Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 16:59:11.725 00:00:00.099 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 16:59:34.927 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58859 1 80 1 2025-11-24 16:59:34.927 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40104 1 109 1 2025-11-24 16:59:34.916 00:00:00.000 UDP 28.104.0.1:58859 -> 198.28.0.2:53 1 64 1 2025-11-24 16:59:34.916 00:00:00.000 UDP 28.104.0.1:40104 -> 198.28.0.2:53 1 64 1 2025-11-24 17:00:35.237 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43688 1 80 1 2025-11-24 17:00:35.237 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40579 1 109 1 2025-11-24 17:00:35.227 00:00:00.000 UDP 28.104.0.1:43688 -> 198.28.0.2:53 1 64 1 2025-11-24 17:00:35.227 00:00:00.000 UDP 28.104.0.1:40579 -> 198.28.0.2:53 1 64 1 2025-11-24 17:00:11.725 00:01:00.100 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 16:57:03.239 00:05:08.496 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 16:57:11.726 00:05:00.410 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 17:01:35.522 00:00:00.000 UDP 28.104.0.1:32983 -> 198.28.0.2:53 1 64 1 2025-11-24 17:01:35.523 00:00:00.000 UDP 28.104.0.1:43272 -> 198.28.0.2:53 1 64 1 2025-11-24 17:01:35.533 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43272 1 80 1 2025-11-24 17:01:35.532 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32983 1 109 1 2025-11-24 16:57:11.867 00:05:51.424 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 17:02:11.726 00:00:00.099 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 17:02:19.819 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 17:02:35.823 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47195 1 80 1 2025-11-24 17:02:35.823 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36217 1 109 1 2025-11-24 17:02:35.813 00:00:00.000 UDP 28.104.0.1:36217 -> 198.28.0.2:53 1 64 1 2025-11-24 17:02:35.813 00:00:00.000 UDP 28.104.0.1:47195 -> 198.28.0.2:53 1 64 1 2025-11-24 16:58:11.877 00:05:51.364 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 16:58:11.725 00:05:51.526 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 16:58:56.747 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2380 1 2025-11-24 17:03:11.726 00:00:00.099 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 17:03:36.119 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33440 1 109 1 2025-11-24 17:03:36.119 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53648 1 80 1 2025-11-24 17:03:36.109 00:00:00.000 UDP 28.104.0.1:33440 -> 198.28.0.2:53 1 64 1 2025-11-24 17:03:36.109 00:00:00.000 UDP 28.104.0.1:53648 -> 198.28.0.2:53 1 64 1 2025-11-24 17:04:11.726 00:00:00.099 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 17:04:36.439 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35786 1 80 1 2025-11-24 17:04:36.439 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52431 1 109 1 2025-11-24 17:04:36.429 00:00:00.000 UDP 28.104.0.1:52431 -> 198.28.0.2:53 1 64 1 2025-11-24 17:04:36.429 00:00:00.000 UDP 28.104.0.1:35786 -> 198.28.0.2:53 1 64 1 2025-11-24 17:05:36.729 00:00:00.000 UDP 28.104.0.1:33717 -> 198.28.0.2:53 1 64 1 2025-11-24 17:05:36.729 00:00:00.000 UDP 28.104.0.1:53810 -> 198.28.0.2:53 1 64 1 2025-11-24 17:05:36.739 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33717 1 109 1 2025-11-24 17:05:36.739 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53810 1 80 1 2025-11-24 17:05:11.726 00:01:00.100 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 17:06:37.610 00:00:00.000 UDP 28.104.0.1:56618 -> 198.28.0.2:53 1 64 1 2025-11-24 17:06:37.610 00:00:00.000 UDP 28.104.0.1:45304 -> 198.28.0.2:53 1 64 1 2025-11-24 17:06:37.621 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45304 1 109 1 2025-11-24 17:06:37.621 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56618 1 80 1 2025-11-24 17:07:11.727 00:00:00.099 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 17:03:11.726 00:05:00.413 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 17:03:03.242 00:05:08.496 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 17:07:19.706 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 17:07:37.925 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38337 1 80 1 2025-11-24 17:07:37.924 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52982 1 109 1 2025-11-24 17:07:37.913 00:00:00.000 UDP 28.104.0.1:52982 -> 198.28.0.2:53 1 64 1 2025-11-24 17:07:37.913 00:00:00.000 UDP 28.104.0.1:38337 -> 198.28.0.2:53 1 64 1 2025-11-24 17:03:11.869 00:05:51.422 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 17:08:11.727 00:00:00.100 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 17:04:16.757 00:05:10.162 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2788 1 2025-11-24 17:08:38.610 00:00:00.000 UDP 28.104.0.1:58921 -> 198.28.0.2:53 1 64 1 2025-11-24 17:08:38.610 00:00:00.000 UDP 28.104.0.1:60655 -> 198.28.0.2:53 1 64 1 2025-11-24 17:08:38.620 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58921 1 80 1 2025-11-24 17:08:38.620 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60655 1 109 1 2025-11-24 17:04:11.879 00:05:51.363 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 17:04:11.725 00:05:51.527 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 17:09:11.726 00:00:00.099 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 17:09:38.912 00:00:00.000 UDP 28.104.0.1:55749 -> 198.28.0.2:53 1 64 1 2025-11-24 17:09:38.911 00:00:00.000 UDP 28.104.0.1:37259 -> 198.28.0.2:53 1 64 1 2025-11-24 17:09:38.923 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55749 1 109 1 2025-11-24 17:09:38.923 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37259 1 80 1 2025-11-24 17:10:39.215 00:00:00.000 UDP 28.104.0.1:54190 -> 198.28.0.2:53 1 64 1 2025-11-24 17:10:39.215 00:00:00.000 UDP 28.104.0.1:56816 -> 198.28.0.2:53 1 64 1 2025-11-24 17:10:39.224 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54190 1 80 1 2025-11-24 17:10:39.225 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56816 1 109 1 2025-11-24 17:10:11.727 00:01:00.099 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 17:11:39.535 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51345 1 80 1 2025-11-24 17:11:39.535 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45746 1 109 1 2025-11-24 17:11:39.525 00:00:00.000 UDP 28.104.0.1:51345 -> 198.28.0.2:53 1 64 1 2025-11-24 17:11:39.525 00:00:00.000 UDP 28.104.0.1:45746 -> 198.28.0.2:53 1 64 1 2025-11-24 17:12:19.844 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 17:12:39.821 00:00:00.000 UDP 28.104.0.1:50785 -> 198.28.0.2:53 1 64 1 2025-11-24 17:12:39.820 00:00:00.000 UDP 28.104.0.1:41076 -> 198.28.0.2:53 1 64 1 2025-11-24 17:12:39.831 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41076 1 80 1 2025-11-24 17:12:39.831 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50785 1 109 1 2025-11-24 17:12:11.728 00:01:00.107 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 17:09:03.241 00:05:08.504 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 17:09:11.726 00:05:00.412 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 17:13:40.146 00:00:00.000 UDP 28.104.0.1:55105 -> 198.28.0.2:53 1 64 1 2025-11-24 17:13:40.144 00:00:00.000 UDP 28.104.0.1:49671 -> 198.28.0.2:53 1 64 1 2025-11-24 17:13:40.156 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55105 1 109 1 2025-11-24 17:13:40.157 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49671 1 80 1 2025-11-24 17:09:36.338 00:05:10.437 OSPF 28.0.2.1:0 -> 224.0.0.5:0 45 3144 1 2025-11-24 17:09:11.870 00:05:51.423 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 17:14:11.735 00:00:00.093 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 17:14:40.467 00:00:00.000 UDP 28.104.0.1:53226 -> 198.28.0.2:53 1 64 1 2025-11-24 17:14:40.467 00:00:00.000 UDP 28.104.0.1:60236 -> 198.28.0.2:53 1 64 1 2025-11-24 17:14:40.477 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60236 1 80 1 2025-11-24 17:14:40.477 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53226 1 109 1 2025-11-24 17:10:11.879 00:05:51.363 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 17:10:11.727 00:05:51.527 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 17:15:40.776 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41720 1 109 1 2025-11-24 17:15:40.776 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40468 1 80 1 2025-11-24 17:15:40.766 00:00:00.000 UDP 28.104.0.1:41720 -> 198.28.0.2:53 1 64 1 2025-11-24 17:15:40.767 00:00:00.000 UDP 28.104.0.1:40468 -> 198.28.0.2:53 1 64 1 2025-11-24 17:15:11.730 00:01:00.098 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 17:16:41.094 00:00:00.000 UDP 28.104.0.1:54263 -> 198.28.0.2:53 1 64 1 2025-11-24 17:16:41.094 00:00:00.000 UDP 28.104.0.1:35382 -> 198.28.0.2:53 1 64 1 2025-11-24 17:16:41.105 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54263 1 109 1 2025-11-24 17:16:41.105 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35382 1 80 1 2025-11-24 17:17:19.885 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 17:17:41.395 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35580 1 109 1 2025-11-24 17:17:41.395 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57771 1 80 1 2025-11-24 17:17:41.384 00:00:00.000 UDP 28.104.0.1:35580 -> 198.28.0.2:53 1 64 1 2025-11-24 17:17:41.384 00:00:00.000 UDP 28.104.0.1:57771 -> 198.28.0.2:53 1 64 1 2025-11-24 17:17:11.731 00:01:00.097 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 17:18:41.679 00:00:00.000 UDP 28.104.0.1:56976 -> 198.28.0.2:53 1 64 1 2025-11-24 17:18:41.679 00:00:00.000 UDP 28.104.0.1:55210 -> 198.28.0.2:53 1 64 1 2025-11-24 17:18:41.689 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56976 1 109 1 2025-11-24 17:18:41.689 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55210 1 80 1 2025-11-24 17:19:11.732 00:00:00.103 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 17:14:56.775 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 2920 1 2025-11-24 17:15:03.243 00:05:08.499 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 17:15:11.730 00:05:00.409 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 17:19:42.496 00:00:00.000 UDP 28.104.0.1:48828 -> 198.28.0.2:53 1 64 1 2025-11-24 17:19:42.496 00:00:00.000 UDP 28.104.0.1:50678 -> 198.28.0.2:53 1 64 1 2025-11-24 17:19:42.507 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50678 1 109 1 2025-11-24 17:19:42.507 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48828 1 80 1 2025-11-24 17:15:11.871 00:05:51.424 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 17:20:42.748 00:00:00.000 UDP 28.104.0.1:47495 -> 198.28.0.2:53 1 64 1 2025-11-24 17:20:42.747 00:00:00.000 UDP 28.104.0.1:39311 -> 198.28.0.2:53 1 64 1 2025-11-24 17:20:42.758 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39311 1 80 1 2025-11-24 17:20:42.759 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47495 1 109 1 2025-11-24 17:16:11.732 00:05:51.524 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 17:16:11.882 00:05:51.362 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 17:20:11.732 00:01:00.104 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 17:21:43.053 00:00:00.000 UDP 28.104.0.1:33713 -> 198.28.0.2:53 1 64 1 2025-11-24 17:21:43.053 00:00:00.000 UDP 28.104.0.1:47439 -> 198.28.0.2:53 1 64 1 2025-11-24 17:21:43.065 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33713 1 80 1 2025-11-24 17:21:43.065 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47439 1 109 1 2025-11-24 17:22:20.071 00:00:00.045 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 17:22:43.348 00:00:00.000 UDP 28.104.0.1:42871 -> 198.28.0.2:53 1 64 1 2025-11-24 17:22:43.349 00:00:00.000 UDP 28.104.0.1:42470 -> 198.28.0.2:53 1 64 1 2025-11-24 17:22:43.360 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42871 1 109 1 2025-11-24 17:22:43.360 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42470 1 80 1 2025-11-24 17:22:11.733 00:01:00.103 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 17:23:43.653 00:00:00.000 UDP 28.104.0.1:37922 -> 198.28.0.2:53 1 64 1 2025-11-24 17:23:43.653 00:00:00.000 UDP 28.104.0.1:36578 -> 198.28.0.2:53 1 64 1 2025-11-24 17:23:43.663 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37922 1 80 1 2025-11-24 17:23:43.663 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36578 1 109 1 2025-11-24 17:24:11.734 00:00:00.103 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 17:20:16.785 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2956 1 2025-11-24 17:24:43.958 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53546 1 80 1 2025-11-24 17:24:43.959 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46306 1 109 1 2025-11-24 17:24:43.949 00:00:00.000 UDP 28.104.0.1:53546 -> 198.28.0.2:53 1 64 1 2025-11-24 17:24:43.949 00:00:00.000 UDP 28.104.0.1:46306 -> 198.28.0.2:53 1 64 1 2025-11-24 17:25:11.734 00:00:00.102 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 17:21:11.734 00:05:00.407 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 17:21:03.246 00:05:08.499 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 17:25:44.216 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55947 1 109 1 2025-11-24 17:25:44.216 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58072 1 80 1 2025-11-24 17:25:44.206 00:00:00.000 UDP 28.104.0.1:55947 -> 198.28.0.2:53 1 64 1 2025-11-24 17:25:44.206 00:00:00.000 UDP 28.104.0.1:58072 -> 198.28.0.2:53 1 64 1 2025-11-24 17:21:11.874 00:05:51.422 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 17:26:11.734 00:00:00.103 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 17:26:45.047 00:00:00.000 UDP 28.104.0.1:48293 -> 198.28.0.2:53 1 64 1 2025-11-24 17:26:45.047 00:00:00.000 UDP 28.104.0.1:47951 -> 198.28.0.2:53 1 64 1 2025-11-24 17:26:45.057 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48293 1 109 1 2025-11-24 17:26:45.057 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47951 1 80 1 2025-11-24 17:22:11.883 00:05:51.364 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 17:22:11.734 00:05:51.523 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 17:27:20.499 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 17:27:45.355 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46846 1 109 1 2025-11-24 17:27:45.355 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56835 1 80 1 2025-11-24 17:27:45.345 00:00:00.000 UDP 28.104.0.1:46846 -> 198.28.0.2:53 1 64 1 2025-11-24 17:27:45.345 00:00:00.000 UDP 28.104.0.1:56835 -> 198.28.0.2:53 1 64 1 2025-11-24 17:27:11.735 00:01:00.102 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 17:28:45.642 00:00:00.000 UDP 28.104.0.1:38788 -> 198.28.0.2:53 1 64 1 2025-11-24 17:28:45.642 00:00:00.000 UDP 28.104.0.1:34985 -> 198.28.0.2:53 1 64 1 2025-11-24 17:28:45.651 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38788 1 80 1 2025-11-24 17:28:45.651 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34985 1 109 1 2025-11-24 17:29:11.735 00:00:00.105 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 17:29:45.920 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59748 1 109 1 2025-11-24 17:29:45.920 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51958 1 80 1 2025-11-24 17:29:45.910 00:00:00.000 UDP 28.104.0.1:51958 -> 198.28.0.2:53 1 64 1 2025-11-24 17:29:45.910 00:00:00.000 UDP 28.104.0.1:59748 -> 198.28.0.2:53 1 64 1 2025-11-24 17:25:36.796 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 32 2176 1 2025-11-24 17:30:11.737 00:00:00.101 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 17:30:46.224 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57115 1 80 1 2025-11-24 17:30:46.224 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51661 1 109 1 2025-11-24 17:30:46.213 00:00:00.000 UDP 28.104.0.1:57115 -> 198.28.0.2:53 1 64 1 2025-11-24 17:30:46.213 00:00:00.000 UDP 28.104.0.1:51661 -> 198.28.0.2:53 1 64 1 2025-11-24 17:31:11.736 00:00:00.100 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 17:27:11.734 00:05:00.408 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 17:27:03.246 00:05:08.501 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 17:31:46.523 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40749 1 109 1 2025-11-24 17:31:46.523 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51713 1 80 1 2025-11-24 17:31:46.513 00:00:00.000 UDP 28.104.0.1:40749 -> 198.28.0.2:53 1 64 1 2025-11-24 17:31:46.513 00:00:00.000 UDP 28.104.0.1:51713 -> 198.28.0.2:53 1 64 1 2025-11-24 17:27:11.873 00:05:51.425 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 17:32:20.168 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 17:32:46.819 00:00:00.000 UDP 28.104.0.1:58272 -> 198.28.0.2:53 1 64 1 2025-11-24 17:32:46.819 00:00:00.000 UDP 28.104.0.1:35148 -> 198.28.0.2:53 1 64 1 2025-11-24 17:32:46.828 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58272 1 109 1 2025-11-24 17:32:46.827 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35148 1 80 1 2025-11-24 17:28:11.734 00:05:51.524 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 17:28:11.883 00:05:51.365 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 17:32:11.738 00:01:00.101 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 17:33:47.086 00:00:00.000 UDP 28.104.0.1:37527 -> 198.28.0.2:53 1 64 1 2025-11-24 17:33:47.086 00:00:00.000 UDP 28.104.0.1:38437 -> 198.28.0.2:53 1 64 1 2025-11-24 17:33:47.097 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38437 1 109 1 2025-11-24 17:33:47.097 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37527 1 80 1 2025-11-24 17:34:11.738 00:00:00.099 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 17:34:47.466 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47887 1 109 1 2025-11-24 17:34:47.466 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43930 1 80 1 2025-11-24 17:34:47.457 00:00:00.000 UDP 28.104.0.1:43930 -> 198.28.0.2:53 1 64 1 2025-11-24 17:34:47.457 00:00:00.000 UDP 28.104.0.1:47887 -> 198.28.0.2:53 1 64 1 2025-11-24 17:30:56.803 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2588 1 2025-11-24 17:35:11.737 00:00:00.105 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 17:35:47.751 00:00:00.000 UDP 28.104.0.1:40171 -> 198.28.0.2:53 1 64 1 2025-11-24 17:35:47.752 00:00:00.000 UDP 28.104.0.1:43922 -> 198.28.0.2:53 1 64 1 2025-11-24 17:35:47.762 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40171 1 109 1 2025-11-24 17:35:47.762 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43922 1 80 1 2025-11-24 17:36:11.739 00:00:00.103 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 17:36:48.057 00:00:00.000 UDP 28.104.0.1:50108 -> 198.28.0.2:53 1 64 1 2025-11-24 17:36:48.057 00:00:00.000 UDP 28.104.0.1:60072 -> 198.28.0.2:53 1 64 1 2025-11-24 17:36:48.069 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60072 1 109 1 2025-11-24 17:36:48.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50108 1 80 1 2025-11-24 17:33:03.247 00:05:08.502 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 17:33:11.737 00:05:00.405 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 17:37:20.722 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 17:37:48.367 00:00:00.000 UDP 28.104.0.1:42876 -> 198.28.0.2:53 1 64 1 2025-11-24 17:37:48.367 00:00:00.000 UDP 28.104.0.1:42974 -> 198.28.0.2:53 1 64 1 2025-11-24 17:37:48.377 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42974 1 80 1 2025-11-24 17:37:48.377 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42876 1 109 1 2025-11-24 17:33:11.874 00:05:51.427 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 17:37:11.741 00:01:00.104 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 17:38:48.678 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37588 1 109 1 2025-11-24 17:38:48.678 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56842 1 80 1 2025-11-24 17:38:48.669 00:00:00.000 UDP 28.104.0.1:37588 -> 198.28.0.2:53 1 64 1 2025-11-24 17:38:48.669 00:00:00.000 UDP 28.104.0.1:56842 -> 198.28.0.2:53 1 64 1 2025-11-24 17:34:11.738 00:05:51.524 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 17:34:11.885 00:05:51.367 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 17:39:11.742 00:00:00.103 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 17:39:48.921 00:00:00.000 UDP 28.104.0.1:51135 -> 198.28.0.2:53 1 64 1 2025-11-24 17:39:48.921 00:00:00.000 UDP 28.104.0.1:37067 -> 198.28.0.2:53 1 64 1 2025-11-24 17:39:48.932 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51135 1 80 1 2025-11-24 17:39:48.932 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37067 1 109 1 2025-11-24 17:40:11.741 00:00:00.105 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 17:36:16.818 00:05:00.605 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 2916 1 2025-11-24 17:40:49.269 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58121 1 80 1 2025-11-24 17:40:49.269 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33429 1 109 1 2025-11-24 17:40:49.260 00:00:00.000 UDP 28.104.0.1:58121 -> 198.28.0.2:53 1 64 1 2025-11-24 17:40:49.260 00:00:00.000 UDP 28.104.0.1:33429 -> 198.28.0.2:53 1 64 1 2025-11-24 17:41:11.740 00:00:00.105 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 17:41:49.566 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35580 1 80 1 2025-11-24 17:41:49.566 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49985 1 109 1 2025-11-24 17:41:49.556 00:00:00.000 UDP 28.104.0.1:49985 -> 198.28.0.2:53 1 64 1 2025-11-24 17:41:49.556 00:00:00.000 UDP 28.104.0.1:35580 -> 198.28.0.2:53 1 64 1 2025-11-24 17:42:20.533 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 17:42:49.841 00:00:00.000 UDP 28.104.0.1:48315 -> 198.28.0.2:53 1 64 1 2025-11-24 17:42:49.841 00:00:00.000 UDP 28.104.0.1:41518 -> 198.28.0.2:53 1 64 1 2025-11-24 17:42:49.852 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48315 1 80 1 2025-11-24 17:42:49.852 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41518 1 109 1 2025-11-24 17:39:03.251 00:05:08.501 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 17:42:11.741 00:01:00.105 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 17:39:11.741 00:05:00.405 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 17:43:50.136 00:00:00.000 UDP 28.104.0.1:58578 -> 198.28.0.2:53 1 64 1 2025-11-24 17:43:50.136 00:00:00.000 UDP 28.104.0.1:45492 -> 198.28.0.2:53 1 64 1 2025-11-24 17:43:50.145 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58578 1 80 1 2025-11-24 17:43:50.145 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45492 1 109 1 2025-11-24 17:39:11.876 00:05:51.429 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 17:44:50.441 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47741 1 109 1 2025-11-24 17:44:50.441 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42255 1 80 1 2025-11-24 17:44:50.431 00:00:00.000 UDP 28.104.0.1:47741 -> 198.28.0.2:53 1 64 1 2025-11-24 17:44:50.431 00:00:00.000 UDP 28.104.0.1:42255 -> 198.28.0.2:53 1 64 1 2025-11-24 17:40:11.886 00:05:51.368 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 17:40:11.741 00:05:51.524 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 17:44:11.743 00:01:00.104 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 17:41:26.825 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 46 3244 1 2025-11-24 17:45:50.738 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34686 1 109 1 2025-11-24 17:45:50.738 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34653 1 80 1 2025-11-24 17:45:50.728 00:00:00.000 UDP 28.104.0.1:34653 -> 198.28.0.2:53 1 64 1 2025-11-24 17:45:50.727 00:00:00.000 UDP 28.104.0.1:34686 -> 198.28.0.2:53 1 64 1 2025-11-24 17:46:11.743 00:00:00.105 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 17:46:51.051 00:00:00.000 UDP 28.104.0.1:48305 -> 198.28.0.2:53 1 64 1 2025-11-24 17:46:51.051 00:00:00.000 UDP 28.104.0.1:57410 -> 198.28.0.2:53 1 64 1 2025-11-24 17:46:51.063 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48305 1 80 1 2025-11-24 17:46:51.062 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57410 1 109 1 2025-11-24 17:47:20.393 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 17:47:51.348 00:00:00.000 UDP 28.104.0.1:59002 -> 198.28.0.2:53 1 64 1 2025-11-24 17:47:51.347 00:00:00.000 UDP 28.104.0.1:34017 -> 198.28.0.2:53 1 64 1 2025-11-24 17:47:51.358 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59002 1 109 1 2025-11-24 17:47:51.358 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34017 1 80 1 2025-11-24 17:47:11.744 00:01:00.104 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 17:48:51.650 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40807 1 80 1 2025-11-24 17:48:51.650 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46527 1 109 1 2025-11-24 17:48:51.639 00:00:00.000 UDP 28.104.0.1:46527 -> 198.28.0.2:53 1 64 1 2025-11-24 17:48:51.640 00:00:00.000 UDP 28.104.0.1:40807 -> 198.28.0.2:53 1 64 1 2025-11-24 17:45:03.255 00:05:08.499 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 17:45:11.742 00:05:00.405 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 17:49:51.936 00:00:00.000 UDP 28.104.0.1:43571 -> 198.28.0.2:53 1 64 1 2025-11-24 17:49:51.937 00:00:00.000 UDP 28.104.0.1:57376 -> 198.28.0.2:53 1 64 1 2025-11-24 17:49:51.947 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43571 1 80 1 2025-11-24 17:49:51.948 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57376 1 109 1 2025-11-24 17:45:11.880 00:05:51.427 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 17:49:11.745 00:01:00.104 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 17:50:52.248 00:00:00.000 UDP 28.104.0.1:56099 -> 198.28.0.2:53 1 64 1 2025-11-24 17:50:52.248 00:00:00.000 UDP 28.104.0.1:33079 -> 198.28.0.2:53 1 64 1 2025-11-24 17:46:46.833 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2708 1 2025-11-24 17:50:52.258 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56099 1 109 1 2025-11-24 17:50:52.258 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33079 1 80 1 2025-11-24 17:46:11.743 00:05:51.524 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 17:46:11.895 00:05:51.363 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 17:51:11.744 00:00:00.104 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 17:51:52.503 00:00:00.000 UDP 28.104.0.1:33511 -> 198.28.0.2:53 1 64 1 2025-11-24 17:51:52.503 00:00:00.000 UDP 28.104.0.1:56245 -> 198.28.0.2:53 1 64 1 2025-11-24 17:51:52.515 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56245 1 109 1 2025-11-24 17:51:52.515 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33511 1 80 1 2025-11-24 17:52:20.648 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 17:52:52.767 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48855 1 109 1 2025-11-24 17:52:52.768 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36924 1 80 1 2025-11-24 17:52:52.758 00:00:00.000 UDP 28.104.0.1:36924 -> 198.28.0.2:53 1 64 1 2025-11-24 17:52:52.757 00:00:00.000 UDP 28.104.0.1:48855 -> 198.28.0.2:53 1 64 1 2025-11-24 17:52:11.744 00:01:00.104 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 17:53:53.083 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48329 1 109 1 2025-11-24 17:53:53.083 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48004 1 80 1 2025-11-24 17:53:53.072 00:00:00.000 UDP 28.104.0.1:48329 -> 198.28.0.2:53 1 64 1 2025-11-24 17:53:53.072 00:00:00.000 UDP 28.104.0.1:48004 -> 198.28.0.2:53 1 64 1 2025-11-24 17:54:53.384 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33602 1 109 1 2025-11-24 17:54:53.384 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48359 1 80 1 2025-11-24 17:54:53.374 00:00:00.000 UDP 28.104.0.1:48359 -> 198.28.0.2:53 1 64 1 2025-11-24 17:54:53.374 00:00:00.000 UDP 28.104.0.1:33602 -> 198.28.0.2:53 1 64 1 2025-11-24 17:54:11.744 00:01:00.105 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 17:51:03.257 00:05:08.498 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 17:51:11.744 00:05:00.404 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 17:55:53.681 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57017 1 80 1 2025-11-24 17:55:53.681 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43096 1 109 1 2025-11-24 17:55:53.670 00:00:00.000 UDP 28.104.0.1:43096 -> 198.28.0.2:53 1 64 1 2025-11-24 17:55:53.670 00:00:00.000 UDP 28.104.0.1:57017 -> 198.28.0.2:53 1 64 1 2025-11-24 17:51:11.880 00:05:51.430 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 17:56:11.745 00:00:00.105 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 17:52:06.837 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2424 1 2025-11-24 17:56:53.938 00:00:00.000 UDP 28.104.0.1:56678 -> 198.28.0.2:53 1 64 1 2025-11-24 17:56:53.938 00:00:00.000 UDP 28.104.0.1:34269 -> 198.28.0.2:53 1 64 1 2025-11-24 17:56:53.947 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34269 1 80 1 2025-11-24 17:56:53.947 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56678 1 109 1 2025-11-24 17:52:11.891 00:05:51.371 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 17:52:11.744 00:05:51.527 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 17:57:11.744 00:00:00.105 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 17:57:20.732 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 17:57:54.257 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46231 1 109 1 2025-11-24 17:57:54.257 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37388 1 80 1 2025-11-24 17:57:54.246 00:00:00.000 UDP 28.104.0.1:46231 -> 198.28.0.2:53 1 64 1 2025-11-24 17:57:54.246 00:00:00.000 UDP 28.104.0.1:37388 -> 198.28.0.2:53 1 64 1 2025-11-24 17:58:11.745 00:00:00.104 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 Summary: total flows: 352, total bytes: 96251, total packets: 1420, avg bps: 209, avg pps: 0, avg bpp: 67 Time window: 2025-11-24 16:57:03 - 2025-11-24 17:58:11 Total flows processed: 352, passed: 352, Blocks skipped: 0, Bytes read: 36672 Sys: 0.0048s User: 0.0029s Wall: 0.0041s flows/second: 86107.3 Runtime: 0.0041s