Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 13:58:11.636 00:01:00.097 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 13:59:37.653 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46878 1 109 1 2025-11-24 13:59:37.653 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52876 1 80 1 2025-11-24 13:59:37.643 00:00:00.000 UDP 28.104.0.1:46878 -> 198.28.0.2:53 1 64 1 2025-11-24 13:59:37.643 00:00:00.000 UDP 28.104.0.1:52876 -> 198.28.0.2:53 1 64 1 2025-11-24 14:00:37.902 00:00:00.000 UDP 28.104.0.1:60839 -> 198.28.0.2:53 1 64 1 2025-11-24 14:00:37.902 00:00:00.000 UDP 28.104.0.1:59256 -> 198.28.0.2:53 1 64 1 2025-11-24 14:00:37.913 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59256 1 80 1 2025-11-24 14:00:37.912 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60839 1 109 1 2025-11-24 13:57:03.191 00:05:08.456 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 14:00:11.636 00:01:00.097 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 13:57:11.636 00:05:00.448 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 14:01:38.225 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34848 1 109 1 2025-11-24 14:01:38.225 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43943 1 80 1 2025-11-24 14:01:38.215 00:00:00.000 UDP 28.104.0.1:34848 -> 198.28.0.2:53 1 64 1 2025-11-24 14:01:38.215 00:00:00.000 UDP 28.104.0.1:43943 -> 198.28.0.2:53 1 64 1 2025-11-24 13:57:46.447 00:05:10.019 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2708 1 2025-11-24 13:57:11.802 00:05:51.441 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 14:02:11.636 00:00:00.098 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 14:02:16.074 00:00:00.037 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 14:02:38.518 00:00:00.000 UDP 28.104.0.1:43347 -> 198.28.0.2:53 1 64 1 2025-11-24 14:02:38.518 00:00:00.000 UDP 28.104.0.1:47019 -> 198.28.0.2:53 1 64 1 2025-11-24 14:02:38.528 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43347 1 80 1 2025-11-24 14:02:38.528 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47019 1 109 1 2025-11-24 13:58:11.636 00:05:51.567 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 13:58:11.812 00:05:51.380 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 14:03:38.811 00:00:00.000 UDP 28.104.0.1:45827 -> 198.28.0.2:53 1 64 1 2025-11-24 14:03:38.811 00:00:00.000 UDP 28.104.0.1:36734 -> 198.28.0.2:53 1 64 1 2025-11-24 14:03:38.822 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36734 1 80 1 2025-11-24 14:03:38.822 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45827 1 109 1 2025-11-24 14:03:11.636 00:01:00.098 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 14:04:39.071 00:00:00.000 UDP 28.104.0.1:56462 -> 198.28.0.2:53 1 64 1 2025-11-24 14:04:39.071 00:00:00.000 UDP 28.104.0.1:52617 -> 198.28.0.2:53 1 64 1 2025-11-24 14:04:39.082 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56462 1 80 1 2025-11-24 14:04:39.082 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52617 1 109 1 2025-11-24 14:05:39.364 00:00:00.000 UDP 28.104.0.1:32916 -> 198.28.0.2:53 1 64 1 2025-11-24 14:05:39.364 00:00:00.000 UDP 28.104.0.1:46983 -> 198.28.0.2:53 1 64 1 2025-11-24 14:05:39.374 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32916 1 80 1 2025-11-24 14:05:39.374 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46983 1 109 1 2025-11-24 14:05:11.638 00:01:00.097 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 14:06:39.619 00:00:00.000 UDP 28.104.0.1:46705 -> 198.28.0.2:53 1 64 1 2025-11-24 14:06:39.619 00:00:00.000 UDP 28.104.0.1:50265 -> 198.28.0.2:53 1 64 1 2025-11-24 14:06:39.629 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46705 1 109 1 2025-11-24 14:06:39.629 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50265 1 80 1 2025-11-24 14:07:11.638 00:00:00.097 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 14:07:16.022 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 14:03:03.193 00:05:08.454 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 14:03:11.636 00:05:00.452 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 14:03:06.466 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2360 1 2025-11-24 14:07:39.912 00:00:00.000 UDP 28.104.0.1:37751 -> 198.28.0.2:53 1 64 1 2025-11-24 14:07:39.912 00:00:00.000 UDP 28.104.0.1:38437 -> 198.28.0.2:53 1 64 1 2025-11-24 14:07:39.924 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37751 1 80 1 2025-11-24 14:07:39.929 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38437 1 109 1 2025-11-24 14:03:11.804 00:05:51.441 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 14:08:11.637 00:00:00.099 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 14:08:40.189 00:00:00.000 UDP 28.104.0.1:52665 -> 198.28.0.2:53 1 64 1 2025-11-24 14:08:40.189 00:00:00.000 UDP 28.104.0.1:36345 -> 198.28.0.2:53 1 64 1 2025-11-24 14:08:40.199 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36345 1 80 1 2025-11-24 14:08:40.199 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52665 1 109 1 2025-11-24 14:04:11.815 00:05:51.379 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 14:04:11.636 00:05:51.568 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 14:09:11.639 00:00:00.098 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 14:09:40.496 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41347 1 109 1 2025-11-24 14:09:40.496 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54826 1 80 1 2025-11-24 14:09:40.485 00:00:00.000 UDP 28.104.0.1:41347 -> 198.28.0.2:53 1 64 1 2025-11-24 14:09:40.485 00:00:00.000 UDP 28.104.0.1:54826 -> 198.28.0.2:53 1 64 1 2025-11-24 14:10:40.783 00:00:00.000 UDP 28.104.0.1:55945 -> 198.28.0.2:53 1 64 1 2025-11-24 14:10:40.783 00:00:00.000 UDP 28.104.0.1:46046 -> 198.28.0.2:53 1 64 1 2025-11-24 14:10:40.793 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46046 1 80 1 2025-11-24 14:10:40.793 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55945 1 109 1 2025-11-24 14:10:11.639 00:01:00.098 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 14:11:41.210 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55604 1 80 1 2025-11-24 14:11:41.211 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42197 1 109 1 2025-11-24 14:11:41.200 00:00:00.000 UDP 28.104.0.1:42197 -> 198.28.0.2:53 1 64 1 2025-11-24 14:11:41.200 00:00:00.000 UDP 28.104.0.1:55604 -> 198.28.0.2:53 1 64 1 2025-11-24 14:12:11.639 00:00:00.098 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 14:12:16.310 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 14:12:41.494 00:00:00.000 UDP 28.104.0.1:41245 -> 198.28.0.2:53 1 64 1 2025-11-24 14:12:41.494 00:00:00.000 UDP 28.104.0.1:54052 -> 198.28.0.2:53 1 64 1 2025-11-24 14:08:26.476 00:05:10.015 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2380 1 2025-11-24 14:12:41.505 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54052 1 80 1 2025-11-24 14:12:41.505 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41245 1 109 1 2025-11-24 14:13:11.640 00:00:00.098 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 14:09:11.638 00:05:00.452 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 14:09:03.195 00:05:08.454 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 14:13:41.810 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44710 1 109 1 2025-11-24 14:13:41.810 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47029 1 80 1 2025-11-24 14:13:41.799 00:00:00.000 UDP 28.104.0.1:47029 -> 198.28.0.2:53 1 64 1 2025-11-24 14:13:41.798 00:00:00.000 UDP 28.104.0.1:44710 -> 198.28.0.2:53 1 64 1 2025-11-24 14:09:11.805 00:05:51.444 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 14:14:11.639 00:00:00.098 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 14:14:42.117 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39489 1 109 1 2025-11-24 14:14:42.117 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36848 1 80 1 2025-11-24 14:14:42.107 00:00:00.000 UDP 28.104.0.1:36848 -> 198.28.0.2:53 1 64 1 2025-11-24 14:14:42.107 00:00:00.000 UDP 28.104.0.1:39489 -> 198.28.0.2:53 1 64 1 2025-11-24 14:10:11.639 00:05:51.570 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 14:10:11.816 00:05:51.383 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 14:15:42.411 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48364 1 109 1 2025-11-24 14:15:42.411 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43816 1 80 1 2025-11-24 14:15:42.400 00:00:00.000 UDP 28.104.0.1:48364 -> 198.28.0.2:53 1 64 1 2025-11-24 14:15:42.400 00:00:00.000 UDP 28.104.0.1:43816 -> 198.28.0.2:53 1 64 1 2025-11-24 14:15:11.639 00:01:00.099 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 14:16:42.703 00:00:00.000 UDP 28.104.0.1:44657 -> 198.28.0.2:53 1 64 1 2025-11-24 14:16:42.703 00:00:00.000 UDP 28.104.0.1:48261 -> 198.28.0.2:53 1 64 1 2025-11-24 14:16:42.713 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48261 1 109 1 2025-11-24 14:16:42.713 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44657 1 80 1 2025-11-24 14:17:16.293 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 14:17:43.020 00:00:00.000 UDP 28.104.0.1:60597 -> 198.28.0.2:53 1 64 1 2025-11-24 14:17:43.021 00:00:00.000 UDP 28.104.0.1:53424 -> 198.28.0.2:53 1 64 1 2025-11-24 14:17:43.032 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60597 1 109 1 2025-11-24 14:17:43.032 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53424 1 80 1 2025-11-24 14:13:46.491 00:05:10.015 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2864 1 2025-11-24 14:17:11.640 00:01:00.099 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 14:18:43.324 00:00:00.000 UDP 28.104.0.1:38419 -> 198.28.0.2:53 1 64 1 2025-11-24 14:18:43.324 00:00:00.000 UDP 28.104.0.1:58370 -> 198.28.0.2:53 1 64 1 2025-11-24 14:18:43.333 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58370 1 109 1 2025-11-24 14:18:43.335 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38419 1 80 1 2025-11-24 14:19:11.650 00:00:00.089 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 14:15:03.199 00:05:08.463 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 14:15:11.641 00:05:00.451 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 14:19:43.646 00:00:00.000 UDP 28.104.0.1:41100 -> 198.28.0.2:53 1 64 1 2025-11-24 14:19:43.646 00:00:00.000 UDP 28.104.0.1:37729 -> 198.28.0.2:53 1 64 1 2025-11-24 14:19:43.657 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41100 1 109 1 2025-11-24 14:19:43.657 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37729 1 80 1 2025-11-24 14:15:11.812 00:05:51.437 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 14:20:43.945 00:00:00.000 UDP 28.104.0.1:40663 -> 198.28.0.2:53 1 64 1 2025-11-24 14:20:43.945 00:00:00.000 UDP 28.104.0.1:58035 -> 198.28.0.2:53 1 64 1 2025-11-24 14:20:43.955 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58035 1 80 1 2025-11-24 14:20:43.956 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40663 1 109 1 2025-11-24 14:16:11.639 00:05:51.570 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 14:16:11.824 00:05:51.377 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 14:20:11.651 00:01:00.088 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 14:21:44.247 00:00:00.000 UDP 28.104.0.1:41649 -> 198.28.0.2:53 1 64 1 2025-11-24 14:21:44.247 00:00:00.000 UDP 28.104.0.1:51385 -> 198.28.0.2:53 1 64 1 2025-11-24 14:21:44.258 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51385 1 80 1 2025-11-24 14:21:44.260 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41649 1 109 1 2025-11-24 14:22:16.860 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 14:22:44.584 00:00:00.000 UDP 28.104.0.1:34626 -> 198.28.0.2:53 1 64 1 2025-11-24 14:22:44.584 00:00:00.000 UDP 28.104.0.1:47009 -> 198.28.0.2:53 1 64 1 2025-11-24 14:22:44.595 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47009 1 109 1 2025-11-24 14:22:44.595 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34626 1 80 1 2025-11-24 14:22:11.654 00:01:00.086 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 14:19:06.505 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 44 3100 1 2025-11-24 14:23:44.900 00:00:00.000 UDP 28.104.0.1:47600 -> 198.28.0.2:53 1 64 1 2025-11-24 14:23:44.900 00:00:00.000 UDP 28.104.0.1:42619 -> 198.28.0.2:53 1 64 1 2025-11-24 14:23:44.911 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47600 1 80 1 2025-11-24 14:23:44.912 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42619 1 109 1 2025-11-24 14:24:11.655 00:00:00.085 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 14:24:45.759 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48311 1 80 1 2025-11-24 14:24:45.759 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51802 1 109 1 2025-11-24 14:24:45.749 00:00:00.000 UDP 28.104.0.1:51802 -> 198.28.0.2:53 1 64 1 2025-11-24 14:24:45.749 00:00:00.000 UDP 28.104.0.1:48311 -> 198.28.0.2:53 1 64 1 2025-11-24 14:21:03.200 00:05:08.466 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 14:21:11.651 00:05:00.442 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 14:25:46.005 00:00:00.000 UDP 28.104.0.1:57991 -> 198.28.0.2:53 1 64 1 2025-11-24 14:25:46.004 00:00:00.000 UDP 28.104.0.1:55722 -> 198.28.0.2:53 1 64 1 2025-11-24 14:25:46.016 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57991 1 80 1 2025-11-24 14:25:46.015 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55722 1 109 1 2025-11-24 14:21:11.821 00:05:51.431 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 14:25:11.656 00:01:00.085 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 14:26:46.890 00:00:00.000 UDP 28.104.0.1:35190 -> 198.28.0.2:53 1 64 1 2025-11-24 14:26:46.890 00:00:00.000 UDP 28.104.0.1:34549 -> 198.28.0.2:53 1 64 1 2025-11-24 14:26:46.899 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34549 1 80 1 2025-11-24 14:26:46.899 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35190 1 109 1 2025-11-24 14:22:11.654 00:05:51.558 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 14:22:11.833 00:05:51.370 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 14:27:16.493 00:00:00.025 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 14:27:47.192 00:00:00.000 UDP 28.104.0.1:43906 -> 198.28.0.2:53 1 64 1 2025-11-24 14:27:47.192 00:00:00.000 UDP 28.104.0.1:58097 -> 198.28.0.2:53 1 64 1 2025-11-24 14:27:47.204 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43906 1 109 1 2025-11-24 14:27:47.204 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58097 1 80 1 2025-11-24 14:27:11.656 00:01:00.085 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 14:24:26.511 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2648 1 2025-11-24 14:28:47.495 00:00:00.000 UDP 28.104.0.1:45152 -> 198.28.0.2:53 1 64 1 2025-11-24 14:28:47.495 00:00:00.000 UDP 28.104.0.1:33057 -> 198.28.0.2:53 1 64 1 2025-11-24 14:28:47.505 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33057 1 109 1 2025-11-24 14:28:47.505 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45152 1 80 1 2025-11-24 14:29:11.656 00:00:00.084 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 14:29:47.784 00:00:00.000 UDP 28.104.0.1:56373 -> 198.28.0.2:53 1 64 1 2025-11-24 14:29:47.784 00:00:00.000 UDP 28.104.0.1:55425 -> 198.28.0.2:53 1 64 1 2025-11-24 14:29:47.795 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56373 1 80 1 2025-11-24 14:29:47.795 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55425 1 109 1 2025-11-24 14:30:48.091 00:00:00.000 UDP 28.104.0.1:36321 -> 198.28.0.2:53 1 64 1 2025-11-24 14:30:48.091 00:00:00.000 UDP 28.104.0.1:46570 -> 198.28.0.2:53 1 64 1 2025-11-24 14:30:48.102 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46570 1 80 1 2025-11-24 14:30:48.102 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36321 1 109 1 2025-11-24 14:30:11.656 00:01:00.087 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 14:27:03.202 00:05:08.464 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 14:27:11.656 00:05:00.439 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 14:31:48.394 00:00:00.000 UDP 28.104.0.1:33396 -> 198.28.0.2:53 1 64 1 2025-11-24 14:31:48.394 00:00:00.000 UDP 28.104.0.1:58335 -> 198.28.0.2:53 1 64 1 2025-11-24 14:31:48.404 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33396 1 80 1 2025-11-24 14:31:48.404 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58335 1 109 1 2025-11-24 14:27:11.823 00:05:51.431 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 14:32:16.506 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 14:32:48.702 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50511 1 80 1 2025-11-24 14:32:48.702 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53371 1 109 1 2025-11-24 14:32:48.691 00:00:00.000 UDP 28.104.0.1:50511 -> 198.28.0.2:53 1 64 1 2025-11-24 14:32:48.691 00:00:00.000 UDP 28.104.0.1:53371 -> 198.28.0.2:53 1 64 1 2025-11-24 14:28:11.657 00:05:51.558 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 14:28:11.836 00:05:51.370 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 14:32:11.657 00:01:00.086 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 14:33:49.092 00:00:00.000 UDP 28.104.0.1:47722 -> 198.28.0.2:53 1 64 1 2025-11-24 14:33:49.092 00:00:00.000 UDP 28.104.0.1:56836 -> 198.28.0.2:53 1 64 1 2025-11-24 14:33:49.102 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56836 1 109 1 2025-11-24 14:33:49.102 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47722 1 80 1 2025-11-24 14:29:46.524 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2828 1 2025-11-24 14:34:11.658 00:00:00.088 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 14:34:49.397 00:00:00.000 UDP 28.104.0.1:45331 -> 198.28.0.2:53 1 64 1 2025-11-24 14:34:49.397 00:00:00.000 UDP 28.104.0.1:34587 -> 198.28.0.2:53 1 64 1 2025-11-24 14:34:49.407 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34587 1 109 1 2025-11-24 14:34:49.407 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45331 1 80 1 2025-11-24 14:35:49.699 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46533 1 80 1 2025-11-24 14:35:49.699 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49261 1 109 1 2025-11-24 14:35:49.689 00:00:00.000 UDP 28.104.0.1:49261 -> 198.28.0.2:53 1 64 1 2025-11-24 14:35:49.689 00:00:00.000 UDP 28.104.0.1:46533 -> 198.28.0.2:53 1 64 1 2025-11-24 14:35:11.662 00:01:00.081 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 14:36:50.002 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46746 1 109 1 2025-11-24 14:36:50.001 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60850 1 80 1 2025-11-24 14:36:49.989 00:00:00.000 UDP 28.104.0.1:60850 -> 198.28.0.2:53 1 64 1 2025-11-24 14:36:49.990 00:00:00.000 UDP 28.104.0.1:46746 -> 198.28.0.2:53 1 64 1 2025-11-24 14:33:11.658 00:05:00.437 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 14:37:16.694 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 14:33:03.205 00:05:08.468 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 14:37:50.313 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44741 1 80 1 2025-11-24 14:37:50.313 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57137 1 109 1 2025-11-24 14:37:50.303 00:00:00.000 UDP 28.104.0.1:57137 -> 198.28.0.2:53 1 64 1 2025-11-24 14:37:50.303 00:00:00.000 UDP 28.104.0.1:44741 -> 198.28.0.2:53 1 64 1 2025-11-24 14:33:11.826 00:05:51.430 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 14:37:11.663 00:01:00.084 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 14:38:50.605 00:00:00.000 UDP 28.104.0.1:44172 -> 198.28.0.2:53 1 64 1 2025-11-24 14:38:50.605 00:00:00.000 UDP 28.104.0.1:58214 -> 198.28.0.2:53 1 64 1 2025-11-24 14:38:50.615 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58214 1 109 1 2025-11-24 14:38:50.615 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44172 1 80 1 2025-11-24 14:34:11.657 00:05:51.558 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 14:34:11.836 00:05:51.370 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 14:39:11.662 00:00:00.085 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 14:35:06.532 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 32 2176 1 2025-11-24 14:39:50.864 00:00:00.000 UDP 28.104.0.1:55085 -> 198.28.0.2:53 1 64 1 2025-11-24 14:39:50.864 00:00:00.000 UDP 28.104.0.1:41812 -> 198.28.0.2:53 1 64 1 2025-11-24 14:39:50.874 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41812 1 80 1 2025-11-24 14:39:50.874 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55085 1 109 1 2025-11-24 14:40:51.195 00:00:00.000 UDP 28.104.0.1:53782 -> 198.28.0.2:53 1 64 1 2025-11-24 14:40:51.195 00:00:00.000 UDP 28.104.0.1:59881 -> 198.28.0.2:53 1 64 1 2025-11-24 14:40:51.205 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59881 1 80 1 2025-11-24 14:40:51.205 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53782 1 109 1 2025-11-24 14:40:11.665 00:01:00.082 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 14:41:51.486 00:00:00.000 UDP 28.104.0.1:56365 -> 198.28.0.2:53 1 64 1 2025-11-24 14:41:51.486 00:00:00.000 UDP 28.104.0.1:52413 -> 198.28.0.2:53 1 64 1 2025-11-24 14:41:51.496 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52413 1 80 1 2025-11-24 14:41:51.496 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56365 1 109 1 2025-11-24 14:42:17.225 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 14:42:51.733 00:00:00.000 UDP 28.104.0.1:48473 -> 198.28.0.2:53 1 64 1 2025-11-24 14:42:51.733 00:00:00.000 UDP 28.104.0.1:42070 -> 198.28.0.2:53 1 64 1 2025-11-24 14:42:51.746 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48473 1 80 1 2025-11-24 14:42:51.745 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42070 1 109 1 2025-11-24 14:42:11.662 00:01:00.087 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 14:39:03.207 00:05:08.467 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 14:39:11.663 00:05:00.436 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 14:43:52.053 00:00:00.000 UDP 28.104.0.1:57981 -> 198.28.0.2:53 1 64 1 2025-11-24 14:43:52.053 00:00:00.000 UDP 28.104.0.1:53667 -> 198.28.0.2:53 1 64 1 2025-11-24 14:43:52.063 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57981 1 109 1 2025-11-24 14:43:52.063 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53667 1 80 1 2025-11-24 14:39:11.826 00:05:51.431 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 14:44:11.664 00:00:00.086 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 14:40:26.538 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2588 1 2025-11-24 14:44:52.347 00:00:00.000 UDP 28.104.0.1:39195 -> 198.28.0.2:53 1 64 1 2025-11-24 14:44:52.347 00:00:00.000 UDP 28.104.0.1:41520 -> 198.28.0.2:53 1 64 1 2025-11-24 14:44:52.357 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41520 1 109 1 2025-11-24 14:44:52.357 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39195 1 80 1 2025-11-24 14:40:11.665 00:05:51.552 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 14:40:11.835 00:05:51.372 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 14:45:11.664 00:00:00.086 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 14:45:52.601 00:00:00.000 UDP 28.104.0.1:34180 -> 198.28.0.2:53 1 64 1 2025-11-24 14:45:52.601 00:00:00.000 UDP 28.104.0.1:59346 -> 198.28.0.2:53 1 64 1 2025-11-24 14:45:52.613 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59346 1 109 1 2025-11-24 14:45:52.613 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34180 1 80 1 2025-11-24 14:46:11.664 00:00:00.087 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 14:46:52.891 00:00:00.000 UDP 28.104.0.1:42478 -> 198.28.0.2:53 1 64 1 2025-11-24 14:46:52.891 00:00:00.000 UDP 28.104.0.1:53371 -> 198.28.0.2:53 1 64 1 2025-11-24 14:46:52.901 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42478 1 80 1 2025-11-24 14:46:52.901 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53371 1 109 1 2025-11-24 14:47:17.225 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 14:47:53.219 00:00:00.000 UDP 28.104.0.1:54426 -> 198.28.0.2:53 1 64 1 2025-11-24 14:47:53.219 00:00:00.000 UDP 28.104.0.1:34690 -> 198.28.0.2:53 1 64 1 2025-11-24 14:47:53.229 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54426 1 80 1 2025-11-24 14:47:53.229 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34690 1 109 1 2025-11-24 14:47:11.664 00:01:00.086 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 14:48:53.526 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36005 1 109 1 2025-11-24 14:48:53.526 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34523 1 80 1 2025-11-24 14:48:53.517 00:00:00.000 UDP 28.104.0.1:36005 -> 198.28.0.2:53 1 64 1 2025-11-24 14:48:53.517 00:00:00.000 UDP 28.104.0.1:34523 -> 198.28.0.2:53 1 64 1 2025-11-24 14:49:11.664 00:00:00.086 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 14:45:03.207 00:05:08.468 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 14:45:11.664 00:05:00.436 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 14:49:54.307 00:00:00.000 UDP 28.104.0.1:50167 -> 198.28.0.2:53 1 64 1 2025-11-24 14:49:54.307 00:00:00.000 UDP 28.104.0.1:45256 -> 198.28.0.2:53 1 64 1 2025-11-24 14:49:54.317 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50167 1 109 1 2025-11-24 14:49:54.317 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45256 1 80 1 2025-11-24 14:45:46.541 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 44 3172 1 2025-11-24 14:45:11.829 00:05:51.431 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 14:50:11.664 00:00:00.087 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 14:50:54.605 00:00:00.000 UDP 28.104.0.1:48375 -> 198.28.0.2:53 1 64 1 2025-11-24 14:50:54.604 00:00:00.000 UDP 28.104.0.1:35455 -> 198.28.0.2:53 1 64 1 2025-11-24 14:50:54.613 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35455 1 109 1 2025-11-24 14:50:54.615 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48375 1 80 1 2025-11-24 14:46:11.838 00:05:51.370 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 14:46:11.664 00:05:51.555 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 14:51:11.665 00:00:00.087 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 14:51:54.871 00:00:00.000 UDP 28.104.0.1:59019 -> 198.28.0.2:53 1 64 1 2025-11-24 14:51:54.871 00:00:00.000 UDP 28.104.0.1:38051 -> 198.28.0.2:53 1 64 1 2025-11-24 14:51:54.882 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59019 1 109 1 2025-11-24 14:51:54.880 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38051 1 80 1 2025-11-24 14:52:16.846 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 14:52:55.198 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42121 1 109 1 2025-11-24 14:52:55.198 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46592 1 80 1 2025-11-24 14:52:55.189 00:00:00.000 UDP 28.104.0.1:46592 -> 198.28.0.2:53 1 64 1 2025-11-24 14:52:55.189 00:00:00.000 UDP 28.104.0.1:42121 -> 198.28.0.2:53 1 64 1 2025-11-24 14:52:11.665 00:01:00.087 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 14:53:55.781 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40484 1 80 1 2025-11-24 14:53:55.781 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44525 1 109 1 2025-11-24 14:53:55.771 00:00:00.000 UDP 28.104.0.1:40484 -> 198.28.0.2:53 1 64 1 2025-11-24 14:53:55.771 00:00:00.000 UDP 28.104.0.1:44525 -> 198.28.0.2:53 1 64 1 2025-11-24 14:54:56.044 00:00:00.000 UDP 28.104.0.1:39796 -> 198.28.0.2:53 1 64 1 2025-11-24 14:54:56.044 00:00:00.000 UDP 28.104.0.1:45424 -> 198.28.0.2:53 1 64 1 2025-11-24 14:54:56.055 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39796 1 80 1 2025-11-24 14:54:56.055 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45424 1 109 1 2025-11-24 14:54:11.665 00:01:00.087 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 14:51:03.208 00:05:08.493 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 14:51:06.546 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 44 3080 1 2025-11-24 14:51:11.664 00:05:00.436 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 14:55:56.945 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38109 1 80 1 2025-11-24 14:55:56.945 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49465 1 109 1 2025-11-24 14:55:56.935 00:00:00.000 UDP 28.104.0.1:49465 -> 198.28.0.2:53 1 64 1 2025-11-24 14:55:56.935 00:00:00.000 UDP 28.104.0.1:38109 -> 198.28.0.2:53 1 64 1 2025-11-24 14:51:11.829 00:05:51.429 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 14:56:11.679 00:00:00.074 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 14:56:57.240 00:00:00.000 UDP 28.104.0.1:52180 -> 198.28.0.2:53 1 64 1 2025-11-24 14:56:57.240 00:00:00.000 UDP 28.104.0.1:48531 -> 198.28.0.2:53 1 64 1 2025-11-24 14:56:57.251 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48531 1 109 1 2025-11-24 14:56:57.251 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52180 1 80 1 2025-11-24 14:52:11.664 00:05:51.555 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 14:52:11.840 00:05:51.368 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 14:57:17.680 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 14:57:57.549 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36450 1 80 1 2025-11-24 14:57:57.549 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49310 1 109 1 2025-11-24 14:57:57.539 00:00:00.000 UDP 28.104.0.1:49310 -> 198.28.0.2:53 1 64 1 2025-11-24 14:57:57.539 00:00:00.000 UDP 28.104.0.1:36450 -> 198.28.0.2:53 1 64 1 2025-11-24 14:57:11.665 00:01:00.089 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 Summary: total flows: 349, total bytes: 96034, total packets: 1416, avg bps: 209, avg pps: 0, avg bpp: 67 Time window: 2025-11-24 13:57:03 - 2025-11-24 14:58:11 Total flows processed: 349, passed: 349, Blocks skipped: 0, Bytes read: 36360 Sys: 0.0058s User: 0.0017s Wall: 0.0054s flows/second: 65194.5 Runtime: 0.0054s