Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 12:58:56.473 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51776 1 80 1 2025-11-20 12:58:56.473 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40208 1 109 1 2025-11-20 12:58:56.463 00:00:00.000 UDP 28.104.0.1:40208 -> 198.28.0.2:53 1 64 1 2025-11-20 12:58:56.463 00:00:00.000 UDP 28.104.0.1:51776 -> 198.28.0.2:53 1 64 1 2025-11-20 12:59:56.778 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49222 1 80 1 2025-11-20 12:59:56.778 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53138 1 109 1 2025-11-20 12:59:56.770 00:00:00.000 UDP 28.104.0.1:49222 -> 198.28.0.2:53 1 64 1 2025-11-20 12:59:56.770 00:00:00.000 UDP 28.104.0.1:53138 -> 198.28.0.2:53 1 64 1 2025-11-20 13:00:19.317 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 13:00:57.081 00:00:00.000 UDP 28.104.0.1:41334 -> 198.28.0.2:53 1 64 1 2025-11-20 13:00:57.081 00:00:00.000 UDP 28.104.0.1:59147 -> 198.28.0.2:53 1 64 1 2025-11-20 13:00:57.092 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41334 1 109 1 2025-11-20 13:00:57.092 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59147 1 80 1 2025-11-20 12:56:09.432 00:06:00.232 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 12:57:28.556 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2444 1 2025-11-20 13:01:57.380 00:00:00.000 UDP 28.104.0.1:43626 -> 198.28.0.2:53 1 64 1 2025-11-20 13:01:57.380 00:00:00.000 UDP 28.104.0.1:55264 -> 198.28.0.2:53 1 64 1 2025-11-20 13:01:57.390 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55264 1 80 1 2025-11-20 13:01:57.390 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43626 1 109 1 2025-11-20 12:58:00.900 00:05:08.542 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 13:02:57.683 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44329 1 109 1 2025-11-20 13:02:57.683 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37158 1 80 1 2025-11-20 13:02:57.673 00:00:00.000 UDP 28.104.0.1:44329 -> 198.28.0.2:53 1 64 1 2025-11-20 13:02:57.673 00:00:00.000 UDP 28.104.0.1:37158 -> 198.28.0.2:53 1 64 1 2025-11-20 12:58:09.893 00:05:51.060 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 13:03:57.978 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34486 1 80 1 2025-11-20 12:59:09.902 00:05:50.997 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 13:03:57.978 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43924 1 109 1 2025-11-20 13:03:57.969 00:00:00.000 UDP 28.104.0.1:34486 -> 198.28.0.2:53 1 64 1 2025-11-20 13:03:57.968 00:00:00.000 UDP 28.104.0.1:43924 -> 198.28.0.2:53 1 64 1 2025-11-20 13:00:09.431 00:05:00.600 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 13:00:00.910 00:05:08.523 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 13:04:58.226 00:00:00.000 UDP 28.104.0.1:50447 -> 198.28.0.2:53 1 64 1 2025-11-20 13:04:58.226 00:00:00.000 UDP 28.104.0.1:58069 -> 198.28.0.2:53 1 64 1 2025-11-20 13:04:58.237 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50447 1 80 1 2025-11-20 13:04:58.237 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58069 1 109 1 2025-11-20 13:05:19.340 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 13:05:58.477 00:00:00.000 UDP 28.104.0.1:53377 -> 198.28.0.2:53 1 64 1 2025-11-20 13:05:58.477 00:00:00.000 UDP 28.104.0.1:49648 -> 198.28.0.2:53 1 64 1 2025-11-20 13:05:58.488 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49648 1 80 1 2025-11-20 13:05:58.488 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53377 1 109 1 2025-11-20 13:02:48.562 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2528 1 2025-11-20 13:06:58.795 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44793 1 80 1 2025-11-20 13:06:58.795 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50738 1 109 1 2025-11-20 13:06:58.786 00:00:00.000 UDP 28.104.0.1:50738 -> 198.28.0.2:53 1 64 1 2025-11-20 13:06:58.786 00:00:00.000 UDP 28.104.0.1:44793 -> 198.28.0.2:53 1 64 1 2025-11-20 13:07:59.109 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36940 1 109 1 2025-11-20 13:07:59.109 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51421 1 80 1 2025-11-20 13:07:59.099 00:00:00.000 UDP 28.104.0.1:51421 -> 198.28.0.2:53 1 64 1 2025-11-20 13:07:59.099 00:00:00.000 UDP 28.104.0.1:36940 -> 198.28.0.2:53 1 64 1 2025-11-20 13:04:00.900 00:05:08.544 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 13:03:09.433 00:06:00.237 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 13:08:59.412 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60604 1 109 1 2025-11-20 13:08:59.412 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33975 1 80 1 2025-11-20 13:04:09.898 00:05:51.054 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 13:08:59.403 00:00:00.000 UDP 28.104.0.1:60604 -> 198.28.0.2:53 1 64 1 2025-11-20 13:08:59.403 00:00:00.000 UDP 28.104.0.1:33975 -> 198.28.0.2:53 1 64 1 2025-11-20 13:09:59.697 00:00:00.000 UDP 28.104.0.1:36013 -> 198.28.0.2:53 1 64 1 2025-11-20 13:09:59.697 00:00:00.000 UDP 28.104.0.1:41425 -> 198.28.0.2:53 1 64 1 2025-11-20 13:09:59.707 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36013 1 109 1 2025-11-20 13:05:09.906 00:05:50.995 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 13:09:59.707 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41425 1 80 1 2025-11-20 13:06:09.433 00:05:00.599 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 13:06:00.910 00:05:08.524 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 13:10:19.522 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 13:10:59.965 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35765 1 109 1 2025-11-20 13:10:59.965 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40260 1 80 1 2025-11-20 13:10:59.956 00:00:00.000 UDP 28.104.0.1:40260 -> 198.28.0.2:53 1 64 1 2025-11-20 13:10:59.956 00:00:00.000 UDP 28.104.0.1:35765 -> 198.28.0.2:53 1 64 1 2025-11-20 13:12:00.252 00:00:00.000 UDP 28.104.0.1:59085 -> 198.28.0.2:53 1 64 1 2025-11-20 13:12:00.252 00:00:00.000 UDP 28.104.0.1:56582 -> 198.28.0.2:53 1 64 1 2025-11-20 13:12:00.262 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59085 1 109 1 2025-11-20 13:12:00.262 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56582 1 80 1 2025-11-20 13:08:03.608 00:05:04.976 OSPF 28.0.2.1:0 -> 224.0.0.5:0 45 3304 1 2025-11-20 13:13:00.564 00:00:00.000 UDP 28.104.0.1:44201 -> 198.28.0.2:53 1 64 1 2025-11-20 13:13:00.564 00:00:00.000 UDP 28.104.0.1:50484 -> 198.28.0.2:53 1 64 1 2025-11-20 13:13:00.575 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44201 1 80 1 2025-11-20 13:13:00.578 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50484 1 109 1 2025-11-20 13:14:00.867 00:00:00.000 UDP 28.104.0.1:40150 -> 198.28.0.2:53 1 64 1 2025-11-20 13:14:00.867 00:00:00.000 UDP 28.104.0.1:52923 -> 198.28.0.2:53 1 64 1 2025-11-20 13:14:00.878 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40150 1 109 1 2025-11-20 13:14:00.878 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52923 1 80 1 2025-11-20 13:10:00.902 00:05:08.544 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 13:10:09.898 00:05:51.061 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 13:15:01.604 00:00:00.000 UDP 28.104.0.1:34822 -> 198.28.0.2:53 1 64 1 2025-11-20 13:15:01.604 00:00:00.000 UDP 28.104.0.1:42303 -> 198.28.0.2:53 1 64 1 2025-11-20 13:15:01.614 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42303 1 109 1 2025-11-20 13:15:01.614 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34822 1 80 1 2025-11-20 13:10:09.434 00:06:00.237 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 13:15:19.553 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 13:16:01.914 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51456 1 109 1 2025-11-20 13:11:09.908 00:05:51.000 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 13:16:01.914 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50479 1 80 1 2025-11-20 13:16:01.904 00:00:00.000 UDP 28.104.0.1:50479 -> 198.28.0.2:53 1 64 1 2025-11-20 13:16:01.904 00:00:00.000 UDP 28.104.0.1:51456 -> 198.28.0.2:53 1 64 1 2025-11-20 13:12:09.435 00:05:00.601 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 13:12:00.912 00:05:08.525 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 13:17:02.206 00:00:00.000 UDP 28.104.0.1:60411 -> 198.28.0.2:53 1 64 1 2025-11-20 13:17:02.206 00:00:00.000 UDP 28.104.0.1:39336 -> 198.28.0.2:53 1 64 1 2025-11-20 13:17:02.216 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60411 1 109 1 2025-11-20 13:17:02.216 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39336 1 80 1 2025-11-20 13:13:18.584 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2928 1 2025-11-20 13:18:03.239 00:00:00.000 UDP 28.104.0.1:42125 -> 198.28.0.2:53 1 64 1 2025-11-20 13:18:03.239 00:00:00.000 UDP 28.104.0.1:41977 -> 198.28.0.2:53 1 64 1 2025-11-20 13:18:03.248 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41977 1 80 1 2025-11-20 13:18:03.249 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42125 1 109 1 2025-11-20 13:19:03.550 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36735 1 80 1 2025-11-20 13:19:03.550 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51804 1 109 1 2025-11-20 13:19:03.542 00:00:00.000 UDP 28.104.0.1:36735 -> 198.28.0.2:53 1 64 1 2025-11-20 13:19:03.542 00:00:00.000 UDP 28.104.0.1:51804 -> 198.28.0.2:53 1 64 1 2025-11-20 13:20:03.804 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52642 1 109 1 2025-11-20 13:20:03.804 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49753 1 80 1 2025-11-20 13:20:03.794 00:00:00.000 UDP 28.104.0.1:52642 -> 198.28.0.2:53 1 64 1 2025-11-20 13:20:03.794 00:00:00.000 UDP 28.104.0.1:49753 -> 198.28.0.2:53 1 64 1 2025-11-20 13:16:00.908 00:05:08.538 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 13:20:19.736 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 13:16:09.902 00:05:51.057 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 13:21:04.098 00:00:00.000 UDP 28.104.0.1:46361 -> 198.28.0.2:53 1 64 1 2025-11-20 13:21:04.098 00:00:00.000 UDP 28.104.0.1:39308 -> 198.28.0.2:53 1 64 1 2025-11-20 13:21:04.107 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46361 1 109 1 2025-11-20 13:21:04.107 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39308 1 80 1 2025-11-20 13:22:04.390 00:00:00.000 UDP 28.104.0.1:40499 -> 198.28.0.2:53 1 64 1 2025-11-20 13:22:04.390 00:00:00.000 UDP 28.104.0.1:56923 -> 198.28.0.2:53 1 64 1 2025-11-20 13:17:09.912 00:05:50.997 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 13:22:04.399 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56923 1 80 1 2025-11-20 13:22:04.399 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40499 1 109 1 2025-11-20 13:18:09.435 00:05:00.601 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 13:18:00.919 00:05:08.517 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 13:17:09.437 00:06:00.238 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 13:18:38.594 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2584 1 2025-11-20 13:23:04.680 00:00:00.000 UDP 28.104.0.1:48082 -> 198.28.0.2:53 1 64 1 2025-11-20 13:23:04.680 00:00:00.000 UDP 28.104.0.1:56473 -> 198.28.0.2:53 1 64 1 2025-11-20 13:23:04.690 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56473 1 80 1 2025-11-20 13:23:04.690 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48082 1 109 1 2025-11-20 13:24:04.982 00:00:00.000 UDP 28.104.0.1:43138 -> 198.28.0.2:53 1 64 1 2025-11-20 13:24:04.982 00:00:00.000 UDP 28.104.0.1:35144 -> 198.28.0.2:53 1 64 1 2025-11-20 13:24:04.993 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35144 1 80 1 2025-11-20 13:24:04.993 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43138 1 109 1 2025-11-20 13:25:05.291 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60149 1 80 1 2025-11-20 13:25:05.292 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44192 1 109 1 2025-11-20 13:25:05.280 00:00:00.000 UDP 28.104.0.1:44192 -> 198.28.0.2:53 1 64 1 2025-11-20 13:25:05.279 00:00:00.000 UDP 28.104.0.1:60149 -> 198.28.0.2:53 1 64 1 2025-11-20 13:25:19.699 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 13:26:05.589 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57343 1 80 1 2025-11-20 13:26:05.589 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59506 1 109 1 2025-11-20 13:26:05.579 00:00:00.000 UDP 28.104.0.1:59506 -> 198.28.0.2:53 1 64 1 2025-11-20 13:26:05.579 00:00:00.000 UDP 28.104.0.1:57343 -> 198.28.0.2:53 1 64 1 2025-11-20 13:22:00.910 00:05:08.539 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 13:22:09.905 00:05:51.057 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 13:27:05.916 00:00:00.000 UDP 28.104.0.1:51567 -> 198.28.0.2:53 1 64 1 2025-11-20 13:27:05.917 00:00:00.000 UDP 28.104.0.1:50376 -> 198.28.0.2:53 1 64 1 2025-11-20 13:27:05.927 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50376 1 109 1 2025-11-20 13:27:05.926 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51567 1 80 1 2025-11-20 13:28:06.249 00:00:00.000 UDP 28.104.0.1:53788 -> 198.28.0.2:53 1 64 1 2025-11-20 13:28:06.248 00:00:00.000 UDP 28.104.0.1:45367 -> 198.28.0.2:53 1 64 1 2025-11-20 13:23:09.916 00:05:50.996 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 13:28:06.259 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53788 1 80 1 2025-11-20 13:28:06.259 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45367 1 109 1 2025-11-20 13:24:09.438 00:05:00.601 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 13:24:00.921 00:05:08.518 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 13:23:58.604 00:05:10.011 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2240 1 2025-11-20 13:29:06.543 00:00:00.000 UDP 28.104.0.1:53089 -> 198.28.0.2:53 1 64 1 2025-11-20 13:29:06.543 00:00:00.000 UDP 28.104.0.1:35143 -> 198.28.0.2:53 1 64 1 2025-11-20 13:29:06.554 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35143 1 109 1 2025-11-20 13:29:06.554 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53089 1 80 1 2025-11-20 13:24:09.436 00:06:00.243 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 13:30:06.836 00:00:00.000 UDP 28.104.0.1:37560 -> 198.28.0.2:53 1 64 1 2025-11-20 13:30:06.836 00:00:00.000 UDP 28.104.0.1:56432 -> 198.28.0.2:53 1 64 1 2025-11-20 13:30:06.845 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56432 1 80 1 2025-11-20 13:30:06.845 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37560 1 109 1 2025-11-20 13:30:20.123 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 13:31:07.136 00:00:00.000 UDP 28.104.0.1:42975 -> 198.28.0.2:53 1 64 1 2025-11-20 13:31:07.136 00:00:00.000 UDP 28.104.0.1:33682 -> 198.28.0.2:53 1 64 1 2025-11-20 13:31:07.145 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42975 1 80 1 2025-11-20 13:31:07.145 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33682 1 109 1 2025-11-20 13:28:00.912 00:05:08.540 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 13:32:07.397 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42347 1 109 1 2025-11-20 13:32:07.397 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32928 1 80 1 2025-11-20 13:32:07.386 00:00:00.000 UDP 28.104.0.1:42347 -> 198.28.0.2:53 1 64 1 2025-11-20 13:32:07.386 00:00:00.000 UDP 28.104.0.1:32928 -> 198.28.0.2:53 1 64 1 2025-11-20 13:28:09.906 00:05:51.059 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 13:33:07.682 00:00:00.000 UDP 28.104.0.1:49122 -> 198.28.0.2:53 1 64 1 2025-11-20 13:33:07.682 00:00:00.000 UDP 28.104.0.1:45335 -> 198.28.0.2:53 1 64 1 2025-11-20 13:33:07.693 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49122 1 80 1 2025-11-20 13:33:07.693 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45335 1 109 1 2025-11-20 13:29:18.614 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2508 1 2025-11-20 13:29:09.916 00:05:50.998 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 13:34:07.987 00:00:00.000 UDP 28.104.0.1:54946 -> 198.28.0.2:53 1 64 1 2025-11-20 13:34:07.987 00:00:00.000 UDP 28.104.0.1:41643 -> 198.28.0.2:53 1 64 1 2025-11-20 13:30:09.440 00:05:00.635 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 13:30:00.922 00:05:08.520 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 13:34:07.997 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41643 1 109 1 2025-11-20 13:34:07.997 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54946 1 80 1 2025-11-20 13:35:08.321 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51918 1 109 1 2025-11-20 13:35:08.321 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50890 1 80 1 2025-11-20 13:35:08.310 00:00:00.000 UDP 28.104.0.1:51918 -> 198.28.0.2:53 1 64 1 2025-11-20 13:35:08.310 00:00:00.000 UDP 28.104.0.1:50890 -> 198.28.0.2:53 1 64 1 2025-11-20 13:35:20.272 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 13:31:09.439 00:06:00.243 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 13:36:08.602 00:00:00.000 UDP 28.104.0.1:37556 -> 198.28.0.2:53 1 64 1 2025-11-20 13:36:08.602 00:00:00.000 UDP 28.104.0.1:53288 -> 198.28.0.2:53 1 64 1 2025-11-20 13:36:08.612 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53288 1 80 1 2025-11-20 13:36:08.612 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37556 1 109 1 2025-11-20 13:37:08.889 00:00:00.000 UDP 28.104.0.1:60983 -> 198.28.0.2:53 1 64 1 2025-11-20 13:37:08.889 00:00:00.000 UDP 28.104.0.1:59813 -> 198.28.0.2:53 1 64 1 2025-11-20 13:37:08.901 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59813 1 80 1 2025-11-20 13:37:08.901 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60983 1 109 1 2025-11-20 13:34:00.914 00:05:08.538 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 13:38:09.210 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41591 1 109 1 2025-11-20 13:38:09.210 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40672 1 80 1 2025-11-20 13:38:09.199 00:00:00.000 UDP 28.104.0.1:40672 -> 198.28.0.2:53 1 64 1 2025-11-20 13:38:09.199 00:00:00.000 UDP 28.104.0.1:41591 -> 198.28.0.2:53 1 64 1 2025-11-20 13:34:38.622 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2936 1 2025-11-20 13:34:09.907 00:05:51.058 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 13:39:09.498 00:00:00.000 UDP 28.104.0.1:46417 -> 198.28.0.2:53 1 64 1 2025-11-20 13:39:09.498 00:00:00.000 UDP 28.104.0.1:54073 -> 198.28.0.2:53 1 64 1 2025-11-20 13:39:09.507 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46417 1 80 1 2025-11-20 13:39:09.507 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54073 1 109 1 2025-11-20 13:35:09.918 00:05:50.997 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 13:40:09.793 00:00:00.000 UDP 28.104.0.1:56666 -> 198.28.0.2:53 1 64 1 2025-11-20 13:40:09.793 00:00:00.000 UDP 28.104.0.1:52866 -> 198.28.0.2:53 1 64 1 2025-11-20 13:36:09.442 00:05:00.634 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 13:36:00.930 00:05:08.513 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 13:40:09.803 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56666 1 80 1 2025-11-20 13:40:09.803 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52866 1 109 1 2025-11-20 13:40:20.358 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 13:41:10.109 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49106 1 80 1 2025-11-20 13:41:10.108 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45718 1 109 1 2025-11-20 13:41:10.097 00:00:00.000 UDP 28.104.0.1:45718 -> 198.28.0.2:53 1 64 1 2025-11-20 13:41:10.098 00:00:00.000 UDP 28.104.0.1:49106 -> 198.28.0.2:53 1 64 1 2025-11-20 13:42:10.390 00:00:00.000 UDP 28.104.0.1:48843 -> 198.28.0.2:53 1 64 1 2025-11-20 13:42:10.389 00:00:00.000 UDP 28.104.0.1:36922 -> 198.28.0.2:53 1 64 1 2025-11-20 13:42:10.402 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36922 1 109 1 2025-11-20 13:42:10.401 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48843 1 80 1 2025-11-20 13:43:10.640 00:00:00.000 UDP 28.104.0.1:45646 -> 198.28.0.2:53 1 64 1 2025-11-20 13:43:10.641 00:00:00.000 UDP 28.104.0.1:39479 -> 198.28.0.2:53 1 64 1 2025-11-20 13:38:09.443 00:06:00.240 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 13:43:10.650 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45646 1 109 1 2025-11-20 13:43:10.650 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39479 1 80 1 2025-11-20 13:40:00.915 00:05:08.538 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 13:39:58.629 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 3224 1 2025-11-20 13:44:10.953 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41628 1 109 1 2025-11-20 13:44:10.953 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57688 1 80 1 2025-11-20 13:44:10.942 00:00:00.000 UDP 28.104.0.1:57688 -> 198.28.0.2:53 1 64 1 2025-11-20 13:44:10.942 00:00:00.000 UDP 28.104.0.1:41628 -> 198.28.0.2:53 1 64 1 2025-11-20 13:40:09.910 00:05:51.056 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 13:45:11.242 00:00:00.000 UDP 28.104.0.1:47141 -> 198.28.0.2:53 1 64 1 2025-11-20 13:45:11.242 00:00:00.000 UDP 28.104.0.1:59471 -> 198.28.0.2:53 1 64 1 2025-11-20 13:45:11.253 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59471 1 109 1 2025-11-20 13:45:11.253 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47141 1 80 1 2025-11-20 13:45:20.261 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 13:41:09.919 00:05:50.996 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 13:46:11.541 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55494 1 109 1 2025-11-20 13:46:11.541 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58829 1 80 1 2025-11-20 13:46:11.531 00:00:00.000 UDP 28.104.0.1:58829 -> 198.28.0.2:53 1 64 1 2025-11-20 13:42:09.443 00:05:00.634 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 13:42:00.925 00:05:08.519 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 13:46:11.531 00:00:00.000 UDP 28.104.0.1:55494 -> 198.28.0.2:53 1 64 1 2025-11-20 13:47:11.824 00:00:00.000 UDP 28.104.0.1:52178 -> 198.28.0.2:53 1 64 1 2025-11-20 13:47:11.823 00:00:00.000 UDP 28.104.0.1:36070 -> 198.28.0.2:53 1 64 1 2025-11-20 13:47:11.835 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52178 1 80 1 2025-11-20 13:47:11.834 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36070 1 109 1 2025-11-20 13:48:12.111 00:00:00.000 UDP 28.104.0.1:49421 -> 198.28.0.2:53 1 64 1 2025-11-20 13:48:12.111 00:00:00.000 UDP 28.104.0.1:33423 -> 198.28.0.2:53 1 64 1 2025-11-20 13:48:12.122 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33423 1 80 1 2025-11-20 13:48:12.122 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49421 1 109 1 2025-11-20 13:49:12.403 00:00:00.000 UDP 28.104.0.1:56980 -> 198.28.0.2:53 1 64 1 2025-11-20 13:49:12.403 00:00:00.000 UDP 28.104.0.1:45719 -> 198.28.0.2:53 1 64 1 2025-11-20 13:49:12.413 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45719 1 109 1 2025-11-20 13:49:12.413 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56980 1 80 1 2025-11-20 13:45:18.631 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2752 1 2025-11-20 13:46:00.917 00:05:08.538 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 13:50:12.709 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37346 1 109 1 2025-11-20 13:50:12.709 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34393 1 80 1 2025-11-20 13:45:09.443 00:06:00.240 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 13:50:12.697 00:00:00.000 UDP 28.104.0.1:34393 -> 198.28.0.2:53 1 64 1 2025-11-20 13:50:12.697 00:00:00.000 UDP 28.104.0.1:37346 -> 198.28.0.2:53 1 64 1 2025-11-20 13:50:20.245 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 13:46:09.913 00:05:51.068 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 13:51:13.002 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40530 1 80 1 2025-11-20 13:51:13.002 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56933 1 109 1 2025-11-20 13:51:12.990 00:00:00.000 UDP 28.104.0.1:56933 -> 198.28.0.2:53 1 64 1 2025-11-20 13:51:12.991 00:00:00.000 UDP 28.104.0.1:40530 -> 198.28.0.2:53 1 64 1 2025-11-20 13:47:09.923 00:05:50.996 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 13:48:09.443 00:05:00.641 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 13:48:00.926 00:05:08.518 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 13:52:13.250 00:00:00.000 UDP 28.104.0.1:41757 -> 198.28.0.2:53 1 64 1 2025-11-20 13:52:13.250 00:00:00.000 UDP 28.104.0.1:36591 -> 198.28.0.2:53 1 64 1 2025-11-20 13:52:13.261 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36591 1 109 1 2025-11-20 13:52:13.261 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41757 1 80 1 2025-11-20 13:53:13.554 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44910 1 109 1 2025-11-20 13:53:13.553 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55144 1 80 1 2025-11-20 13:53:13.545 00:00:00.000 UDP 28.104.0.1:44910 -> 198.28.0.2:53 1 64 1 2025-11-20 13:53:13.544 00:00:00.000 UDP 28.104.0.1:55144 -> 198.28.0.2:53 1 64 1 2025-11-20 13:54:13.833 00:00:00.000 UDP 28.104.0.1:58189 -> 198.28.0.2:53 1 64 1 2025-11-20 13:54:13.833 00:00:00.000 UDP 28.104.0.1:41456 -> 198.28.0.2:53 1 64 1 2025-11-20 13:54:13.844 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58189 1 109 1 2025-11-20 13:54:13.844 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41456 1 80 1 2025-11-20 13:50:38.634 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2360 1 2025-11-20 13:55:14.128 00:00:00.000 UDP 28.104.0.1:43377 -> 198.28.0.2:53 1 64 1 2025-11-20 13:55:14.128 00:00:00.000 UDP 28.104.0.1:48938 -> 198.28.0.2:53 1 64 1 2025-11-20 13:55:14.139 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43377 1 80 1 2025-11-20 13:55:14.139 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48938 1 109 1 2025-11-20 13:55:20.441 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 13:52:00.920 00:05:08.535 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 13:56:14.436 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57135 1 109 1 2025-11-20 13:56:14.436 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41131 1 80 1 2025-11-20 13:56:14.426 00:00:00.000 UDP 28.104.0.1:57135 -> 198.28.0.2:53 1 64 1 2025-11-20 13:56:14.426 00:00:00.000 UDP 28.104.0.1:41131 -> 198.28.0.2:53 1 64 1 2025-11-20 13:52:09.914 00:05:51.056 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 13:52:09.444 00:06:00.240 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 13:57:14.728 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59952 1 80 1 2025-11-20 13:57:14.728 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37998 1 109 1 2025-11-20 13:57:14.720 00:00:00.000 UDP 28.104.0.1:37998 -> 198.28.0.2:53 1 64 1 2025-11-20 13:57:14.719 00:00:00.000 UDP 28.104.0.1:59952 -> 198.28.0.2:53 1 64 1 2025-11-20 13:53:09.923 00:05:50.996 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 13:54:09.444 00:05:00.644 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 13:54:00.928 00:05:08.517 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 13:58:15.041 00:00:00.000 UDP 28.104.0.1:46597 -> 198.28.0.2:53 1 64 1 2025-11-20 13:58:15.041 00:00:00.000 UDP 28.104.0.1:38163 -> 198.28.0.2:53 1 64 1 2025-11-20 13:58:15.052 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38163 1 80 1 2025-11-20 13:58:15.052 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46597 1 109 1 Summary: total flows: 322, total bytes: 96501, total packets: 1422, avg bps: 204, avg pps: 0, avg bpp: 67 Time window: 2025-11-20 12:56:09 - 2025-11-20 13:59:10 Total flows processed: 322, passed: 322, Blocks skipped: 0, Bytes read: 33552 Sys: 0.0054s User: 0.0018s Wall: 0.0032s flows/second: 101515.8 Runtime: 0.0032s