Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 01:59:00.266 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35679 1 80 1 2025-11-24 01:59:00.267 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33965 1 109 1 2025-11-24 01:59:00.257 00:00:00.000 UDP 28.104.0.1:35679 -> 198.28.0.2:53 1 64 1 2025-11-24 01:59:00.257 00:00:00.000 UDP 28.104.0.1:33965 -> 198.28.0.2:53 1 64 1 2025-11-24 02:00:00.522 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57571 1 80 1 2025-11-24 02:00:00.522 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38296 1 109 1 2025-11-24 02:00:00.510 00:00:00.000 UDP 28.104.0.1:57571 -> 198.28.0.2:53 1 64 1 2025-11-24 02:00:00.510 00:00:00.000 UDP 28.104.0.1:38296 -> 198.28.0.2:53 1 64 1 2025-11-24 01:59:11.376 00:01:00.401 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-24 01:59:11.376 00:01:00.100 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 02:01:00.808 00:00:00.000 UDP 28.104.0.1:57549 -> 198.28.0.2:53 1 64 1 2025-11-24 02:01:00.808 00:00:00.000 UDP 28.104.0.1:57017 -> 198.28.0.2:53 1 64 1 2025-11-24 02:01:00.819 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57549 1 109 1 2025-11-24 02:01:00.818 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57017 1 80 1 2025-11-24 01:57:02.858 00:05:08.529 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 02:02:01.105 00:00:00.000 UDP 28.104.0.1:45034 -> 198.28.0.2:53 1 64 1 2025-11-24 02:02:01.105 00:00:00.000 UDP 28.104.0.1:43381 -> 198.28.0.2:53 1 64 1 2025-11-24 02:02:01.364 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 02:02:01.116 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43381 1 109 1 2025-11-24 02:02:01.116 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45034 1 80 1 2025-11-24 01:58:02.907 00:05:08.653 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 02:03:01.375 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57705 1 109 1 2025-11-24 02:03:01.375 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46963 1 80 1 2025-11-24 02:03:01.365 00:00:00.000 UDP 28.104.0.1:46963 -> 198.28.0.2:53 1 64 1 2025-11-24 02:03:01.365 00:00:00.000 UDP 28.104.0.1:57705 -> 198.28.0.2:53 1 64 1 2025-11-24 01:58:11.570 00:05:51.289 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 01:58:11.375 00:05:51.494 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 01:59:45.436 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 2988 1 2025-11-24 02:04:01.668 00:00:00.000 UDP 28.104.0.1:54349 -> 198.28.0.2:53 1 64 1 2025-11-24 02:04:01.668 00:00:00.000 UDP 28.104.0.1:59451 -> 198.28.0.2:53 1 64 1 2025-11-24 02:04:01.678 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54349 1 80 1 2025-11-24 02:04:01.678 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59451 1 109 1 2025-11-24 02:05:01.957 00:00:00.000 UDP 28.104.0.1:36835 -> 198.28.0.2:53 1 64 1 2025-11-24 02:05:01.957 00:00:00.000 UDP 28.104.0.1:58874 -> 198.28.0.2:53 1 64 1 2025-11-24 02:05:01.966 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58874 1 80 1 2025-11-24 02:05:01.966 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36835 1 109 1 2025-11-24 02:01:11.376 00:04:00.403 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-24 02:01:11.376 00:04:00.100 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-24 02:06:02.219 00:00:00.000 UDP 28.104.0.1:60930 -> 198.28.0.2:53 1 64 1 2025-11-24 02:06:02.218 00:00:00.000 UDP 28.104.0.1:35605 -> 198.28.0.2:53 1 64 1 2025-11-24 02:06:02.230 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60930 1 80 1 2025-11-24 02:06:02.230 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35605 1 109 1 2025-11-24 02:07:01.737 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 02:07:02.558 00:00:00.000 UDP 28.104.0.1:49578 -> 198.28.0.2:53 1 64 1 2025-11-24 02:07:02.558 00:00:00.000 UDP 28.104.0.1:35484 -> 198.28.0.2:53 1 64 1 2025-11-24 02:06:11.376 00:01:00.403 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-24 02:06:11.376 00:01:00.100 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 02:07:02.569 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35484 1 109 1 2025-11-24 02:07:02.569 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49578 1 80 1 2025-11-24 02:03:02.859 00:05:08.529 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 02:08:02.852 00:00:00.000 UDP 28.104.0.1:58714 -> 198.28.0.2:53 1 64 1 2025-11-24 02:08:02.852 00:00:00.000 UDP 28.104.0.1:36254 -> 198.28.0.2:53 1 64 1 2025-11-24 02:08:02.862 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58714 1 80 1 2025-11-24 02:08:02.862 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36254 1 109 1 2025-11-24 02:04:02.909 00:05:08.669 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 02:04:11.377 00:05:51.495 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 02:09:03.191 00:00:00.000 UDP 28.104.0.1:37345 -> 198.28.0.2:53 1 64 1 2025-11-24 02:09:03.191 00:00:00.000 UDP 28.104.0.1:49798 -> 198.28.0.2:53 1 64 1 2025-11-24 02:04:11.582 00:05:51.279 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 02:09:03.201 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37345 1 109 1 2025-11-24 02:09:03.201 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49798 1 80 1 2025-11-24 02:05:05.441 00:05:10.014 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2644 1 2025-11-24 02:10:03.443 00:00:00.000 UDP 28.104.0.1:56346 -> 198.28.0.2:53 1 64 1 2025-11-24 02:10:03.443 00:00:00.000 UDP 28.104.0.1:58084 -> 198.28.0.2:53 1 64 1 2025-11-24 02:10:03.455 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58084 1 109 1 2025-11-24 02:10:03.455 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56346 1 80 1 2025-11-24 02:08:11.377 00:02:00.402 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-24 02:08:11.377 00:02:00.099 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-24 02:11:03.746 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51911 1 109 1 2025-11-24 02:11:03.746 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60196 1 80 1 2025-11-24 02:11:03.736 00:00:00.000 UDP 28.104.0.1:51911 -> 198.28.0.2:53 1 64 1 2025-11-24 02:11:03.736 00:00:00.000 UDP 28.104.0.1:60196 -> 198.28.0.2:53 1 64 1 2025-11-24 02:12:01.883 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 02:12:04.059 00:00:00.000 UDP 28.104.0.1:38063 -> 198.28.0.2:53 1 64 1 2025-11-24 02:12:04.058 00:00:00.000 UDP 28.104.0.1:44644 -> 198.28.0.2:53 1 64 1 2025-11-24 02:12:04.069 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44644 1 80 1 2025-11-24 02:12:04.069 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38063 1 109 1 2025-11-24 02:11:11.384 00:01:00.397 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-24 02:11:11.384 00:01:00.093 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 02:13:04.362 00:00:00.000 UDP 28.104.0.1:48166 -> 198.28.0.2:53 1 64 1 2025-11-24 02:13:04.362 00:00:00.000 UDP 28.104.0.1:41580 -> 198.28.0.2:53 1 64 1 2025-11-24 02:13:04.372 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48166 1 80 1 2025-11-24 02:13:04.372 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41580 1 109 1 2025-11-24 02:09:02.870 00:05:08.521 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 02:14:04.671 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57108 1 109 1 2025-11-24 02:14:04.671 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48445 1 80 1 2025-11-24 02:14:04.660 00:00:00.000 UDP 28.104.0.1:57108 -> 198.28.0.2:53 1 64 1 2025-11-24 02:14:04.660 00:00:00.000 UDP 28.104.0.1:48445 -> 198.28.0.2:53 1 64 1 2025-11-24 02:10:02.910 00:05:08.668 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 02:10:25.454 00:05:10.018 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2424 1 2025-11-24 02:15:04.955 00:00:00.000 UDP 28.104.0.1:37475 -> 198.28.0.2:53 1 64 1 2025-11-24 02:10:11.376 00:05:51.496 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 02:15:04.955 00:00:00.000 UDP 28.104.0.1:41498 -> 198.28.0.2:53 1 64 1 2025-11-24 02:10:11.589 00:05:51.275 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 02:15:04.967 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37475 1 109 1 2025-11-24 02:15:04.967 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41498 1 80 1 2025-11-24 02:13:11.378 00:02:00.403 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-24 02:13:11.378 00:02:00.100 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-24 02:16:05.257 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44617 1 109 1 2025-11-24 02:16:05.257 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44944 1 80 1 2025-11-24 02:16:05.247 00:00:00.000 UDP 28.104.0.1:44617 -> 198.28.0.2:53 1 64 1 2025-11-24 02:16:05.246 00:00:00.000 UDP 28.104.0.1:44944 -> 198.28.0.2:53 1 64 1 2025-11-24 02:17:01.854 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 02:17:05.536 00:00:00.000 UDP 28.104.0.1:42488 -> 198.28.0.2:53 1 64 1 2025-11-24 02:17:05.536 00:00:00.000 UDP 28.104.0.1:60386 -> 198.28.0.2:53 1 64 1 2025-11-24 02:17:05.547 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42488 1 109 1 2025-11-24 02:17:05.547 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60386 1 80 1 2025-11-24 02:16:11.378 00:01:00.403 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-24 02:16:11.378 00:01:00.099 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 02:18:05.838 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50031 1 80 1 2025-11-24 02:18:05.838 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35510 1 109 1 2025-11-24 02:18:05.829 00:00:00.000 UDP 28.104.0.1:50031 -> 198.28.0.2:53 1 64 1 2025-11-24 02:18:05.829 00:00:00.000 UDP 28.104.0.1:35510 -> 198.28.0.2:53 1 64 1 2025-11-24 02:19:06.122 00:00:00.000 UDP 28.104.0.1:59593 -> 198.28.0.2:53 1 64 1 2025-11-24 02:19:06.122 00:00:00.000 UDP 28.104.0.1:48451 -> 198.28.0.2:53 1 64 1 2025-11-24 02:19:06.133 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59593 1 109 1 2025-11-24 02:19:06.133 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48451 1 80 1 2025-11-24 02:15:02.861 00:05:08.528 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 02:15:45.473 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2380 1 2025-11-24 02:20:06.419 00:00:00.000 UDP 28.104.0.1:41659 -> 198.28.0.2:53 1 64 1 2025-11-24 02:20:06.419 00:00:00.000 UDP 28.104.0.1:37456 -> 198.28.0.2:53 1 64 1 2025-11-24 02:20:06.430 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37456 1 80 1 2025-11-24 02:20:06.430 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41659 1 109 1 2025-11-24 02:18:11.379 00:02:00.404 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-24 02:18:11.379 00:02:00.100 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-24 02:16:02.912 00:05:08.668 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 02:16:11.588 00:05:51.276 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 02:21:06.724 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59232 1 80 1 2025-11-24 02:21:06.725 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55097 1 109 1 2025-11-24 02:16:11.379 00:05:51.495 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 02:21:06.715 00:00:00.000 UDP 28.104.0.1:55097 -> 198.28.0.2:53 1 64 1 2025-11-24 02:21:06.715 00:00:00.000 UDP 28.104.0.1:59232 -> 198.28.0.2:53 1 64 1 2025-11-24 02:22:02.055 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 02:21:11.379 00:01:00.404 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-24 02:21:11.379 00:01:00.100 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 02:22:07.009 00:00:00.000 UDP 28.104.0.1:37999 -> 198.28.0.2:53 1 64 1 2025-11-24 02:22:07.009 00:00:00.000 UDP 28.104.0.1:37193 -> 198.28.0.2:53 1 64 1 2025-11-24 02:22:07.026 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37193 1 80 1 2025-11-24 02:22:07.025 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37999 1 109 1 2025-11-24 02:23:07.313 00:00:00.000 UDP 28.104.0.1:46251 -> 198.28.0.2:53 1 64 1 2025-11-24 02:23:07.313 00:00:00.000 UDP 28.104.0.1:52332 -> 198.28.0.2:53 1 64 1 2025-11-24 02:23:07.323 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46251 1 109 1 2025-11-24 02:23:07.323 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52332 1 80 1 2025-11-24 02:24:07.606 00:00:00.000 UDP 28.104.0.1:38994 -> 198.28.0.2:53 1 64 1 2025-11-24 02:24:07.606 00:00:00.000 UDP 28.104.0.1:48637 -> 198.28.0.2:53 1 64 1 2025-11-24 02:24:07.616 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38994 1 80 1 2025-11-24 02:24:07.616 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48637 1 109 1 2025-11-24 02:25:07.900 00:00:00.000 UDP 28.104.0.1:38856 -> 198.28.0.2:53 1 64 1 2025-11-24 02:25:07.900 00:00:00.000 UDP 28.104.0.1:47123 -> 198.28.0.2:53 1 64 1 2025-11-24 02:23:11.380 00:02:00.403 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-24 02:23:11.380 00:02:00.099 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-24 02:21:02.862 00:05:08.527 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 02:25:07.909 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38856 1 80 1 2025-11-24 02:25:07.909 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47123 1 109 1 2025-11-24 02:21:05.478 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2900 1 2025-11-24 02:26:08.220 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37982 1 109 1 2025-11-24 02:26:08.220 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39650 1 80 1 2025-11-24 02:22:02.914 00:05:08.667 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 02:26:08.210 00:00:00.000 UDP 28.104.0.1:37982 -> 198.28.0.2:53 1 64 1 2025-11-24 02:26:08.210 00:00:00.000 UDP 28.104.0.1:39650 -> 198.28.0.2:53 1 64 1 2025-11-24 02:22:11.379 00:05:51.497 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 02:27:02.163 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 02:22:11.590 00:05:51.275 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 02:27:08.511 00:00:00.000 UDP 28.104.0.1:41778 -> 198.28.0.2:53 1 64 1 2025-11-24 02:26:11.380 00:01:00.403 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-24 02:26:11.380 00:01:00.099 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 02:27:08.511 00:00:00.000 UDP 28.104.0.1:58017 -> 198.28.0.2:53 1 64 1 2025-11-24 02:27:08.521 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41778 1 109 1 2025-11-24 02:27:08.522 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58017 1 80 1 2025-11-24 02:28:08.820 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48309 1 80 1 2025-11-24 02:28:08.820 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52923 1 109 1 2025-11-24 02:28:08.809 00:00:00.000 UDP 28.104.0.1:48309 -> 198.28.0.2:53 1 64 1 2025-11-24 02:28:08.809 00:00:00.000 UDP 28.104.0.1:52923 -> 198.28.0.2:53 1 64 1 2025-11-24 02:29:09.107 00:00:00.000 UDP 28.104.0.1:51674 -> 198.28.0.2:53 1 64 1 2025-11-24 02:29:09.107 00:00:00.000 UDP 28.104.0.1:40378 -> 198.28.0.2:53 1 64 1 2025-11-24 02:29:09.119 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40378 1 80 1 2025-11-24 02:29:09.118 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51674 1 109 1 2025-11-24 02:28:11.380 00:02:00.405 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-24 02:28:11.380 00:02:00.100 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-24 02:30:09.404 00:00:00.000 UDP 28.104.0.1:59397 -> 198.28.0.2:53 1 64 1 2025-11-24 02:30:09.404 00:00:00.000 UDP 28.104.0.1:38920 -> 198.28.0.2:53 1 64 1 2025-11-24 02:30:09.414 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59397 1 80 1 2025-11-24 02:30:09.414 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38920 1 109 1 2025-11-24 02:26:25.488 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 51 3600 1 2025-11-24 02:31:09.695 00:00:00.000 UDP 28.104.0.1:39157 -> 198.28.0.2:53 1 64 1 2025-11-24 02:31:09.695 00:00:00.000 UDP 28.104.0.1:49809 -> 198.28.0.2:53 1 64 1 2025-11-24 02:31:09.706 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49809 1 80 1 2025-11-24 02:31:09.706 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39157 1 109 1 2025-11-24 02:27:02.865 00:05:08.526 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 02:32:02.444 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 02:32:10.070 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39269 1 109 1 2025-11-24 02:32:10.070 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47852 1 80 1 2025-11-24 02:32:10.061 00:00:00.000 UDP 28.104.0.1:39269 -> 198.28.0.2:53 1 64 1 2025-11-24 02:31:11.381 00:01:00.404 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-24 02:31:11.381 00:01:00.099 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 02:32:10.061 00:00:00.000 UDP 28.104.0.1:47852 -> 198.28.0.2:53 1 64 1 2025-11-24 02:28:02.915 00:05:08.666 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 02:28:11.591 00:05:51.276 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 02:28:11.380 00:05:51.496 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 02:33:10.314 00:00:00.000 UDP 28.104.0.1:32981 -> 198.28.0.2:53 1 64 1 2025-11-24 02:33:10.314 00:00:00.000 UDP 28.104.0.1:50585 -> 198.28.0.2:53 1 64 1 2025-11-24 02:33:10.324 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50585 1 80 1 2025-11-24 02:33:10.324 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32981 1 109 1 2025-11-24 02:34:10.607 00:00:00.000 UDP 28.104.0.1:40943 -> 198.28.0.2:53 1 64 1 2025-11-24 02:34:10.607 00:00:00.000 UDP 28.104.0.1:43846 -> 198.28.0.2:53 1 64 1 2025-11-24 02:34:10.618 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43846 1 80 1 2025-11-24 02:34:10.618 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40943 1 109 1 2025-11-24 02:35:10.900 00:00:00.000 UDP 28.104.0.1:42309 -> 198.28.0.2:53 1 64 1 2025-11-24 02:35:10.899 00:00:00.000 UDP 28.104.0.1:46013 -> 198.28.0.2:53 1 64 1 2025-11-24 02:35:10.909 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42309 1 109 1 2025-11-24 02:35:10.909 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46013 1 80 1 2025-11-24 02:31:45.491 00:05:10.002 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2564 1 2025-11-24 02:36:11.214 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54498 1 80 1 2025-11-24 02:36:11.214 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49940 1 109 1 2025-11-24 02:36:11.205 00:00:00.000 UDP 28.104.0.1:49940 -> 198.28.0.2:53 1 64 1 2025-11-24 02:36:11.205 00:00:00.000 UDP 28.104.0.1:54498 -> 198.28.0.2:53 1 64 1 2025-11-24 02:37:11.495 00:00:00.000 UDP 28.104.0.1:48345 -> 198.28.0.2:53 1 64 1 2025-11-24 02:33:11.381 00:04:00.405 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-24 02:33:11.381 00:04:00.100 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-24 02:37:11.495 00:00:00.000 UDP 28.104.0.1:39519 -> 198.28.0.2:53 1 64 1 2025-11-24 02:37:02.212 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 02:33:02.867 00:05:08.527 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 02:37:11.506 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48345 1 109 1 2025-11-24 02:37:11.506 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39519 1 80 1 2025-11-24 02:34:02.917 00:05:08.667 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 02:38:12.238 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44265 1 109 1 2025-11-24 02:38:12.238 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37114 1 80 1 2025-11-24 02:38:12.228 00:00:00.000 UDP 28.104.0.1:44265 -> 198.28.0.2:53 1 64 1 2025-11-24 02:38:12.228 00:00:00.000 UDP 28.104.0.1:37114 -> 198.28.0.2:53 1 64 1 2025-11-24 02:34:11.381 00:05:51.499 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 02:34:11.593 00:05:51.278 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 02:38:11.383 00:01:00.404 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-24 02:38:11.383 00:01:00.098 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 02:39:12.532 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54002 1 109 1 2025-11-24 02:39:12.532 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43663 1 80 1 2025-11-24 02:39:12.522 00:00:00.000 UDP 28.104.0.1:43663 -> 198.28.0.2:53 1 64 1 2025-11-24 02:39:12.522 00:00:00.000 UDP 28.104.0.1:54002 -> 198.28.0.2:53 1 64 1 2025-11-24 02:40:12.822 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39771 1 109 1 2025-11-24 02:40:12.822 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34927 1 80 1 2025-11-24 02:40:12.812 00:00:00.000 UDP 28.104.0.1:34927 -> 198.28.0.2:53 1 64 1 2025-11-24 02:40:12.812 00:00:00.000 UDP 28.104.0.1:39771 -> 198.28.0.2:53 1 64 1 2025-11-24 02:41:13.111 00:00:00.000 UDP 28.104.0.1:54880 -> 198.28.0.2:53 1 64 1 2025-11-24 02:41:13.111 00:00:00.000 UDP 28.104.0.1:50435 -> 198.28.0.2:53 1 64 1 2025-11-24 02:41:13.122 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54880 1 80 1 2025-11-24 02:37:05.494 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2568 1 2025-11-24 02:41:13.122 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50435 1 109 1 2025-11-24 02:42:02.346 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 02:40:11.384 00:02:00.404 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-24 02:40:11.384 00:02:00.098 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-24 02:42:13.420 00:00:00.000 UDP 28.104.0.1:53064 -> 198.28.0.2:53 1 64 1 2025-11-24 02:42:13.420 00:00:00.000 UDP 28.104.0.1:50111 -> 198.28.0.2:53 1 64 1 2025-11-24 02:42:13.431 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50111 1 80 1 2025-11-24 02:42:13.431 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53064 1 109 1 2025-11-24 02:43:13.726 00:00:00.000 UDP 28.104.0.1:57427 -> 198.28.0.2:53 1 64 1 2025-11-24 02:43:13.726 00:00:00.000 UDP 28.104.0.1:36897 -> 198.28.0.2:53 1 64 1 2025-11-24 02:43:13.736 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36897 1 109 1 2025-11-24 02:39:02.870 00:05:08.525 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 02:43:13.737 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57427 1 80 1 2025-11-24 02:43:11.385 00:01:00.404 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-24 02:43:11.385 00:01:00.097 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 02:44:14.063 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50018 1 109 1 2025-11-24 02:44:14.063 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49506 1 80 1 2025-11-24 02:44:14.054 00:00:00.000 UDP 28.104.0.1:50018 -> 198.28.0.2:53 1 64 1 2025-11-24 02:40:02.921 00:05:08.666 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 02:44:14.054 00:00:00.000 UDP 28.104.0.1:49506 -> 198.28.0.2:53 1 64 1 2025-11-24 02:40:11.385 00:05:51.497 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 02:40:11.595 00:05:51.278 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 02:45:14.379 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52255 1 109 1 2025-11-24 02:45:14.379 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38894 1 80 1 2025-11-24 02:45:14.368 00:00:00.000 UDP 28.104.0.1:52255 -> 198.28.0.2:53 1 64 1 2025-11-24 02:45:14.368 00:00:00.000 UDP 28.104.0.1:38894 -> 198.28.0.2:53 1 64 1 2025-11-24 02:46:14.658 00:00:00.000 UDP 28.104.0.1:57666 -> 198.28.0.2:53 1 64 1 2025-11-24 02:46:14.658 00:00:00.000 UDP 28.104.0.1:41390 -> 198.28.0.2:53 1 64 1 2025-11-24 02:46:14.668 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57666 1 109 1 2025-11-24 02:46:14.668 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41390 1 80 1 2025-11-24 02:42:25.501 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 32 2176 1 2025-11-24 02:47:02.547 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 02:45:11.385 00:02:00.405 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-24 02:45:11.385 00:02:00.098 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-24 02:47:14.929 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52986 1 109 1 2025-11-24 02:47:14.928 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57015 1 80 1 2025-11-24 02:47:14.918 00:00:00.000 UDP 28.104.0.1:52986 -> 198.28.0.2:53 1 64 1 2025-11-24 02:47:14.919 00:00:00.000 UDP 28.104.0.1:57015 -> 198.28.0.2:53 1 64 1 2025-11-24 02:48:15.241 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38730 1 80 1 2025-11-24 02:48:15.242 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44788 1 109 1 2025-11-24 02:48:15.230 00:00:00.000 UDP 28.104.0.1:44788 -> 198.28.0.2:53 1 64 1 2025-11-24 02:48:15.230 00:00:00.000 UDP 28.104.0.1:38730 -> 198.28.0.2:53 1 64 1 2025-11-24 02:48:11.387 00:01:00.404 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-24 02:48:11.387 00:01:00.097 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 02:45:02.872 00:05:08.525 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 02:49:15.498 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54769 1 109 1 2025-11-24 02:49:15.498 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60670 1 80 1 2025-11-24 02:49:15.487 00:00:00.000 UDP 28.104.0.1:60670 -> 198.28.0.2:53 1 64 1 2025-11-24 02:49:15.487 00:00:00.000 UDP 28.104.0.1:54769 -> 198.28.0.2:53 1 64 1 2025-11-24 02:46:02.921 00:05:08.664 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 02:50:15.778 00:00:00.000 UDP 28.104.0.1:58047 -> 198.28.0.2:53 1 64 1 2025-11-24 02:50:15.778 00:00:00.000 UDP 28.104.0.1:48030 -> 198.28.0.2:53 1 64 1 2025-11-24 02:50:15.788 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48030 1 80 1 2025-11-24 02:50:15.788 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58047 1 109 1 2025-11-24 02:46:11.386 00:05:51.496 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 02:46:11.595 00:05:51.277 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 02:51:16.085 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58333 1 80 1 2025-11-24 02:51:16.085 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39358 1 109 1 2025-11-24 02:51:16.074 00:00:00.000 UDP 28.104.0.1:39358 -> 198.28.0.2:53 1 64 1 2025-11-24 02:51:16.074 00:00:00.000 UDP 28.104.0.1:58333 -> 198.28.0.2:53 1 64 1 2025-11-24 02:47:45.505 00:05:00.611 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2936 1 2025-11-24 02:52:02.591 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 02:50:11.387 00:02:00.404 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-24 02:50:11.387 00:02:00.098 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-24 02:52:17.126 00:00:00.000 UDP 28.104.0.1:47176 -> 198.28.0.2:53 1 64 1 2025-11-24 02:52:17.126 00:00:00.000 UDP 28.104.0.1:42754 -> 198.28.0.2:53 1 64 1 2025-11-24 02:52:17.138 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47176 1 109 1 2025-11-24 02:52:17.138 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42754 1 80 1 2025-11-24 02:53:17.432 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48946 1 80 1 2025-11-24 02:53:17.432 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54158 1 109 1 2025-11-24 02:53:17.422 00:00:00.000 UDP 28.104.0.1:48946 -> 198.28.0.2:53 1 64 1 2025-11-24 02:53:17.422 00:00:00.000 UDP 28.104.0.1:54158 -> 198.28.0.2:53 1 64 1 2025-11-24 02:53:11.388 00:01:00.404 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-24 02:53:11.388 00:01:00.098 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 02:54:17.676 00:00:00.000 UDP 28.104.0.1:50980 -> 198.28.0.2:53 1 64 1 2025-11-24 02:54:17.676 00:00:00.000 UDP 28.104.0.1:38674 -> 198.28.0.2:53 1 64 1 2025-11-24 02:54:17.687 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50980 1 80 1 2025-11-24 02:54:17.687 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38674 1 109 1 2025-11-24 02:51:02.872 00:05:08.526 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 02:55:17.969 00:00:00.000 UDP 28.104.0.1:55058 -> 198.28.0.2:53 1 64 1 2025-11-24 02:55:17.969 00:00:00.000 UDP 28.104.0.1:56521 -> 198.28.0.2:53 1 64 1 2025-11-24 02:55:17.979 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56521 1 80 1 2025-11-24 02:55:17.979 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55058 1 109 1 2025-11-24 02:52:02.922 00:05:08.666 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 02:56:18.276 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52708 1 80 1 2025-11-24 02:56:18.276 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36858 1 109 1 2025-11-24 02:56:18.266 00:00:00.000 UDP 28.104.0.1:36858 -> 198.28.0.2:53 1 64 1 2025-11-24 02:56:18.266 00:00:00.000 UDP 28.104.0.1:52708 -> 198.28.0.2:53 1 64 1 2025-11-24 02:52:11.387 00:05:51.497 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 02:57:02.748 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 02:52:11.596 00:05:51.278 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 02:52:55.509 00:05:10.682 OSPF 28.0.2.1:0 -> 224.0.0.5:0 45 3128 1 2025-11-24 02:55:11.388 00:02:00.404 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-24 02:55:11.388 00:02:00.099 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-24 02:57:18.562 00:00:00.000 UDP 28.104.0.1:38156 -> 198.28.0.2:53 1 64 1 2025-11-24 02:57:18.562 00:00:00.000 UDP 28.104.0.1:57808 -> 198.28.0.2:53 1 64 1 2025-11-24 02:57:18.573 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57808 1 80 1 2025-11-24 02:57:18.574 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38156 1 109 1 2025-11-24 02:58:18.811 00:00:00.000 UDP 28.104.0.1:43388 -> 198.28.0.2:53 1 64 1 2025-11-24 02:58:18.811 00:00:00.000 UDP 28.104.0.1:44984 -> 198.28.0.2:53 1 64 1 2025-11-24 02:58:18.821 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43388 1 80 1 2025-11-24 02:58:18.821 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44984 1 109 1 Summary: total flows: 347, total bytes: 96386, total packets: 1421, avg bps: 209, avg pps: 0, avg bpp: 67 Time window: 2025-11-24 01:57:02 - 2025-11-24 02:58:18 Total flows processed: 347, passed: 347, Blocks skipped: 0, Bytes read: 36152 Sys: 0.0039s User: 0.0039s Wall: 0.0041s flows/second: 85402.2 Runtime: 0.0041s