Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 18:59:15.143 00:00:00.000 UDP 28.104.0.1:37984 -> 198.28.0.2:53 1 64 1 2025-11-20 18:59:15.143 00:00:00.000 UDP 28.104.0.1:38799 -> 198.28.0.2:53 1 64 1 2025-11-20 18:59:15.155 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38799 1 80 1 2025-11-20 18:59:15.154 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37984 1 109 1 2025-11-20 19:00:15.437 00:00:00.000 UDP 28.104.0.1:44166 -> 198.28.0.2:53 1 64 1 2025-11-20 19:00:15.437 00:00:00.000 UDP 28.104.0.1:46665 -> 198.28.0.2:53 1 64 1 2025-11-20 19:00:15.449 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46665 1 109 1 2025-11-20 19:00:15.449 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44166 1 80 1 2025-11-20 19:00:26.533 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 19:01:15.741 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37346 1 109 1 2025-11-20 19:01:15.741 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33285 1 80 1 2025-11-20 19:01:15.731 00:00:00.000 UDP 28.104.0.1:37346 -> 198.28.0.2:53 1 64 1 2025-11-20 19:01:15.731 00:00:00.000 UDP 28.104.0.1:33285 -> 198.28.0.2:53 1 64 1 2025-11-20 18:57:09.526 00:05:51.584 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 19:02:16.063 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53781 1 109 1 2025-11-20 19:02:16.063 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53208 1 80 1 2025-11-20 19:02:16.052 00:00:00.000 UDP 28.104.0.1:53208 -> 198.28.0.2:53 1 64 1 2025-11-20 19:02:16.052 00:00:00.000 UDP 28.104.0.1:53781 -> 198.28.0.2:53 1 64 1 2025-11-20 18:58:49.138 00:05:10.012 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2752 1 2025-11-20 18:58:10.006 00:05:51.155 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 18:59:01.110 00:05:08.909 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 19:03:16.357 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38526 1 80 1 2025-11-20 19:03:16.357 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57920 1 109 1 2025-11-20 19:03:16.348 00:00:00.000 UDP 28.104.0.1:57920 -> 198.28.0.2:53 1 64 1 2025-11-20 19:03:16.348 00:00:00.000 UDP 28.104.0.1:38526 -> 198.28.0.2:53 1 64 1 2025-11-20 18:59:09.517 00:05:51.604 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 19:00:09.516 00:05:00.670 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 19:04:16.636 00:00:00.000 UDP 28.104.0.1:33764 -> 198.28.0.2:53 1 64 1 2025-11-20 19:04:16.636 00:00:00.000 UDP 28.104.0.1:60853 -> 198.28.0.2:53 1 64 1 2025-11-20 19:04:16.646 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60853 1 109 1 2025-11-20 19:04:16.646 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33764 1 80 1 2025-11-20 19:00:09.516 00:06:00.274 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 19:05:16.931 00:00:00.000 UDP 28.104.0.1:33390 -> 198.28.0.2:53 1 64 1 2025-11-20 19:05:16.932 00:00:00.000 UDP 28.104.0.1:33366 -> 198.28.0.2:53 1 64 1 2025-11-20 19:05:16.942 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33390 1 80 1 2025-11-20 19:05:16.942 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33366 1 109 1 2025-11-20 19:05:26.661 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 19:06:17.248 00:00:00.000 UDP 28.104.0.1:40659 -> 198.28.0.2:53 1 64 1 2025-11-20 19:06:17.247 00:00:00.000 UDP 28.104.0.1:54685 -> 198.28.0.2:53 1 64 1 2025-11-20 19:06:17.257 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54685 1 80 1 2025-11-20 19:06:17.257 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40659 1 109 1 2025-11-20 19:07:17.561 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38611 1 80 1 2025-11-20 19:07:17.561 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43032 1 109 1 2025-11-20 19:07:17.550 00:00:00.000 UDP 28.104.0.1:38611 -> 198.28.0.2:53 1 64 1 2025-11-20 19:07:17.551 00:00:00.000 UDP 28.104.0.1:43032 -> 198.28.0.2:53 1 64 1 2025-11-20 19:03:09.528 00:05:51.583 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 19:08:17.859 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57991 1 80 1 2025-11-20 19:04:09.149 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2424 1 2025-11-20 19:08:17.859 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39366 1 109 1 2025-11-20 19:08:17.849 00:00:00.000 UDP 28.104.0.1:57991 -> 198.28.0.2:53 1 64 1 2025-11-20 19:08:17.849 00:00:00.000 UDP 28.104.0.1:39366 -> 198.28.0.2:53 1 64 1 2025-11-20 19:04:10.008 00:05:51.168 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 19:05:01.111 00:05:08.907 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 19:09:18.155 00:00:00.000 UDP 28.104.0.1:49482 -> 198.28.0.2:53 1 64 1 2025-11-20 19:09:18.155 00:00:00.000 UDP 28.104.0.1:43698 -> 198.28.0.2:53 1 64 1 2025-11-20 19:09:18.167 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49482 1 109 1 2025-11-20 19:09:18.167 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43698 1 80 1 2025-11-20 19:05:09.519 00:05:51.618 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 19:06:09.519 00:05:00.669 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 19:10:18.452 00:00:00.000 UDP 28.104.0.1:48316 -> 198.28.0.2:53 1 64 1 2025-11-20 19:10:18.452 00:00:00.000 UDP 28.104.0.1:53626 -> 198.28.0.2:53 1 64 1 2025-11-20 19:10:18.462 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48316 1 80 1 2025-11-20 19:10:18.462 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53626 1 109 1 2025-11-20 19:10:26.697 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 19:11:18.762 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34751 1 109 1 2025-11-20 19:11:18.762 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60102 1 80 1 2025-11-20 19:11:18.751 00:00:00.000 UDP 28.104.0.1:60102 -> 198.28.0.2:53 1 64 1 2025-11-20 19:11:18.751 00:00:00.000 UDP 28.104.0.1:34751 -> 198.28.0.2:53 1 64 1 2025-11-20 19:07:09.518 00:06:00.272 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 19:12:19.056 00:00:00.000 UDP 28.104.0.1:59527 -> 198.28.0.2:53 1 64 1 2025-11-20 19:12:19.056 00:00:00.000 UDP 28.104.0.1:35147 -> 198.28.0.2:53 1 64 1 2025-11-20 19:12:19.067 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35147 1 80 1 2025-11-20 19:12:19.067 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59527 1 109 1 2025-11-20 19:13:19.367 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38817 1 109 1 2025-11-20 19:13:19.366 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52043 1 80 1 2025-11-20 19:13:19.354 00:00:00.000 UDP 28.104.0.1:38817 -> 198.28.0.2:53 1 64 1 2025-11-20 19:13:19.355 00:00:00.000 UDP 28.104.0.1:52043 -> 198.28.0.2:53 1 64 1 2025-11-20 19:09:29.152 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2380 1 2025-11-20 19:09:09.530 00:05:51.597 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 19:14:19.668 00:00:00.000 UDP 28.104.0.1:46250 -> 198.28.0.2:53 1 64 1 2025-11-20 19:14:19.667 00:00:00.000 UDP 28.104.0.1:39067 -> 198.28.0.2:53 1 64 1 2025-11-20 19:14:19.678 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39067 1 80 1 2025-11-20 19:14:19.678 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46250 1 109 1 2025-11-20 19:10:10.008 00:05:51.169 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 19:11:01.126 00:05:08.894 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 19:15:19.959 00:00:00.000 UDP 28.104.0.1:59318 -> 198.28.0.2:53 1 64 1 2025-11-20 19:15:19.959 00:00:00.000 UDP 28.104.0.1:58402 -> 198.28.0.2:53 1 64 1 2025-11-20 19:15:19.969 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59318 1 80 1 2025-11-20 19:15:19.969 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58402 1 109 1 2025-11-20 19:15:26.669 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 19:11:09.519 00:05:51.618 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 19:12:09.522 00:05:00.669 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 19:16:20.275 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57147 1 109 1 2025-11-20 19:16:20.275 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58962 1 80 1 2025-11-20 19:16:20.263 00:00:00.000 UDP 28.104.0.1:57147 -> 198.28.0.2:53 1 64 1 2025-11-20 19:16:20.263 00:00:00.000 UDP 28.104.0.1:58962 -> 198.28.0.2:53 1 64 1 2025-11-20 19:17:20.580 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51200 1 109 1 2025-11-20 19:17:20.582 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39859 1 80 1 2025-11-20 19:17:20.570 00:00:00.000 UDP 28.104.0.1:51200 -> 198.28.0.2:53 1 64 1 2025-11-20 19:17:20.570 00:00:00.000 UDP 28.104.0.1:39859 -> 198.28.0.2:53 1 64 1 2025-11-20 19:18:20.884 00:00:00.000 UDP 28.104.0.1:40220 -> 198.28.0.2:53 1 64 1 2025-11-20 19:18:20.884 00:00:00.000 UDP 28.104.0.1:40788 -> 198.28.0.2:53 1 64 1 2025-11-20 19:18:20.895 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40220 1 80 1 2025-11-20 19:18:20.895 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40788 1 109 1 2025-11-20 19:14:49.155 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2448 1 2025-11-20 19:14:09.520 00:06:00.272 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 19:19:21.188 00:00:00.000 UDP 28.104.0.1:34480 -> 198.28.0.2:53 1 64 1 2025-11-20 19:19:21.188 00:00:00.000 UDP 28.104.0.1:60668 -> 198.28.0.2:53 1 64 1 2025-11-20 19:19:21.198 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60668 1 109 1 2025-11-20 19:19:21.198 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34480 1 80 1 2025-11-20 19:15:09.530 00:05:51.598 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 19:20:21.491 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36748 1 80 1 2025-11-20 19:20:21.491 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37183 1 109 1 2025-11-20 19:20:21.480 00:00:00.000 UDP 28.104.0.1:36748 -> 198.28.0.2:53 1 64 1 2025-11-20 19:20:21.480 00:00:00.000 UDP 28.104.0.1:37183 -> 198.28.0.2:53 1 64 1 2025-11-20 19:20:27.728 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 19:16:10.010 00:05:51.169 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 19:17:01.127 00:05:08.893 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 19:21:21.782 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50952 1 109 1 2025-11-20 19:21:21.782 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46981 1 80 1 2025-11-20 19:21:21.772 00:00:00.000 UDP 28.104.0.1:50952 -> 198.28.0.2:53 1 64 1 2025-11-20 19:21:21.772 00:00:00.000 UDP 28.104.0.1:46981 -> 198.28.0.2:53 1 64 1 2025-11-20 19:17:09.519 00:05:51.618 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 19:18:09.520 00:05:00.671 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 19:22:22.073 00:00:00.000 UDP 28.104.0.1:44099 -> 198.28.0.2:53 1 64 1 2025-11-20 19:22:22.073 00:00:00.000 UDP 28.104.0.1:40414 -> 198.28.0.2:53 1 64 1 2025-11-20 19:22:22.082 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44099 1 80 1 2025-11-20 19:22:22.082 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40414 1 109 1 2025-11-20 19:23:22.381 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57689 1 109 1 2025-11-20 19:23:22.381 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53730 1 80 1 2025-11-20 19:23:22.369 00:00:00.000 UDP 28.104.0.1:57689 -> 198.28.0.2:53 1 64 1 2025-11-20 19:23:22.369 00:00:00.000 UDP 28.104.0.1:53730 -> 198.28.0.2:53 1 64 1 2025-11-20 19:20:04.433 00:05:05.186 OSPF 28.0.2.1:0 -> 224.0.0.5:0 48 3552 1 2025-11-20 19:24:23.142 00:00:00.000 UDP 28.104.0.1:42530 -> 198.28.0.2:53 1 64 1 2025-11-20 19:24:23.142 00:00:00.000 UDP 28.104.0.1:35238 -> 198.28.0.2:53 1 64 1 2025-11-20 19:24:23.153 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35238 1 109 1 2025-11-20 19:24:23.153 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42530 1 80 1 2025-11-20 19:25:23.397 00:00:00.000 UDP 28.104.0.1:41842 -> 198.28.0.2:53 1 64 1 2025-11-20 19:25:23.397 00:00:00.000 UDP 28.104.0.1:37511 -> 198.28.0.2:53 1 64 1 2025-11-20 19:25:23.407 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41842 1 109 1 2025-11-20 19:25:23.407 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37511 1 80 1 2025-11-20 19:25:27.037 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 19:21:09.531 00:05:51.600 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 19:21:09.521 00:06:00.274 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 19:26:23.688 00:00:00.000 UDP 28.104.0.1:52748 -> 198.28.0.2:53 1 64 1 2025-11-20 19:26:23.688 00:00:00.000 UDP 28.104.0.1:55835 -> 198.28.0.2:53 1 64 1 2025-11-20 19:26:23.698 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52748 1 80 1 2025-11-20 19:26:23.699 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55835 1 109 1 2025-11-20 19:22:10.011 00:05:51.171 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 19:23:01.127 00:05:08.895 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 19:27:23.991 00:00:00.000 UDP 28.104.0.1:54297 -> 198.28.0.2:53 1 64 1 2025-11-20 19:27:23.991 00:00:00.000 UDP 28.104.0.1:42127 -> 198.28.0.2:53 1 64 1 2025-11-20 19:27:24.003 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54297 1 109 1 2025-11-20 19:27:24.003 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42127 1 80 1 2025-11-20 19:23:09.521 00:05:51.621 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 19:24:09.520 00:05:00.672 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 19:28:24.300 00:00:00.000 UDP 28.104.0.1:44537 -> 198.28.0.2:53 1 64 1 2025-11-20 19:28:24.301 00:00:00.000 UDP 28.104.0.1:56764 -> 198.28.0.2:53 1 64 1 2025-11-20 19:28:24.312 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56764 1 80 1 2025-11-20 19:28:24.312 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44537 1 109 1 2025-11-20 19:29:24.611 00:00:00.000 UDP 28.104.0.1:51766 -> 198.28.0.2:53 1 64 1 2025-11-20 19:29:24.611 00:00:00.000 UDP 28.104.0.1:40488 -> 198.28.0.2:53 1 64 1 2025-11-20 19:29:24.622 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40488 1 80 1 2025-11-20 19:29:24.622 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51766 1 109 1 2025-11-20 19:25:19.176 00:05:10.002 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2816 1 2025-11-20 19:30:24.907 00:00:00.000 UDP 28.104.0.1:59407 -> 198.28.0.2:53 1 64 1 2025-11-20 19:30:24.907 00:00:00.000 UDP 28.104.0.1:54784 -> 198.28.0.2:53 1 64 1 2025-11-20 19:30:26.825 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 19:30:24.918 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54784 1 80 1 2025-11-20 19:30:24.917 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59407 1 109 1 2025-11-20 19:31:25.219 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42369 1 80 1 2025-11-20 19:31:25.219 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46093 1 109 1 2025-11-20 19:31:25.208 00:00:00.000 UDP 28.104.0.1:46093 -> 198.28.0.2:53 1 64 1 2025-11-20 19:31:25.208 00:00:00.000 UDP 28.104.0.1:42369 -> 198.28.0.2:53 1 64 1 2025-11-20 19:27:09.531 00:05:51.601 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 19:32:25.514 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45745 1 109 1 2025-11-20 19:32:25.514 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55617 1 80 1 2025-11-20 19:32:25.504 00:00:00.000 UDP 28.104.0.1:55617 -> 198.28.0.2:53 1 64 1 2025-11-20 19:32:25.505 00:00:00.000 UDP 28.104.0.1:45745 -> 198.28.0.2:53 1 64 1 2025-11-20 19:28:10.014 00:05:51.168 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 19:28:09.524 00:06:00.275 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 19:29:01.132 00:05:08.893 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 19:33:25.824 00:00:00.000 UDP 28.104.0.1:43302 -> 198.28.0.2:53 1 64 1 2025-11-20 19:33:25.823 00:00:00.000 UDP 28.104.0.1:55588 -> 198.28.0.2:53 1 64 1 2025-11-20 19:33:25.834 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43302 1 80 1 2025-11-20 19:33:25.834 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55588 1 109 1 2025-11-20 19:29:09.522 00:05:51.620 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 19:30:09.523 00:05:00.671 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 19:34:26.107 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39569 1 109 1 2025-11-20 19:34:26.107 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46703 1 80 1 2025-11-20 19:34:26.094 00:00:00.000 UDP 28.104.0.1:39569 -> 198.28.0.2:53 1 64 1 2025-11-20 19:34:26.094 00:00:00.000 UDP 28.104.0.1:46703 -> 198.28.0.2:53 1 64 1 2025-11-20 19:30:39.179 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2648 1 2025-11-20 19:35:26.696 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45991 1 109 1 2025-11-20 19:35:26.696 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40748 1 80 1 2025-11-20 19:35:26.685 00:00:00.000 UDP 28.104.0.1:40748 -> 198.28.0.2:53 1 64 1 2025-11-20 19:35:26.685 00:00:00.000 UDP 28.104.0.1:45991 -> 198.28.0.2:53 1 64 1 2025-11-20 19:35:27.155 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 19:36:27.062 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50467 1 80 1 2025-11-20 19:36:27.062 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45713 1 109 1 2025-11-20 19:36:27.051 00:00:00.000 UDP 28.104.0.1:45713 -> 198.28.0.2:53 1 64 1 2025-11-20 19:36:27.051 00:00:00.000 UDP 28.104.0.1:50467 -> 198.28.0.2:53 1 64 1 2025-11-20 19:37:27.366 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52916 1 109 1 2025-11-20 19:37:27.365 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44936 1 80 1 2025-11-20 19:37:27.355 00:00:00.000 UDP 28.104.0.1:52916 -> 198.28.0.2:53 1 64 1 2025-11-20 19:37:27.355 00:00:00.000 UDP 28.104.0.1:44936 -> 198.28.0.2:53 1 64 1 2025-11-20 19:33:09.533 00:05:51.600 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 19:38:27.652 00:00:00.000 UDP 28.104.0.1:35252 -> 198.28.0.2:53 1 64 1 2025-11-20 19:38:27.652 00:00:00.000 UDP 28.104.0.1:60826 -> 198.28.0.2:53 1 64 1 2025-11-20 19:38:27.663 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60826 1 80 1 2025-11-20 19:38:27.663 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35252 1 109 1 2025-11-20 19:34:10.014 00:05:51.169 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 19:35:01.132 00:05:08.896 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 19:39:27.961 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46749 1 80 1 2025-11-20 19:39:27.961 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58651 1 109 1 2025-11-20 19:39:27.951 00:00:00.000 UDP 28.104.0.1:46749 -> 198.28.0.2:53 1 64 1 2025-11-20 19:39:27.951 00:00:00.000 UDP 28.104.0.1:58651 -> 198.28.0.2:53 1 64 1 2025-11-20 19:35:09.523 00:05:51.620 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 19:36:09.523 00:05:00.671 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 19:35:09.523 00:06:00.276 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 19:35:59.187 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2240 1 2025-11-20 19:40:27.579 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 19:40:28.258 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55195 1 80 1 2025-11-20 19:40:28.258 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52462 1 109 1 2025-11-20 19:40:28.248 00:00:00.000 UDP 28.104.0.1:52462 -> 198.28.0.2:53 1 64 1 2025-11-20 19:40:28.248 00:00:00.000 UDP 28.104.0.1:55195 -> 198.28.0.2:53 1 64 1 2025-11-20 19:41:28.508 00:00:00.000 UDP 28.104.0.1:58809 -> 198.28.0.2:53 1 64 1 2025-11-20 19:41:28.508 00:00:00.000 UDP 28.104.0.1:33713 -> 198.28.0.2:53 1 64 1 2025-11-20 19:41:28.520 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33713 1 80 1 2025-11-20 19:41:28.518 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58809 1 109 1 2025-11-20 19:42:28.807 00:00:00.000 UDP 28.104.0.1:55624 -> 198.28.0.2:53 1 64 1 2025-11-20 19:42:28.807 00:00:00.000 UDP 28.104.0.1:50751 -> 198.28.0.2:53 1 64 1 2025-11-20 19:42:28.818 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50751 1 80 1 2025-11-20 19:42:28.818 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55624 1 109 1 2025-11-20 19:43:29.105 00:00:00.000 UDP 28.104.0.1:40578 -> 198.28.0.2:53 1 64 1 2025-11-20 19:43:29.104 00:00:00.000 UDP 28.104.0.1:60807 -> 198.28.0.2:53 1 64 1 2025-11-20 19:43:29.114 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60807 1 109 1 2025-11-20 19:43:29.113 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40578 1 80 1 2025-11-20 19:39:09.533 00:05:51.603 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 19:44:29.410 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44206 1 80 1 2025-11-20 19:44:29.410 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54523 1 109 1 2025-11-20 19:44:29.400 00:00:00.000 UDP 28.104.0.1:44206 -> 198.28.0.2:53 1 64 1 2025-11-20 19:44:29.400 00:00:00.000 UDP 28.104.0.1:54523 -> 198.28.0.2:53 1 64 1 2025-11-20 19:40:10.020 00:05:51.166 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 19:41:01.134 00:05:08.897 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 19:45:29.693 00:00:00.000 UDP 28.104.0.1:49515 -> 198.28.0.2:53 1 64 1 2025-11-20 19:45:29.693 00:00:00.000 UDP 28.104.0.1:60393 -> 198.28.0.2:53 1 64 1 2025-11-20 19:45:27.353 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 19:41:19.197 00:05:10.013 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2524 1 2025-11-20 19:45:29.705 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49515 1 80 1 2025-11-20 19:45:29.706 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60393 1 109 1 2025-11-20 19:41:09.524 00:05:51.627 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 19:42:09.523 00:05:00.671 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 19:46:29.997 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47060 1 109 1 2025-11-20 19:46:29.997 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39658 1 80 1 2025-11-20 19:46:29.986 00:00:00.000 UDP 28.104.0.1:39658 -> 198.28.0.2:53 1 64 1 2025-11-20 19:46:29.986 00:00:00.000 UDP 28.104.0.1:47060 -> 198.28.0.2:53 1 64 1 2025-11-20 19:42:09.523 00:06:00.277 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 19:47:30.278 00:00:00.000 UDP 28.104.0.1:60298 -> 198.28.0.2:53 1 64 1 2025-11-20 19:47:30.278 00:00:00.000 UDP 28.104.0.1:42727 -> 198.28.0.2:53 1 64 1 2025-11-20 19:47:30.287 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42727 1 109 1 2025-11-20 19:47:30.287 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60298 1 80 1 2025-11-20 19:48:30.582 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42485 1 109 1 2025-11-20 19:48:30.582 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40871 1 80 1 2025-11-20 19:48:30.571 00:00:00.000 UDP 28.104.0.1:42485 -> 198.28.0.2:53 1 64 1 2025-11-20 19:48:30.571 00:00:00.000 UDP 28.104.0.1:40871 -> 198.28.0.2:53 1 64 1 2025-11-20 19:49:31.194 00:00:00.000 UDP 28.104.0.1:51974 -> 198.28.0.2:53 1 64 1 2025-11-20 19:49:31.194 00:00:00.000 UDP 28.104.0.1:38117 -> 198.28.0.2:53 1 64 1 2025-11-20 19:49:31.205 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38117 1 80 1 2025-11-20 19:49:31.205 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51974 1 109 1 2025-11-20 19:45:09.534 00:05:51.604 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 19:50:27.541 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 19:50:31.505 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36691 1 80 1 2025-11-20 19:50:31.505 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56415 1 109 1 2025-11-20 19:50:31.495 00:00:00.000 UDP 28.104.0.1:56415 -> 198.28.0.2:53 1 64 1 2025-11-20 19:50:31.495 00:00:00.000 UDP 28.104.0.1:36691 -> 198.28.0.2:53 1 64 1 2025-11-20 19:46:39.210 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 46 3356 1 2025-11-20 19:46:10.020 00:05:51.168 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 19:47:01.140 00:05:08.890 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 19:51:31.802 00:00:00.000 UDP 28.104.0.1:35382 -> 198.28.0.2:53 1 64 1 2025-11-20 19:51:31.802 00:00:00.000 UDP 28.104.0.1:53420 -> 198.28.0.2:53 1 64 1 2025-11-20 19:51:31.813 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35382 1 80 1 2025-11-20 19:51:31.813 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53420 1 109 1 2025-11-20 19:47:09.524 00:05:51.624 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 19:48:09.525 00:05:00.670 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 19:52:32.056 00:00:00.000 UDP 28.104.0.1:41557 -> 198.28.0.2:53 1 64 1 2025-11-20 19:52:32.056 00:00:00.000 UDP 28.104.0.1:35930 -> 198.28.0.2:53 1 64 1 2025-11-20 19:52:32.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41557 1 109 1 2025-11-20 19:52:32.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35930 1 80 1 2025-11-20 19:53:32.355 00:00:00.000 UDP 28.104.0.1:43178 -> 198.28.0.2:53 1 64 1 2025-11-20 19:53:32.355 00:00:00.000 UDP 28.104.0.1:34045 -> 198.28.0.2:53 1 64 1 2025-11-20 19:53:32.366 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43178 1 80 1 2025-11-20 19:53:32.366 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34045 1 109 1 2025-11-20 19:49:09.526 00:06:00.277 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 19:54:32.668 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56616 1 109 1 2025-11-20 19:54:32.669 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59745 1 80 1 2025-11-20 19:54:32.658 00:00:00.000 UDP 28.104.0.1:59745 -> 198.28.0.2:53 1 64 1 2025-11-20 19:54:32.658 00:00:00.000 UDP 28.104.0.1:56616 -> 198.28.0.2:53 1 64 1 2025-11-20 19:55:27.717 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 19:55:32.965 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39137 1 109 1 2025-11-20 19:55:32.965 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35257 1 80 1 2025-11-20 19:55:32.954 00:00:00.000 UDP 28.104.0.1:35257 -> 198.28.0.2:53 1 64 1 2025-11-20 19:55:32.955 00:00:00.000 UDP 28.104.0.1:39137 -> 198.28.0.2:53 1 64 1 2025-11-20 19:51:09.536 00:05:51.602 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 19:51:59.214 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 46 3276 1 2025-11-20 19:56:33.220 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40425 1 109 1 2025-11-20 19:56:33.218 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56295 1 80 1 2025-11-20 19:56:33.208 00:00:00.000 UDP 28.104.0.1:56295 -> 198.28.0.2:53 1 64 1 2025-11-20 19:56:33.208 00:00:00.000 UDP 28.104.0.1:40425 -> 198.28.0.2:53 1 64 1 2025-11-20 19:52:10.020 00:05:51.187 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 19:53:01.138 00:05:08.893 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 19:57:33.503 00:00:00.000 UDP 28.104.0.1:43965 -> 198.28.0.2:53 1 64 1 2025-11-20 19:57:33.503 00:00:00.000 UDP 28.104.0.1:38548 -> 198.28.0.2:53 1 64 1 2025-11-20 19:57:33.512 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38548 1 80 1 2025-11-20 19:57:33.512 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43965 1 109 1 2025-11-20 19:53:09.527 00:05:51.642 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 19:54:09.528 00:05:00.669 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 19:58:33.861 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44369 1 109 1 2025-11-20 19:58:33.860 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57000 1 80 1 2025-11-20 19:58:33.850 00:00:00.000 UDP 28.104.0.1:44369 -> 198.28.0.2:53 1 64 1 2025-11-20 19:58:33.851 00:00:00.000 UDP 28.104.0.1:57000 -> 198.28.0.2:53 1 64 1 Summary: total flows: 321, total bytes: 96248, total packets: 1419, avg bps: 206, avg pps: 0, avg bpp: 67 Time window: 2025-11-20 18:57:09 - 2025-11-20 19:59:10 Total flows processed: 321, passed: 321, Blocks skipped: 0, Bytes read: 33448 Sys: 0.0050s User: 0.0030s Wall: 0.0041s flows/second: 78464.5 Runtime: 0.0041s