Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 02:54:47.605 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2604 1 2025-11-25 02:59:37.107 00:00:00.000 UDP 28.104.0.1:52300 -> 198.28.0.2:53 1 64 1 2025-11-25 02:59:37.107 00:00:00.000 UDP 28.104.0.1:52874 -> 198.28.0.2:53 1 64 1 2025-11-25 02:59:37.118 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52874 1 80 1 2025-11-25 02:59:37.118 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52300 1 109 1 2025-11-25 03:00:37.359 00:00:00.000 UDP 28.104.0.1:36058 -> 198.28.0.2:53 1 64 1 2025-11-25 03:00:37.359 00:00:00.000 UDP 28.104.0.1:35194 -> 198.28.0.2:53 1 64 1 2025-11-25 03:00:37.371 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36058 1 109 1 2025-11-25 03:00:37.371 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35194 1 80 1 2025-11-25 02:57:11.980 00:05:00.443 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-25 02:57:11.980 00:05:00.198 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-25 02:57:03.465 00:05:08.526 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 03:01:37.621 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40744 1 80 1 2025-11-25 03:01:37.621 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37800 1 109 1 2025-11-25 03:01:37.611 00:00:00.000 UDP 28.104.0.1:37800 -> 198.28.0.2:53 1 64 1 2025-11-25 03:01:37.611 00:00:00.000 UDP 28.104.0.1:40744 -> 198.28.0.2:53 1 64 1 2025-11-25 02:57:12.140 00:05:51.375 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 02:58:03.464 00:05:08.689 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 03:02:31.881 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 03:02:38.104 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40752 1 109 1 2025-11-25 03:02:38.104 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35369 1 80 1 2025-11-25 03:02:38.094 00:00:00.000 UDP 28.104.0.1:35369 -> 198.28.0.2:53 1 64 1 2025-11-25 03:02:38.094 00:00:00.000 UDP 28.104.0.1:40752 -> 198.28.0.2:53 1 64 1 2025-11-25 02:58:11.981 00:05:51.495 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 03:03:38.387 00:00:00.000 UDP 28.104.0.1:36764 -> 198.28.0.2:53 1 64 1 2025-11-25 03:03:38.387 00:00:00.000 UDP 28.104.0.1:35528 -> 198.28.0.2:53 1 64 1 2025-11-25 03:03:38.397 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36764 1 80 1 2025-11-25 03:03:38.397 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35528 1 109 1 2025-11-25 03:00:07.615 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2380 1 2025-11-25 03:04:38.689 00:00:00.000 UDP 28.104.0.1:45483 -> 198.28.0.2:53 1 64 1 2025-11-25 03:04:38.689 00:00:00.000 UDP 28.104.0.1:41315 -> 198.28.0.2:53 1 64 1 2025-11-25 03:04:38.699 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45483 1 109 1 2025-11-25 03:04:38.699 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41315 1 80 1 2025-11-25 03:05:38.991 00:00:00.000 UDP 28.104.0.1:60510 -> 198.28.0.2:53 1 64 1 2025-11-25 03:05:38.991 00:00:00.000 UDP 28.104.0.1:39964 -> 198.28.0.2:53 1 64 1 2025-11-25 03:05:39.001 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39964 1 80 1 2025-11-25 03:05:39.001 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60510 1 109 1 2025-11-25 03:06:39.286 00:00:00.000 UDP 28.104.0.1:36614 -> 198.28.0.2:53 1 64 1 2025-11-25 03:06:39.286 00:00:00.000 UDP 28.104.0.1:36192 -> 198.28.0.2:53 1 64 1 2025-11-25 03:06:39.297 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36192 1 109 1 2025-11-25 03:06:39.296 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36614 1 80 1 2025-11-25 03:03:11.980 00:05:00.444 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-25 03:03:11.980 00:05:00.199 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-25 03:03:03.466 00:05:08.527 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 03:07:31.692 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 03:07:39.579 00:00:00.000 UDP 28.104.0.1:50842 -> 198.28.0.2:53 1 64 1 2025-11-25 03:07:39.579 00:00:00.000 UDP 28.104.0.1:35044 -> 198.28.0.2:53 1 64 1 2025-11-25 03:07:39.593 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35044 1 80 1 2025-11-25 03:07:39.590 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50842 1 109 1 2025-11-25 03:03:12.142 00:05:51.373 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 03:04:03.466 00:05:08.690 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 03:08:39.885 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46528 1 80 1 2025-11-25 03:08:39.885 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48394 1 109 1 2025-11-25 03:08:39.874 00:00:00.000 UDP 28.104.0.1:46528 -> 198.28.0.2:53 1 64 1 2025-11-25 03:08:39.874 00:00:00.000 UDP 28.104.0.1:48394 -> 198.28.0.2:53 1 64 1 2025-11-25 03:04:11.980 00:05:51.497 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 03:09:40.189 00:00:00.000 UDP 28.104.0.1:40573 -> 198.28.0.2:53 1 64 1 2025-11-25 03:09:40.189 00:00:00.000 UDP 28.104.0.1:42152 -> 198.28.0.2:53 1 64 1 2025-11-25 03:05:27.625 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2776 1 2025-11-25 03:09:40.201 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42152 1 80 1 2025-11-25 03:09:40.201 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40573 1 109 1 2025-11-25 03:10:40.483 00:00:00.000 UDP 28.104.0.1:47017 -> 198.28.0.2:53 1 64 1 2025-11-25 03:10:40.484 00:00:00.000 UDP 28.104.0.1:39437 -> 198.28.0.2:53 1 64 1 2025-11-25 03:10:40.494 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39437 1 109 1 2025-11-25 03:10:40.494 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47017 1 80 1 2025-11-25 03:11:40.796 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38754 1 80 1 2025-11-25 03:11:40.795 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52221 1 109 1 2025-11-25 03:11:40.784 00:00:00.000 UDP 28.104.0.1:52221 -> 198.28.0.2:53 1 64 1 2025-11-25 03:11:40.785 00:00:00.000 UDP 28.104.0.1:38754 -> 198.28.0.2:53 1 64 1 2025-11-25 03:12:32.051 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 03:12:41.083 00:00:00.000 UDP 28.104.0.1:35507 -> 198.28.0.2:53 1 64 1 2025-11-25 03:12:41.083 00:00:00.000 UDP 28.104.0.1:44114 -> 198.28.0.2:53 1 64 1 2025-11-25 03:12:41.095 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44114 1 80 1 2025-11-25 03:12:41.095 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35507 1 109 1 2025-11-25 03:09:11.981 00:05:00.443 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-25 03:09:11.981 00:05:00.198 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-25 03:09:03.465 00:05:08.529 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 03:13:41.391 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52257 1 109 1 2025-11-25 03:13:41.391 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58100 1 80 1 2025-11-25 03:13:41.381 00:00:00.000 UDP 28.104.0.1:52257 -> 198.28.0.2:53 1 64 1 2025-11-25 03:13:41.381 00:00:00.000 UDP 28.104.0.1:58100 -> 198.28.0.2:53 1 64 1 2025-11-25 03:09:12.145 00:05:51.373 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 03:10:03.466 00:05:08.689 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 03:14:41.674 00:00:00.000 UDP 28.104.0.1:41706 -> 198.28.0.2:53 1 64 1 2025-11-25 03:14:41.674 00:00:00.000 UDP 28.104.0.1:57545 -> 198.28.0.2:53 1 64 1 2025-11-25 03:14:41.684 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57545 1 80 1 2025-11-25 03:14:41.684 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41706 1 109 1 2025-11-25 03:10:47.633 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2872 1 2025-11-25 03:10:11.982 00:05:51.497 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 03:15:41.976 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50683 1 109 1 2025-11-25 03:15:41.976 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41350 1 80 1 2025-11-25 03:15:41.965 00:00:00.000 UDP 28.104.0.1:41350 -> 198.28.0.2:53 1 64 1 2025-11-25 03:15:41.965 00:00:00.000 UDP 28.104.0.1:50683 -> 198.28.0.2:53 1 64 1 2025-11-25 03:16:42.256 00:00:00.000 UDP 28.104.0.1:40409 -> 198.28.0.2:53 1 64 1 2025-11-25 03:16:42.256 00:00:00.000 UDP 28.104.0.1:48855 -> 198.28.0.2:53 1 64 1 2025-11-25 03:16:42.267 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48855 1 80 1 2025-11-25 03:16:42.267 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40409 1 109 1 2025-11-25 03:17:32.215 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 03:17:42.558 00:00:00.000 UDP 28.104.0.1:49598 -> 198.28.0.2:53 1 64 1 2025-11-25 03:17:42.557 00:00:00.000 UDP 28.104.0.1:37586 -> 198.28.0.2:53 1 64 1 2025-11-25 03:17:42.569 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49598 1 80 1 2025-11-25 03:17:42.569 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37586 1 109 1 2025-11-25 03:18:42.849 00:00:00.000 UDP 28.104.0.1:39850 -> 198.28.0.2:53 1 64 1 2025-11-25 03:18:42.849 00:00:00.000 UDP 28.104.0.1:55218 -> 198.28.0.2:53 1 64 1 2025-11-25 03:18:42.860 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39850 1 109 1 2025-11-25 03:18:42.859 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55218 1 80 1 2025-11-25 03:15:11.983 00:05:00.443 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-25 03:15:11.983 00:05:00.197 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-25 03:15:03.468 00:05:08.526 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 03:19:43.140 00:00:00.000 UDP 28.104.0.1:49660 -> 198.28.0.2:53 1 64 1 2025-11-25 03:19:43.140 00:00:00.000 UDP 28.104.0.1:42521 -> 198.28.0.2:53 1 64 1 2025-11-25 03:19:43.150 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42521 1 109 1 2025-11-25 03:19:43.150 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49660 1 80 1 2025-11-25 03:15:12.145 00:05:51.375 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 03:16:03.469 00:05:08.694 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 03:16:07.643 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 3020 1 2025-11-25 03:20:43.444 00:00:00.000 UDP 28.104.0.1:35443 -> 198.28.0.2:53 1 64 1 2025-11-25 03:20:43.444 00:00:00.000 UDP 28.104.0.1:35424 -> 198.28.0.2:53 1 64 1 2025-11-25 03:20:43.454 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35443 1 80 1 2025-11-25 03:20:43.454 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35424 1 109 1 2025-11-25 03:16:11.982 00:05:51.498 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 03:21:43.743 00:00:00.000 UDP 28.104.0.1:34059 -> 198.28.0.2:53 1 64 1 2025-11-25 03:21:43.743 00:00:00.000 UDP 28.104.0.1:58860 -> 198.28.0.2:53 1 64 1 2025-11-25 03:21:43.753 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34059 1 109 1 2025-11-25 03:21:43.753 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58860 1 80 1 2025-11-25 03:22:32.120 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 03:22:44.114 00:00:00.000 UDP 28.104.0.1:57695 -> 198.28.0.2:53 1 64 1 2025-11-25 03:22:44.114 00:00:00.000 UDP 28.104.0.1:33922 -> 198.28.0.2:53 1 64 1 2025-11-25 03:22:44.124 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57695 1 109 1 2025-11-25 03:22:44.124 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33922 1 80 1 2025-11-25 03:23:44.410 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38463 1 109 1 2025-11-25 03:23:44.410 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33221 1 80 1 2025-11-25 03:23:44.401 00:00:00.000 UDP 28.104.0.1:33221 -> 198.28.0.2:53 1 64 1 2025-11-25 03:23:44.401 00:00:00.000 UDP 28.104.0.1:38463 -> 198.28.0.2:53 1 64 1 2025-11-25 03:24:44.694 00:00:00.000 UDP 28.104.0.1:55466 -> 198.28.0.2:53 1 64 1 2025-11-25 03:24:44.694 00:00:00.000 UDP 28.104.0.1:39445 -> 198.28.0.2:53 1 64 1 2025-11-25 03:24:44.704 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55466 1 109 1 2025-11-25 03:24:44.704 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39445 1 80 1 2025-11-25 03:21:11.983 00:05:00.445 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-25 03:21:11.983 00:05:00.203 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-25 03:21:03.470 00:05:08.525 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 03:21:27.646 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2704 1 2025-11-25 03:25:44.950 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39039 1 80 1 2025-11-25 03:25:44.950 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52937 1 109 1 2025-11-25 03:25:44.943 00:00:00.000 UDP 28.104.0.1:52937 -> 198.28.0.2:53 1 64 1 2025-11-25 03:25:44.942 00:00:00.000 UDP 28.104.0.1:39039 -> 198.28.0.2:53 1 64 1 2025-11-25 03:21:12.153 00:05:51.368 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 03:22:03.469 00:05:08.695 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 03:26:45.242 00:00:00.000 UDP 28.104.0.1:37131 -> 198.28.0.2:53 1 64 1 2025-11-25 03:26:45.243 00:00:00.000 UDP 28.104.0.1:37780 -> 198.28.0.2:53 1 64 1 2025-11-25 03:26:45.252 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37131 1 109 1 2025-11-25 03:26:45.252 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37780 1 80 1 2025-11-25 03:22:11.985 00:05:51.496 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 03:27:32.166 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 03:27:45.558 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52892 1 80 1 2025-11-25 03:27:45.558 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50681 1 109 1 2025-11-25 03:27:45.547 00:00:00.000 UDP 28.104.0.1:50681 -> 198.28.0.2:53 1 64 1 2025-11-25 03:27:45.546 00:00:00.000 UDP 28.104.0.1:52892 -> 198.28.0.2:53 1 64 1 2025-11-25 03:28:45.842 00:00:00.000 UDP 28.104.0.1:34001 -> 198.28.0.2:53 1 64 1 2025-11-25 03:28:45.843 00:00:00.000 UDP 28.104.0.1:57981 -> 198.28.0.2:53 1 64 1 2025-11-25 03:28:45.851 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34001 1 109 1 2025-11-25 03:28:45.851 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57981 1 80 1 2025-11-25 03:29:46.144 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42074 1 109 1 2025-11-25 03:29:46.144 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60159 1 80 1 2025-11-25 03:29:46.134 00:00:00.000 UDP 28.104.0.1:60159 -> 198.28.0.2:53 1 64 1 2025-11-25 03:29:46.134 00:00:00.000 UDP 28.104.0.1:42074 -> 198.28.0.2:53 1 64 1 2025-11-25 03:30:46.916 00:00:00.000 UDP 28.104.0.1:33165 -> 198.28.0.2:53 1 64 1 2025-11-25 03:30:46.917 00:00:00.000 UDP 28.104.0.1:35811 -> 198.28.0.2:53 1 64 1 2025-11-25 03:30:46.928 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33165 1 80 1 2025-11-25 03:30:46.928 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35811 1 109 1 2025-11-25 03:26:47.650 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 32 2176 1 2025-11-25 03:27:03.470 00:05:08.525 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 03:27:11.985 00:05:00.447 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-25 03:27:11.985 00:05:00.202 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-25 03:31:47.292 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45466 1 109 1 2025-11-25 03:31:47.291 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60291 1 80 1 2025-11-25 03:31:47.283 00:00:00.000 UDP 28.104.0.1:60291 -> 198.28.0.2:53 1 64 1 2025-11-25 03:31:47.283 00:00:00.000 UDP 28.104.0.1:45466 -> 198.28.0.2:53 1 64 1 2025-11-25 03:27:12.155 00:05:51.372 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 03:28:03.471 00:05:08.695 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 03:32:33.149 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 03:32:47.903 00:00:00.000 UDP 28.104.0.1:43093 -> 198.28.0.2:53 1 64 1 2025-11-25 03:32:47.903 00:00:00.000 UDP 28.104.0.1:43082 -> 198.28.0.2:53 1 64 1 2025-11-25 03:32:47.913 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43093 1 109 1 2025-11-25 03:32:47.913 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43082 1 80 1 2025-11-25 03:28:11.985 00:05:51.502 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 03:33:48.214 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36302 1 109 1 2025-11-25 03:33:48.214 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52499 1 80 1 2025-11-25 03:33:48.203 00:00:00.000 UDP 28.104.0.1:36302 -> 198.28.0.2:53 1 64 1 2025-11-25 03:33:48.203 00:00:00.000 UDP 28.104.0.1:52499 -> 198.28.0.2:53 1 64 1 2025-11-25 03:34:48.510 00:00:00.000 UDP 28.104.0.1:57900 -> 198.28.0.2:53 1 64 1 2025-11-25 03:34:48.509 00:00:00.000 UDP 28.104.0.1:53610 -> 198.28.0.2:53 1 64 1 2025-11-25 03:34:48.520 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57900 1 80 1 2025-11-25 03:34:48.519 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53610 1 109 1 2025-11-25 03:35:48.823 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36805 1 80 1 2025-11-25 03:35:48.823 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46791 1 109 1 2025-11-25 03:35:48.814 00:00:00.000 UDP 28.104.0.1:36805 -> 198.28.0.2:53 1 64 1 2025-11-25 03:35:48.814 00:00:00.000 UDP 28.104.0.1:46791 -> 198.28.0.2:53 1 64 1 2025-11-25 03:32:07.656 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2940 1 2025-11-25 03:36:49.118 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41965 1 109 1 2025-11-25 03:36:49.118 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46022 1 80 1 2025-11-25 03:36:49.108 00:00:00.000 UDP 28.104.0.1:46022 -> 198.28.0.2:53 1 64 1 2025-11-25 03:36:49.108 00:00:00.000 UDP 28.104.0.1:41965 -> 198.28.0.2:53 1 64 1 2025-11-25 03:33:11.985 00:05:00.448 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-25 03:33:11.985 00:05:00.202 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-25 03:33:03.476 00:05:08.521 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 03:37:32.225 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 03:37:49.401 00:00:00.000 UDP 28.104.0.1:52943 -> 198.28.0.2:53 1 64 1 2025-11-25 03:37:49.402 00:00:00.000 UDP 28.104.0.1:56942 -> 198.28.0.2:53 1 64 1 2025-11-25 03:37:49.412 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52943 1 80 1 2025-11-25 03:37:49.412 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56942 1 109 1 2025-11-25 03:33:12.156 00:05:51.372 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 03:34:03.477 00:05:08.699 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 03:38:49.701 00:00:00.000 UDP 28.104.0.1:56197 -> 198.28.0.2:53 1 64 1 2025-11-25 03:38:49.700 00:00:00.000 UDP 28.104.0.1:39016 -> 198.28.0.2:53 1 64 1 2025-11-25 03:38:49.710 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39016 1 80 1 2025-11-25 03:38:49.711 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56197 1 109 1 2025-11-25 03:34:11.986 00:05:51.504 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 03:39:49.996 00:00:00.000 UDP 28.104.0.1:47990 -> 198.28.0.2:53 1 64 1 2025-11-25 03:39:49.996 00:00:00.000 UDP 28.104.0.1:57842 -> 198.28.0.2:53 1 64 1 2025-11-25 03:39:50.007 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47990 1 109 1 2025-11-25 03:39:50.007 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57842 1 80 1 2025-11-25 03:40:50.303 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55042 1 109 1 2025-11-25 03:40:50.303 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35195 1 80 1 2025-11-25 03:40:50.293 00:00:00.000 UDP 28.104.0.1:35195 -> 198.28.0.2:53 1 64 1 2025-11-25 03:40:50.293 00:00:00.000 UDP 28.104.0.1:55042 -> 198.28.0.2:53 1 64 1 2025-11-25 03:37:27.660 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2856 1 2025-11-25 03:41:50.598 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55612 1 109 1 2025-11-25 03:41:50.597 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41895 1 80 1 2025-11-25 03:41:50.588 00:00:00.000 UDP 28.104.0.1:55612 -> 198.28.0.2:53 1 64 1 2025-11-25 03:41:50.587 00:00:00.000 UDP 28.104.0.1:41895 -> 198.28.0.2:53 1 64 1 2025-11-25 03:42:32.575 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 03:42:50.843 00:00:00.000 UDP 28.104.0.1:60352 -> 198.28.0.2:53 1 64 1 2025-11-25 03:42:50.844 00:00:00.000 UDP 28.104.0.1:38887 -> 198.28.0.2:53 1 64 1 2025-11-25 03:42:50.855 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38887 1 109 1 2025-11-25 03:42:50.855 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60352 1 80 1 2025-11-25 03:39:11.989 00:05:00.447 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-25 03:39:11.989 00:05:00.202 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-25 03:39:03.479 00:05:08.521 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 03:43:51.138 00:00:00.000 UDP 28.104.0.1:53519 -> 198.28.0.2:53 1 64 1 2025-11-25 03:43:51.138 00:00:00.000 UDP 28.104.0.1:41940 -> 198.28.0.2:53 1 64 1 2025-11-25 03:43:51.149 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53519 1 80 1 2025-11-25 03:43:51.149 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41940 1 109 1 2025-11-25 03:39:12.166 00:05:51.365 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 03:40:03.479 00:05:08.689 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 03:44:51.446 00:00:00.000 UDP 28.104.0.1:36970 -> 198.28.0.2:53 1 64 1 2025-11-25 03:44:51.446 00:00:00.000 UDP 28.104.0.1:40992 -> 198.28.0.2:53 1 64 1 2025-11-25 03:44:51.456 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40992 1 80 1 2025-11-25 03:44:51.457 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36970 1 109 1 2025-11-25 03:40:11.988 00:05:51.503 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 03:45:51.744 00:00:00.000 UDP 28.104.0.1:32920 -> 198.28.0.2:53 1 64 1 2025-11-25 03:45:51.744 00:00:00.000 UDP 28.104.0.1:51459 -> 198.28.0.2:53 1 64 1 2025-11-25 03:45:51.755 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51459 1 80 1 2025-11-25 03:45:51.755 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32920 1 109 1 2025-11-25 03:46:52.084 00:00:00.000 UDP 28.104.0.1:44395 -> 198.28.0.2:53 1 64 1 2025-11-25 03:46:52.084 00:00:00.000 UDP 28.104.0.1:46590 -> 198.28.0.2:53 1 64 1 2025-11-25 03:46:52.094 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44395 1 80 1 2025-11-25 03:46:52.094 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46590 1 109 1 2025-11-25 03:42:47.669 00:05:10.011 OSPF 28.0.2.1:0 -> 224.0.0.5:0 44 3064 1 2025-11-25 03:47:32.642 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 03:47:52.344 00:00:00.000 UDP 28.104.0.1:42490 -> 198.28.0.2:53 1 64 1 2025-11-25 03:47:52.343 00:00:00.000 UDP 28.104.0.1:50199 -> 198.28.0.2:53 1 64 1 2025-11-25 03:47:52.355 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42490 1 80 1 2025-11-25 03:47:52.355 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50199 1 109 1 2025-11-25 03:48:52.640 00:00:00.000 UDP 28.104.0.1:56781 -> 198.28.0.2:53 1 64 1 2025-11-25 03:48:52.640 00:00:00.000 UDP 28.104.0.1:39869 -> 198.28.0.2:53 1 64 1 2025-11-25 03:48:52.650 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39869 1 109 1 2025-11-25 03:48:52.650 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56781 1 80 1 2025-11-25 03:45:11.990 00:05:00.446 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-25 03:45:11.990 00:05:00.204 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-25 03:45:03.480 00:05:08.520 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 03:49:52.934 00:00:00.000 UDP 28.104.0.1:42370 -> 198.28.0.2:53 1 64 1 2025-11-25 03:49:52.934 00:00:00.000 UDP 28.104.0.1:39782 -> 198.28.0.2:53 1 64 1 2025-11-25 03:49:52.943 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39782 1 80 1 2025-11-25 03:49:52.943 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42370 1 109 1 2025-11-25 03:45:12.158 00:05:51.374 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 03:46:03.481 00:05:08.690 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 03:50:53.258 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52424 1 109 1 2025-11-25 03:50:53.258 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46855 1 80 1 2025-11-25 03:50:53.248 00:00:00.000 UDP 28.104.0.1:46855 -> 198.28.0.2:53 1 64 1 2025-11-25 03:50:53.248 00:00:00.000 UDP 28.104.0.1:52424 -> 198.28.0.2:53 1 64 1 2025-11-25 03:46:12.001 00:05:51.490 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 03:51:53.561 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42462 1 109 1 2025-11-25 03:51:53.561 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34110 1 80 1 2025-11-25 03:51:53.552 00:00:00.000 UDP 28.104.0.1:42462 -> 198.28.0.2:53 1 64 1 2025-11-25 03:51:53.552 00:00:00.000 UDP 28.104.0.1:34110 -> 198.28.0.2:53 1 64 1 2025-11-25 03:48:07.680 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2912 1 2025-11-25 03:52:32.680 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 03:52:53.862 00:00:00.000 UDP 28.104.0.1:56577 -> 198.28.0.2:53 1 64 1 2025-11-25 03:52:53.862 00:00:00.000 UDP 28.104.0.1:50533 -> 198.28.0.2:53 1 64 1 2025-11-25 03:52:53.873 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56577 1 109 1 2025-11-25 03:52:53.873 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50533 1 80 1 2025-11-25 03:53:54.150 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53420 1 109 1 2025-11-25 03:53:54.150 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58541 1 80 1 2025-11-25 03:53:54.138 00:00:00.000 UDP 28.104.0.1:58541 -> 198.28.0.2:53 1 64 1 2025-11-25 03:53:54.138 00:00:00.000 UDP 28.104.0.1:53420 -> 198.28.0.2:53 1 64 1 2025-11-25 03:54:54.430 00:00:00.000 UDP 28.104.0.1:47975 -> 198.28.0.2:53 1 64 1 2025-11-25 03:54:54.430 00:00:00.000 UDP 28.104.0.1:46688 -> 198.28.0.2:53 1 64 1 2025-11-25 03:54:54.441 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47975 1 109 1 2025-11-25 03:54:54.441 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46688 1 80 1 2025-11-25 03:51:11.990 00:05:00.452 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-25 03:51:11.990 00:05:00.206 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-25 03:51:03.482 00:05:08.520 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 03:55:54.685 00:00:00.000 UDP 28.104.0.1:54964 -> 198.28.0.2:53 1 64 1 2025-11-25 03:55:54.684 00:00:00.000 UDP 28.104.0.1:60831 -> 198.28.0.2:53 1 64 1 2025-11-25 03:55:54.694 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60831 1 80 1 2025-11-25 03:55:54.694 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54964 1 109 1 2025-11-25 03:51:12.160 00:05:51.373 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 03:52:03.481 00:05:08.690 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 03:56:54.981 00:00:00.000 UDP 28.104.0.1:54053 -> 198.28.0.2:53 1 64 1 2025-11-25 03:56:54.981 00:00:00.000 UDP 28.104.0.1:40233 -> 198.28.0.2:53 1 64 1 2025-11-25 03:56:54.992 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54053 1 109 1 2025-11-25 03:56:54.992 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40233 1 80 1 2025-11-25 03:52:11.990 00:05:51.505 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 03:57:32.899 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 03:53:27.691 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 32 2176 1 2025-11-25 03:57:55.288 00:00:00.000 UDP 28.104.0.1:57526 -> 198.28.0.2:53 1 64 1 2025-11-25 03:57:55.288 00:00:00.000 UDP 28.104.0.1:55977 -> 198.28.0.2:53 1 64 1 2025-11-25 03:57:55.298 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57526 1 80 1 2025-11-25 03:57:55.298 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55977 1 109 1 Summary: total flows: 320, total bytes: 98487, total packets: 1450, avg bps: 205, avg pps: 0, avg bpp: 67 Time window: 2025-11-25 02:54:47 - 2025-11-25 03:58:37 Total flows processed: 320, passed: 320, Blocks skipped: 0, Bytes read: 33344 Sys: 0.0039s User: 0.0019s Wall: 0.0027s flows/second: 119357.7 Runtime: 0.0027s