Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 04:59:19.287 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53957 1 109 1 2025-11-25 04:59:19.287 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50841 1 80 1 2025-11-25 04:59:19.277 00:00:00.000 UDP 28.104.0.1:53957 -> 198.28.0.2:53 1 64 1 2025-11-25 04:59:19.277 00:00:00.000 UDP 28.104.0.1:50841 -> 198.28.0.2:53 1 64 1 2025-11-25 05:00:19.569 00:00:00.000 UDP 28.104.0.1:34990 -> 198.28.0.2:53 1 64 1 2025-11-25 05:00:19.569 00:00:00.000 UDP 28.104.0.1:40272 -> 198.28.0.2:53 1 64 1 2025-11-25 05:00:19.580 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40272 1 109 1 2025-11-25 05:00:19.580 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34990 1 80 1 2025-11-25 04:57:03.500 00:05:08.583 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 05:01:19.870 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56482 1 109 1 2025-11-25 05:01:19.871 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42969 1 80 1 2025-11-25 05:01:19.861 00:00:00.000 UDP 28.104.0.1:56482 -> 198.28.0.2:53 1 64 1 2025-11-25 05:01:19.861 00:00:00.000 UDP 28.104.0.1:42969 -> 198.28.0.2:53 1 64 1 2025-11-25 04:57:17.763 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2508 1 2025-11-25 04:57:12.178 00:05:51.373 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 04:58:03.510 00:05:08.563 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 04:58:03.500 00:05:08.691 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 05:02:20.147 00:00:00.000 UDP 28.104.0.1:34366 -> 198.28.0.2:53 1 64 1 2025-11-25 05:02:20.147 00:00:00.000 UDP 28.104.0.1:47867 -> 198.28.0.2:53 1 64 1 2025-11-25 05:02:20.157 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47867 1 80 1 2025-11-25 05:02:20.157 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34366 1 109 1 2025-11-25 05:02:34.165 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 05:03:20.449 00:00:00.000 UDP 28.104.0.1:48257 -> 198.28.0.2:53 1 64 1 2025-11-25 05:03:20.449 00:00:00.000 UDP 28.104.0.1:43876 -> 198.28.0.2:53 1 64 1 2025-11-25 05:03:20.460 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43876 1 80 1 2025-11-25 05:03:20.460 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48257 1 109 1 2025-11-25 04:59:12.072 00:06:00.157 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 04:59:12.072 00:06:00.393 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 05:04:20.762 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59903 1 80 1 2025-11-25 05:04:20.762 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59355 1 109 1 2025-11-25 05:04:20.750 00:00:00.000 UDP 28.104.0.1:59903 -> 198.28.0.2:53 1 64 1 2025-11-25 05:04:20.750 00:00:00.000 UDP 28.104.0.1:59355 -> 198.28.0.2:53 1 64 1 2025-11-25 05:05:21.066 00:00:00.000 UDP 28.104.0.1:39904 -> 198.28.0.2:53 1 64 1 2025-11-25 05:05:21.066 00:00:00.000 UDP 28.104.0.1:52398 -> 198.28.0.2:53 1 64 1 2025-11-25 05:05:21.076 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39904 1 109 1 2025-11-25 05:05:21.076 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52398 1 80 1 2025-11-25 05:06:21.321 00:00:00.000 UDP 28.104.0.1:49938 -> 198.28.0.2:53 1 64 1 2025-11-25 05:06:21.321 00:00:00.000 UDP 28.104.0.1:35958 -> 198.28.0.2:53 1 64 1 2025-11-25 05:06:21.331 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35958 1 109 1 2025-11-25 05:06:21.331 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49938 1 80 1 2025-11-25 05:02:37.767 00:05:10.014 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 3064 1 2025-11-25 05:07:21.575 00:00:00.000 UDP 28.104.0.1:46289 -> 198.28.0.2:53 1 64 1 2025-11-25 05:07:21.575 00:00:00.000 UDP 28.104.0.1:34961 -> 198.28.0.2:53 1 64 1 2025-11-25 05:03:03.501 00:05:08.584 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 05:07:21.586 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34961 1 109 1 2025-11-25 05:07:21.586 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46289 1 80 1 2025-11-25 05:07:34.065 00:00:00.038 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 05:03:12.182 00:05:51.376 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 05:04:03.501 00:05:08.691 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 05:04:03.512 00:05:08.563 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 05:08:21.869 00:00:00.000 UDP 28.104.0.1:51956 -> 198.28.0.2:53 1 64 1 2025-11-25 05:08:21.869 00:00:00.000 UDP 28.104.0.1:54985 -> 198.28.0.2:53 1 64 1 2025-11-25 05:08:21.879 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51956 1 109 1 2025-11-25 05:08:21.879 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54985 1 80 1 2025-11-25 05:09:22.193 00:00:00.000 UDP 28.104.0.1:48023 -> 198.28.0.2:53 1 64 1 2025-11-25 05:09:22.193 00:00:00.000 UDP 28.104.0.1:50965 -> 198.28.0.2:53 1 64 1 2025-11-25 05:09:22.204 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50965 1 80 1 2025-11-25 05:09:22.204 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48023 1 109 1 2025-11-25 05:10:22.503 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43961 1 80 1 2025-11-25 05:10:22.503 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34070 1 109 1 2025-11-25 05:10:22.493 00:00:00.000 UDP 28.104.0.1:34070 -> 198.28.0.2:53 1 64 1 2025-11-25 05:10:22.493 00:00:00.000 UDP 28.104.0.1:43961 -> 198.28.0.2:53 1 64 1 2025-11-25 05:06:12.074 00:06:00.392 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 05:06:12.074 00:06:00.157 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 05:11:22.766 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44746 1 109 1 2025-11-25 05:11:22.766 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44505 1 80 1 2025-11-25 05:11:22.756 00:00:00.000 UDP 28.104.0.1:44505 -> 198.28.0.2:53 1 64 1 2025-11-25 05:11:22.756 00:00:00.000 UDP 28.104.0.1:44746 -> 198.28.0.2:53 1 64 1 2025-11-25 05:07:57.781 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 2976 1 2025-11-25 05:12:23.059 00:00:00.000 UDP 28.104.0.1:43842 -> 198.28.0.2:53 1 64 1 2025-11-25 05:12:23.059 00:00:00.000 UDP 28.104.0.1:48727 -> 198.28.0.2:53 1 64 1 2025-11-25 05:12:23.073 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43842 1 109 1 2025-11-25 05:12:23.071 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48727 1 80 1 2025-11-25 05:12:34.246 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 05:09:03.508 00:05:08.579 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 05:13:23.372 00:00:00.000 UDP 28.104.0.1:35255 -> 198.28.0.2:53 1 64 1 2025-11-25 05:13:23.372 00:00:00.000 UDP 28.104.0.1:54405 -> 198.28.0.2:53 1 64 1 2025-11-25 05:13:23.382 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54405 1 109 1 2025-11-25 05:13:23.382 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35255 1 80 1 2025-11-25 05:09:12.182 00:05:51.372 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 05:10:03.504 00:05:08.689 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 05:10:03.513 00:05:08.562 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 05:14:23.686 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48083 1 80 1 2025-11-25 05:14:23.686 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34272 1 109 1 2025-11-25 05:14:23.676 00:00:00.000 UDP 28.104.0.1:34272 -> 198.28.0.2:53 1 64 1 2025-11-25 05:14:23.676 00:00:00.000 UDP 28.104.0.1:48083 -> 198.28.0.2:53 1 64 1 2025-11-25 05:15:23.971 00:00:00.000 UDP 28.104.0.1:48761 -> 198.28.0.2:53 1 64 1 2025-11-25 05:15:23.972 00:00:00.000 UDP 28.104.0.1:43354 -> 198.28.0.2:53 1 64 1 2025-11-25 05:15:23.981 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48761 1 109 1 2025-11-25 05:15:23.982 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43354 1 80 1 2025-11-25 05:16:24.266 00:00:00.000 UDP 28.104.0.1:46882 -> 198.28.0.2:53 1 64 1 2025-11-25 05:16:24.267 00:00:00.000 UDP 28.104.0.1:34338 -> 198.28.0.2:53 1 64 1 2025-11-25 05:16:24.277 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34338 1 80 1 2025-11-25 05:16:24.277 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46882 1 109 1 2025-11-25 05:13:17.790 00:05:00.329 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2540 1 2025-11-25 05:17:24.573 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36567 1 109 1 2025-11-25 05:17:24.573 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59716 1 80 1 2025-11-25 05:17:24.564 00:00:00.000 UDP 28.104.0.1:36567 -> 198.28.0.2:53 1 64 1 2025-11-25 05:17:24.564 00:00:00.000 UDP 28.104.0.1:59716 -> 198.28.0.2:53 1 64 1 2025-11-25 05:17:34.385 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 05:13:12.077 00:06:00.392 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 05:13:12.076 00:06:00.158 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 05:18:24.868 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46074 1 109 1 2025-11-25 05:18:24.868 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49504 1 80 1 2025-11-25 05:18:24.858 00:00:00.000 UDP 28.104.0.1:49504 -> 198.28.0.2:53 1 64 1 2025-11-25 05:18:24.858 00:00:00.000 UDP 28.104.0.1:46074 -> 198.28.0.2:53 1 64 1 2025-11-25 05:15:03.505 00:05:08.583 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 05:19:25.175 00:00:00.000 UDP 28.104.0.1:51154 -> 198.28.0.2:53 1 64 1 2025-11-25 05:19:25.175 00:00:00.000 UDP 28.104.0.1:50719 -> 198.28.0.2:53 1 64 1 2025-11-25 05:19:25.188 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50719 1 80 1 2025-11-25 05:19:25.188 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51154 1 109 1 2025-11-25 05:15:12.184 00:05:51.372 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 05:16:03.514 00:05:08.567 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 05:16:03.505 00:05:08.690 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 05:20:25.481 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57203 1 109 1 2025-11-25 05:20:25.482 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33153 1 80 1 2025-11-25 05:20:25.470 00:00:00.000 UDP 28.104.0.1:57203 -> 198.28.0.2:53 1 64 1 2025-11-25 05:20:25.470 00:00:00.000 UDP 28.104.0.1:33153 -> 198.28.0.2:53 1 64 1 2025-11-25 05:21:25.763 00:00:00.000 UDP 28.104.0.1:53751 -> 198.28.0.2:53 1 64 1 2025-11-25 05:21:25.763 00:00:00.000 UDP 28.104.0.1:59351 -> 198.28.0.2:53 1 64 1 2025-11-25 05:21:25.773 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53751 1 109 1 2025-11-25 05:21:25.773 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59351 1 80 1 2025-11-25 05:22:26.076 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37304 1 109 1 2025-11-25 05:22:26.076 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49367 1 80 1 2025-11-25 05:22:26.066 00:00:00.000 UDP 28.104.0.1:37304 -> 198.28.0.2:53 1 64 1 2025-11-25 05:22:26.066 00:00:00.000 UDP 28.104.0.1:49367 -> 198.28.0.2:53 1 64 1 2025-11-25 05:22:34.648 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 05:18:27.808 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2604 1 2025-11-25 05:23:26.333 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56472 1 80 1 2025-11-25 05:23:26.333 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47083 1 109 1 2025-11-25 05:23:26.324 00:00:00.000 UDP 28.104.0.1:56472 -> 198.28.0.2:53 1 64 1 2025-11-25 05:23:26.324 00:00:00.000 UDP 28.104.0.1:47083 -> 198.28.0.2:53 1 64 1 2025-11-25 05:24:26.580 00:00:00.000 UDP 28.104.0.1:36495 -> 198.28.0.2:53 1 64 1 2025-11-25 05:24:26.580 00:00:00.000 UDP 28.104.0.1:53183 -> 198.28.0.2:53 1 64 1 2025-11-25 05:24:26.592 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36495 1 109 1 2025-11-25 05:24:26.592 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53183 1 80 1 2025-11-25 05:21:03.505 00:05:08.584 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 05:20:12.078 00:06:00.393 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 05:20:12.078 00:06:00.158 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 05:25:26.874 00:00:00.000 UDP 28.104.0.1:51250 -> 198.28.0.2:53 1 64 1 2025-11-25 05:25:26.874 00:00:00.000 UDP 28.104.0.1:39539 -> 198.28.0.2:53 1 64 1 2025-11-25 05:25:26.884 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39539 1 109 1 2025-11-25 05:25:26.884 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51250 1 80 1 2025-11-25 05:21:12.184 00:05:51.372 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 05:22:03.515 00:05:08.564 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 05:22:03.506 00:05:08.690 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 05:26:27.193 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40193 1 109 1 2025-11-25 05:26:27.192 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58139 1 80 1 2025-11-25 05:26:27.182 00:00:00.000 UDP 28.104.0.1:58139 -> 198.28.0.2:53 1 64 1 2025-11-25 05:26:27.182 00:00:00.000 UDP 28.104.0.1:40193 -> 198.28.0.2:53 1 64 1 2025-11-25 05:27:27.489 00:00:00.000 UDP 28.104.0.1:50090 -> 198.28.0.2:53 1 64 1 2025-11-25 05:27:27.489 00:00:00.000 UDP 28.104.0.1:58785 -> 198.28.0.2:53 1 64 1 2025-11-25 05:27:27.500 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50090 1 109 1 2025-11-25 05:27:27.500 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58785 1 80 1 2025-11-25 05:27:34.749 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 05:23:47.811 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2380 1 2025-11-25 05:28:27.790 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32886 1 109 1 2025-11-25 05:28:27.790 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59171 1 80 1 2025-11-25 05:28:27.779 00:00:00.000 UDP 28.104.0.1:32886 -> 198.28.0.2:53 1 64 1 2025-11-25 05:28:27.779 00:00:00.000 UDP 28.104.0.1:59171 -> 198.28.0.2:53 1 64 1 2025-11-25 05:29:28.081 00:00:00.000 UDP 28.104.0.1:50078 -> 198.28.0.2:53 1 64 1 2025-11-25 05:29:28.081 00:00:00.000 UDP 28.104.0.1:39351 -> 198.28.0.2:53 1 64 1 2025-11-25 05:29:28.092 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39351 1 80 1 2025-11-25 05:29:28.092 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50078 1 109 1 2025-11-25 05:30:28.372 00:00:00.000 UDP 28.104.0.1:33323 -> 198.28.0.2:53 1 64 1 2025-11-25 05:30:28.373 00:00:00.000 UDP 28.104.0.1:39189 -> 198.28.0.2:53 1 64 1 2025-11-25 05:30:28.383 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39189 1 109 1 2025-11-25 05:30:28.382 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33323 1 80 1 2025-11-25 05:27:03.506 00:05:08.583 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 05:31:28.674 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51293 1 109 1 2025-11-25 05:31:28.674 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57832 1 80 1 2025-11-25 05:31:28.663 00:00:00.000 UDP 28.104.0.1:51293 -> 198.28.0.2:53 1 64 1 2025-11-25 05:31:28.663 00:00:00.000 UDP 28.104.0.1:57832 -> 198.28.0.2:53 1 64 1 2025-11-25 05:27:12.186 00:05:51.374 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 05:28:03.506 00:05:08.698 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 05:27:12.079 00:06:00.400 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 05:28:03.516 00:05:08.564 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 05:27:12.079 00:06:00.157 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 05:32:29.036 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55395 1 109 1 2025-11-25 05:32:29.037 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56353 1 80 1 2025-11-25 05:32:29.027 00:00:00.000 UDP 28.104.0.1:56353 -> 198.28.0.2:53 1 64 1 2025-11-25 05:32:29.026 00:00:00.000 UDP 28.104.0.1:55395 -> 198.28.0.2:53 1 64 1 2025-11-25 05:32:34.635 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 05:29:07.819 00:05:10.013 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 2996 1 2025-11-25 05:33:29.326 00:00:00.000 UDP 28.104.0.1:57712 -> 198.28.0.2:53 1 64 1 2025-11-25 05:33:29.326 00:00:00.000 UDP 28.104.0.1:60660 -> 198.28.0.2:53 1 64 1 2025-11-25 05:33:29.337 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57712 1 80 1 2025-11-25 05:33:29.337 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60660 1 109 1 2025-11-25 05:34:29.594 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37479 1 109 1 2025-11-25 05:34:29.594 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47640 1 80 1 2025-11-25 05:34:29.583 00:00:00.000 UDP 28.104.0.1:37479 -> 198.28.0.2:53 1 64 1 2025-11-25 05:34:29.583 00:00:00.000 UDP 28.104.0.1:47640 -> 198.28.0.2:53 1 64 1 2025-11-25 05:35:29.887 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53129 1 80 1 2025-11-25 05:35:29.887 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59094 1 109 1 2025-11-25 05:35:29.877 00:00:00.000 UDP 28.104.0.1:59094 -> 198.28.0.2:53 1 64 1 2025-11-25 05:35:29.877 00:00:00.000 UDP 28.104.0.1:53129 -> 198.28.0.2:53 1 64 1 2025-11-25 05:36:30.201 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53763 1 109 1 2025-11-25 05:36:30.201 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36077 1 80 1 2025-11-25 05:36:30.192 00:00:00.000 UDP 28.104.0.1:36077 -> 198.28.0.2:53 1 64 1 2025-11-25 05:36:30.192 00:00:00.000 UDP 28.104.0.1:53763 -> 198.28.0.2:53 1 64 1 2025-11-25 05:33:03.509 00:05:08.581 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 05:37:30.499 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33453 1 80 1 2025-11-25 05:37:30.499 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35176 1 109 1 2025-11-25 05:37:30.488 00:00:00.000 UDP 28.104.0.1:35176 -> 198.28.0.2:53 1 64 1 2025-11-25 05:37:30.488 00:00:00.000 UDP 28.104.0.1:33453 -> 198.28.0.2:53 1 64 1 2025-11-25 05:37:34.891 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 05:33:12.194 00:05:51.367 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 05:34:03.510 00:05:08.696 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 05:34:03.521 00:05:08.560 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 05:38:30.779 00:00:00.000 UDP 28.104.0.1:44772 -> 198.28.0.2:53 1 64 1 2025-11-25 05:38:30.779 00:00:00.000 UDP 28.104.0.1:40463 -> 198.28.0.2:53 1 64 1 2025-11-25 05:34:27.833 00:05:00.447 OSPF 28.0.2.1:0 -> 224.0.0.5:0 44 3152 1 2025-11-25 05:38:30.788 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44772 1 109 1 2025-11-25 05:38:30.788 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40463 1 80 1 2025-11-25 05:34:12.079 00:06:00.397 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 05:34:12.079 00:06:00.161 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 05:39:31.079 00:00:00.000 UDP 28.104.0.1:42071 -> 198.28.0.2:53 1 64 1 2025-11-25 05:39:31.080 00:00:00.000 UDP 28.104.0.1:48858 -> 198.28.0.2:53 1 64 1 2025-11-25 05:39:31.090 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42071 1 109 1 2025-11-25 05:39:31.090 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48858 1 80 1 2025-11-25 05:40:31.377 00:00:00.000 UDP 28.104.0.1:60616 -> 198.28.0.2:53 1 64 1 2025-11-25 05:40:31.377 00:00:00.000 UDP 28.104.0.1:34058 -> 198.28.0.2:53 1 64 1 2025-11-25 05:40:31.388 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60616 1 109 1 2025-11-25 05:40:31.388 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34058 1 80 1 2025-11-25 05:41:31.675 00:00:00.000 UDP 28.104.0.1:41375 -> 198.28.0.2:53 1 64 1 2025-11-25 05:41:31.675 00:00:00.000 UDP 28.104.0.1:38895 -> 198.28.0.2:53 1 64 1 2025-11-25 05:41:31.686 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41375 1 109 1 2025-11-25 05:41:31.687 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38895 1 80 1 2025-11-25 05:42:31.970 00:00:00.000 UDP 28.104.0.1:56820 -> 198.28.0.2:53 1 64 1 2025-11-25 05:42:31.970 00:00:00.000 UDP 28.104.0.1:60091 -> 198.28.0.2:53 1 64 1 2025-11-25 05:42:31.980 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60091 1 80 1 2025-11-25 05:42:31.980 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56820 1 109 1 2025-11-25 05:42:34.899 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 05:39:03.512 00:05:08.580 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 05:43:32.239 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59625 1 80 1 2025-11-25 05:43:32.239 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40322 1 109 1 2025-11-25 05:43:32.228 00:00:00.000 UDP 28.104.0.1:40322 -> 198.28.0.2:53 1 64 1 2025-11-25 05:43:32.229 00:00:00.000 UDP 28.104.0.1:59625 -> 198.28.0.2:53 1 64 1 2025-11-25 05:39:37.839 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2528 1 2025-11-25 05:39:12.196 00:05:51.366 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 05:40:03.522 00:05:08.559 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 05:40:03.512 00:05:08.696 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 05:44:32.529 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38513 1 109 1 2025-11-25 05:44:32.529 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40106 1 80 1 2025-11-25 05:44:32.518 00:00:00.000 UDP 28.104.0.1:38513 -> 198.28.0.2:53 1 64 1 2025-11-25 05:44:32.518 00:00:00.000 UDP 28.104.0.1:40106 -> 198.28.0.2:53 1 64 1 2025-11-25 05:45:32.815 00:00:00.000 UDP 28.104.0.1:38603 -> 198.28.0.2:53 1 64 1 2025-11-25 05:45:32.815 00:00:00.000 UDP 28.104.0.1:51104 -> 198.28.0.2:53 1 64 1 2025-11-25 05:45:32.824 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38603 1 109 1 2025-11-25 05:45:32.824 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51104 1 80 1 2025-11-25 05:41:12.081 00:06:00.398 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 05:41:12.081 00:06:00.164 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 05:46:33.115 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38467 1 109 1 2025-11-25 05:46:33.115 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50923 1 80 1 2025-11-25 05:46:33.105 00:00:00.000 UDP 28.104.0.1:50923 -> 198.28.0.2:53 1 64 1 2025-11-25 05:46:33.105 00:00:00.000 UDP 28.104.0.1:38467 -> 198.28.0.2:53 1 64 1 2025-11-25 05:47:33.424 00:00:00.000 UDP 28.104.0.1:38517 -> 198.28.0.2:53 1 64 1 2025-11-25 05:47:33.424 00:00:00.000 UDP 28.104.0.1:42794 -> 198.28.0.2:53 1 64 1 2025-11-25 05:47:34.719 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 05:47:33.436 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38517 1 109 1 2025-11-25 05:47:33.436 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42794 1 80 1 2025-11-25 05:48:33.739 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36379 1 80 1 2025-11-25 05:48:33.738 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41223 1 109 1 2025-11-25 05:48:33.728 00:00:00.000 UDP 28.104.0.1:41223 -> 198.28.0.2:53 1 64 1 2025-11-25 05:48:33.728 00:00:00.000 UDP 28.104.0.1:36379 -> 198.28.0.2:53 1 64 1 2025-11-25 05:44:57.845 00:05:10.002 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2748 1 2025-11-25 05:45:03.511 00:05:08.582 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 05:49:33.974 00:00:00.000 UDP 28.104.0.1:48859 -> 198.28.0.2:53 1 64 1 2025-11-25 05:49:33.974 00:00:00.000 UDP 28.104.0.1:56717 -> 198.28.0.2:53 1 64 1 2025-11-25 05:49:33.984 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48859 1 109 1 2025-11-25 05:49:33.984 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56717 1 80 1 2025-11-25 05:45:12.197 00:05:51.368 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 05:46:03.523 00:05:08.561 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 05:46:03.512 00:05:08.696 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 05:50:34.279 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35147 1 109 1 2025-11-25 05:50:34.279 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51235 1 80 1 2025-11-25 05:50:34.268 00:00:00.000 UDP 28.104.0.1:35147 -> 198.28.0.2:53 1 64 1 2025-11-25 05:50:34.269 00:00:00.000 UDP 28.104.0.1:51235 -> 198.28.0.2:53 1 64 1 2025-11-25 05:51:34.571 00:00:00.000 UDP 28.104.0.1:55583 -> 198.28.0.2:53 1 64 1 2025-11-25 05:51:34.571 00:00:00.000 UDP 28.104.0.1:50236 -> 198.28.0.2:53 1 64 1 2025-11-25 05:51:34.582 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50236 1 109 1 2025-11-25 05:51:34.582 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55583 1 80 1 2025-11-25 05:52:34.938 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59241 1 80 1 2025-11-25 05:52:34.939 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40294 1 109 1 2025-11-25 05:52:34.991 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 05:52:34.929 00:00:00.000 UDP 28.104.0.1:59241 -> 198.28.0.2:53 1 64 1 2025-11-25 05:52:34.929 00:00:00.000 UDP 28.104.0.1:40294 -> 198.28.0.2:53 1 64 1 2025-11-25 05:48:12.082 00:06:00.398 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-25 05:48:12.082 00:06:00.164 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-25 05:53:35.249 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38918 1 109 1 2025-11-25 05:53:35.249 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55958 1 80 1 2025-11-25 05:53:35.239 00:00:00.000 UDP 28.104.0.1:55958 -> 198.28.0.2:53 1 64 1 2025-11-25 05:53:35.239 00:00:00.000 UDP 28.104.0.1:38918 -> 198.28.0.2:53 1 64 1 2025-11-25 05:50:17.847 00:05:10.012 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2380 1 2025-11-25 05:54:35.540 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39223 1 80 1 2025-11-25 05:54:35.540 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50509 1 109 1 2025-11-25 05:54:35.531 00:00:00.000 UDP 28.104.0.1:50509 -> 198.28.0.2:53 1 64 1 2025-11-25 05:54:35.531 00:00:00.000 UDP 28.104.0.1:39223 -> 198.28.0.2:53 1 64 1 2025-11-25 05:51:03.514 00:05:08.580 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 05:55:35.828 00:00:00.000 UDP 28.104.0.1:51501 -> 198.28.0.2:53 1 64 1 2025-11-25 05:55:35.829 00:00:00.000 UDP 28.104.0.1:36990 -> 198.28.0.2:53 1 64 1 2025-11-25 05:55:35.837 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51501 1 80 1 2025-11-25 05:55:35.838 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36990 1 109 1 2025-11-25 05:51:12.198 00:05:51.366 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 05:52:03.514 00:05:08.697 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 05:52:03.525 00:05:08.559 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 05:56:36.127 00:00:00.000 UDP 28.104.0.1:40307 -> 198.28.0.2:53 1 64 1 2025-11-25 05:56:36.127 00:00:00.000 UDP 28.104.0.1:45462 -> 198.28.0.2:53 1 64 1 2025-11-25 05:56:36.137 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45462 1 109 1 2025-11-25 05:56:36.137 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40307 1 80 1 2025-11-25 05:57:35.232 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 05:57:36.394 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49047 1 109 1 2025-11-25 05:57:36.404 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60359 1 80 1 2025-11-25 05:57:36.382 00:00:00.000 UDP 28.104.0.1:49047 -> 198.28.0.2:53 1 64 1 2025-11-25 05:57:36.382 00:00:00.000 UDP 28.104.0.1:60359 -> 198.28.0.2:53 1 64 1 2025-11-25 05:58:36.703 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49107 1 80 1 2025-11-25 05:58:36.697 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51709 1 109 1 2025-11-25 05:58:36.686 00:00:00.000 UDP 28.104.0.1:49107 -> 198.28.0.2:53 1 64 1 2025-11-25 05:58:36.686 00:00:00.000 UDP 28.104.0.1:51709 -> 198.28.0.2:53 1 64 1 Summary: total flows: 319, total bytes: 95216, total packets: 1400, avg bps: 206, avg pps: 0, avg bpp: 68 Time window: 2025-11-25 04:57:03 - 2025-11-25 05:58:36 Total flows processed: 319, passed: 319, Blocks skipped: 0, Bytes read: 33240 Sys: 0.0033s User: 0.0044s Wall: 0.0091s flows/second: 35232.3 Runtime: 0.0091s