00:00:00.000 UDP 28.104.0.1:59257 -> 198.28.0.2:53 1 64 1 2025-11-15 10:38:28.012 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34766 1 109 1 2025-11-15 10:38:28.012 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59257 1 80 1 2025-11-15 10:34:07.081 00:06:00.174 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-15 10:34:07.081 00:06:00.024 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-15 10:39:28.297 00:00:00.000 UDP 28.104.0.1:50388 -> 198.28.0.2:53 1 64 1 2025-11-15 10:39:28.297 00:00:00.000 UDP 28.104.0.1:47217 -> 198.28.0.2:53 1 64 1 2025-11-15 10:39:28.308 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47217 1 109 1 2025-11-15 10:39:28.308 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50388 1 80 1 2025-11-15 10:35:57.996 00:05:09.166 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-15 10:35:57.945 00:05:09.147 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-15 10:40:28.599 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39944 1 80 1 2025-11-15 10:40:28.599 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56256 1 109 1 2025-11-15 10:40:28.590 00:00:00.000 UDP 28.104.0.1:56256 -> 198.28.0.2:53 1 64 1 2025-11-15 10:40:28.590 00:00:00.000 UDP 28.104.0.1:39944 -> 198.28.0.2:53 1 64 1 2025-11-15 10:36:28.427 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 3304 1 2025-11-15 10:36:57.945 00:05:09.227 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-15 10:41:28.890 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36457 1 109 1 2025-11-15 10:41:28.890 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53810 1 80 1 2025-11-15 10:41:28.879 00:00:00.000 UDP 28.104.0.1:53810 -> 198.28.0.2:53 1 64 1 2025-11-15 10:41:28.879 00:00:00.000 UDP 28.104.0.1:36457 -> 198.28.0.2:53 1 64 1 2025-11-15 10:37:57.956 00:05:09.127 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-15 10:42:29.180 00:00:00.000 UDP 28.104.0.1:36678 -> 198.28.0.2:53 1 64 1 2025-11-15 10:42:29.180 00:00:00.000 UDP 28.104.0.1:37866 -> 198.28.0.2:53 1 64 1 2025-11-15 10:42:29.191 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37866 1 80 1 2025-11-15 10:42:29.191 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36678 1 109 1 2025-11-15 10:42:50.494 00:00:00.030 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 10:43:29.484 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52759 1 80 1 2025-11-15 10:43:29.486 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48356 1 109 1 2025-11-15 10:43:29.475 00:00:00.000 UDP 28.104.0.1:48356 -> 198.28.0.2:53 1 64 1 2025-11-15 10:43:29.474 00:00:00.000 UDP 28.104.0.1:52759 -> 198.28.0.2:53 1 64 1 2025-11-15 10:44:29.795 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59135 1 80 1 2025-11-15 10:44:29.795 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41559 1 109 1 2025-11-15 10:44:29.784 00:00:00.000 UDP 28.104.0.1:59135 -> 198.28.0.2:53 1 64 1 2025-11-15 10:44:29.784 00:00:00.000 UDP 28.104.0.1:41559 -> 198.28.0.2:53 1 64 1 2025-11-15 10:45:30.088 00:00:00.000 UDP 28.104.0.1:44386 -> 198.28.0.2:53 1 64 1 2025-11-15 10:45:30.088 00:00:00.000 UDP 28.104.0.1:38955 -> 198.28.0.2:53 1 64 1 2025-11-15 10:45:30.099 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38955 1 80 1 2025-11-15 10:45:30.099 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44386 1 109 1 2025-11-15 10:41:48.435 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2728 1 2025-11-15 10:41:57.955 00:05:09.138 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-15 10:41:07.083 00:06:00.174 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-15 10:41:07.082 00:06:00.025 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-15 10:41:58.006 00:05:09.157 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-15 10:46:30.387 00:00:00.000 UDP 28.104.0.1:32857 -> 198.28.0.2:53 1 64 1 2025-11-15 10:46:30.387 00:00:00.000 UDP 28.104.0.1:60528 -> 198.28.0.2:53 1 64 1 2025-11-15 10:46:30.399 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60528 1 109 1 2025-11-15 10:46:30.399 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32857 1 80 1 2025-11-15 10:42:57.949 00:05:09.224 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-15 10:47:30.701 00:00:00.000 UDP 28.104.0.1:35926 -> 198.28.0.2:53 1 64 1 2025-11-15 10:47:30.701 00:00:00.000 UDP 28.104.0.1:33813 -> 198.28.0.2:53 1 64 1 2025-11-15 10:47:30.711 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35926 1 80 1 2025-11-15 10:47:30.711 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33813 1 109 1 2025-11-15 10:47:50.463 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 10:43:57.959 00:05:09.124 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-15 10:48:30.971 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42150 1 109 1 2025-11-15 10:48:30.971 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50655 1 80 1 2025-11-15 10:48:30.960 00:00:00.000 UDP 28.104.0.1:50655 -> 198.28.0.2:53 1 64 1 2025-11-15 10:48:30.961 00:00:00.000 UDP 28.104.0.1:42150 -> 198.28.0.2:53 1 64 1 2025-11-15 10:49:31.269 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39765 1 80 1 2025-11-15 10:49:31.269 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52002 1 109 1 2025-11-15 10:49:31.260 00:00:00.000 UDP 28.104.0.1:39765 -> 198.28.0.2:53 1 64 1 2025-11-15 10:49:31.259 00:00:00.000 UDP 28.104.0.1:52002 -> 198.28.0.2:53 1 64 1 2025-11-15 10:50:31.550 00:00:00.000 UDP 28.104.0.1:52461 -> 198.28.0.2:53 1 64 1 2025-11-15 10:50:31.550 00:00:00.000 UDP 28.104.0.1:46601 -> 198.28.0.2:53 1 64 1 2025-11-15 10:50:31.561 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46601 1 80 1 2025-11-15 10:50:31.560 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52461 1 109 1 2025-11-15 10:47:08.440 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 2944 1 2025-11-15 10:51:31.843 00:00:00.000 UDP 28.104.0.1:52317 -> 198.28.0.2:53 1 64 1 2025-11-15 10:51:31.843 00:00:00.000 UDP 28.104.0.1:51564 -> 198.28.0.2:53 1 64 1 2025-11-15 10:51:31.853 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51564 1 109 1 2025-11-15 10:51:31.853 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52317 1 80 1 2025-11-15 10:47:58.001 00:05:09.162 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-15 10:47:57.950 00:05:09.145 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-15 10:52:32.160 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55437 1 109 1 2025-11-15 10:52:32.159 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57874 1 80 1 2025-11-15 10:52:32.148 00:00:00.000 UDP 28.104.0.1:57874 -> 198.28.0.2:53 1 64 1 2025-11-15 10:52:32.148 00:00:00.000 UDP 28.104.0.1:55437 -> 198.28.0.2:53 1 64 1 2025-11-15 10:52:50.616 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 10:48:07.083 00:06:00.184 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-15 10:48:07.083 00:06:00.027 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-15 10:48:57.951 00:05:09.224 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-15 10:53:32.403 00:00:00.000 UDP 28.104.0.1:35534 -> 198.28.0.2:53 1 64 1 2025-11-15 10:53:32.403 00:00:00.000 UDP 28.104.0.1:34148 -> 198.28.0.2:53 1 64 1 2025-11-15 10:53:32.415 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35534 1 80 1 2025-11-15 10:53:32.415 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34148 1 109 1 2025-11-15 10:49:57.961 00:05:09.125 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-15 10:54:32.710 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56152 1 109 1 2025-11-15 10:54:32.710 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59561 1 80 1 2025-11-15 10:54:32.700 00:00:00.000 UDP 28.104.0.1:59561 -> 198.28.0.2:53 1 64 1 2025-11-15 10:54:32.700 00:00:00.000 UDP 28.104.0.1:56152 -> 198.28.0.2:53 1 64 1 2025-11-15 10:55:32.997 00:00:00.000 UDP 28.104.0.1:42767 -> 198.28.0.2:53 1 64 1 2025-11-15 10:55:32.997 00:00:00.000 UDP 28.104.0.1:33183 -> 198.28.0.2:53 1 64 1 2025-11-15 10:55:33.009 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33183 1 80 1 2025-11-15 10:55:33.010 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42767 1 109 1 2025-11-15 10:56:33.255 00:00:00.000 UDP 28.104.0.1:43147 -> 198.28.0.2:53 1 64 1 2025-11-15 10:56:33.255 00:00:00.000 UDP 28.104.0.1:39573 -> 198.28.0.2:53 1 64 1 2025-11-15 10:56:33.265 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43147 1 80 1 2025-11-15 10:56:33.266 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39573 1 109 1 2025-11-15 10:52:28.448 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2712 1 2025-11-15 10:57:33.558 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33886 1 80 1 2025-11-15 10:57:33.559 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44135 1 109 1 2025-11-15 10:57:33.549 00:00:00.000 UDP 28.104.0.1:44135 -> 198.28.0.2:53 1 64 1 2025-11-15 10:57:33.548 00:00:00.000 UDP 28.104.0.1:33886 -> 198.28.0.2:53 1 64 1 2025-11-15 10:57:50.966 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 10:53:58.002 00:05:09.164 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-15 10:53:57.951 00:05:09.144 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-15 10:58:33.842 00:00:00.000 UDP 28.104.0.1:60562 -> 198.28.0.2:53 1 64 1 2025-11-15 10:58:33.842 00:00:00.000 UDP 28.104.0.1:36217 -> 198.28.0.2:53 1 64 1 2025-11-15 10:58:33.851 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60562 1 80 1 2025-11-15 10:58:33.851 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36217 1 109 1 Summary: total flows: 319, total bytes: 95216, total packets: 1403, avg bps: 197, avg pps: 0, avg bpp: 67 Time window: 2025-11-15 09:54:57 - 2025-11-15 10:59:07 Total flows processed: 319, passed: 319, Blocks skipped: 0, Bytes read: 33240 Sys: 0.0054s User: 0.0018s Wall: 0.0049s flows/second: 65277.0 Runtime: 0.0049s