Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 17:58:53.907 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44522 1 80 1 2025-11-20 17:58:53.907 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53872 1 109 1 2025-11-20 17:58:53.897 00:00:00.000 UDP 28.104.0.1:53872 -> 198.28.0.2:53 1 64 1 2025-11-20 17:58:53.897 00:00:00.000 UDP 28.104.0.1:44522 -> 198.28.0.2:53 1 64 1 2025-11-20 17:54:49.001 00:05:10.319 OSPF 28.0.2.1:0 -> 224.0.0.5:0 46 3372 1 2025-11-20 17:59:54.209 00:00:00.000 UDP 28.104.0.1:49964 -> 198.28.0.2:53 1 64 1 2025-11-20 17:59:54.209 00:00:00.000 UDP 28.104.0.1:49726 -> 198.28.0.2:53 1 64 1 2025-11-20 17:59:54.220 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49964 1 109 1 2025-11-20 17:59:54.220 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49726 1 80 1 2025-11-20 18:00:25.455 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 18:00:54.503 00:00:00.000 UDP 28.104.0.1:44480 -> 198.28.0.2:53 1 64 1 2025-11-20 18:00:54.503 00:00:00.000 UDP 28.104.0.1:45924 -> 198.28.0.2:53 1 64 1 2025-11-20 18:00:54.512 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44480 1 80 1 2025-11-20 18:00:54.512 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45924 1 109 1 2025-11-20 18:01:54.792 00:00:00.000 UDP 28.104.0.1:48978 -> 198.28.0.2:53 1 64 1 2025-11-20 18:01:54.792 00:00:00.000 UDP 28.104.0.1:58461 -> 198.28.0.2:53 1 64 1 2025-11-20 18:01:54.803 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58461 1 80 1 2025-11-20 18:01:54.803 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48978 1 109 1 2025-11-20 17:57:09.517 00:05:51.570 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 17:57:09.500 00:06:00.271 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 18:02:55.092 00:00:00.000 UDP 28.104.0.1:55436 -> 198.28.0.2:53 1 64 1 2025-11-20 18:02:55.093 00:00:00.000 UDP 28.104.0.1:37571 -> 198.28.0.2:53 1 64 1 2025-11-20 18:02:55.102 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37571 1 109 1 2025-11-20 18:02:55.102 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55436 1 80 1 2025-11-20 17:58:09.983 00:05:51.153 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 17:59:09.994 00:05:00.026 TCP 28.151.0.1:39145 -> 28.156.0.1:179 11 667 1 2025-11-20 18:03:55.389 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53100 1 109 1 2025-11-20 18:03:55.389 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43234 1 80 1 2025-11-20 18:03:55.378 00:00:00.000 UDP 28.104.0.1:53100 -> 198.28.0.2:53 1 64 1 2025-11-20 18:03:55.378 00:00:00.000 UDP 28.104.0.1:43234 -> 198.28.0.2:53 1 64 1 2025-11-20 17:59:09.500 00:05:51.597 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 18:00:09.501 00:05:00.668 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 18:00:09.043 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2608 1 2025-11-20 18:04:55.670 00:00:00.000 UDP 28.104.0.1:43739 -> 198.28.0.2:53 1 64 1 2025-11-20 18:04:55.669 00:00:00.000 UDP 28.104.0.1:44880 -> 198.28.0.2:53 1 64 1 2025-11-20 18:04:55.680 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43739 1 109 1 2025-11-20 18:04:55.679 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44880 1 80 1 2025-11-20 18:05:25.338 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 18:05:55.975 00:00:00.000 UDP 28.104.0.1:43675 -> 198.28.0.2:53 1 64 1 2025-11-20 18:05:55.974 00:00:00.000 UDP 28.104.0.1:44746 -> 198.28.0.2:53 1 64 1 2025-11-20 18:05:55.985 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43675 1 80 1 2025-11-20 18:05:55.985 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44746 1 109 1 2025-11-20 18:06:56.275 00:00:00.000 UDP 28.104.0.1:58625 -> 198.28.0.2:53 1 64 1 2025-11-20 18:06:56.275 00:00:00.000 UDP 28.104.0.1:33607 -> 198.28.0.2:53 1 64 1 2025-11-20 18:06:56.288 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58625 1 109 1 2025-11-20 18:06:56.288 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33607 1 80 1 2025-11-20 18:07:56.643 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50810 1 80 1 2025-11-20 18:07:56.643 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40852 1 109 1 2025-11-20 18:07:56.632 00:00:00.000 UDP 28.104.0.1:50810 -> 198.28.0.2:53 1 64 1 2025-11-20 18:07:56.632 00:00:00.000 UDP 28.104.0.1:40852 -> 198.28.0.2:53 1 64 1 2025-11-20 18:03:09.513 00:05:51.576 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 18:08:56.940 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34888 1 109 1 2025-11-20 18:08:56.940 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37819 1 80 1 2025-11-20 18:08:56.930 00:00:00.000 UDP 28.104.0.1:37819 -> 198.28.0.2:53 1 64 1 2025-11-20 18:08:56.930 00:00:00.000 UDP 28.104.0.1:34888 -> 198.28.0.2:53 1 64 1 2025-11-20 18:04:09.987 00:05:51.153 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 18:05:01.086 00:05:08.910 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 18:04:09.502 00:06:00.269 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 18:05:29.051 00:05:10.011 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2648 1 2025-11-20 18:09:57.208 00:00:00.000 UDP 28.104.0.1:57394 -> 198.28.0.2:53 1 64 1 2025-11-20 18:09:57.207 00:00:00.000 UDP 28.104.0.1:41156 -> 198.28.0.2:53 1 64 1 2025-11-20 18:05:09.502 00:05:51.596 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 18:09:57.219 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57394 1 109 1 2025-11-20 18:09:57.219 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41156 1 80 1 2025-11-20 18:06:09.504 00:05:00.667 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 18:10:25.348 00:00:00.020 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 18:10:57.762 00:00:00.000 UDP 28.104.0.1:36507 -> 198.28.0.2:53 1 64 1 2025-11-20 18:10:57.762 00:00:00.000 UDP 28.104.0.1:47312 -> 198.28.0.2:53 1 64 1 2025-11-20 18:10:57.774 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36507 1 109 1 2025-11-20 18:10:57.774 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47312 1 80 1 2025-11-20 18:11:58.088 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48508 1 109 1 2025-11-20 18:11:58.088 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45965 1 80 1 2025-11-20 18:11:58.078 00:00:00.000 UDP 28.104.0.1:45965 -> 198.28.0.2:53 1 64 1 2025-11-20 18:11:58.079 00:00:00.000 UDP 28.104.0.1:48508 -> 198.28.0.2:53 1 64 1 2025-11-20 18:12:58.378 00:00:00.000 UDP 28.104.0.1:34326 -> 198.28.0.2:53 1 64 1 2025-11-20 18:12:58.378 00:00:00.000 UDP 28.104.0.1:53959 -> 198.28.0.2:53 1 64 1 2025-11-20 18:12:58.418 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34326 1 80 1 2025-11-20 18:12:58.388 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53959 1 109 1 2025-11-20 18:09:09.514 00:05:51.577 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 18:13:58.768 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52847 1 80 1 2025-11-20 18:13:58.768 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38634 1 109 1 2025-11-20 18:13:58.756 00:00:00.000 UDP 28.104.0.1:38634 -> 198.28.0.2:53 1 64 1 2025-11-20 18:13:58.756 00:00:00.000 UDP 28.104.0.1:52847 -> 198.28.0.2:53 1 64 1 2025-11-20 18:14:59.082 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37977 1 80 1 2025-11-20 18:10:49.062 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2444 1 2025-11-20 18:14:59.082 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49856 1 109 1 2025-11-20 18:10:09.987 00:05:51.154 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 18:14:59.072 00:00:00.000 UDP 28.104.0.1:49856 -> 198.28.0.2:53 1 64 1 2025-11-20 18:14:59.072 00:00:00.000 UDP 28.104.0.1:37977 -> 198.28.0.2:53 1 64 1 2025-11-20 18:11:01.088 00:05:08.912 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 18:15:25.591 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 18:15:59.334 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55234 1 109 1 2025-11-20 18:15:59.334 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34401 1 80 1 2025-11-20 18:15:59.323 00:00:00.000 UDP 28.104.0.1:55234 -> 198.28.0.2:53 1 64 1 2025-11-20 18:15:59.323 00:00:00.000 UDP 28.104.0.1:34401 -> 198.28.0.2:53 1 64 1 2025-11-20 18:11:09.502 00:05:51.602 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 18:12:09.503 00:05:00.668 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 18:11:09.502 00:06:00.271 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 18:16:59.617 00:00:00.000 UDP 28.104.0.1:35427 -> 198.28.0.2:53 1 64 1 2025-11-20 18:16:59.616 00:00:00.000 UDP 28.104.0.1:54643 -> 198.28.0.2:53 1 64 1 2025-11-20 18:16:59.627 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54643 1 109 1 2025-11-20 18:16:59.627 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35427 1 80 1 2025-11-20 18:17:59.875 00:00:00.000 UDP 28.104.0.1:47695 -> 198.28.0.2:53 1 64 1 2025-11-20 18:17:59.875 00:00:00.000 UDP 28.104.0.1:33265 -> 198.28.0.2:53 1 64 1 2025-11-20 18:17:59.885 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33265 1 80 1 2025-11-20 18:17:59.885 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47695 1 109 1 2025-11-20 18:19:00.155 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56178 1 109 1 2025-11-20 18:19:00.155 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56235 1 80 1 2025-11-20 18:19:00.147 00:00:00.000 UDP 28.104.0.1:56178 -> 198.28.0.2:53 1 64 1 2025-11-20 18:19:00.147 00:00:00.000 UDP 28.104.0.1:56235 -> 198.28.0.2:53 1 64 1 2025-11-20 18:20:00.444 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40985 1 80 1 2025-11-20 18:15:09.513 00:05:51.582 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 18:20:00.444 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55586 1 109 1 2025-11-20 18:20:00.433 00:00:00.000 UDP 28.104.0.1:40985 -> 198.28.0.2:53 1 64 1 2025-11-20 18:20:00.434 00:00:00.000 UDP 28.104.0.1:55586 -> 198.28.0.2:53 1 64 1 2025-11-20 18:16:09.067 00:05:10.011 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2448 1 2025-11-20 18:20:25.586 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 18:21:01.423 00:00:00.000 UDP 28.104.0.1:42474 -> 198.28.0.2:53 1 64 1 2025-11-20 18:16:09.991 00:05:51.156 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 18:21:01.423 00:00:00.000 UDP 28.104.0.1:39030 -> 198.28.0.2:53 1 64 1 2025-11-20 18:21:01.434 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39030 1 80 1 2025-11-20 18:21:01.434 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42474 1 109 1 2025-11-20 18:17:01.095 00:05:08.906 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 18:22:01.726 00:00:00.000 UDP 28.104.0.1:51342 -> 198.28.0.2:53 1 64 1 2025-11-20 18:17:09.504 00:05:51.602 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 18:22:01.726 00:00:00.000 UDP 28.104.0.1:53977 -> 198.28.0.2:53 1 64 1 2025-11-20 18:22:01.735 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51342 1 80 1 2025-11-20 18:22:01.735 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53977 1 109 1 2025-11-20 18:18:09.504 00:05:00.672 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 18:23:02.062 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50215 1 80 1 2025-11-20 18:23:02.062 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58388 1 109 1 2025-11-20 18:23:02.053 00:00:00.000 UDP 28.104.0.1:50215 -> 198.28.0.2:53 1 64 1 2025-11-20 18:23:02.053 00:00:00.000 UDP 28.104.0.1:58388 -> 198.28.0.2:53 1 64 1 2025-11-20 18:18:09.504 00:06:00.271 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 18:24:02.309 00:00:00.000 UDP 28.104.0.1:60697 -> 198.28.0.2:53 1 64 1 2025-11-20 18:24:02.309 00:00:00.000 UDP 28.104.0.1:54740 -> 198.28.0.2:53 1 64 1 2025-11-20 18:24:02.317 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60697 1 80 1 2025-11-20 18:24:02.317 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54740 1 109 1 2025-11-20 18:25:04.461 00:00:00.000 UDP 28.104.0.1:60897 -> 198.28.0.2:53 1 64 1 2025-11-20 18:25:04.461 00:00:00.000 UDP 28.104.0.1:55713 -> 198.28.0.2:53 1 64 1 2025-11-20 18:25:04.472 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55713 1 80 1 2025-11-20 18:25:04.472 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60897 1 109 1 2025-11-20 18:25:25.865 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 18:21:29.078 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 44 3228 1 2025-11-20 18:21:09.514 00:05:51.582 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 18:26:04.707 00:00:00.000 UDP 28.104.0.1:41101 -> 198.28.0.2:53 1 64 1 2025-11-20 18:26:04.707 00:00:00.000 UDP 28.104.0.1:54283 -> 198.28.0.2:53 1 64 1 2025-11-20 18:26:04.716 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41101 1 80 1 2025-11-20 18:26:04.716 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54283 1 109 1 2025-11-20 18:22:09.990 00:05:51.156 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 18:27:05.003 00:00:00.000 UDP 28.104.0.1:49853 -> 198.28.0.2:53 1 64 1 2025-11-20 18:27:05.003 00:00:00.000 UDP 28.104.0.1:56650 -> 198.28.0.2:53 1 64 1 2025-11-20 18:27:05.016 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56650 1 109 1 2025-11-20 18:27:05.015 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49853 1 80 1 2025-11-20 18:23:01.095 00:05:08.906 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 18:23:09.504 00:05:51.603 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 18:28:05.287 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37964 1 80 1 2025-11-20 18:28:05.287 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35822 1 109 1 2025-11-20 18:28:05.276 00:00:00.000 UDP 28.104.0.1:37964 -> 198.28.0.2:53 1 64 1 2025-11-20 18:28:05.276 00:00:00.000 UDP 28.104.0.1:35822 -> 198.28.0.2:53 1 64 1 2025-11-20 18:24:09.505 00:05:00.672 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 18:29:05.580 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33692 1 80 1 2025-11-20 18:29:05.580 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58138 1 109 1 2025-11-20 18:29:05.570 00:00:00.000 UDP 28.104.0.1:58138 -> 198.28.0.2:53 1 64 1 2025-11-20 18:29:05.570 00:00:00.000 UDP 28.104.0.1:33692 -> 198.28.0.2:53 1 64 1 2025-11-20 18:30:05.862 00:00:00.000 UDP 28.104.0.1:52669 -> 198.28.0.2:53 1 64 1 2025-11-20 18:30:05.862 00:00:00.000 UDP 28.104.0.1:46421 -> 198.28.0.2:53 1 64 1 2025-11-20 18:30:05.871 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46421 1 109 1 2025-11-20 18:30:05.871 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52669 1 80 1 2025-11-20 18:25:09.504 00:06:00.271 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 18:30:25.891 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 18:26:49.082 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 3032 1 2025-11-20 18:31:06.207 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48127 1 109 1 2025-11-20 18:31:06.207 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51879 1 80 1 2025-11-20 18:31:06.197 00:00:00.000 UDP 28.104.0.1:48127 -> 198.28.0.2:53 1 64 1 2025-11-20 18:31:06.197 00:00:00.000 UDP 28.104.0.1:51879 -> 198.28.0.2:53 1 64 1 2025-11-20 18:27:09.515 00:05:51.582 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 18:32:06.505 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39630 1 109 1 2025-11-20 18:32:06.505 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36726 1 80 1 2025-11-20 18:32:06.495 00:00:00.000 UDP 28.104.0.1:39630 -> 198.28.0.2:53 1 64 1 2025-11-20 18:32:06.495 00:00:00.000 UDP 28.104.0.1:36726 -> 198.28.0.2:53 1 64 1 2025-11-20 18:28:09.990 00:05:51.157 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 18:33:06.808 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35612 1 80 1 2025-11-20 18:33:06.807 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60313 1 109 1 2025-11-20 18:33:06.796 00:00:00.000 UDP 28.104.0.1:35612 -> 198.28.0.2:53 1 64 1 2025-11-20 18:33:06.796 00:00:00.000 UDP 28.104.0.1:60313 -> 198.28.0.2:53 1 64 1 2025-11-20 18:29:01.097 00:05:08.910 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 18:29:09.505 00:05:51.602 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 18:34:07.113 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59892 1 80 1 2025-11-20 18:34:07.113 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54231 1 109 1 2025-11-20 18:30:09.506 00:05:00.671 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 18:34:07.102 00:00:00.000 UDP 28.104.0.1:54231 -> 198.28.0.2:53 1 64 1 2025-11-20 18:34:07.102 00:00:00.000 UDP 28.104.0.1:59892 -> 198.28.0.2:53 1 64 1 2025-11-20 18:35:07.402 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46528 1 80 1 2025-11-20 18:35:07.403 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45849 1 109 1 2025-11-20 18:35:07.391 00:00:00.000 UDP 28.104.0.1:45849 -> 198.28.0.2:53 1 64 1 2025-11-20 18:35:07.391 00:00:00.000 UDP 28.104.0.1:46528 -> 198.28.0.2:53 1 64 1 2025-11-20 18:35:26.069 00:00:00.044 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 18:36:07.688 00:00:00.000 UDP 28.104.0.1:36761 -> 198.28.0.2:53 1 64 1 2025-11-20 18:36:07.688 00:00:00.000 UDP 28.104.0.1:47123 -> 198.28.0.2:53 1 64 1 2025-11-20 18:36:07.697 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47123 1 109 1 2025-11-20 18:36:07.697 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36761 1 80 1 2025-11-20 18:32:09.087 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2520 1 2025-11-20 18:37:07.996 00:00:00.000 UDP 28.104.0.1:36730 -> 198.28.0.2:53 1 64 1 2025-11-20 18:32:09.506 00:06:00.271 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 18:37:07.996 00:00:00.000 UDP 28.104.0.1:57854 -> 198.28.0.2:53 1 64 1 2025-11-20 18:37:08.008 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57854 1 109 1 2025-11-20 18:37:08.008 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36730 1 80 1 2025-11-20 18:33:09.516 00:05:51.581 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 18:38:08.741 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48789 1 80 1 2025-11-20 18:38:08.742 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52603 1 109 1 2025-11-20 18:38:08.733 00:00:00.000 UDP 28.104.0.1:48789 -> 198.28.0.2:53 1 64 1 2025-11-20 18:38:08.732 00:00:00.000 UDP 28.104.0.1:52603 -> 198.28.0.2:53 1 64 1 2025-11-20 18:34:09.996 00:05:51.152 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 18:39:09.054 00:00:00.000 UDP 28.104.0.1:32920 -> 198.28.0.2:53 1 64 1 2025-11-20 18:39:09.054 00:00:00.000 UDP 28.104.0.1:39749 -> 198.28.0.2:53 1 64 1 2025-11-20 18:35:01.097 00:05:08.912 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 18:39:09.065 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32920 1 109 1 2025-11-20 18:39:09.064 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39749 1 80 1 2025-11-20 18:35:09.507 00:05:51.601 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 18:40:09.348 00:00:00.000 UDP 28.104.0.1:45493 -> 198.28.0.2:53 1 64 1 2025-11-20 18:40:09.348 00:00:00.000 UDP 28.104.0.1:58405 -> 198.28.0.2:53 1 64 1 2025-11-20 18:36:09.507 00:05:00.676 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 18:40:09.357 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58405 1 109 1 2025-11-20 18:40:09.357 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45493 1 80 1 2025-11-20 18:40:26.156 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 18:41:09.638 00:00:00.000 UDP 28.104.0.1:38281 -> 198.28.0.2:53 1 64 1 2025-11-20 18:41:09.638 00:00:00.000 UDP 28.104.0.1:44787 -> 198.28.0.2:53 1 64 1 2025-11-20 18:41:09.648 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44787 1 80 1 2025-11-20 18:41:09.648 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38281 1 109 1 2025-11-20 18:37:29.092 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2240 1 2025-11-20 18:42:09.895 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56759 1 109 1 2025-11-20 18:42:09.895 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53275 1 80 1 2025-11-20 18:42:09.886 00:00:00.000 UDP 28.104.0.1:53275 -> 198.28.0.2:53 1 64 1 2025-11-20 18:42:09.886 00:00:00.000 UDP 28.104.0.1:56759 -> 198.28.0.2:53 1 64 1 2025-11-20 18:43:10.197 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49908 1 80 1 2025-11-20 18:43:10.197 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46486 1 109 1 2025-11-20 18:43:10.187 00:00:00.000 UDP 28.104.0.1:46486 -> 198.28.0.2:53 1 64 1 2025-11-20 18:43:10.187 00:00:00.000 UDP 28.104.0.1:49908 -> 198.28.0.2:53 1 64 1 2025-11-20 18:39:09.517 00:05:51.584 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 18:44:10.501 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49068 1 80 1 2025-11-20 18:44:10.501 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52037 1 109 1 2025-11-20 18:44:10.490 00:00:00.000 UDP 28.104.0.1:49068 -> 198.28.0.2:53 1 64 1 2025-11-20 18:39:09.506 00:06:00.274 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 18:44:10.490 00:00:00.000 UDP 28.104.0.1:52037 -> 198.28.0.2:53 1 64 1 2025-11-20 18:40:10.000 00:05:51.151 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 18:45:10.786 00:00:00.000 UDP 28.104.0.1:42804 -> 198.28.0.2:53 1 64 1 2025-11-20 18:45:10.786 00:00:00.000 UDP 28.104.0.1:42716 -> 198.28.0.2:53 1 64 1 2025-11-20 18:41:01.097 00:05:08.914 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 18:45:10.796 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42716 1 80 1 2025-11-20 18:45:10.796 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42804 1 109 1 2025-11-20 18:45:26.226 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 18:41:09.507 00:05:51.604 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 18:46:11.087 00:00:00.000 UDP 28.104.0.1:42187 -> 198.28.0.2:53 1 64 1 2025-11-20 18:42:09.507 00:05:00.676 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 18:46:11.087 00:00:00.000 UDP 28.104.0.1:45787 -> 198.28.0.2:53 1 64 1 2025-11-20 18:46:11.097 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42187 1 80 1 2025-11-20 18:46:11.097 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45787 1 109 1 2025-11-20 18:42:49.097 00:05:10.011 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2380 1 2025-11-20 18:47:11.418 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53824 1 109 1 2025-11-20 18:47:11.418 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53903 1 80 1 2025-11-20 18:47:11.409 00:00:00.000 UDP 28.104.0.1:53903 -> 198.28.0.2:53 1 64 1 2025-11-20 18:47:11.409 00:00:00.000 UDP 28.104.0.1:53824 -> 198.28.0.2:53 1 64 1 2025-11-20 18:48:11.710 00:00:00.000 UDP 28.104.0.1:44660 -> 198.28.0.2:53 1 64 1 2025-11-20 18:48:11.710 00:00:00.000 UDP 28.104.0.1:56868 -> 198.28.0.2:53 1 64 1 2025-11-20 18:48:11.719 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44660 1 109 1 2025-11-20 18:48:11.719 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56868 1 80 1 2025-11-20 18:49:12.055 00:00:00.000 UDP 28.104.0.1:59937 -> 198.28.0.2:53 1 64 1 2025-11-20 18:49:12.055 00:00:00.000 UDP 28.104.0.1:55946 -> 198.28.0.2:53 1 64 1 2025-11-20 18:49:12.065 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55946 1 80 1 2025-11-20 18:49:12.065 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59937 1 109 1 2025-11-20 18:45:09.518 00:05:51.589 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 18:50:12.363 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55258 1 109 1 2025-11-20 18:50:12.362 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48957 1 80 1 2025-11-20 18:50:12.351 00:00:00.000 UDP 28.104.0.1:48957 -> 198.28.0.2:53 1 64 1 2025-11-20 18:50:12.352 00:00:00.000 UDP 28.104.0.1:55258 -> 198.28.0.2:53 1 64 1 2025-11-20 18:50:26.274 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 18:46:10.001 00:05:51.157 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 18:47:01.101 00:05:08.911 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 18:46:09.509 00:06:00.278 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 18:51:12.658 00:00:00.000 UDP 28.104.0.1:46811 -> 198.28.0.2:53 1 64 1 2025-11-20 18:51:12.657 00:00:00.000 UDP 28.104.0.1:47244 -> 198.28.0.2:53 1 64 1 2025-11-20 18:51:12.668 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47244 1 80 1 2025-11-20 18:51:12.668 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46811 1 109 1 2025-11-20 18:47:09.512 00:05:51.607 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 18:48:09.511 00:05:00.673 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 18:52:12.959 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49073 1 109 1 2025-11-20 18:52:12.959 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57201 1 80 1 2025-11-20 18:52:12.950 00:00:00.000 UDP 28.104.0.1:49073 -> 198.28.0.2:53 1 64 1 2025-11-20 18:52:12.950 00:00:00.000 UDP 28.104.0.1:57201 -> 198.28.0.2:53 1 64 1 2025-11-20 18:48:09.107 00:05:10.022 OSPF 28.0.2.1:0 -> 224.0.0.5:0 46 3408 1 2025-11-20 18:53:13.218 00:00:00.000 UDP 28.104.0.1:48281 -> 198.28.0.2:53 1 64 1 2025-11-20 18:53:13.218 00:00:00.000 UDP 28.104.0.1:47383 -> 198.28.0.2:53 1 64 1 2025-11-20 18:53:13.228 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47383 1 80 1 2025-11-20 18:53:13.228 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48281 1 109 1 2025-11-20 18:54:13.471 00:00:00.000 UDP 28.104.0.1:56853 -> 198.28.0.2:53 1 64 1 2025-11-20 18:54:13.471 00:00:00.000 UDP 28.104.0.1:48119 -> 198.28.0.2:53 1 64 1 2025-11-20 18:54:13.482 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56853 1 80 1 2025-11-20 18:54:13.482 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48119 1 109 1 2025-11-20 18:55:13.769 00:00:00.000 UDP 28.104.0.1:49313 -> 198.28.0.2:53 1 64 1 2025-11-20 18:55:13.769 00:00:00.000 UDP 28.104.0.1:59793 -> 198.28.0.2:53 1 64 1 2025-11-20 18:55:13.779 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59793 1 109 1 2025-11-20 18:55:13.780 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49313 1 80 1 2025-11-20 18:55:26.664 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 18:51:09.525 00:05:51.586 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 18:56:14.081 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38696 1 80 1 2025-11-20 18:56:14.081 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50761 1 109 1 2025-11-20 18:56:14.071 00:00:00.000 UDP 28.104.0.1:50761 -> 198.28.0.2:53 1 64 1 2025-11-20 18:56:14.071 00:00:00.000 UDP 28.104.0.1:38696 -> 198.28.0.2:53 1 64 1 2025-11-20 18:52:10.002 00:05:51.158 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 18:53:01.108 00:05:08.907 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 18:57:14.359 00:00:00.000 UDP 28.104.0.1:56834 -> 198.28.0.2:53 1 64 1 2025-11-20 18:57:14.359 00:00:00.000 UDP 28.104.0.1:44569 -> 198.28.0.2:53 1 64 1 2025-11-20 18:57:14.369 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44569 1 80 1 2025-11-20 18:57:14.368 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56834 1 109 1 2025-11-20 18:53:29.130 00:05:10.140 OSPF 28.0.2.1:0 -> 224.0.0.5:0 44 3048 1 2025-11-20 18:53:09.514 00:05:51.605 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 18:54:09.514 00:05:00.671 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 18:53:09.514 00:06:00.274 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 18:58:14.868 00:00:00.000 UDP 28.104.0.1:51188 -> 198.28.0.2:53 1 64 1 2025-11-20 18:58:14.868 00:00:00.000 UDP 28.104.0.1:59955 -> 198.28.0.2:53 1 64 1 2025-11-20 18:58:14.878 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51188 1 109 1 2025-11-20 18:58:14.878 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59955 1 80 1 Summary: total flows: 323, total bytes: 99998, total packets: 1472, avg bps: 207, avg pps: 0, avg bpp: 67 Time window: 2025-11-20 17:54:49 - 2025-11-20 18:59:10 Total flows processed: 323, passed: 323, Blocks skipped: 0, Bytes read: 33656 Sys: 0.0049s User: 0.0029s Wall: 0.0035s flows/second: 92254.7 Runtime: 0.0035s