Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 12:59:15.948 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54209 1 109 1 2025-11-24 12:59:15.948 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36806 1 80 1 2025-11-24 12:59:15.938 00:00:00.000 UDP 28.104.0.1:36806 -> 198.28.0.2:53 1 64 1 2025-11-24 12:59:15.938 00:00:00.000 UDP 28.104.0.1:54209 -> 198.28.0.2:53 1 64 1 2025-11-24 12:59:11.616 00:01:00.097 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 13:00:16.253 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48415 1 109 1 2025-11-24 13:00:16.254 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34033 1 80 1 2025-11-24 13:00:16.243 00:00:00.000 UDP 28.104.0.1:48415 -> 198.28.0.2:53 1 64 1 2025-11-24 13:00:16.243 00:00:00.000 UDP 28.104.0.1:34033 -> 198.28.0.2:53 1 64 1 2025-11-24 12:57:03.147 00:05:08.479 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 13:01:16.554 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50237 1 109 1 2025-11-24 13:01:16.554 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53040 1 80 1 2025-11-24 12:57:11.616 00:05:00.401 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 13:01:16.545 00:00:00.000 UDP 28.104.0.1:50237 -> 198.28.0.2:53 1 64 1 2025-11-24 13:01:16.545 00:00:00.000 UDP 28.104.0.1:53040 -> 198.28.0.2:53 1 64 1 2025-11-24 12:57:11.771 00:05:51.431 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 13:01:11.616 00:01:00.097 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 13:02:16.843 00:00:00.000 UDP 28.104.0.1:37761 -> 198.28.0.2:53 1 64 1 2025-11-24 13:02:16.843 00:00:00.000 UDP 28.104.0.1:56368 -> 198.28.0.2:53 1 64 1 2025-11-24 13:02:14.911 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 13:02:16.853 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56368 1 109 1 2025-11-24 13:02:16.852 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37761 1 80 1 2025-11-24 12:58:11.615 00:05:51.546 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 12:58:11.780 00:05:51.371 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 13:03:11.616 00:00:00.096 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 13:03:17.147 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55166 1 109 1 2025-11-24 13:03:17.147 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44105 1 80 1 2025-11-24 13:03:17.136 00:00:00.000 UDP 28.104.0.1:55166 -> 198.28.0.2:53 1 64 1 2025-11-24 13:03:17.136 00:00:00.000 UDP 28.104.0.1:44105 -> 198.28.0.2:53 1 64 1 2025-11-24 12:59:36.354 00:05:00.949 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2496 1 2025-11-24 13:04:17.429 00:00:00.000 UDP 28.104.0.1:42023 -> 198.28.0.2:53 1 64 1 2025-11-24 13:04:17.429 00:00:00.000 UDP 28.104.0.1:57772 -> 198.28.0.2:53 1 64 1 2025-11-24 13:04:17.438 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42023 1 109 1 2025-11-24 13:04:17.438 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57772 1 80 1 2025-11-24 13:04:11.624 00:01:00.089 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 13:05:17.722 00:00:00.000 UDP 28.104.0.1:41802 -> 198.28.0.2:53 1 64 1 2025-11-24 13:05:17.722 00:00:00.000 UDP 28.104.0.1:44604 -> 198.28.0.2:53 1 64 1 2025-11-24 13:05:17.733 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44604 1 109 1 2025-11-24 13:05:17.733 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41802 1 80 1 2025-11-24 13:06:18.024 00:00:00.000 UDP 28.104.0.1:55058 -> 198.28.0.2:53 1 64 1 2025-11-24 13:06:18.021 00:00:00.000 UDP 28.104.0.1:46194 -> 198.28.0.2:53 1 64 1 2025-11-24 13:06:18.031 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46194 1 80 1 2025-11-24 13:06:18.033 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55058 1 109 1 2025-11-24 13:03:03.151 00:05:08.479 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 13:06:11.620 00:01:00.093 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 13:07:14.746 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 13:03:11.617 00:05:00.410 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 13:07:18.313 00:00:00.000 UDP 28.104.0.1:56892 -> 198.28.0.2:53 1 64 1 2025-11-24 13:07:18.313 00:00:00.000 UDP 28.104.0.1:51320 -> 198.28.0.2:53 1 64 1 2025-11-24 13:07:18.323 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56892 1 80 1 2025-11-24 13:07:18.323 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51320 1 109 1 2025-11-24 13:03:11.773 00:05:51.431 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 13:08:18.616 00:00:00.000 UDP 28.104.0.1:53070 -> 198.28.0.2:53 1 64 1 2025-11-24 13:08:18.616 00:00:00.000 UDP 28.104.0.1:43983 -> 198.28.0.2:53 1 64 1 2025-11-24 13:08:18.626 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43983 1 80 1 2025-11-24 13:08:18.626 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53070 1 109 1 2025-11-24 13:04:46.370 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2712 1 2025-11-24 13:04:11.624 00:05:51.540 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 13:04:11.787 00:05:51.367 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 13:08:11.621 00:01:00.094 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 13:09:18.925 00:00:00.000 UDP 28.104.0.1:53907 -> 198.28.0.2:53 1 64 1 2025-11-24 13:09:18.925 00:00:00.000 UDP 28.104.0.1:49747 -> 198.28.0.2:53 1 64 1 2025-11-24 13:09:18.936 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53907 1 109 1 2025-11-24 13:09:18.936 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49747 1 80 1 2025-11-24 13:10:11.623 00:00:00.092 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 13:10:19.239 00:00:00.000 UDP 28.104.0.1:51920 -> 198.28.0.2:53 1 64 1 2025-11-24 13:10:19.239 00:00:00.000 UDP 28.104.0.1:46938 -> 198.28.0.2:53 1 64 1 2025-11-24 13:10:19.250 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46938 1 109 1 2025-11-24 13:10:19.249 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51920 1 80 1 2025-11-24 13:11:19.530 00:00:00.000 UDP 28.104.0.1:40171 -> 198.28.0.2:53 1 64 1 2025-11-24 13:11:19.530 00:00:00.000 UDP 28.104.0.1:57458 -> 198.28.0.2:53 1 64 1 2025-11-24 13:11:19.542 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57458 1 80 1 2025-11-24 13:11:19.541 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40171 1 109 1 2025-11-24 13:11:11.624 00:01:00.092 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 13:12:14.959 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 13:12:20.373 00:00:00.000 UDP 28.104.0.1:50589 -> 198.28.0.2:53 1 64 1 2025-11-24 13:12:20.373 00:00:00.000 UDP 28.104.0.1:52472 -> 198.28.0.2:53 1 64 1 2025-11-24 13:12:20.384 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50589 1 80 1 2025-11-24 13:12:20.384 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52472 1 109 1 2025-11-24 13:09:11.620 00:05:00.407 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 13:09:03.154 00:05:08.480 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 13:13:20.681 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34688 1 109 1 2025-11-24 13:13:20.681 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59835 1 80 1 2025-11-24 13:13:20.673 00:00:00.000 UDP 28.104.0.1:34688 -> 198.28.0.2:53 1 64 1 2025-11-24 13:13:20.673 00:00:00.000 UDP 28.104.0.1:59835 -> 198.28.0.2:53 1 64 1 2025-11-24 13:09:11.778 00:05:51.426 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 13:13:11.624 00:01:00.092 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 13:10:06.375 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2380 1 2025-11-24 13:14:20.965 00:00:00.000 UDP 28.104.0.1:50312 -> 198.28.0.2:53 1 64 1 2025-11-24 13:14:20.966 00:00:00.000 UDP 28.104.0.1:47095 -> 198.28.0.2:53 1 64 1 2025-11-24 13:14:20.976 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50312 1 80 1 2025-11-24 13:14:20.977 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47095 1 109 1 2025-11-24 13:10:11.623 00:05:51.541 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 13:10:11.790 00:05:51.366 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 13:15:11.624 00:00:00.092 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 13:15:21.280 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41067 1 80 1 2025-11-24 13:15:21.280 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55066 1 109 1 2025-11-24 13:15:21.270 00:00:00.000 UDP 28.104.0.1:55066 -> 198.28.0.2:53 1 64 1 2025-11-24 13:15:21.270 00:00:00.000 UDP 28.104.0.1:41067 -> 198.28.0.2:53 1 64 1 2025-11-24 13:16:21.574 00:00:00.000 UDP 28.104.0.1:51370 -> 198.28.0.2:53 1 64 1 2025-11-24 13:16:21.574 00:00:00.000 UDP 28.104.0.1:39500 -> 198.28.0.2:53 1 64 1 2025-11-24 13:16:21.584 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51370 1 109 1 2025-11-24 13:16:21.584 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39500 1 80 1 2025-11-24 13:16:11.624 00:01:00.093 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 13:17:15.205 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 13:17:21.877 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52293 1 109 1 2025-11-24 13:17:21.877 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56378 1 80 1 2025-11-24 13:17:21.867 00:00:00.000 UDP 28.104.0.1:56378 -> 198.28.0.2:53 1 64 1 2025-11-24 13:17:21.867 00:00:00.000 UDP 28.104.0.1:52293 -> 198.28.0.2:53 1 64 1 2025-11-24 13:18:22.181 00:00:00.000 UDP 28.104.0.1:43474 -> 198.28.0.2:53 1 64 1 2025-11-24 13:18:22.181 00:00:00.000 UDP 28.104.0.1:40330 -> 198.28.0.2:53 1 64 1 2025-11-24 13:18:22.191 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40330 1 80 1 2025-11-24 13:18:22.191 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43474 1 109 1 2025-11-24 13:18:11.624 00:01:00.093 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 13:15:11.624 00:05:00.404 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 13:15:03.154 00:05:08.481 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 13:19:22.481 00:00:00.000 UDP 28.104.0.1:56746 -> 198.28.0.2:53 1 64 1 2025-11-24 13:19:22.481 00:00:00.000 UDP 28.104.0.1:57569 -> 198.28.0.2:53 1 64 1 2025-11-24 13:19:22.492 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57569 1 109 1 2025-11-24 13:19:22.492 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56746 1 80 1 2025-11-24 13:15:26.380 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2788 1 2025-11-24 13:15:11.780 00:05:51.427 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 13:20:11.627 00:00:00.093 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 13:20:22.789 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35169 1 80 1 2025-11-24 13:20:22.789 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51875 1 109 1 2025-11-24 13:20:22.778 00:00:00.000 UDP 28.104.0.1:35169 -> 198.28.0.2:53 1 64 1 2025-11-24 13:20:22.778 00:00:00.000 UDP 28.104.0.1:51875 -> 198.28.0.2:53 1 64 1 2025-11-24 13:16:11.792 00:05:51.365 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 13:16:11.625 00:05:51.543 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 13:21:23.052 00:00:00.000 UDP 28.104.0.1:48929 -> 198.28.0.2:53 1 64 1 2025-11-24 13:21:23.052 00:00:00.000 UDP 28.104.0.1:35745 -> 198.28.0.2:53 1 64 1 2025-11-24 13:21:23.064 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48929 1 109 1 2025-11-24 13:21:23.064 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35745 1 80 1 2025-11-24 13:21:11.626 00:01:00.094 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 13:22:15.152 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 13:22:23.355 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53805 1 80 1 2025-11-24 13:22:23.356 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49348 1 109 1 2025-11-24 13:22:23.345 00:00:00.000 UDP 28.104.0.1:53805 -> 198.28.0.2:53 1 64 1 2025-11-24 13:22:23.345 00:00:00.000 UDP 28.104.0.1:49348 -> 198.28.0.2:53 1 64 1 2025-11-24 13:23:23.666 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55098 1 109 1 2025-11-24 13:23:23.666 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58911 1 80 1 2025-11-24 13:23:23.656 00:00:00.000 UDP 28.104.0.1:55098 -> 198.28.0.2:53 1 64 1 2025-11-24 13:23:23.656 00:00:00.000 UDP 28.104.0.1:58911 -> 198.28.0.2:53 1 64 1 2025-11-24 13:23:11.626 00:01:00.094 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 13:24:24.031 00:00:00.000 UDP 28.104.0.1:42041 -> 198.28.0.2:53 1 64 1 2025-11-24 13:24:24.035 00:00:00.000 UDP 28.104.0.1:34383 -> 198.28.0.2:53 1 64 1 2025-11-24 13:24:24.043 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42041 1 80 1 2025-11-24 13:24:24.047 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34383 1 109 1 2025-11-24 13:20:46.390 00:05:10.237 OSPF 28.0.2.1:0 -> 224.0.0.5:0 44 3064 1 2025-11-24 13:25:11.627 00:00:00.097 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 13:21:11.625 00:05:00.407 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 13:21:03.157 00:05:08.479 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 13:25:24.342 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48097 1 109 1 2025-11-24 13:25:24.342 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52596 1 80 1 2025-11-24 13:25:24.332 00:00:00.000 UDP 28.104.0.1:52596 -> 198.28.0.2:53 1 64 1 2025-11-24 13:25:24.332 00:00:00.000 UDP 28.104.0.1:48097 -> 198.28.0.2:53 1 64 1 2025-11-24 13:21:11.783 00:05:51.425 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 13:26:24.850 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35420 1 80 1 2025-11-24 13:26:24.849 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48561 1 109 1 2025-11-24 13:26:24.839 00:00:00.000 UDP 28.104.0.1:48561 -> 198.28.0.2:53 1 64 1 2025-11-24 13:26:24.839 00:00:00.000 UDP 28.104.0.1:35420 -> 198.28.0.2:53 1 64 1 2025-11-24 13:22:11.625 00:05:51.544 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 13:22:11.793 00:05:51.367 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 13:26:11.625 00:01:00.098 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 13:27:15.650 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 13:27:25.130 00:00:00.000 UDP 28.104.0.1:46602 -> 198.28.0.2:53 1 64 1 2025-11-24 13:27:25.130 00:00:00.000 UDP 28.104.0.1:52514 -> 198.28.0.2:53 1 64 1 2025-11-24 13:27:25.140 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46602 1 109 1 2025-11-24 13:27:25.142 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52514 1 80 1 2025-11-24 13:28:25.441 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36390 1 109 1 2025-11-24 13:28:25.441 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60840 1 80 1 2025-11-24 13:28:25.432 00:00:00.000 UDP 28.104.0.1:60840 -> 198.28.0.2:53 1 64 1 2025-11-24 13:28:25.432 00:00:00.000 UDP 28.104.0.1:36390 -> 198.28.0.2:53 1 64 1 2025-11-24 13:28:11.627 00:01:00.097 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 13:29:25.723 00:00:00.000 UDP 28.104.0.1:52664 -> 198.28.0.2:53 1 64 1 2025-11-24 13:29:25.723 00:00:00.000 UDP 28.104.0.1:33647 -> 198.28.0.2:53 1 64 1 2025-11-24 13:29:25.734 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33647 1 80 1 2025-11-24 13:29:25.734 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52664 1 109 1 2025-11-24 13:30:11.628 00:00:00.096 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 13:26:06.403 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2812 1 2025-11-24 13:30:29.039 00:00:00.000 UDP 28.104.0.1:43679 -> 198.28.0.2:53 1 64 1 2025-11-24 13:30:29.039 00:00:00.000 UDP 28.104.0.1:33258 -> 198.28.0.2:53 1 64 1 2025-11-24 13:30:29.049 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33258 1 109 1 2025-11-24 13:30:29.049 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43679 1 80 1 2025-11-24 13:27:11.626 00:05:00.412 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 13:27:03.158 00:05:08.481 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 13:31:29.285 00:00:00.000 UDP 28.104.0.1:42987 -> 198.28.0.2:53 1 64 1 2025-11-24 13:31:29.285 00:00:00.000 UDP 28.104.0.1:39037 -> 198.28.0.2:53 1 64 1 2025-11-24 13:31:29.296 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42987 1 80 1 2025-11-24 13:31:29.296 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39037 1 109 1 2025-11-24 13:27:11.784 00:05:51.428 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 13:31:11.627 00:01:00.096 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 13:32:15.567 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 13:32:29.728 00:00:00.000 UDP 28.104.0.1:56708 -> 198.28.0.2:53 1 64 1 2025-11-24 13:32:29.728 00:00:00.000 UDP 28.104.0.1:41550 -> 198.28.0.2:53 1 64 1 2025-11-24 13:32:29.738 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41550 1 80 1 2025-11-24 13:32:29.738 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56708 1 109 1 2025-11-24 13:28:11.626 00:05:51.555 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 13:28:11.795 00:05:51.377 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 13:33:30.062 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38810 1 80 1 2025-11-24 13:33:30.062 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41212 1 109 1 2025-11-24 13:33:30.051 00:00:00.000 UDP 28.104.0.1:41212 -> 198.28.0.2:53 1 64 1 2025-11-24 13:33:30.051 00:00:00.000 UDP 28.104.0.1:38810 -> 198.28.0.2:53 1 64 1 2025-11-24 13:33:11.630 00:01:00.095 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 13:34:30.337 00:00:00.000 UDP 28.104.0.1:51770 -> 198.28.0.2:53 1 64 1 2025-11-24 13:34:30.337 00:00:00.000 UDP 28.104.0.1:52209 -> 198.28.0.2:53 1 64 1 2025-11-24 13:34:30.347 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51770 1 80 1 2025-11-24 13:34:30.347 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52209 1 109 1 2025-11-24 13:35:11.628 00:00:00.097 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 13:35:30.637 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41987 1 109 1 2025-11-24 13:35:30.638 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46160 1 80 1 2025-11-24 13:35:30.627 00:00:00.000 UDP 28.104.0.1:41987 -> 198.28.0.2:53 1 64 1 2025-11-24 13:35:30.627 00:00:00.000 UDP 28.104.0.1:46160 -> 198.28.0.2:53 1 64 1 2025-11-24 13:31:26.412 00:05:10.061 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2828 1 2025-11-24 13:36:11.629 00:00:00.096 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 13:36:30.963 00:00:00.000 UDP 28.104.0.1:45531 -> 198.28.0.2:53 1 64 1 2025-11-24 13:36:30.963 00:00:00.000 UDP 28.104.0.1:51244 -> 198.28.0.2:53 1 64 1 2025-11-24 13:36:30.974 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51244 1 80 1 2025-11-24 13:36:30.974 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45531 1 109 1 2025-11-24 13:37:11.630 00:00:00.096 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 13:33:11.630 00:05:00.431 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 13:33:03.161 00:05:08.479 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 13:37:15.614 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 13:37:31.263 00:00:00.000 UDP 28.104.0.1:46657 -> 198.28.0.2:53 1 64 1 2025-11-24 13:37:31.263 00:00:00.000 UDP 28.104.0.1:33569 -> 198.28.0.2:53 1 64 1 2025-11-24 13:37:31.273 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46657 1 109 1 2025-11-24 13:37:31.273 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33569 1 80 1 2025-11-24 13:33:11.786 00:05:51.435 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 13:38:31.556 00:00:00.000 UDP 28.104.0.1:48919 -> 198.28.0.2:53 1 64 1 2025-11-24 13:38:31.556 00:00:00.000 UDP 28.104.0.1:56762 -> 198.28.0.2:53 1 64 1 2025-11-24 13:38:31.567 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56762 1 109 1 2025-11-24 13:38:31.567 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48919 1 80 1 2025-11-24 13:34:11.628 00:05:51.555 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 13:34:11.797 00:05:51.376 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 13:38:11.629 00:01:00.096 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 13:39:31.842 00:00:00.000 UDP 28.104.0.1:54138 -> 198.28.0.2:53 1 64 1 2025-11-24 13:39:31.842 00:00:00.000 UDP 28.104.0.1:42179 -> 198.28.0.2:53 1 64 1 2025-11-24 13:39:31.853 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54138 1 109 1 2025-11-24 13:39:31.853 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42179 1 80 1 2025-11-24 13:40:11.630 00:00:00.096 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 13:40:32.146 00:00:00.000 UDP 28.104.0.1:48825 -> 198.28.0.2:53 1 64 1 2025-11-24 13:40:32.146 00:00:00.000 UDP 28.104.0.1:35961 -> 198.28.0.2:53 1 64 1 2025-11-24 13:40:32.158 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35961 1 109 1 2025-11-24 13:40:32.157 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48825 1 80 1 2025-11-24 13:36:36.780 00:05:09.640 OSPF 28.0.2.1:0 -> 224.0.0.5:0 32 2172 1 2025-11-24 13:41:11.631 00:00:00.095 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 13:41:32.458 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57516 1 109 1 2025-11-24 13:41:32.458 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35968 1 80 1 2025-11-24 13:41:32.449 00:00:00.000 UDP 28.104.0.1:35968 -> 198.28.0.2:53 1 64 1 2025-11-24 13:41:32.448 00:00:00.000 UDP 28.104.0.1:57516 -> 198.28.0.2:53 1 64 1 2025-11-24 13:42:11.632 00:00:00.094 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 13:42:16.021 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 13:42:32.717 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59753 1 80 1 2025-11-24 13:42:32.717 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42368 1 109 1 2025-11-24 13:42:32.706 00:00:00.000 UDP 28.104.0.1:42368 -> 198.28.0.2:53 1 64 1 2025-11-24 13:42:32.706 00:00:00.000 UDP 28.104.0.1:59753 -> 198.28.0.2:53 1 64 1 2025-11-24 13:39:11.629 00:05:00.447 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 13:39:03.173 00:05:08.471 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 13:43:33.004 00:00:00.000 UDP 28.104.0.1:56892 -> 198.28.0.2:53 1 64 1 2025-11-24 13:43:33.004 00:00:00.000 UDP 28.104.0.1:56348 -> 198.28.0.2:53 1 64 1 2025-11-24 13:43:33.016 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56892 1 109 1 2025-11-24 13:43:33.016 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56348 1 80 1 2025-11-24 13:39:11.793 00:05:51.431 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 13:43:11.633 00:01:00.095 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 13:44:33.312 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40077 1 109 1 2025-11-24 13:44:33.312 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47355 1 80 1 2025-11-24 13:44:33.302 00:00:00.000 UDP 28.104.0.1:40077 -> 198.28.0.2:53 1 64 1 2025-11-24 13:44:33.302 00:00:00.000 UDP 28.104.0.1:47355 -> 198.28.0.2:53 1 64 1 2025-11-24 13:40:11.802 00:05:51.371 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 13:40:11.630 00:05:51.554 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 13:45:33.567 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46473 1 109 1 2025-11-24 13:45:33.567 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37679 1 80 1 2025-11-24 13:45:33.557 00:00:00.000 UDP 28.104.0.1:46473 -> 198.28.0.2:53 1 64 1 2025-11-24 13:45:33.556 00:00:00.000 UDP 28.104.0.1:37679 -> 198.28.0.2:53 1 64 1 2025-11-24 13:41:56.425 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2588 1 2025-11-24 13:45:11.633 00:01:00.097 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 13:46:33.859 00:00:00.000 UDP 28.104.0.1:55986 -> 198.28.0.2:53 1 64 1 2025-11-24 13:46:33.859 00:00:00.000 UDP 28.104.0.1:57320 -> 198.28.0.2:53 1 64 1 2025-11-24 13:46:33.870 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57320 1 80 1 2025-11-24 13:46:33.870 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55986 1 109 1 2025-11-24 13:47:11.634 00:00:00.095 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 13:47:15.780 00:00:00.017 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 13:47:34.132 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59712 1 80 1 2025-11-24 13:47:34.133 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52346 1 109 1 2025-11-24 13:47:34.121 00:00:00.000 UDP 28.104.0.1:52346 -> 198.28.0.2:53 1 64 1 2025-11-24 13:47:34.121 00:00:00.000 UDP 28.104.0.1:59712 -> 198.28.0.2:53 1 64 1 2025-11-24 13:48:34.425 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35909 1 80 1 2025-11-24 13:48:34.425 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48359 1 109 1 2025-11-24 13:48:34.414 00:00:00.000 UDP 28.104.0.1:48359 -> 198.28.0.2:53 1 64 1 2025-11-24 13:48:34.413 00:00:00.000 UDP 28.104.0.1:35909 -> 198.28.0.2:53 1 64 1 2025-11-24 13:45:03.174 00:05:08.470 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 13:48:11.633 00:01:00.097 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 13:45:11.632 00:05:00.445 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 13:49:34.705 00:00:00.000 UDP 28.104.0.1:54313 -> 198.28.0.2:53 1 64 1 2025-11-24 13:49:34.705 00:00:00.000 UDP 28.104.0.1:44951 -> 198.28.0.2:53 1 64 1 2025-11-24 13:49:34.717 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54313 1 109 1 2025-11-24 13:49:34.717 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44951 1 80 1 2025-11-24 13:45:11.794 00:05:51.446 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 13:50:34.968 00:00:00.000 UDP 28.104.0.1:50604 -> 198.28.0.2:53 1 64 1 2025-11-24 13:50:34.968 00:00:00.000 UDP 28.104.0.1:60443 -> 198.28.0.2:53 1 64 1 2025-11-24 13:50:34.980 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50604 1 109 1 2025-11-24 13:50:34.980 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60443 1 80 1 2025-11-24 13:46:11.803 00:05:51.386 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 13:46:11.633 00:05:51.567 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 13:50:11.634 00:01:00.097 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 13:47:16.432 00:05:10.053 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 3052 1 2025-11-24 13:51:35.275 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55884 1 109 1 2025-11-24 13:51:35.275 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48442 1 80 1 2025-11-24 13:51:35.264 00:00:00.000 UDP 28.104.0.1:48442 -> 198.28.0.2:53 1 64 1 2025-11-24 13:51:35.264 00:00:00.000 UDP 28.104.0.1:55884 -> 198.28.0.2:53 1 64 1 2025-11-24 13:52:11.634 00:00:00.097 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 13:52:15.869 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 13:52:35.559 00:00:00.000 UDP 28.104.0.1:44517 -> 198.28.0.2:53 1 64 1 2025-11-24 13:52:35.559 00:00:00.000 UDP 28.104.0.1:38638 -> 198.28.0.2:53 1 64 1 2025-11-24 13:52:35.570 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44517 1 109 1 2025-11-24 13:52:35.569 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38638 1 80 1 2025-11-24 13:53:35.818 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48564 1 80 1 2025-11-24 13:53:35.818 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52149 1 109 1 2025-11-24 13:53:35.808 00:00:00.000 UDP 28.104.0.1:48564 -> 198.28.0.2:53 1 64 1 2025-11-24 13:53:35.808 00:00:00.000 UDP 28.104.0.1:52149 -> 198.28.0.2:53 1 64 1 2025-11-24 13:53:11.635 00:01:00.097 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 13:54:36.105 00:00:00.000 UDP 28.104.0.1:42682 -> 198.28.0.2:53 1 64 1 2025-11-24 13:54:36.106 00:00:00.000 UDP 28.104.0.1:38661 -> 198.28.0.2:53 1 64 1 2025-11-24 13:54:36.116 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38661 1 109 1 2025-11-24 13:54:36.116 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42682 1 80 1 2025-11-24 13:51:11.634 00:05:00.448 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 13:51:03.190 00:05:08.454 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 13:55:36.432 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40691 1 80 1 2025-11-24 13:55:36.432 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43972 1 109 1 2025-11-24 13:55:36.421 00:00:00.000 UDP 28.104.0.1:40691 -> 198.28.0.2:53 1 64 1 2025-11-24 13:55:36.421 00:00:00.000 UDP 28.104.0.1:43972 -> 198.28.0.2:53 1 64 1 2025-11-24 13:51:11.801 00:05:51.441 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 13:55:11.635 00:01:00.096 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 13:56:36.687 00:00:00.000 UDP 28.104.0.1:43755 -> 198.28.0.2:53 1 64 1 2025-11-24 13:56:36.687 00:00:00.000 UDP 28.104.0.1:53730 -> 198.28.0.2:53 1 64 1 2025-11-24 13:56:36.697 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53730 1 80 1 2025-11-24 13:56:36.698 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43755 1 109 1 2025-11-24 13:52:26.996 00:05:10.088 OSPF 28.0.2.1:0 -> 224.0.0.5:0 46 3224 1 2025-11-24 13:52:11.814 00:05:51.378 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 13:52:11.634 00:05:51.567 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 13:57:11.636 00:00:00.096 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 13:57:15.927 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 13:57:37.059 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54320 1 109 1 2025-11-24 13:57:37.059 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57083 1 80 1 2025-11-24 13:57:37.048 00:00:00.000 UDP 28.104.0.1:54320 -> 198.28.0.2:53 1 64 1 2025-11-24 13:57:37.048 00:00:00.000 UDP 28.104.0.1:57083 -> 198.28.0.2:53 1 64 1 2025-11-24 13:58:37.362 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46670 1 109 1 2025-11-24 13:58:37.362 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36366 1 80 1 2025-11-24 13:58:37.352 00:00:00.000 UDP 28.104.0.1:46670 -> 198.28.0.2:53 1 64 1 2025-11-24 13:58:37.352 00:00:00.000 UDP 28.104.0.1:36366 -> 198.28.0.2:53 1 64 1 Summary: total flows: 350, total bytes: 96317, total packets: 1419, avg bps: 208, avg pps: 0, avg bpp: 67 Time window: 2025-11-24 12:57:03 - 2025-11-24 13:58:37 Total flows processed: 350, passed: 350, Blocks skipped: 0, Bytes read: 36464 Sys: 0.0027s User: 0.0040s Wall: 0.0043s flows/second: 82080.3 Runtime: 0.0043s