Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-16 14:54:07.932 00:05:50.625 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-16 14:59:18.531 00:00:00.000 UDP 28.104.0.1:57403 -> 198.28.0.2:53 1 64 1 2025-11-16 14:59:18.532 00:00:00.000 UDP 28.104.0.1:44211 -> 198.28.0.2:53 1 64 1 2025-11-16 14:59:18.541 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44211 1 109 1 2025-11-16 14:59:18.541 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57403 1 80 1 2025-11-16 14:55:07.632 00:05:50.936 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-16 14:55:07.632 00:06:00.080 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-16 15:00:18.799 00:00:00.000 UDP 28.104.0.1:43093 -> 198.28.0.2:53 1 64 1 2025-11-16 15:00:18.799 00:00:00.000 UDP 28.104.0.1:53137 -> 198.28.0.2:53 1 64 1 2025-11-16 15:00:18.811 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43093 1 109 1 2025-11-16 15:00:18.811 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53137 1 80 1 2025-11-16 14:57:07.632 00:05:00.385 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-16 15:01:19.776 00:00:00.000 UDP 28.104.0.1:50418 -> 198.28.0.2:53 1 64 1 2025-11-16 15:01:19.776 00:00:00.000 UDP 28.104.0.1:41526 -> 198.28.0.2:53 1 64 1 2025-11-16 15:01:19.787 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41526 1 109 1 2025-11-16 15:01:19.787 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50418 1 80 1 2025-11-16 15:02:20.445 00:00:00.000 UDP 28.104.0.1:40806 -> 198.28.0.2:53 1 64 1 2025-11-16 15:02:20.445 00:00:00.000 UDP 28.104.0.1:49781 -> 198.28.0.2:53 1 64 1 2025-11-16 15:02:20.455 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49781 1 109 1 2025-11-16 15:02:20.455 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40806 1 80 1 2025-11-16 14:58:40.746 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2568 1 2025-11-16 15:03:20.753 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45874 1 80 1 2025-11-16 15:03:20.753 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33963 1 109 1 2025-11-16 15:03:20.742 00:00:00.000 UDP 28.104.0.1:33963 -> 198.28.0.2:53 1 64 1 2025-11-16 15:03:20.742 00:00:00.000 UDP 28.104.0.1:45874 -> 198.28.0.2:53 1 64 1 2025-11-16 15:03:24.695 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-16 14:59:07.642 00:05:50.916 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-16 14:59:58.607 00:05:09.330 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-16 15:04:21.196 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56247 1 80 1 2025-11-16 15:04:21.196 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52855 1 109 1 2025-11-16 15:04:21.187 00:00:00.000 UDP 28.104.0.1:56247 -> 198.28.0.2:53 1 64 1 2025-11-16 15:04:21.187 00:00:00.000 UDP 28.104.0.1:52855 -> 198.28.0.2:53 1 64 1 2025-11-16 15:00:07.946 00:05:50.614 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-16 15:05:21.486 00:00:00.000 UDP 28.104.0.1:43787 -> 198.28.0.2:53 1 64 1 2025-11-16 15:05:21.486 00:00:00.000 UDP 28.104.0.1:50740 -> 198.28.0.2:53 1 64 1 2025-11-16 15:05:21.495 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50740 1 109 1 2025-11-16 15:05:21.495 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43787 1 80 1 2025-11-16 15:01:07.633 00:05:50.937 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-16 15:06:21.785 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42030 1 109 1 2025-11-16 15:06:21.785 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40892 1 80 1 2025-11-16 15:06:21.774 00:00:00.000 UDP 28.104.0.1:40892 -> 198.28.0.2:53 1 64 1 2025-11-16 15:06:21.774 00:00:00.000 UDP 28.104.0.1:42030 -> 198.28.0.2:53 1 64 1 2025-11-16 15:03:07.633 00:05:00.385 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-16 15:02:07.633 00:06:00.079 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-16 15:07:22.043 00:00:00.000 UDP 28.104.0.1:40039 -> 198.28.0.2:53 1 64 1 2025-11-16 15:07:22.043 00:00:00.000 UDP 28.104.0.1:34131 -> 198.28.0.2:53 1 64 1 2025-11-16 15:07:22.052 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34131 1 109 1 2025-11-16 15:07:22.052 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40039 1 80 1 2025-11-16 15:04:00.750 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2240 1 2025-11-16 15:08:22.336 00:00:00.000 UDP 28.104.0.1:54611 -> 198.28.0.2:53 1 64 1 2025-11-16 15:08:22.336 00:00:00.000 UDP 28.104.0.1:45587 -> 198.28.0.2:53 1 64 1 2025-11-16 15:08:24.661 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-16 15:08:22.347 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45587 1 109 1 2025-11-16 15:08:22.347 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54611 1 80 1 2025-11-16 15:09:22.624 00:00:00.000 UDP 28.104.0.1:56398 -> 198.28.0.2:53 1 64 1 2025-11-16 15:09:22.624 00:00:00.000 UDP 28.104.0.1:53122 -> 198.28.0.2:53 1 64 1 2025-11-16 15:09:22.636 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56398 1 109 1 2025-11-16 15:09:22.636 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53122 1 80 1 2025-11-16 15:05:07.644 00:05:50.920 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-16 15:05:58.609 00:05:09.329 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-16 15:10:22.919 00:00:00.000 UDP 28.104.0.1:43335 -> 198.28.0.2:53 1 64 1 2025-11-16 15:10:22.919 00:00:00.000 UDP 28.104.0.1:54332 -> 198.28.0.2:53 1 64 1 2025-11-16 15:10:22.929 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54332 1 80 1 2025-11-16 15:10:22.929 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43335 1 109 1 2025-11-16 15:06:07.947 00:05:50.617 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-16 15:11:23.239 00:00:00.000 UDP 28.104.0.1:34134 -> 198.28.0.2:53 1 64 1 2025-11-16 15:11:23.239 00:00:00.000 UDP 28.104.0.1:36679 -> 198.28.0.2:53 1 64 1 2025-11-16 15:11:23.248 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36679 1 80 1 2025-11-16 15:11:23.248 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34134 1 109 1 2025-11-16 15:07:07.634 00:05:50.941 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-16 15:12:23.541 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39322 1 80 1 2025-11-16 15:12:23.540 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40524 1 109 1 2025-11-16 15:12:23.529 00:00:00.000 UDP 28.104.0.1:40524 -> 198.28.0.2:53 1 64 1 2025-11-16 15:12:23.529 00:00:00.000 UDP 28.104.0.1:39322 -> 198.28.0.2:53 1 64 1 2025-11-16 15:09:07.635 00:05:00.387 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-16 15:13:24.877 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-16 15:13:23.825 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53367 1 109 1 2025-11-16 15:13:23.825 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45743 1 80 1 2025-11-16 15:13:23.815 00:00:00.000 UDP 28.104.0.1:53367 -> 198.28.0.2:53 1 64 1 2025-11-16 15:13:23.815 00:00:00.000 UDP 28.104.0.1:45743 -> 198.28.0.2:53 1 64 1 2025-11-16 15:09:20.753 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2380 1 2025-11-16 15:09:07.635 00:06:00.079 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-16 15:14:24.115 00:00:00.000 UDP 28.104.0.1:57433 -> 198.28.0.2:53 1 64 1 2025-11-16 15:14:24.115 00:00:00.000 UDP 28.104.0.1:44915 -> 198.28.0.2:53 1 64 1 2025-11-16 15:14:24.125 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44915 1 109 1 2025-11-16 15:14:24.125 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57433 1 80 1 2025-11-16 15:15:24.426 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33674 1 80 1 2025-11-16 15:15:24.426 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35809 1 109 1 2025-11-16 15:15:24.416 00:00:00.000 UDP 28.104.0.1:33674 -> 198.28.0.2:53 1 64 1 2025-11-16 15:15:24.416 00:00:00.000 UDP 28.104.0.1:35809 -> 198.28.0.2:53 1 64 1 2025-11-16 15:11:07.645 00:05:50.920 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-16 15:11:58.614 00:05:09.324 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-16 15:16:24.718 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35934 1 109 1 2025-11-16 15:16:24.718 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53852 1 80 1 2025-11-16 15:16:24.707 00:00:00.000 UDP 28.104.0.1:35934 -> 198.28.0.2:53 1 64 1 2025-11-16 15:16:24.707 00:00:00.000 UDP 28.104.0.1:53852 -> 198.28.0.2:53 1 64 1 2025-11-16 15:12:07.949 00:05:50.616 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-16 15:17:25.065 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32896 1 109 1 2025-11-16 15:17:25.065 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41054 1 80 1 2025-11-16 15:17:25.054 00:00:00.000 UDP 28.104.0.1:32896 -> 198.28.0.2:53 1 64 1 2025-11-16 15:17:25.054 00:00:00.000 UDP 28.104.0.1:41054 -> 198.28.0.2:53 1 64 1 2025-11-16 15:13:07.636 00:05:50.940 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-16 15:18:25.304 00:00:00.000 UDP 28.104.0.1:56741 -> 198.28.0.2:53 1 64 1 2025-11-16 15:18:25.303 00:00:00.000 UDP 28.104.0.1:34070 -> 198.28.0.2:53 1 64 1 2025-11-16 15:18:25.314 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34070 1 109 1 2025-11-16 15:18:25.314 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56741 1 80 1 2025-11-16 15:18:24.894 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-16 15:14:32.169 00:05:09.351 OSPF 28.0.2.1:0 -> 224.0.0.5:0 46 3436 1 2025-11-16 15:15:07.635 00:05:00.388 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-16 15:19:25.598 00:00:00.000 UDP 28.104.0.1:59208 -> 198.28.0.2:53 1 64 1 2025-11-16 15:19:25.598 00:00:00.000 UDP 28.104.0.1:51869 -> 198.28.0.2:53 1 64 1 2025-11-16 15:19:25.609 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51869 1 109 1 2025-11-16 15:19:25.609 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59208 1 80 1 2025-11-16 15:20:25.860 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60140 1 80 1 2025-11-16 15:20:25.860 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45412 1 109 1 2025-11-16 15:20:25.851 00:00:00.000 UDP 28.104.0.1:45412 -> 198.28.0.2:53 1 64 1 2025-11-16 15:20:25.851 00:00:00.000 UDP 28.104.0.1:60140 -> 198.28.0.2:53 1 64 1 2025-11-16 15:16:07.636 00:06:00.080 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-16 15:21:26.177 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59326 1 80 1 2025-11-16 15:21:26.177 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54574 1 109 1 2025-11-16 15:21:26.166 00:00:00.000 UDP 28.104.0.1:54574 -> 198.28.0.2:53 1 64 1 2025-11-16 15:21:26.166 00:00:00.000 UDP 28.104.0.1:59326 -> 198.28.0.2:53 1 64 1 2025-11-16 15:17:07.646 00:05:50.922 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-16 15:17:58.615 00:05:09.327 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-16 15:22:26.465 00:00:00.000 UDP 28.104.0.1:35959 -> 198.28.0.2:53 1 64 1 2025-11-16 15:22:26.465 00:00:00.000 UDP 28.104.0.1:44695 -> 198.28.0.2:53 1 64 1 2025-11-16 15:22:26.475 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35959 1 80 1 2025-11-16 15:22:26.475 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44695 1 109 1 2025-11-16 15:18:07.949 00:05:50.619 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-16 15:23:26.759 00:00:00.000 UDP 28.104.0.1:37588 -> 198.28.0.2:53 1 64 1 2025-11-16 15:23:26.759 00:00:00.000 UDP 28.104.0.1:60882 -> 198.28.0.2:53 1 64 1 2025-11-16 15:23:25.126 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-16 15:23:26.769 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60882 1 80 1 2025-11-16 15:23:26.769 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37588 1 109 1 2025-11-16 15:19:50.769 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2876 1 2025-11-16 15:19:07.639 00:05:50.939 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-16 15:24:27.075 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40733 1 109 1 2025-11-16 15:24:27.075 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51744 1 80 1 2025-11-16 15:24:27.064 00:00:00.000 UDP 28.104.0.1:40733 -> 198.28.0.2:53 1 64 1 2025-11-16 15:24:27.064 00:00:00.000 UDP 28.104.0.1:51744 -> 198.28.0.2:53 1 64 1 2025-11-16 15:21:07.639 00:05:00.385 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-16 15:25:27.365 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43325 1 109 1 2025-11-16 15:25:27.365 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40838 1 80 1 2025-11-16 15:25:27.355 00:00:00.000 UDP 28.104.0.1:40838 -> 198.28.0.2:53 1 64 1 2025-11-16 15:25:27.355 00:00:00.000 UDP 28.104.0.1:43325 -> 198.28.0.2:53 1 64 1 2025-11-16 15:26:27.608 00:00:00.000 UDP 28.104.0.1:38845 -> 198.28.0.2:53 1 64 1 2025-11-16 15:26:27.608 00:00:00.000 UDP 28.104.0.1:45966 -> 198.28.0.2:53 1 64 1 2025-11-16 15:26:27.618 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38845 1 80 1 2025-11-16 15:26:27.618 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45966 1 109 1 2025-11-16 15:27:28.001 00:00:00.000 UDP 28.104.0.1:40630 -> 198.28.0.2:53 1 64 1 2025-11-16 15:27:28.000 00:00:00.000 UDP 28.104.0.1:59390 -> 198.28.0.2:53 1 64 1 2025-11-16 15:27:28.014 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40630 1 109 1 2025-11-16 15:27:28.010 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59390 1 80 1 2025-11-16 15:23:07.649 00:05:50.920 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-16 15:23:58.618 00:05:09.328 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-16 15:23:07.640 00:06:00.078 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-16 15:28:24.890 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-16 15:28:28.277 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44050 1 80 1 2025-11-16 15:28:28.278 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34466 1 109 1 2025-11-16 15:28:28.267 00:00:00.000 UDP 28.104.0.1:34466 -> 198.28.0.2:53 1 64 1 2025-11-16 15:28:28.266 00:00:00.000 UDP 28.104.0.1:44050 -> 198.28.0.2:53 1 64 1 2025-11-16 15:24:07.954 00:05:50.615 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-16 15:25:10.773 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2792 1 2025-11-16 15:29:28.515 00:00:00.000 UDP 28.104.0.1:35571 -> 198.28.0.2:53 1 64 1 2025-11-16 15:29:28.515 00:00:00.000 UDP 28.104.0.1:43470 -> 198.28.0.2:53 1 64 1 2025-11-16 15:29:28.526 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43470 1 80 1 2025-11-16 15:29:28.525 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35571 1 109 1 2025-11-16 15:25:07.640 00:05:50.941 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-16 15:30:28.768 00:00:00.000 UDP 28.104.0.1:45567 -> 198.28.0.2:53 1 64 1 2025-11-16 15:30:28.768 00:00:00.000 UDP 28.104.0.1:41480 -> 198.28.0.2:53 1 64 1 2025-11-16 15:30:28.778 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41480 1 80 1 2025-11-16 15:30:28.778 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45567 1 109 1 2025-11-16 15:27:07.643 00:05:00.382 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-16 15:31:29.090 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53339 1 80 1 2025-11-16 15:31:29.089 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52485 1 109 1 2025-11-16 15:31:29.080 00:00:00.000 UDP 28.104.0.1:53339 -> 198.28.0.2:53 1 64 1 2025-11-16 15:31:29.080 00:00:00.000 UDP 28.104.0.1:52485 -> 198.28.0.2:53 1 64 1 2025-11-16 15:32:29.381 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56373 1 109 1 2025-11-16 15:32:29.382 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57679 1 80 1 2025-11-16 15:32:29.371 00:00:00.000 UDP 28.104.0.1:56373 -> 198.28.0.2:53 1 64 1 2025-11-16 15:32:29.371 00:00:00.000 UDP 28.104.0.1:57679 -> 198.28.0.2:53 1 64 1 2025-11-16 15:33:25.377 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-16 15:33:29.671 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54337 1 109 1 2025-11-16 15:33:29.670 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39818 1 80 1 2025-11-16 15:33:29.660 00:00:00.000 UDP 28.104.0.1:39818 -> 198.28.0.2:53 1 64 1 2025-11-16 15:33:29.661 00:00:00.000 UDP 28.104.0.1:54337 -> 198.28.0.2:53 1 64 1 2025-11-16 15:29:07.654 00:05:50.934 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-16 15:29:58.620 00:05:09.333 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-16 15:34:29.952 00:00:00.000 UDP 28.104.0.1:42827 -> 198.28.0.2:53 1 64 1 2025-11-16 15:34:29.952 00:00:00.000 UDP 28.104.0.1:50166 -> 198.28.0.2:53 1 64 1 2025-11-16 15:34:29.963 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42827 1 109 1 2025-11-16 15:34:29.964 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50166 1 80 1 2025-11-16 15:30:30.783 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2240 1 2025-11-16 15:30:07.957 00:05:50.614 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-16 15:30:07.644 00:06:00.075 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-16 15:35:30.246 00:00:00.000 UDP 28.104.0.1:50556 -> 198.28.0.2:53 1 64 1 2025-11-16 15:35:30.246 00:00:00.000 UDP 28.104.0.1:46186 -> 198.28.0.2:53 1 64 1 2025-11-16 15:35:30.255 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50556 1 109 1 2025-11-16 15:35:30.255 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46186 1 80 1 2025-11-16 15:31:07.643 00:05:50.937 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-16 15:36:30.535 00:00:00.000 UDP 28.104.0.1:54725 -> 198.28.0.2:53 1 64 1 2025-11-16 15:36:30.536 00:00:00.000 UDP 28.104.0.1:56111 -> 198.28.0.2:53 1 64 1 2025-11-16 15:36:30.547 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54725 1 80 1 2025-11-16 15:36:30.547 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56111 1 109 1 2025-11-16 15:33:07.644 00:05:00.382 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-16 15:37:30.832 00:00:00.000 UDP 28.104.0.1:33614 -> 198.28.0.2:53 1 64 1 2025-11-16 15:37:30.832 00:00:00.000 UDP 28.104.0.1:56045 -> 198.28.0.2:53 1 64 1 2025-11-16 15:37:30.843 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56045 1 80 1 2025-11-16 15:37:30.843 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33614 1 109 1 2025-11-16 15:38:25.321 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-16 15:38:31.128 00:00:00.000 UDP 28.104.0.1:58407 -> 198.28.0.2:53 1 64 1 2025-11-16 15:38:31.128 00:00:00.000 UDP 28.104.0.1:41188 -> 198.28.0.2:53 1 64 1 2025-11-16 15:38:31.140 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41188 1 80 1 2025-11-16 15:38:31.140 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58407 1 109 1 2025-11-16 15:39:31.437 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60394 1 109 1 2025-11-16 15:39:31.437 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45577 1 80 1 2025-11-16 15:39:31.427 00:00:00.000 UDP 28.104.0.1:60394 -> 198.28.0.2:53 1 64 1 2025-11-16 15:39:31.427 00:00:00.000 UDP 28.104.0.1:45577 -> 198.28.0.2:53 1 64 1 2025-11-16 15:35:07.655 00:05:50.919 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-16 15:35:50.789 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2380 1 2025-11-16 15:35:58.621 00:05:09.326 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-16 15:40:31.717 00:00:00.000 UDP 28.104.0.1:47772 -> 198.28.0.2:53 1 64 1 2025-11-16 15:40:31.717 00:00:00.000 UDP 28.104.0.1:60791 -> 198.28.0.2:53 1 64 1 2025-11-16 15:40:31.728 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60791 1 80 1 2025-11-16 15:40:31.728 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47772 1 109 1 2025-11-16 15:36:07.957 00:05:50.617 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-16 15:41:32.009 00:00:00.000 UDP 28.104.0.1:39812 -> 198.28.0.2:53 1 64 1 2025-11-16 15:41:32.009 00:00:00.000 UDP 28.104.0.1:49779 -> 198.28.0.2:53 1 64 1 2025-11-16 15:41:32.021 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39812 1 80 1 2025-11-16 15:41:32.023 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49779 1 109 1 2025-11-16 15:37:07.645 00:05:50.940 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-16 15:37:07.644 00:06:00.075 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-16 15:42:32.670 00:00:00.000 UDP 28.104.0.1:46745 -> 198.28.0.2:53 1 64 1 2025-11-16 15:42:32.670 00:00:00.000 UDP 28.104.0.1:40766 -> 198.28.0.2:53 1 64 1 2025-11-16 15:42:32.680 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40766 1 80 1 2025-11-16 15:42:32.680 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46745 1 109 1 2025-11-16 15:39:07.645 00:05:00.383 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-16 15:43:25.857 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-16 15:43:32.973 00:00:00.000 UDP 28.104.0.1:42953 -> 198.28.0.2:53 1 64 1 2025-11-16 15:43:32.974 00:00:00.000 UDP 28.104.0.1:48106 -> 198.28.0.2:53 1 64 1 2025-11-16 15:43:32.985 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42953 1 80 1 2025-11-16 15:43:32.985 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48106 1 109 1 2025-11-16 15:44:33.273 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46894 1 109 1 2025-11-16 15:44:33.273 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44649 1 80 1 2025-11-16 15:44:33.263 00:00:00.000 UDP 28.104.0.1:46894 -> 198.28.0.2:53 1 64 1 2025-11-16 15:44:33.263 00:00:00.000 UDP 28.104.0.1:44649 -> 198.28.0.2:53 1 64 1 2025-11-16 15:41:10.795 00:05:10.095 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 3084 1 2025-11-16 15:45:33.938 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50583 1 80 1 2025-11-16 15:45:33.939 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59735 1 109 1 2025-11-16 15:45:33.928 00:00:00.000 UDP 28.104.0.1:59735 -> 198.28.0.2:53 1 64 1 2025-11-16 15:45:33.928 00:00:00.000 UDP 28.104.0.1:50583 -> 198.28.0.2:53 1 64 1 2025-11-16 15:41:07.656 00:05:50.919 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-16 15:41:58.625 00:05:09.325 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-16 15:46:34.250 00:00:00.000 UDP 28.104.0.1:59954 -> 198.28.0.2:53 1 64 1 2025-11-16 15:46:34.250 00:00:00.000 UDP 28.104.0.1:55806 -> 198.28.0.2:53 1 64 1 2025-11-16 15:46:34.261 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59954 1 80 1 2025-11-16 15:46:34.261 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55806 1 109 1 2025-11-16 15:42:07.959 00:05:50.615 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-16 15:47:35.105 00:00:00.000 UDP 28.104.0.1:44678 -> 198.28.0.2:53 1 64 1 2025-11-16 15:47:35.106 00:00:00.000 UDP 28.104.0.1:33864 -> 198.28.0.2:53 1 64 1 2025-11-16 15:47:35.116 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33864 1 109 1 2025-11-16 15:47:35.116 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44678 1 80 1 2025-11-16 15:43:07.647 00:05:50.939 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-16 15:48:25.491 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-16 15:48:35.414 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45022 1 80 1 2025-11-16 15:48:35.415 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32990 1 109 1 2025-11-16 15:48:35.404 00:00:00.000 UDP 28.104.0.1:45022 -> 198.28.0.2:53 1 64 1 2025-11-16 15:48:35.404 00:00:00.000 UDP 28.104.0.1:32990 -> 198.28.0.2:53 1 64 1 2025-11-16 15:45:07.647 00:05:00.382 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-16 15:44:07.647 00:06:00.074 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-16 15:49:35.697 00:00:00.000 UDP 28.104.0.1:39906 -> 198.28.0.2:53 1 64 1 2025-11-16 15:49:35.697 00:00:00.000 UDP 28.104.0.1:52484 -> 198.28.0.2:53 1 64 1 2025-11-16 15:49:35.708 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39906 1 80 1 2025-11-16 15:49:35.707 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52484 1 109 1 2025-11-16 15:50:36.012 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56573 1 80 1 2025-11-16 15:50:36.012 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36009 1 109 1 2025-11-16 15:50:36.000 00:00:00.000 UDP 28.104.0.1:36009 -> 198.28.0.2:53 1 64 1 2025-11-16 15:50:36.001 00:00:00.000 UDP 28.104.0.1:56573 -> 198.28.0.2:53 1 64 1 2025-11-16 15:46:30.808 00:05:10.013 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 2956 1 2025-11-16 15:51:36.313 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47506 1 109 1 2025-11-16 15:51:36.312 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40594 1 80 1 2025-11-16 15:51:36.302 00:00:00.000 UDP 28.104.0.1:47506 -> 198.28.0.2:53 1 64 1 2025-11-16 15:51:36.302 00:00:00.000 UDP 28.104.0.1:40594 -> 198.28.0.2:53 1 64 1 2025-11-16 15:47:07.658 00:05:50.919 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-16 15:47:58.625 00:05:09.327 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-16 15:52:36.608 00:00:00.000 UDP 28.104.0.1:32935 -> 198.28.0.2:53 1 64 1 2025-11-16 15:52:36.609 00:00:00.000 UDP 28.104.0.1:55108 -> 198.28.0.2:53 1 64 1 2025-11-16 15:52:36.618 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32935 1 80 1 2025-11-16 15:52:36.619 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55108 1 109 1 2025-11-16 15:48:07.959 00:05:50.616 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-16 15:53:25.479 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-16 15:53:36.900 00:00:00.000 UDP 28.104.0.1:52896 -> 198.28.0.2:53 1 64 1 2025-11-16 15:53:36.900 00:00:00.000 UDP 28.104.0.1:46101 -> 198.28.0.2:53 1 64 1 2025-11-16 15:53:36.915 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46101 1 109 1 2025-11-16 15:53:36.915 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52896 1 80 1 2025-11-16 15:49:07.647 00:05:50.939 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-16 15:54:37.214 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50302 1 80 1 2025-11-16 15:54:37.214 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48225 1 109 1 2025-11-16 15:54:37.204 00:00:00.000 UDP 28.104.0.1:48225 -> 198.28.0.2:53 1 64 1 2025-11-16 15:54:37.204 00:00:00.000 UDP 28.104.0.1:50302 -> 198.28.0.2:53 1 64 1 2025-11-16 15:51:07.649 00:05:00.383 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-16 15:55:37.468 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45300 1 80 1 2025-11-16 15:55:37.468 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49035 1 109 1 2025-11-16 15:55:37.458 00:00:00.000 UDP 28.104.0.1:45300 -> 198.28.0.2:53 1 64 1 2025-11-16 15:55:37.458 00:00:00.000 UDP 28.104.0.1:49035 -> 198.28.0.2:53 1 64 1 2025-11-16 15:51:50.821 00:05:10.243 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 2960 1 2025-11-16 15:51:07.648 00:06:00.076 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-16 15:56:37.746 00:00:00.000 UDP 28.104.0.1:40264 -> 198.28.0.2:53 1 64 1 2025-11-16 15:56:37.747 00:00:00.000 UDP 28.104.0.1:35794 -> 198.28.0.2:53 1 64 1 2025-11-16 15:56:37.757 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40264 1 109 1 2025-11-16 15:56:37.757 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35794 1 80 1 2025-11-16 15:57:38.050 00:00:00.000 UDP 28.104.0.1:51676 -> 198.28.0.2:53 1 64 1 2025-11-16 15:57:38.050 00:00:00.000 UDP 28.104.0.1:53888 -> 198.28.0.2:53 1 64 1 2025-11-16 15:57:38.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53888 1 80 1 2025-11-16 15:57:38.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51676 1 109 1 2025-11-16 15:53:07.660 00:05:50.917 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-16 15:53:58.626 00:05:09.327 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-16 15:58:25.736 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-16 15:58:38.326 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45728 1 80 1 2025-11-16 15:58:38.326 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48730 1 109 1 2025-11-16 15:58:38.317 00:00:00.000 UDP 28.104.0.1:48730 -> 198.28.0.2:53 1 64 1 2025-11-16 15:58:38.317 00:00:00.000 UDP 28.104.0.1:45728 -> 198.28.0.2:53 1 64 1 Summary: total flows: 322, total bytes: 96605, total packets: 1425, avg bps: 198, avg pps: 0, avg bpp: 67 Time window: 2025-11-16 14:54:07 - 2025-11-16 15:59:07 Total flows processed: 322, passed: 322, Blocks skipped: 0, Bytes read: 33552 Sys: 0.0060s User: 0.0012s Wall: 0.0043s flows/second: 75110.7 Runtime: 0.0043s