Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 13:59:15.297 00:00:00.000 UDP 28.104.0.1:60989 -> 198.28.0.2:53 1 64 1 2025-11-20 13:59:15.297 00:00:00.000 UDP 28.104.0.1:38351 -> 198.28.0.2:53 1 64 1 2025-11-20 13:59:15.308 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38351 1 80 1 2025-11-20 13:59:15.308 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60989 1 109 1 2025-11-20 14:00:15.588 00:00:00.000 UDP 28.104.0.1:44748 -> 198.28.0.2:53 1 64 1 2025-11-20 14:00:15.588 00:00:00.000 UDP 28.104.0.1:44799 -> 198.28.0.2:53 1 64 1 2025-11-20 13:55:58.643 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2380 1 2025-11-20 14:00:15.599 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44748 1 109 1 2025-11-20 14:00:15.599 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44799 1 80 1 2025-11-20 14:00:20.380 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 14:01:15.904 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44761 1 80 1 2025-11-20 14:01:15.904 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53296 1 109 1 2025-11-20 14:01:15.894 00:00:00.000 UDP 28.104.0.1:53296 -> 198.28.0.2:53 1 64 1 2025-11-20 14:01:15.894 00:00:00.000 UDP 28.104.0.1:44761 -> 198.28.0.2:53 1 64 1 2025-11-20 13:58:00.920 00:05:08.537 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 14:02:16.149 00:00:00.000 UDP 28.104.0.1:57119 -> 198.28.0.2:53 1 64 1 2025-11-20 14:02:16.149 00:00:00.000 UDP 28.104.0.1:53128 -> 198.28.0.2:53 1 64 1 2025-11-20 14:02:16.160 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57119 1 80 1 2025-11-20 14:02:16.160 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53128 1 109 1 2025-11-20 13:58:09.914 00:05:51.056 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 14:03:16.476 00:00:00.000 UDP 28.104.0.1:59238 -> 198.28.0.2:53 1 64 1 2025-11-20 14:03:16.476 00:00:00.000 UDP 28.104.0.1:34104 -> 198.28.0.2:53 1 64 1 2025-11-20 14:03:16.488 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59238 1 80 1 2025-11-20 14:03:16.488 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34104 1 109 1 2025-11-20 13:59:09.925 00:05:50.995 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 14:00:09.445 00:05:00.645 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 14:00:00.930 00:05:08.516 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 13:59:09.445 00:06:00.242 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 14:04:16.775 00:00:00.000 UDP 28.104.0.1:48039 -> 198.28.0.2:53 1 64 1 2025-11-20 14:04:16.775 00:00:00.000 UDP 28.104.0.1:36625 -> 198.28.0.2:53 1 64 1 2025-11-20 14:04:16.785 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48039 1 80 1 2025-11-20 14:04:16.786 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36625 1 109 1 2025-11-20 14:05:17.148 00:00:00.000 UDP 28.104.0.1:42360 -> 198.28.0.2:53 1 64 1 2025-11-20 14:05:17.148 00:00:00.000 UDP 28.104.0.1:36558 -> 198.28.0.2:53 1 64 1 2025-11-20 14:05:20.619 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 14:05:17.158 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36558 1 80 1 2025-11-20 14:05:17.158 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42360 1 109 1 2025-11-20 14:01:18.648 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2856 1 2025-11-20 14:06:17.451 00:00:00.000 UDP 28.104.0.1:33831 -> 198.28.0.2:53 1 64 1 2025-11-20 14:06:17.451 00:00:00.000 UDP 28.104.0.1:60084 -> 198.28.0.2:53 1 64 1 2025-11-20 14:06:17.462 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60084 1 80 1 2025-11-20 14:06:17.462 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33831 1 109 1 2025-11-20 14:07:17.748 00:00:00.000 UDP 28.104.0.1:37560 -> 198.28.0.2:53 1 64 1 2025-11-20 14:07:17.748 00:00:00.000 UDP 28.104.0.1:32881 -> 198.28.0.2:53 1 64 1 2025-11-20 14:07:17.761 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32881 1 109 1 2025-11-20 14:07:17.760 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37560 1 80 1 2025-11-20 14:04:00.920 00:05:08.538 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 14:08:18.272 00:00:00.000 UDP 28.104.0.1:43160 -> 198.28.0.2:53 1 64 1 2025-11-20 14:08:18.272 00:00:00.000 UDP 28.104.0.1:52850 -> 198.28.0.2:53 1 64 1 2025-11-20 14:08:18.282 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43160 1 109 1 2025-11-20 14:08:18.282 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52850 1 80 1 2025-11-20 14:04:09.918 00:05:51.063 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 14:09:18.578 00:00:00.000 UDP 28.104.0.1:50782 -> 198.28.0.2:53 1 64 1 2025-11-20 14:09:18.578 00:00:00.000 UDP 28.104.0.1:59295 -> 198.28.0.2:53 1 64 1 2025-11-20 14:09:18.588 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59295 1 109 1 2025-11-20 14:09:18.588 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50782 1 80 1 2025-11-20 14:05:09.927 00:05:51.000 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 14:06:09.447 00:05:00.648 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 14:06:00.932 00:05:08.516 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 14:10:20.571 00:00:00.010 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 14:10:18.887 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58666 1 109 1 2025-11-20 14:10:18.887 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46997 1 80 1 2025-11-20 14:10:18.877 00:00:00.000 UDP 28.104.0.1:58666 -> 198.28.0.2:53 1 64 1 2025-11-20 14:10:18.877 00:00:00.000 UDP 28.104.0.1:46997 -> 198.28.0.2:53 1 64 1 2025-11-20 14:06:38.658 00:05:10.013 OSPF 28.0.2.1:0 -> 224.0.0.5:0 47 3504 1 2025-11-20 14:06:09.446 00:06:00.243 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 14:11:19.196 00:00:00.000 UDP 28.104.0.1:56875 -> 198.28.0.2:53 1 64 1 2025-11-20 14:11:19.196 00:00:00.000 UDP 28.104.0.1:57650 -> 198.28.0.2:53 1 64 1 2025-11-20 14:11:19.205 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57650 1 109 1 2025-11-20 14:11:19.205 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56875 1 80 1 2025-11-20 14:12:19.498 00:00:00.000 UDP 28.104.0.1:60494 -> 198.28.0.2:53 1 64 1 2025-11-20 14:12:19.497 00:00:00.000 UDP 28.104.0.1:39427 -> 198.28.0.2:53 1 64 1 2025-11-20 14:12:19.510 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60494 1 80 1 2025-11-20 14:12:19.510 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39427 1 109 1 2025-11-20 14:13:19.752 00:00:00.000 UDP 28.104.0.1:43068 -> 198.28.0.2:53 1 64 1 2025-11-20 14:13:19.753 00:00:00.000 UDP 28.104.0.1:49796 -> 198.28.0.2:53 1 64 1 2025-11-20 14:13:19.763 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43068 1 109 1 2025-11-20 14:13:19.763 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49796 1 80 1 2025-11-20 14:10:00.930 00:05:08.528 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 14:14:20.055 00:00:00.000 UDP 28.104.0.1:47278 -> 198.28.0.2:53 1 64 1 2025-11-20 14:14:20.055 00:00:00.000 UDP 28.104.0.1:53195 -> 198.28.0.2:53 1 64 1 2025-11-20 14:14:20.065 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53195 1 109 1 2025-11-20 14:14:20.065 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47278 1 80 1 2025-11-20 14:10:09.918 00:05:51.061 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 14:15:20.544 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 14:15:34.556 00:00:00.000 UDP 28.104.0.1:53548 -> 198.28.0.2:53 1 64 1 2025-11-20 14:15:34.556 00:00:00.000 UDP 28.104.0.1:47866 -> 198.28.0.2:53 1 64 1 2025-11-20 14:15:34.566 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47866 1 109 1 2025-11-20 14:15:34.566 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53548 1 80 1 2025-11-20 14:11:09.928 00:05:51.001 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 14:11:58.673 00:05:10.011 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2608 1 2025-11-20 14:12:09.448 00:05:00.648 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 14:12:00.938 00:05:08.510 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 14:16:34.823 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39983 1 80 1 2025-11-20 14:16:34.823 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43708 1 109 1 2025-11-20 14:16:34.812 00:00:00.000 UDP 28.104.0.1:43708 -> 198.28.0.2:53 1 64 1 2025-11-20 14:16:34.812 00:00:00.000 UDP 28.104.0.1:39983 -> 198.28.0.2:53 1 64 1 2025-11-20 14:17:35.074 00:00:00.000 UDP 28.104.0.1:40940 -> 198.28.0.2:53 1 64 1 2025-11-20 14:17:35.074 00:00:00.000 UDP 28.104.0.1:43538 -> 198.28.0.2:53 1 64 1 2025-11-20 14:17:35.085 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43538 1 109 1 2025-11-20 14:17:35.084 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40940 1 80 1 2025-11-20 14:13:09.448 00:06:00.245 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 14:18:35.367 00:00:00.000 UDP 28.104.0.1:40113 -> 198.28.0.2:53 1 64 1 2025-11-20 14:18:35.367 00:00:00.000 UDP 28.104.0.1:57799 -> 198.28.0.2:53 1 64 1 2025-11-20 14:18:35.377 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57799 1 80 1 2025-11-20 14:18:35.377 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40113 1 109 1 2025-11-20 14:19:35.662 00:00:00.000 UDP 28.104.0.1:48190 -> 198.28.0.2:53 1 64 1 2025-11-20 14:19:35.662 00:00:00.000 UDP 28.104.0.1:47617 -> 198.28.0.2:53 1 64 1 2025-11-20 14:19:35.673 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47617 1 80 1 2025-11-20 14:19:35.673 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48190 1 109 1 2025-11-20 14:16:00.929 00:05:08.530 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 14:20:20.731 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 14:20:35.994 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50708 1 109 1 2025-11-20 14:20:35.994 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41656 1 80 1 2025-11-20 14:20:35.984 00:00:00.000 UDP 28.104.0.1:50708 -> 198.28.0.2:53 1 64 1 2025-11-20 14:20:35.984 00:00:00.000 UDP 28.104.0.1:41656 -> 198.28.0.2:53 1 64 1 2025-11-20 14:16:09.919 00:05:51.062 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 14:17:18.684 00:05:10.012 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2604 1 2025-11-20 14:21:36.256 00:00:00.000 UDP 28.104.0.1:52972 -> 198.28.0.2:53 1 64 1 2025-11-20 14:21:36.256 00:00:00.000 UDP 28.104.0.1:42479 -> 198.28.0.2:53 1 64 1 2025-11-20 14:21:36.267 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42479 1 109 1 2025-11-20 14:21:36.266 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52972 1 80 1 2025-11-20 14:17:09.930 00:05:51.002 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 14:18:09.449 00:05:00.649 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 14:18:00.940 00:05:08.509 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 14:22:36.555 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39909 1 109 1 2025-11-20 14:22:36.556 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54011 1 80 1 2025-11-20 14:22:36.546 00:00:00.000 UDP 28.104.0.1:54011 -> 198.28.0.2:53 1 64 1 2025-11-20 14:22:36.546 00:00:00.000 UDP 28.104.0.1:39909 -> 198.28.0.2:53 1 64 1 2025-11-20 14:23:37.398 00:00:00.000 UDP 28.104.0.1:60240 -> 198.28.0.2:53 1 64 1 2025-11-20 14:23:37.398 00:00:00.000 UDP 28.104.0.1:40780 -> 198.28.0.2:53 1 64 1 2025-11-20 14:23:37.409 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60240 1 109 1 2025-11-20 14:23:37.409 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40780 1 80 1 2025-11-20 14:24:37.712 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34020 1 109 1 2025-11-20 14:24:37.712 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52634 1 80 1 2025-11-20 14:24:37.700 00:00:00.000 UDP 28.104.0.1:34020 -> 198.28.0.2:53 1 64 1 2025-11-20 14:24:37.700 00:00:00.000 UDP 28.104.0.1:52634 -> 198.28.0.2:53 1 64 1 2025-11-20 14:20:09.449 00:06:00.247 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 14:25:21.479 00:00:00.025 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 14:25:38.009 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38440 1 80 1 2025-11-20 14:25:38.008 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49883 1 109 1 2025-11-20 14:25:37.997 00:00:00.000 UDP 28.104.0.1:49883 -> 198.28.0.2:53 1 64 1 2025-11-20 14:25:37.997 00:00:00.000 UDP 28.104.0.1:38440 -> 198.28.0.2:53 1 64 1 2025-11-20 14:22:00.930 00:05:08.530 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 14:26:38.306 00:00:00.000 UDP 28.104.0.1:59504 -> 198.28.0.2:53 1 64 1 2025-11-20 14:26:38.306 00:00:00.000 UDP 28.104.0.1:35254 -> 198.28.0.2:53 1 64 1 2025-11-20 14:26:38.317 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59504 1 80 1 2025-11-20 14:26:38.317 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35254 1 109 1 2025-11-20 14:22:38.697 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2444 1 2025-11-20 14:22:09.920 00:05:51.062 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 14:27:38.610 00:00:00.000 UDP 28.104.0.1:43200 -> 198.28.0.2:53 1 64 1 2025-11-20 14:27:38.610 00:00:00.000 UDP 28.104.0.1:53582 -> 198.28.0.2:53 1 64 1 2025-11-20 14:27:38.622 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43200 1 80 1 2025-11-20 14:27:38.621 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53582 1 109 1 2025-11-20 14:23:09.931 00:05:51.001 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 14:24:09.450 00:05:00.650 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 14:24:00.942 00:05:08.509 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 14:28:38.908 00:00:00.000 UDP 28.104.0.1:59561 -> 198.28.0.2:53 1 64 1 2025-11-20 14:28:38.908 00:00:00.000 UDP 28.104.0.1:45329 -> 198.28.0.2:53 1 64 1 2025-11-20 14:28:38.919 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45329 1 80 1 2025-11-20 14:28:38.919 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59561 1 109 1 2025-11-20 14:29:39.217 00:00:00.000 UDP 28.104.0.1:33269 -> 198.28.0.2:53 1 64 1 2025-11-20 14:29:39.217 00:00:00.000 UDP 28.104.0.1:40590 -> 198.28.0.2:53 1 64 1 2025-11-20 14:29:39.227 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40590 1 109 1 2025-11-20 14:29:39.227 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33269 1 80 1 2025-11-20 14:30:21.033 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 14:30:39.526 00:00:00.000 UDP 28.104.0.1:35578 -> 198.28.0.2:53 1 64 1 2025-11-20 14:30:39.526 00:00:00.000 UDP 28.104.0.1:57343 -> 198.28.0.2:53 1 64 1 2025-11-20 14:30:39.538 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57343 1 80 1 2025-11-20 14:30:39.538 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35578 1 109 1 2025-11-20 14:31:39.814 00:00:00.000 UDP 28.104.0.1:37577 -> 198.28.0.2:53 1 64 1 2025-11-20 14:31:39.814 00:00:00.000 UDP 28.104.0.1:35831 -> 198.28.0.2:53 1 64 1 2025-11-20 14:31:39.826 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37577 1 80 1 2025-11-20 14:31:39.827 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35831 1 109 1 2025-11-20 14:27:09.450 00:06:00.248 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 14:28:00.931 00:05:08.530 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 14:27:58.706 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2448 1 2025-11-20 14:32:40.085 00:00:00.000 UDP 28.104.0.1:46086 -> 198.28.0.2:53 1 64 1 2025-11-20 14:32:40.085 00:00:00.000 UDP 28.104.0.1:35259 -> 198.28.0.2:53 1 64 1 2025-11-20 14:32:40.097 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35259 1 109 1 2025-11-20 14:32:40.097 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46086 1 80 1 2025-11-20 14:28:09.922 00:05:51.067 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 14:33:40.335 00:00:00.000 UDP 28.104.0.1:39029 -> 198.28.0.2:53 1 64 1 2025-11-20 14:33:40.335 00:00:00.000 UDP 28.104.0.1:57183 -> 198.28.0.2:53 1 64 1 2025-11-20 14:33:40.346 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39029 1 80 1 2025-11-20 14:33:40.346 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57183 1 109 1 2025-11-20 14:29:09.931 00:05:51.003 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 14:30:09.450 00:05:00.652 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 14:30:00.942 00:05:08.509 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 14:34:40.618 00:00:00.000 UDP 28.104.0.1:57838 -> 198.28.0.2:53 1 64 1 2025-11-20 14:34:40.619 00:00:00.000 UDP 28.104.0.1:56540 -> 198.28.0.2:53 1 64 1 2025-11-20 14:34:40.630 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56540 1 80 1 2025-11-20 14:34:40.630 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57838 1 109 1 2025-11-20 14:35:21.018 00:00:00.020 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 14:35:40.922 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44977 1 109 1 2025-11-20 14:35:40.922 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45477 1 80 1 2025-11-20 14:35:40.912 00:00:00.000 UDP 28.104.0.1:45477 -> 198.28.0.2:53 1 64 1 2025-11-20 14:35:40.912 00:00:00.000 UDP 28.104.0.1:44977 -> 198.28.0.2:53 1 64 1 2025-11-20 14:36:41.230 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35514 1 109 1 2025-11-20 14:36:41.230 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42186 1 80 1 2025-11-20 14:36:41.219 00:00:00.000 UDP 28.104.0.1:42186 -> 198.28.0.2:53 1 64 1 2025-11-20 14:36:41.219 00:00:00.000 UDP 28.104.0.1:35514 -> 198.28.0.2:53 1 64 1 2025-11-20 14:33:18.716 00:05:10.476 OSPF 28.0.2.1:0 -> 224.0.0.5:0 46 3468 1 2025-11-20 14:37:41.521 00:00:00.000 UDP 28.104.0.1:37668 -> 198.28.0.2:53 1 64 1 2025-11-20 14:37:41.521 00:00:00.000 UDP 28.104.0.1:41427 -> 198.28.0.2:53 1 64 1 2025-11-20 14:37:41.531 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37668 1 109 1 2025-11-20 14:37:41.531 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41427 1 80 1 2025-11-20 14:34:00.934 00:05:08.529 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 14:38:41.813 00:00:00.000 UDP 28.104.0.1:52222 -> 198.28.0.2:53 1 64 1 2025-11-20 14:38:41.813 00:00:00.000 UDP 28.104.0.1:49302 -> 198.28.0.2:53 1 64 1 2025-11-20 14:38:41.822 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52222 1 109 1 2025-11-20 14:38:41.822 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49302 1 80 1 2025-11-20 14:34:09.923 00:05:51.063 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 14:34:09.451 00:06:00.249 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 14:39:42.069 00:00:00.000 UDP 28.104.0.1:58724 -> 198.28.0.2:53 1 64 1 2025-11-20 14:39:42.069 00:00:00.000 UDP 28.104.0.1:56737 -> 198.28.0.2:53 1 64 1 2025-11-20 14:39:42.080 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58724 1 109 1 2025-11-20 14:39:42.080 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56737 1 80 1 2025-11-20 14:35:09.933 00:05:51.004 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 14:36:09.452 00:05:00.651 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 14:36:00.944 00:05:08.509 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 14:40:21.298 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 14:40:42.360 00:00:00.000 UDP 28.104.0.1:44735 -> 198.28.0.2:53 1 64 1 2025-11-20 14:40:42.361 00:00:00.000 UDP 28.104.0.1:52397 -> 198.28.0.2:53 1 64 1 2025-11-20 14:40:42.370 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52397 1 80 1 2025-11-20 14:40:42.370 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44735 1 109 1 2025-11-20 14:41:42.621 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39111 1 109 1 2025-11-20 14:41:42.620 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39144 1 80 1 2025-11-20 14:41:42.610 00:00:00.000 UDP 28.104.0.1:39111 -> 198.28.0.2:53 1 64 1 2025-11-20 14:41:42.610 00:00:00.000 UDP 28.104.0.1:39144 -> 198.28.0.2:53 1 64 1 2025-11-20 14:42:42.864 00:00:00.000 UDP 28.104.0.1:54776 -> 198.28.0.2:53 1 64 1 2025-11-20 14:42:42.864 00:00:00.000 UDP 28.104.0.1:56998 -> 198.28.0.2:53 1 64 1 2025-11-20 14:42:42.875 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56998 1 109 1 2025-11-20 14:42:42.875 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54776 1 80 1 2025-11-20 14:38:38.721 00:05:10.002 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2816 1 2025-11-20 14:43:43.178 00:00:00.000 UDP 28.104.0.1:37622 -> 198.28.0.2:53 1 64 1 2025-11-20 14:43:43.178 00:00:00.000 UDP 28.104.0.1:36429 -> 198.28.0.2:53 1 64 1 2025-11-20 14:43:43.189 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37622 1 80 1 2025-11-20 14:43:43.189 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36429 1 109 1 2025-11-20 14:40:00.935 00:05:08.528 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 14:44:43.489 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56228 1 80 1 2025-11-20 14:44:43.489 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55592 1 109 1 2025-11-20 14:44:43.479 00:00:00.000 UDP 28.104.0.1:55592 -> 198.28.0.2:53 1 64 1 2025-11-20 14:44:43.479 00:00:00.000 UDP 28.104.0.1:56228 -> 198.28.0.2:53 1 64 1 2025-11-20 14:40:09.924 00:05:51.063 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 14:45:21.300 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 14:45:43.776 00:00:00.000 UDP 28.104.0.1:59922 -> 198.28.0.2:53 1 64 1 2025-11-20 14:45:43.775 00:00:00.000 UDP 28.104.0.1:40987 -> 198.28.0.2:53 1 64 1 2025-11-20 14:45:43.786 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59922 1 80 1 2025-11-20 14:45:43.786 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40987 1 109 1 2025-11-20 14:41:09.934 00:05:51.002 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 14:42:09.453 00:05:00.655 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 14:42:00.945 00:05:08.509 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 14:41:09.452 00:06:00.248 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 14:46:44.080 00:00:00.000 UDP 28.104.0.1:33459 -> 198.28.0.2:53 1 64 1 2025-11-20 14:46:44.079 00:00:00.000 UDP 28.104.0.1:42768 -> 198.28.0.2:53 1 64 1 2025-11-20 14:46:44.090 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33459 1 109 1 2025-11-20 14:46:44.090 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42768 1 80 1 2025-11-20 14:47:44.380 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40594 1 109 1 2025-11-20 14:47:44.381 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51102 1 80 1 2025-11-20 14:47:44.372 00:00:00.000 UDP 28.104.0.1:40594 -> 198.28.0.2:53 1 64 1 2025-11-20 14:47:44.372 00:00:00.000 UDP 28.104.0.1:51102 -> 198.28.0.2:53 1 64 1 2025-11-20 14:43:58.724 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2648 1 2025-11-20 14:48:44.693 00:00:00.000 UDP 28.104.0.1:56503 -> 198.28.0.2:53 1 64 1 2025-11-20 14:48:44.693 00:00:00.000 UDP 28.104.0.1:33368 -> 198.28.0.2:53 1 64 1 2025-11-20 14:48:44.704 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56503 1 109 1 2025-11-20 14:48:44.704 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33368 1 80 1 2025-11-20 14:49:44.989 00:00:00.000 UDP 28.104.0.1:51350 -> 198.28.0.2:53 1 64 1 2025-11-20 14:49:44.989 00:00:00.000 UDP 28.104.0.1:32808 -> 198.28.0.2:53 1 64 1 2025-11-20 14:49:45.000 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32808 1 80 1 2025-11-20 14:49:45.000 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51350 1 109 1 2025-11-20 14:46:00.935 00:05:08.532 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 14:50:21.486 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 14:50:45.299 00:00:00.000 UDP 28.104.0.1:48561 -> 198.28.0.2:53 1 64 1 2025-11-20 14:50:45.299 00:00:00.000 UDP 28.104.0.1:39353 -> 198.28.0.2:53 1 64 1 2025-11-20 14:50:45.309 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48561 1 109 1 2025-11-20 14:50:45.309 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39353 1 80 1 2025-11-20 14:46:09.924 00:05:51.063 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 14:51:45.597 00:00:00.000 UDP 28.104.0.1:38059 -> 198.28.0.2:53 1 64 1 2025-11-20 14:51:45.596 00:00:00.000 UDP 28.104.0.1:59353 -> 198.28.0.2:53 1 64 1 2025-11-20 14:51:45.607 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38059 1 109 1 2025-11-20 14:51:45.606 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59353 1 80 1 2025-11-20 14:47:09.935 00:05:51.003 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 14:48:09.457 00:05:00.654 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 14:48:00.947 00:05:08.511 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 14:52:45.912 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54666 1 109 1 2025-11-20 14:52:45.912 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51230 1 80 1 2025-11-20 14:52:45.902 00:00:00.000 UDP 28.104.0.1:51230 -> 198.28.0.2:53 1 64 1 2025-11-20 14:52:45.902 00:00:00.000 UDP 28.104.0.1:54666 -> 198.28.0.2:53 1 64 1 2025-11-20 14:48:09.456 00:06:00.248 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 14:49:18.730 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2240 1 2025-11-20 14:53:46.202 00:00:00.000 UDP 28.104.0.1:36961 -> 198.28.0.2:53 1 64 1 2025-11-20 14:53:46.202 00:00:00.000 UDP 28.104.0.1:44626 -> 198.28.0.2:53 1 64 1 2025-11-20 14:53:46.212 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44626 1 80 1 2025-11-20 14:53:46.212 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36961 1 109 1 2025-11-20 14:54:46.503 00:00:00.000 UDP 28.104.0.1:51081 -> 198.28.0.2:53 1 64 1 2025-11-20 14:54:46.503 00:00:00.000 UDP 28.104.0.1:48157 -> 198.28.0.2:53 1 64 1 2025-11-20 14:54:46.514 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51081 1 109 1 2025-11-20 14:54:46.514 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48157 1 80 1 2025-11-20 14:55:21.577 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 14:55:46.764 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52073 1 80 1 2025-11-20 14:55:46.764 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47468 1 109 1 2025-11-20 14:55:46.755 00:00:00.000 UDP 28.104.0.1:52073 -> 198.28.0.2:53 1 64 1 2025-11-20 14:55:46.755 00:00:00.000 UDP 28.104.0.1:47468 -> 198.28.0.2:53 1 64 1 2025-11-20 14:52:00.937 00:05:08.530 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 14:56:47.059 00:00:00.000 UDP 28.104.0.1:43178 -> 198.28.0.2:53 1 64 1 2025-11-20 14:56:47.060 00:00:00.000 UDP 28.104.0.1:51984 -> 198.28.0.2:53 1 64 1 2025-11-20 14:56:47.071 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51984 1 109 1 2025-11-20 14:56:47.070 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43178 1 80 1 2025-11-20 14:52:09.926 00:05:51.064 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 14:57:47.358 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40017 1 80 1 2025-11-20 14:57:47.358 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44232 1 109 1 2025-11-20 14:57:47.348 00:00:00.000 UDP 28.104.0.1:40017 -> 198.28.0.2:53 1 64 1 2025-11-20 14:57:47.348 00:00:00.000 UDP 28.104.0.1:44232 -> 198.28.0.2:53 1 64 1 2025-11-20 14:53:09.935 00:05:51.004 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 14:54:09.459 00:05:00.654 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 14:54:00.949 00:05:08.511 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 14:54:38.736 00:05:00.747 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2376 1 2025-11-20 14:58:47.647 00:00:00.000 UDP 28.104.0.1:51483 -> 198.28.0.2:53 1 64 1 2025-11-20 14:58:47.647 00:00:00.000 UDP 28.104.0.1:50952 -> 198.28.0.2:53 1 64 1 2025-11-20 14:58:47.658 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50952 1 80 1 2025-11-20 14:58:47.658 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51483 1 109 1 Summary: total flows: 322, total bytes: 98224, total packets: 1445, avg bps: 205, avg pps: 0, avg bpp: 67 Time window: 2025-11-20 13:55:58 - 2025-11-20 14:59:39 Total flows processed: 322, passed: 322, Blocks skipped: 0, Bytes read: 33552 Sys: 0.0031s User: 0.0031s Wall: 0.0024s flows/second: 133719.4 Runtime: 0.0024s